Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4831 9.8 緊急
Network
NetBox Labs Netbox-docker NetBox LabsのNetbox-dockerにおける複数の脆弱性 CWE-1392
CWE-798
CVE-2023-27573 2026-05-11 11:03 2026-03-11 Show GitHub Exploit DB Packet Storm
4832 6.1 警告
Network
HCL Technologies Limited DFX Analytics HCL Technologies LimitedのDFX Analyticsにおける複数の脆弱性 CWE-358
CWE-79
CVE-2025-31970 2026-05-11 11:03 2026-05-6 Show GitHub Exploit DB Packet Storm
4833 9.8 緊急
Network
HCL Technologies Limited DFX Analytics HCL Technologies LimitedのDFX Analyticsにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2025-59851 2026-05-11 11:03 2026-05-6 Show GitHub Exploit DB Packet Storm
4834 9.1 緊急
Network
HCL Technologies Limited DFX Analytics HCL Technologies LimitedのDFX Analyticsにおける重要な情報の平文での送信に関する脆弱性 CWE-319
重要な情報の平文での送信
CVE-2025-59852 2026-05-11 11:03 2026-05-6 Show GitHub Exploit DB Packet Storm
4835 5.3 警告
Network
HCL Technologies Limited DFX Analytics HCL Technologies LimitedのDFX Analyticsにおけるエラーメッセージによる情報漏えいに関する脆弱性 CWE-209
エラーメッセージによる情報漏えい
CVE-2025-59853 2026-05-11 11:03 2026-05-6 Show GitHub Exploit DB Packet Storm
4836 6.1 警告
Network
HCL Technologies Limited DFX Analytics HCL Technologies LimitedのDFX Analyticsにおける複数の脆弱性 CWE-79
CWE-80
CVE-2025-59854 2026-05-11 11:03 2026-05-6 Show GitHub Exploit DB Packet Storm
4837 9.4 緊急
Network
Deutsche Telekom AG Telekom Account Management Portal Deutsche Telekom AGのTelekom Account Management Portalにおけるパスワード管理機能に関する脆弱性 CWE-640
パスワードを忘れた場合の脆弱なパスワードリカバリの仕組み
CVE-2025-69614 2026-05-11 11:03 2026-03-10 Show GitHub Exploit DB Packet Storm
4838 9.1 緊急
Network
Deutsche Telekom AG Telekom Account Management Portal Deutsche Telekom AGのTelekom Account Management Portalにおける過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2025-69615 2026-05-11 11:03 2026-03-10 Show GitHub Exploit DB Packet Storm
4839 6.1 警告
Network
generatedata generatedata generatedataにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-70025 2026-05-11 11:02 2026-03-10 Show GitHub Exploit DB Packet Storm
4840 7.5 重要
Network
pdfmake project pdfmake pdfmakeにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-26801 2026-05-11 11:02 2026-03-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
350231 - sylpheed sylpheed Stack-based buffer overflow in the ldif_get_line function in ldif.c of Sylpheed before 2.1.6 allows user-assisted attackers to execute arbitrary code by having local users import LDIF files with long… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2005-3354 2017-07-11 10:33 2005-11-21 Show GitHub Exploit DB Packet Storm
350232 - php_icalendar php_icalendar PHP file inclusion vulnerability in index.php in PHP iCalendar 2.0a2 through 2.0.1 allows remote attackers to execute arbitrary PHP code and include arbitrary local files via the phpicalendar cookie.… NVD-CWE-Other
CVE-2005-3366 2017-07-11 10:33 2005-10-30 Show GitHub Exploit DB Packet Storm
350233 - search_enhanced search_enhanced Cross-site scripting (XSS) vulnerability in the Search_Enhanced module in PHP-Nuke 7.9 allows remote attackers to inject arbitrary web script or HTML via the query parameter. NVD-CWE-Other
CVE-2005-3368 2017-07-11 10:33 2005-10-30 Show GitHub Exploit DB Packet Storm
350234 - - - Multiple SQL injection vulnerabilities in the Info-DB module (info_db.php) in Woltlab Burning Board 2.7 and earlier allow remote attackers to execute arbitrary SQL commands and possibly upload files … NVD-CWE-Other
CVE-2005-3369 2017-07-11 10:33 2005-10-30 Show GitHub Exploit DB Packet Storm
350235 - butterfat phpesp Cross-site scripting (XSS) vulnerability in phpESP 1.7.5 and earlier allows remote attackers to inject arbitrary web script or HTML via unknown vectors. NVD-CWE-Other
CVE-2005-3406 2017-07-11 10:33 2005-11-1 Show GitHub Exploit DB Packet Storm
350236 - butterfat phpesp SQL injection vulnerability in phpESP 1.7.5 and earlier allows remote attackers to execute arbitrary SQL commands via unknown vectors. NVD-CWE-Other
CVE-2005-3407 2017-07-11 10:33 2005-11-1 Show GitHub Exploit DB Packet Storm
350237 - greg_neustaetter gcards SQL injection vulnerability in news.php in gCards version 1.43 allows remote attackers to execute arbitrary SQL commands via the limit parameter. NVD-CWE-Other
CVE-2005-3408 2017-07-11 10:33 2005-11-1 Show GitHub Exploit DB Packet Storm
350238 - eyeos_project eyeos Cross-site scripting (XSS) vulnerability in desktop.php in eyeOS 0.8.4 allows remote attackers to inject arbitrary web script or HTML via the motd parameter. NVD-CWE-Other
CVE-2005-3413 2017-07-11 10:33 2005-11-2 Show GitHub Exploit DB Packet Storm
350239 - eyeos_project eyeos eyeOS 0.8.4 stores usrinfo.xml under the web document root with insufficient access control, which allows remote attackers to obtain user credentials. NVD-CWE-Other
CVE-2005-3414 2017-07-11 10:33 2005-11-2 Show GitHub Exploit DB Packet Storm
350240 - phpbb_group phpbb phpBB 2.0.17 and earlier allows remote attackers to bypass protection mechanisms that deregister global variables by setting both a GET/POST/COOKIE (GPC) variable and a GLOBALS[] variable with the sa… NVD-CWE-Other
CVE-2005-3415 2017-07-11 10:33 2005-11-2 Show GitHub Exploit DB Packet Storm