Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
591 6.7 警告
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows リッチ テキスト エディットの特権昇格の脆弱性 CWE-415
二重解放
CVE-2026-21530 2026-05-18 12:19 2026-05-12 Show GitHub Exploit DB Packet Storm
592 6.5 警告
Network
アップル visionos
watchOS
iOS
tvOS
iPadOS
アップルのiPadOS等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-28847 2026-05-18 12:19 2026-05-11 Show GitHub Exploit DB Packet Storm
593 7.5 重要
Network
アップル iOS
iPadOS
アップルのiPadOS等の複数製品における不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-28873 2026-05-18 12:19 2026-05-11 Show GitHub Exploit DB Packet Storm
594 6.5 警告
Network
アップル visionos
watchOS
iOS
tvOS
iPadOS
アップルのiPadOS等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-28902 2026-05-18 12:18 2026-05-11 Show GitHub Exploit DB Packet Storm
595 6.5 警告
Network
アップル visionos
watchOS
iOS
tvOS
iPadOS
アップルのiPadOS等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-28903 2026-05-18 12:18 2026-05-11 Show GitHub Exploit DB Packet Storm
596 8.1 重要
Network
アップル visionos
watchOS
iOS
tvOS
iPadOS
アップルのiPadOS等の複数製品における複数の脆弱性 CWE-116
CWE-20
CVE-2026-28907 2026-05-18 12:18 2026-05-11 Show GitHub Exploit DB Packet Storm
597 5.5 警告
Local
- アップルのmacOSにおける複数の脆弱性 CWE-358
CWE-693
CVE-2026-28914 2026-05-18 12:18 2026-05-11 Show GitHub Exploit DB Packet Storm
598 7.8 重要
Local
- アップルのmacOSにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-28915 2026-05-18 12:18 2026-05-11 Show GitHub Exploit DB Packet Storm
599 6.5 警告
Network
アップル visionos
watchOS
iOS
tvOS
iPadOS
アップルのiPadOS等の複数製品における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-28920 2026-05-18 12:18 2026-05-11 Show GitHub Exploit DB Packet Storm
600 7.5 重要
Network
- アップルのmacOSにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-28930 2026-05-18 12:18 2026-05-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345941 - qbik wingate WinGate 5.2.3 build 901 and 6.0 beta 2 build 942, and other versions such as 5.0.5, allows remote attackers to read arbitrary files from the root directory via a URL request to the wingate-internal d… NVD-CWE-Other
CVE-2004-0577 2017-07-11 10:30 2004-12-6 Show GitHub Exploit DB Packet Storm
345942 - qbik wingate WinGate 5.2.3 build 901 and 6.0 beta 2 build 942, and other versions such as 5.0.5, allows remote attackers to read arbitrary files via leading slash (//) characters in a URL request to the wingate-i… NVD-CWE-Other
CVE-2004-0578 2017-07-11 10:30 2004-12-6 Show GitHub Exploit DB Packet Storm
345943 - william_deich
debian
super
debian_linux
Format string vulnerability in super before 3.23 allows local users to execute arbitrary code as root. NVD-CWE-Other
CVE-2004-0579 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
345944 - gnu
mandrakesoft
ksymoops
mandrake_linux
mandrake_linux_corporate_server
ksymoops-gznm script in Mandrake Linux 9.1 through 10.0, and Corporate Server 2.1, allows local users to delete arbitrary files via a symlink attack on files in /tmp. NVD-CWE-Other
CVE-2004-0581 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
345945 - webmin webmin Unknown vulnerability in Webmin 1.140 allows remote attackers to bypass access control rules and gain read access to configuration information for a module. NVD-CWE-Other
CVE-2004-0582 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
345946 - usermin
webmin
debian
usermin
webmin
debian_linux
The account lockout functionality in (1) Webmin 1.140 and (2) Usermin 1.070 does not parse certain character strings, which allows remote attackers to conduct a brute force attack to guess user IDs a… NVD-CWE-Other
CVE-2004-0583 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
345947 - horde imp Unknown vulnerability in Horde IMP 3.2.3 and earlier, before a "security fix," does not properly validate input, which allows remote attackers to execute arbitrary script as other users via script or… NVD-CWE-Other
CVE-2004-0584 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
345948 - ibm acprunner acpRunner ActiveX 1.2.5.0 allows remote attackers to execute arbitrary code via the (1) DownLoadURL, (2) SaveFilePath, and (3) Download ActiveX methods. NVD-CWE-Other
CVE-2004-0586 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
345949 - usermin usermin Cross-site scripting (XSS) vulnerability in the web mail module for Usermin 1.070 allows remote attackers to insert arbitrary HTML and script via e-mail messages. NVD-CWE-Other
CVE-2004-0588 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
345950 - usermin usermin This vulnerability is addressed in the following product update: Usermin, Usermin, 1.080 NVD-CWE-Other
CVE-2004-0588 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm