Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4481 5.5 警告
Local
Absolute Software secure access Absolute Softwareのsecure accessにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-40951 2026-05-7 11:26 2026-04-30 Show GitHub Exploit DB Packet Storm
4482 9.8 緊急
Network
flowiseai flowise flowiseaiのflowiseにおけるデータクエリロジックの特殊要素の不適切な中立化に関する脆弱性 CWE-943
データクエリロジックの特殊要素の不適切な中立化
CVE-2026-41274 2026-05-7 11:26 2026-04-23 Show GitHub Exploit DB Packet Storm
4483 7.5 重要
Network
JetBrains IntelliJ IDEA JetBrainsのIntelliJ IDEAにおけるリンク解釈に関する脆弱性 CWE-59
リンク解釈の問題
CVE-2026-41882 2026-05-7 11:26 2026-04-30 Show GitHub Exploit DB Packet Storm
4484 9.8 緊急
Network
asrmicro asr1803 ファームウェア asrmicroのasr1803 ファームウェアにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-42799 2026-05-7 11:25 2026-04-30 Show GitHub Exploit DB Packet Storm
4485 8.5 重要
Network
OpenStack Openstack Keystone OpenStackのOpenstack Keystoneにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-43001 2026-05-7 11:25 2026-05-1 Show GitHub Exploit DB Packet Storm
4486 9.8 緊急
Network
Linux Linux Kernel LinuxのLinux Kernelにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-43037 2026-05-7 11:25 2026-05-1 Show GitHub Exploit DB Packet Storm
4487 9.8 緊急
Network
Progress Software Corporation MOVEit Automation Web Admin Progress Software CorporationのMOVEit Automation Web Adminにおける根本の脆弱性による認証回避の脆弱性 CWE-305
根本の脆弱性による認証回避
CVE-2026-4670 2026-05-7 11:25 2026-04-30 Show GitHub Exploit DB Packet Storm
4488 8.8 重要
Network
Progress Software Corporation MOVEit Automation Web Admin Progress Software CorporationのMOVEit Automation Web Adminにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-5174 2026-05-7 11:25 2026-04-30 Show GitHub Exploit DB Packet Storm
4489 6.5 警告
Network
GNU Project GNU C Library GNU ProjectのGNU C Libraryにおけるバッファオーバーリードの脆弱性 CWE-126
バッファオーバーリード
CVE-2026-6238 2026-05-7 11:25 2026-04-28 Show GitHub Exploit DB Packet Storm
4490 8.1 重要
Network
langflow langflow langflowにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-6542 2026-05-7 11:25 2026-04-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
349691 - tunez tunez Multiple SQL injection vulnerabilities in Tunez before 1.20-pre2 allow remote attackers to execute arbitrary SQL queries. NVD-CWE-Other
CVE-2004-2349 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349692 - phpbb_group phpbb SQL injection vulnerability in search.php for phpBB 1.0 through 2.0.6 allows remote attackers to execute arbitrary SQL and gain privileges via the search_results parameter. NVD-CWE-Other
CVE-2004-2350 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349693 - martin_bauer gbook Cross-site scripting (XSS) vulnerability in GBook for Php-Nuke 1.0 allows remote attackers to inject arbitrary web script or HTML via multiple parameters, including (1) name, (2) email, (3) city, and… NVD-CWE-Other
CVE-2004-2351 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349694 - martin_bauer gbook Cross-site scripting (XSS) vulnerability in GBook for PHP-Nuke 1.0 allows remote attackers to inject arbitrary web script or HTML via cookies that are stored in the $_COOKIE PHP variable, which is no… NVD-CWE-Other
CVE-2004-2352 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349695 - - - BugPort before 1.099 stores its configuration file (conf/config.conf) under the web document root with a file extension that is not normally parsed by web servers, which allows remote attackers to ob… NVD-CWE-Other
CVE-2004-2353 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349696 - francisco_burzi
warpspeed
php-nuke
4nguestbook
SQL injection vulnerability in 4nGuestbook 0.92 for PHP-Nuke 6.5 through 6.9 allows remote attackers to modify SQL statements via the entry parameter to modules.php, which can also facilitate cross-s… NVD-CWE-Other
CVE-2004-2354 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349697 - crafty_syntax_live_help crafty_syntax_live_help Cross-site scripting (XSS) vulnerability in Crafty Syntax Live Help (CSLH) before 2.7.4 allows remote attackers to inject arbitrary web script or HTML via the name field of a livehelp or chat session. NVD-CWE-Other
CVE-2004-2355 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349698 - fizmez fizmez_web_server Early termination vulnerability in Fizmez Web Server 1.0 allows remote attackers to cause a denial of service (crash) by connecting to the server and then disconnecting without sending any data, whic… NVD-CWE-Other
CVE-2004-2356 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349699 - proofpoint proofpoint_protection_server The embedded MySQL 4.0 server for Proofpoint Protection Server does not require a password for the root user of MySQL, which allows remote attackers to read or modify the backend database. NVD-CWE-Other
CVE-2004-2357 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349700 - - - Cross-site scripting (XSS) vulnerability in admin_words.php for phpBB 2.0.6c allows remote attackers to inject arbitrary web script or HTML via the id parameter. NVD-CWE-Other
CVE-2004-2358 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm