Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
861 7.8 重要
Local
Open Source Geospatial Foundation GDAL Open Source Geospatial FoundationのGDALにおける複数の脆弱性 CWE-119
CWE-122
CVE-2026-8086 2026-05-11 11:04 2026-05-7 Show GitHub Exploit DB Packet Storm
862 7.8 重要
Local
Open Source Geospatial Foundation GDAL Open Source Geospatial FoundationのGDALにおける複数の脆弱性 CWE-119
CWE-122
CVE-2026-8087 2026-05-11 11:04 2026-05-7 Show GitHub Exploit DB Packet Storm
863 5.5 警告
Local
Open Source Geospatial Foundation GDAL Open Source Geospatial FoundationのGDALにおける複数の脆弱性 CWE-119
CWE-125
CVE-2026-8088 2026-05-11 11:03 2026-05-7 Show GitHub Exploit DB Packet Storm
864 7.3 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-8090 2026-05-11 11:03 2026-05-7 Show GitHub Exploit DB Packet Storm
865 7.8 重要
Local
Forcepoint LLC. Next Generation Firewall (NGFW) Forcepoint LLC.のNext Generation Firewall (NGFW)における不要な特権による実行に関する脆弱性 CWE-250
CWE-noinfo
CVE-2025-12690 2026-05-11 11:03 2026-03-11 Show GitHub Exploit DB Packet Storm
866 6.8 警告
Network
vaadin Vaadin Vaadin Ltd.のVaadinにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-2741 2026-05-11 11:03 2026-03-10 Show GitHub Exploit DB Packet Storm
867 5.3 警告
Network
vaadin Vaadin Vaadin Ltd.のVaadinにおけるアクセス制御に関する脆弱性 CWE-284
CWE-Other
CVE-2026-2742 2026-05-11 11:03 2026-03-10 Show GitHub Exploit DB Packet Storm
868 7.8 重要
Local
ASSA ABLOY Visionline ASSA ABLOYのVisionlineにおける複数の脆弱性 CWE-250
CWE-276
CWE-732
CWE-732
CVE-2026-3315 2026-05-11 11:03 2026-03-10 Show GitHub Exploit DB Packet Storm
869 9.8 緊急
Network
NetBox Labs Netbox-docker NetBox LabsのNetbox-dockerにおける複数の脆弱性 CWE-1392
CWE-798
CVE-2023-27573 2026-05-11 11:03 2026-03-11 Show GitHub Exploit DB Packet Storm
870 6.1 警告
Network
HCL Technologies Limited DFX Analytics HCL Technologies LimitedのDFX Analyticsにおける複数の脆弱性 CWE-358
CWE-79
CVE-2025-31970 2026-05-11 11:03 2026-05-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346481 - awstats awstats AWStats 6.4, and possibly earlier versions, allows remote attackers to obtain sensitive information via a file that does not exist in the config parameter, which reveals the path in an error message. NVD-CWE-Other
CVE-2005-2732 2016-10-18 12:29 2005-08-30 Show GitHub Exploit DB Packet Storm
346482 - flatnuke flatnuke FlatNuke 2.5.5 and possibly earlier versions allows remote attackers to obtain sensitive information via a direct request to structure.php. NVD-CWE-Other
CVE-2005-2537 2016-10-18 12:28 2005-08-10 Show GitHub Exploit DB Packet Storm
346483 - flatnuke flatnuke FlatNuke 2.5.5 and possibly earlier versions allows remote attackers to obtain sensitive information via (1) a null byte or (2) an MS-DOS device name such as AUX, CON, PRN, COM1, or LPT1 in the mod p… NVD-CWE-Other
CVE-2005-2538 2016-10-18 12:28 2005-08-10 Show GitHub Exploit DB Packet Storm
346484 - invision_power_services invision_board Invision Power Board (IPB) 1.0.3 allows remote attackers to inject arbitrary web script or HTML via an attachment, which is automatically downloaded and processed as HTML. NVD-CWE-Other
CVE-2005-2542 2016-10-18 12:28 2005-08-10 Show GitHub Exploit DB Packet Storm
346485 - comdev comdev_ecommerce Directory traversal vulnerability in wce.download.php in Comdev eCommerce 3.0 allows remote attackers to download arbitrary files via a .. (dot dot) in the download parameter. NVD-CWE-Other
CVE-2005-2543 2016-10-18 12:28 2005-08-10 Show GitHub Exploit DB Packet Storm
346486 - arab_portal arab_portal Arab Portal 2.0 allows remote attackers to obtain sensitive information via a long (1) username or (2) password, which reveals the path in an error message when the undefined "errmsg" function is cal… NVD-CWE-Other
CVE-2005-2546 2016-10-18 12:28 2005-08-10 Show GitHub Exploit DB Packet Storm
346487 - hp proliant_dl585 Unknown vulnerability in HP ProLiant DL585 servers running Integrated Lights Out (ILO) firmware before 1.81 allows attackers to access server controls when the server is "powered down." NVD-CWE-Other
CVE-2005-2552 2016-10-18 12:28 2005-08-12 Show GitHub Exploit DB Packet Storm
346488 - mantis mantis core/database_api.php in Mantis 0.19.0a1 through 1.0.0a3, with register_globals enabled, allows remote attackers to connect to internal databases by modifying the g_db_type variable and monitoring th… NVD-CWE-Other
CVE-2005-2556 2016-10-18 12:28 2005-08-24 Show GitHub Exploit DB Packet Storm
346489 - - - Cross-site scripting (XSS) vulnerability in index.cfm in CFBB 1.1.0 allows remote attackers to inject arbitrary web script or HTML via the page parameter. NVD-CWE-Other
CVE-2005-2560 2016-10-18 12:28 2005-08-16 Show GitHub Exploit DB Packet Storm
346490 - myfaq myfaq Multiple SQL injection vulnerabilities in MYFAQ 1.0 allow remote attackers to execute arbitrary SQL commands via the Theme parameter to (1) affichagefaq.php3, (2) choixsoustheme.php3, (3) consultatio… NVD-CWE-Other
CVE-2005-2561 2016-10-18 12:28 2005-08-16 Show GitHub Exploit DB Packet Storm