Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 25, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4811 6.2 警告
Local
アドビシステムズ C2PA (Coalition for Content Provenance and Authenticity)
(Content Authenticity Initiative) c2pa-web
アドビの(Content Authenticity Initiative) c2pa-web等の複数製品における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-34680 2026-05-18 11:23 2026-05-12 Show GitHub Exploit DB Packet Storm
4812 6.2 警告
Local
アドビシステムズ C2PA (Coalition for Content Provenance and Authenticity)
(Content Authenticity Initiative) c2pa-web
アドビの(Content Authenticity Initiative) c2pa-web等の複数製品における入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-34688 2026-05-18 11:23 2026-05-12 Show GitHub Exploit DB Packet Storm
4813 7.1 重要
Adjacent
Linux Foundation automotive grade linux Linux FoundationのAutomotive Grade Linuxにおけるバッファオーバーリードの脆弱性 CWE-126
バッファオーバーリード
CVE-2026-37532 2026-05-18 11:23 2026-05-1 Show GitHub Exploit DB Packet Storm
4814 8.8 重要
Network
マイクロソフト Microsoft Data Formulator Microsoft Data Formulator のリモートでコードが実行される脆弱性 CWE-94
コード・インジェクション
CVE-2026-41094 2026-05-18 11:22 2026-05-12 Show GitHub Exploit DB Packet Storm
4815 9.1 緊急
Network
マイクロソフト Microsoft Confluence SAML SSO plugin
Microsoft JIRA SAML SSO plugin
Jira と Confluence 用の Microsoft SSO プラグインの特権昇格の脆弱性 CWE-303
CWE-Other
CVE-2026-41103 2026-05-18 11:22 2026-05-12 Show GitHub Exploit DB Packet Storm
4816 5.9 警告
Network
opentelemetry OpenTelemetry.Resources.Azure opentelemetryのOpenTelemetry.Resources.Azureにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-41483 2026-05-18 11:22 2026-05-6 Show GitHub Exploit DB Packet Storm
4817 5.9 警告
Network
opentelemetry OpenTelemetry.Exporter.OneCollector opentelemetryのOpenTelemetry.Exporter.OneCollectorにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-41484 2026-05-18 11:22 2026-05-6 Show GitHub Exploit DB Packet Storm
4818 5.5 警告
Local
マイクロソフト Visual Studio Code - Live Preview extension マイクロソフトのVisual Studio Code - Live Preview extensionにおける複数の脆弱性 CWE-22
CWE-22
CWE-23
CVE-2026-41612 2026-05-18 11:22 2026-05-12 Show GitHub Exploit DB Packet Storm
4819 7.8 重要
Local
OpenImageIO (OIIO) OpenImageIO (OIIO) OpenImageIO (OIIO)における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-43903 2026-05-18 11:22 2026-05-14 Show GitHub Exploit DB Packet Storm
4820 7.8 重要
Local
OpenImageIO (OIIO) OpenImageIO (OIIO) OpenImageIO (OIIO)における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-43904 2026-05-18 11:22 2026-05-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 25, 2026, 4:04 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
350991 - hauri livecall
virobot_advanced_server
virobot_expert
virobot_linux_server
Stack-based buffer overflow in the ACE archive decompression library (vrAZace.dll) in HAURI Anti-Virus products including ViRobot Expert 4.0, Advanced Server, Linux Server 2.0, and LiveCall, when com… NVD-CWE-Other
CVE-2005-2720 2017-07-11 10:32 2005-08-30 Show GitHub Exploit DB Packet Storm
350992 - foojan php_weblog Multiple cross-site scripting (XSS) vulnerabilities in (1) index.php or (2) admin.php in Foojan PHP Weblog allow remote attackers to inject arbitrary web script or HTML via the Referer field in the H… NVD-CWE-Other
CVE-2005-2721 2017-07-11 10:32 2005-08-30 Show GitHub Exploit DB Packet Storm
350993 - php_arena pafiledb SQL injection vulnerability in auth.php in PaFileDB 3.1, when authmethod is set to cookies, allows remote attackers to execute arbitrary SQL commands via the username value in the pafiledbcookie cook… NVD-CWE-Other
CVE-2005-2723 2017-07-11 10:32 2005-08-30 Show GitHub Exploit DB Packet Storm
350994 - inter7 sqwebmail Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4 allows remote attackers to inject arbitrary web script or HTML via a file attachment that is processed by the Display feature. NOTE: the s… NVD-CWE-Other
CVE-2005-2724 2017-07-11 10:32 2005-08-30 Show GitHub Exploit DB Packet Storm
350995 - qnx rtos The inputtrap utility in QNX RTOS 6.1.0, 6.3, and possibly earlier versions does not properly check permissions when the -t flag is specified, which allows local users to read arbitrary files. NVD-CWE-Other
CVE-2005-2725 2017-07-11 10:32 2005-08-30 Show GitHub Exploit DB Packet Storm
350996 - ari_pikivirta home_ftp_server Directory traversal vulnerability in Home Ftp Server 1.0.7 allows remote authenticated users to read arbitrary files via "C:\" (Windows drive letter) sequences in commands such as (1) LIST or (2) RET… NVD-CWE-Other
CVE-2005-2726 2017-07-11 10:32 2005-08-30 Show GitHub Exploit DB Packet Storm
350997 - ari_pikivirta home_ftp_server Home Ftp Server 1.0.7 stores sensitive user information and server information in the same directory as the user's home directory, which allows remote authenticated users to obtain sensitive informat… NVD-CWE-Other
CVE-2005-2727 2017-07-11 10:32 2005-08-30 Show GitHub Exploit DB Packet Storm
350998 - astaro security_linux The HTTP proxy in Astaro Security Linux 6.0 does not properly filter HTTP CONNECT requests to localhost, which allows remote attackers to bypass firewall rules and connect to local services. NVD-CWE-Other
CVE-2005-2729 2017-07-11 10:32 2005-08-30 Show GitHub Exploit DB Packet Storm
350999 - astaro security_linux The HTTP proxy in Astaro Security Linux 6.0 allows remote attackers to obtain sensitive information via an invalid request, which reveals a Proxy-authorization string in an error message. NVD-CWE-Other
CVE-2005-2730 2017-07-11 10:32 2005-08-30 Show GitHub Exploit DB Packet Storm
351000 - alexander_palmo simple_php_blog upload_img_cgi.php in Simple PHP Blog (SPHPBlog) does not properly restrict file extensions of uploaded files, which could allow remote attackers to execute arbitrary code. NVD-CWE-Other
CVE-2005-2733 2017-07-11 10:32 2005-08-30 Show GitHub Exploit DB Packet Storm