Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4371 8.1 重要
Network
SenseLive X3500 Firmware SenseLiveのX3500 Firmwareにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-27841 2026-04-30 12:08 2026-04-24 Show GitHub Exploit DB Packet Storm
4372 9.1 緊急
Network
SenseLive X3500 Firmware SenseLiveのX3500 Firmwareにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-27843 2026-04-30 12:08 2026-04-24 Show GitHub Exploit DB Packet Storm
4373 7.5 重要
Network
Navigation Data Standard (NDS) Zserio Navigation Data Standard (NDS)のZserioにおける過剰なサイズ値のメモリ割り当てに関する脆弱性 CWE-789
過剰なサイズ値のメモリ割り当て
CVE-2026-33524 2026-04-30 12:08 2026-04-24 Show GitHub Exploit DB Packet Storm
4374 7.5 重要
Network
Navigation Data Standard (NDS) Zserio Navigation Data Standard (NDS)のZserioにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-33666 2026-04-30 12:08 2026-04-24 Show GitHub Exploit DB Packet Storm
4375 7.5 重要
Network
SenseLive X3500 Firmware SenseLiveのX3500 Firmwareにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-35064 2026-04-30 12:08 2026-04-24 Show GitHub Exploit DB Packet Storm
4376 7.1 重要
Local
Gwenhael Goavec-Merou (trabucayre) openFPGALoader Gwenhael Goavec-Merou (trabucayre)のopenFPGALoaderにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-35170 2026-04-30 12:08 2026-04-6 Show GitHub Exploit DB Packet Storm
4377 7.1 重要
Local
Gwenhael Goavec-Merou (trabucayre) openFPGALoader Gwenhael Goavec-Merou (trabucayre)のopenFPGALoaderにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-35176 2026-04-30 12:08 2026-04-6 Show GitHub Exploit DB Packet Storm
4378 6.5 警告
Network
Coder Code Extension Marketplace CoderのCode Extension Marketplaceにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-35454 2026-04-30 12:07 2026-04-6 Show GitHub Exploit DB Packet Storm
4379 9.8 緊急
Network
SenseLive X3500 Firmware SenseLiveのX3500 Firmwareにおけるハードコードされた認証情報の使用に関する脆弱性 CWE-798
ハードコードされた認証情報の使用
CVE-2026-35503 2026-04-30 12:07 2026-04-24 Show GitHub Exploit DB Packet Storm
4380 8.1 重要
Network
SenseLive X3500 Firmware SenseLiveのX3500 Firmwareにおける認証情報の不十分な保護に関する脆弱性 CWE-522
認証情報の不十分な保護
CVE-2026-39462 2026-04-30 12:07 2026-04-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
354561 - sony playstation_portable Buffer overflow in the TIFF library in the Photo Viewer for Sony PSP 2.0 firmware allows remote attackers to cause a denial of service via a crafted TIFF image. NVD-CWE-Other
CVE-2005-3084 2008-09-6 05:53 2005-09-28 Show GitHub Exploit DB Packet Storm
354562 - riverdark_studios rss_syndicator_module Multiple cross-site scripting (XSS) vulnerabilities in rss.php in Riverdark Studios RSS Syndicator module 2.1.7 allow remote attackers to inject arbitrary web script or HTML via the (1) forum or (2) … NVD-CWE-Other
CVE-2005-3085 2008-09-6 05:53 2005-09-28 Show GitHub Exploit DB Packet Storm
354563 - contentserv contentserv Directory traversal vulnerability in admin/about.php in contentServ 3.1 allows remote attackers to read or include arbitrary files via ".." sequences in the ctsWebsite parameter. NVD-CWE-Other
CVE-2005-3086 2008-09-6 05:53 2005-09-28 Show GitHub Exploit DB Packet Storm
354564 - securew2 securew2 The SecureW2 3.0 TLS implementation uses weak random number generators (rand and srand from system time) during generation of the pre-master secret (PMS), which makes it easier for attackers to guess… NVD-CWE-Other
CVE-2005-3087 2008-09-6 05:53 2005-09-28 Show GitHub Exploit DB Packet Storm
354565 - mantis mantis Cross-site scripting (XSS) vulnerability in Mantis before 1.0.0rc1 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors, as identified by bug#0005751 "thraxisp". NVD-CWE-Other
CVE-2005-3091 2008-09-6 05:53 2005-09-29 Show GitHub Exploit DB Packet Storm
354566 - nokia 3210
7610
Nokia 7610 and 3210 phones allows attackers to cause a denial of service via certain characters in the filename of a Bluetooth OBEX transfer. NVD-CWE-Other
CVE-2005-3093 2008-09-6 05:53 2005-09-29 Show GitHub Exploit DB Packet Storm
354567 - avi_alkalay contribute.cgi Directory traversal vulnerability in Avi Alkalay contribute.cgi (aka contribute.pl), dated 16 Jun 2002, allows remote attackers to overwrite arbitrary files via ".." sequences in the contribdir varia… NVD-CWE-Other
CVE-2005-3097 2008-09-6 05:53 2005-09-29 Show GitHub Exploit DB Packet Storm
354568 - astaro security_linux Unspecified "PPTP Remote DoS Vulnerability" in Astaro Security Linux 4.027 allows attackers to cause a denial of service. NVD-CWE-Other
CVE-2005-3100 2008-09-6 05:53 2005-09-29 Show GitHub Exploit DB Packet Storm
354569 - six_apart movable_type The password reset feature in Movable Type before 3.2 generates different error messages depending on whether a user exists or not, which allows remote attackers to determine valid usernames. NVD-CWE-Other
CVE-2005-3101 2008-09-6 05:53 2005-09-29 Show GitHub Exploit DB Packet Storm
354570 - - - The administrative interface in Movable Type allows attackers to upload files with arbitrary extensions under the web root. NVD-CWE-Other
CVE-2005-3102 2008-09-6 05:53 2005-09-29 Show GitHub Exploit DB Packet Storm