Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4481 5.5 警告
Local
Absolute Software secure access Absolute Softwareのsecure accessにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-40951 2026-05-7 11:26 2026-04-30 Show GitHub Exploit DB Packet Storm
4482 9.8 緊急
Network
flowiseai flowise flowiseaiのflowiseにおけるデータクエリロジックの特殊要素の不適切な中立化に関する脆弱性 CWE-943
データクエリロジックの特殊要素の不適切な中立化
CVE-2026-41274 2026-05-7 11:26 2026-04-23 Show GitHub Exploit DB Packet Storm
4483 7.5 重要
Network
JetBrains IntelliJ IDEA JetBrainsのIntelliJ IDEAにおけるリンク解釈に関する脆弱性 CWE-59
リンク解釈の問題
CVE-2026-41882 2026-05-7 11:26 2026-04-30 Show GitHub Exploit DB Packet Storm
4484 9.8 緊急
Network
asrmicro asr1803 ファームウェア asrmicroのasr1803 ファームウェアにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-42799 2026-05-7 11:25 2026-04-30 Show GitHub Exploit DB Packet Storm
4485 8.5 重要
Network
OpenStack Openstack Keystone OpenStackのOpenstack Keystoneにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-43001 2026-05-7 11:25 2026-05-1 Show GitHub Exploit DB Packet Storm
4486 9.8 緊急
Network
Linux Linux Kernel LinuxのLinux Kernelにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-43037 2026-05-7 11:25 2026-05-1 Show GitHub Exploit DB Packet Storm
4487 9.8 緊急
Network
Progress Software Corporation MOVEit Automation Web Admin Progress Software CorporationのMOVEit Automation Web Adminにおける根本の脆弱性による認証回避の脆弱性 CWE-305
根本の脆弱性による認証回避
CVE-2026-4670 2026-05-7 11:25 2026-04-30 Show GitHub Exploit DB Packet Storm
4488 8.8 重要
Network
Progress Software Corporation MOVEit Automation Web Admin Progress Software CorporationのMOVEit Automation Web Adminにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-5174 2026-05-7 11:25 2026-04-30 Show GitHub Exploit DB Packet Storm
4489 6.5 警告
Network
GNU Project GNU C Library GNU ProjectのGNU C Libraryにおけるバッファオーバーリードの脆弱性 CWE-126
バッファオーバーリード
CVE-2026-6238 2026-05-7 11:25 2026-04-28 Show GitHub Exploit DB Packet Storm
4490 8.1 重要
Network
langflow langflow langflowにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-6542 2026-05-7 11:25 2026-04-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
349621 - goosequill remoteeditor Unknown vulnerability in RemoteEditor before 0.1.1 has unknown impact and attack vectors, related to "oversize submissions." NVD-CWE-Other
CVE-2004-2248 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349622 - goosequill audienceconnect_secureeditor Unknown vulnerability in the "access code" in SecureEditor before 0.1.2 has unknown impact and attack vectors, possibly involving a bypass of IP address restrictions. NVD-CWE-Other
CVE-2004-2249 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349623 - goosequill audienceconnect_remoteeditor Unknown vulnerability in the "access code" in RemoteEditor before 0.1.6 has unknown impact and attack vectors, possibly involving a bypass of IP address restrictions. NVD-CWE-Other
CVE-2004-2250 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349624 - astaro security_linux The PPTP server in Astaro Security Linux before 4.024 provides information about its version, which makes it easier for remote attackers to construct specialized attacks. NVD-CWE-Other
CVE-2004-2251 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349625 - netwin surgeldap Directory traversal vulnerability in user.cgi in SurgeLDAP 1.0g and earlier allows remote attackers to read arbitrary files via a .. in the page parameter of the show command. NVD-CWE-Other
CVE-2004-2253 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349626 - netwin surgeldap SurgeLDAP 1.0g (Build 12), and possibly other versions before 1.0h, allows remote attackers to bypass authentication for the administration interface via a direct request to admin.cgi with a modified… NVD-CWE-Other
CVE-2004-2254 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349627 - phpmyfaq phpmyfaq Directory traversal vulnerability in phpMyFAQ 1.3.12 allows remote attackers to read arbitrary files, and possibly execute local PHP files, via the action variable, which is used as part of a templat… NVD-CWE-Other
CVE-2004-2255 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349628 - - - Directory traversal vulnerability in phpMyFAQ 1.4.0 alpha allows remote attackers to read arbitrary files, and possibly execute local PHP files, via .. sequences in the lang (language) variable. NVD-CWE-Other
CVE-2004-2256 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349629 - hummingbird exceed Xconfig in Hummingbird Exceed before 9.0.0.1, when the Screen Definition is password-protected, allows local users to access certain options by switching to another tab, then switching back to the or… NVD-CWE-Other
CVE-2004-2258 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349630 - - - Cross-site scripting (XSS) vulnerability in e107 allows remote attackers to inject arbitrary script or HTML via the "login name/author" field in the (1) news submit or (2) article submit functions. NVD-CWE-Other
CVE-2004-2261 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm