Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1001 9.8 緊急
Network
Blue Access Technologies Inc. Cobalt X1 Blue Access Technologies Inc.のCobalt X1における認証に関する脆弱性 CWE-287
不適切な認証
CVE-2025-60534 2026-01-30 14:13 2026-01-6 Show GitHub Exploit DB Packet Storm
1002 6.5 警告
Network
Marquitos mcp-shell Marquitosのmcp-shellにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2025-61489 2026-01-30 14:13 2026-01-7 Show GitHub Exploit DB Packet Storm
1003 9.8 緊急
Network
NJHYST HY511 POE core devices Firmware NJHYSTのHY511 POE core devices Firmwareにおける検証および完全性チェックを行っていない Cookie への依存に関する脆弱性 CWE-565
検証および完全性チェックを行っていない Cookie への依存
CVE-2025-65212 2026-01-30 14:13 2026-01-6 Show GitHub Exploit DB Packet Storm
1004 7.5 重要
Network
OpenAirInterface Software Alliance OpenAir CN 5G for AMF OpenAirInterface Software AllianceのOpenAir CN 5G for AMFにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2025-65805 2026-01-30 14:13 2026-01-7 Show GitHub Exploit DB Packet Storm
1005 7.5 重要
Network
OpenAirInterface Software Alliance OpenAir CN 5G for AMF OpenAirInterface Software AllianceのOpenAir CN 5G for AMFにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2025-66786 2026-01-30 14:13 2026-01-7 Show GitHub Exploit DB Packet Storm
1006 7.5 重要
Network
efforthye fast-filesystem-mcp efforthyeのfast-filesystem-mcpにおけるパストラバーサルの脆弱性 CWE-24
パストラバーサル (../filedir)
CVE-2025-67364 2026-01-30 14:13 2026-01-7 Show GitHub Exploit DB Packet Storm
1007 7.5 重要
Network
Sylphx Filesystem MCP SylphxのFilesystem MCPにおける相対パストラバーサルの脆弱性 CWE-23
相対的パストラバーサル
CVE-2025-67366 2026-01-30 14:13 2026-01-7 Show GitHub Exploit DB Packet Storm
1008 3.8
Network
Eli Hanna Compress & Upload Eli HannaのWordPress用Compress & Uploadにおける危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2025-8889 2026-01-30 14:13 2025-09-9 Show GitHub Exploit DB Packet Storm
1009 5.4 警告
Network
ngsurvey ngsurvey ngsurveyにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-15479 2026-01-30 14:13 2026-01-7 Show GitHub Exploit DB Packet Storm
1010 6.1 警告
Network
WPForms wpforms WPFormsのWordPress用wpformsにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2020-36919 2026-01-30 14:13 2026-01-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
304941 - - - F-Secure Anti-Virus 5.41 and 5.42 on Windows, Client Security 5.50 and 5.52, 4.60 for Samba Servers, and 4.52 and earlier for Linux does not properly detect certain viruses in a PKZip archive, which … NVD-CWE-Other
CVE-2004-2276 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
304942 - agsm agsm Buffer overflow in aGSM Half-Life client allows remote Half-Life servers to cause a denial of service (crash) and possibly execute arbitrary code via a long server response. NVD-CWE-Other
CVE-2004-2277 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
304943 - chaogic_systems vhost Unknown cross-site scripting (XSS) vulnerability in the web GUI in vHost before 3.10r1 has unknown impact and attack vectors. NVD-CWE-Other
CVE-2004-2278 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
304944 - invision_power_services invision_power_board Cross-site scripting (XSS) vulnerability in Invision Power Board 1.3 Final allows remote attackers to execute arbitrary script as other users via the pop parameter in a chat action to index.php. NVD-CWE-Other
CVE-2004-2279 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
304945 - open_webmail open_webmail The read_list_from_file function in vacation.pl for OpenWebmail before 2.32 20040629 allows remote attackers to execute arbitrary commands via shell metacharacters in a filename argument. NVD-CWE-Other
CVE-2004-2284 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
304946 - activestate
larry_wall
activeperl
perl
Integer overflow in the duplication operator in ActivePerl allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a large multiplier, which may trigger a… NVD-CWE-Other
CVE-2004-2286 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
304947 - - - Microsoft Windows XP Explorer allows attackers to execute arbitrary code via a HTML and script in a self-executing folder that references an executable file within the folder, which is automatically … NVD-CWE-Other
CVE-2004-2290 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
304948 - alt-n mdaemon Buffer overflow in Alt-N MDaemon 7.0.1 allows remote attackers to cause a denial of service (application crash) via a long STATUS command to the IMAP server. NVD-CWE-Other
CVE-2004-2292 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
304949 - francisco_burzi php-nuke Multiple cross-site scripting (XSS) vulnerabilities in PHP-Nuke 6.0 to 7.3 allow remote attackers to inject arbitrary web script or HTML via the (1) eid parameter or (2) query parameter to the Encycl… NVD-CWE-Other
CVE-2004-2293 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
304950 - - - SQL injection vulnerability in the Reviews module in PHP-Nuke 6.0 to 7.3 allows remote attackers to execute arbitrary SQL commands via the order parameter. NVD-CWE-Other
CVE-2004-2295 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm