Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4131 8.5 重要
Network
socialengine socialengine socialengineにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-41461 2026-04-30 12:26 2026-04-23 Show GitHub Exploit DB Packet Storm
4132 7.7 重要
Network
The Kyverno Authors Kyverno The Kyverno AuthorsのKyvernoにおける到達可能なアサーションに関する脆弱性 CWE-617
到達可能なアサーション
CVE-2026-41485 2026-04-30 12:25 2026-04-24 Show GitHub Exploit DB Packet Storm
4133 4 警告
Local
The GnuPG Project Libgcrypt The GnuPG ProjectのLibgcryptにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-41990 2026-04-30 12:25 2026-04-23 Show GitHub Exploit DB Packet Storm
4134 7.4 重要
Network
axios project axios axios projectのaxiosにおけるオブジェクトプロトタイプ属性の不適切に制御された変更に関する脆弱性 CWE-1321
オブジェクトプロトタイプ属性の不適切に制御された変更 (プロトタイプの汚染)
CVE-2026-42033 2026-04-30 12:25 2026-04-24 Show GitHub Exploit DB Packet Storm
4135 5.3 警告
Network
axios project axios axios projectのaxiosにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-42034 2026-04-30 12:25 2026-04-24 Show GitHub Exploit DB Packet Storm
4136 7.4 重要
Network
axios project axios axios projectのaxiosにおける複数の脆弱性 CWE-113
CWE-1321
CVE-2026-42035 2026-04-30 12:25 2026-04-24 Show GitHub Exploit DB Packet Storm
4137 5.3 警告
Network
axios project axios axios projectのaxiosにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-42036 2026-04-30 12:25 2026-04-24 Show GitHub Exploit DB Packet Storm
4138 5.3 警告
Network
axios project axios axios projectのaxiosにおけるCRLF インジェクションの脆弱性 CWE-93
CRLF インジェクション
CVE-2026-42037 2026-04-30 12:25 2026-04-24 Show GitHub Exploit DB Packet Storm
4139 7.5 重要
Network
axios project axios axios projectのaxiosにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-42038 2026-04-30 12:25 2026-04-24 Show GitHub Exploit DB Packet Storm
4140 7.5 重要
Network
axios project axios axios projectのaxiosにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2026-42039 2026-04-30 12:25 2026-04-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348681 - psionic logcheck logcheck before 1.1.1 allows local users to overwrite arbitrary files via a symlink attack on a temporary directory in /var/tmp. NVD-CWE-Other
CVE-2004-0404 2017-07-11 10:30 2004-07-7 Show GitHub Exploit DB Packet Storm
348682 - macromedia coldfusion The HTML form upload capability in ColdFusion MX 6.1 does not reclaim disk space if an upload is interrupted, which allows remote attackers to cause a denial of service (disk consumption) by repeated… NVD-CWE-Other
CVE-2004-0407 2017-07-11 10:30 2004-06-1 Show GitHub Exploit DB Packet Storm
348683 - michael_bacarella ident2 Buffer overflow in the child_service function in the ident2 ident daemon allows remote attackers to execute arbitrary code. NVD-CWE-Other
CVE-2004-0408 2017-07-11 10:30 2004-09-28 Show GitHub Exploit DB Packet Storm
348684 - gnu mailman Mailman before 2.1.5 allows remote attackers to obtain user passwords via a crafted email request to the Mailman server. NVD-CWE-Other
CVE-2004-0412 2017-07-11 10:30 2004-08-18 Show GitHub Exploit DB Packet Storm
348685 - openpkg
subversion
openpkg
subversion
libsvn_ra_svn in Subversion 1.0.4 trusts the length field of (1) svn://, (2) svn+ssh://, and (3) other svn protocol URL strings, which allows remote attackers to cause a denial of service (memory con… NVD-CWE-Other
CVE-2004-0413 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
348686 - gnu flim flim before 1.14.3 creates temporary files insecurely, which allows local users to overwrite arbitrary files of the Emacs user via a symlink attack. NVD-CWE-Other
CVE-2004-0422 2017-07-11 10:30 2004-07-7 Show GitHub Exploit DB Packet Storm
348687 - netegrity sideminder_affiliate_agent Heap-based buffer overflow in SiteMinder Affiliate Agent 4.x allows remote attackers to execute arbitrary code via a large SMPROFILE cookie. NVD-CWE-Other
CVE-2004-0425 2017-07-11 10:30 2004-08-18 Show GitHub Exploit DB Packet Storm
348688 - apple mac_os_x
mac_os_x_server
Unknown vulnerability in CoreFoundation in Mac OS X 10.3.3 and Mac OS X 10.3.3 Server, related to "the handling of an environment variable," has unknown attack vectors and unknown impact. NVD-CWE-Other
CVE-2004-0428 2017-07-11 10:30 2004-05-3 Show GitHub Exploit DB Packet Storm
348689 - apple mac_os_x Unknown vulnerability related to "the handling of large requests" in RAdmin for Apple Mac OS X 10.3.3 and Mac OS X 10.2.8 may allow attackers to have unknown impact via unknown attack vectors. NVD-CWE-Other
CVE-2004-0429 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm
348690 - apple mac_os_x
mac_os_x_server
Stack-based buffer overflow in AppleFileServer for Mac OS X 10.3.3 and earlier allows remote attackers to execute arbitrary code via a LoginExt packet for a Cleartext Password User Authentication Met… NVD-CWE-Other
CVE-2004-0430 2017-07-11 10:30 2004-07-7 Show GitHub Exploit DB Packet Storm