Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1131 7.8 重要
Local
クアルコム X2000077 ファームウェア
WCD9380 ファームウェア
WCD9385 ファームウェア
XG101039 ファームウェア
XG101002 ファームウェア
wsa8845 ファームウェア
sc8380xp ファームウェア
wsa8840 ファームウェア
wsa…
クアルコムのCologne ファームウェア等の複数製品における二重解放に関する脆弱性 CWE-415
二重解放
CVE-2025-47356 2026-01-29 16:00 2026-01-7 Show GitHub Exploit DB Packet Storm
1132 7.8 重要
Local
クアルコム WCD9378C ファームウェア
wsa8845h ファームウェア
X2000086 ファームウェア
X2000077 ファームウェア
X2000092 ファームウェア
X2000094 ファームウェア
wsa8840 ファームウェア
XG101032 ファームウェア
クアルコムのfastconnect 7800 ファームウェア等の複数製品における信頼できないポインタデリファレンスに関する脆弱性 CWE-822
信頼性のないポインタデリファレンス
CVE-2025-47380 2026-01-29 16:00 2026-01-7 Show GitHub Exploit DB Packet Storm
1133 7.5 重要
Network
Eclipse Foundation Jetty Eclipse FoundationのJettyにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2025-5115 2026-01-29 16:00 2025-08-20 Show GitHub Exploit DB Packet Storm
1134 7.5 重要
Network
Sick Tire Analytics
Logistics Diagnostic Analytics
Package Analytics
Baggage Analytics
SickのBaggage Analytics等の複数製品における認可されていない制御領域への重要情報の漏えいに関する脆弱性 CWE-497
認可されていない制御領域への重要情報の漏えい
CVE-2025-58585 2026-01-29 16:00 2025-10-6 Show GitHub Exploit DB Packet Storm
1135 5.3 警告
Network
Sick Package Analytics
Enterprise Analytics
Logistics Diagnostic Analytics
Tire Analytics
Baggage Analytics
SickのBaggage Analytics等の複数製品におけるリクエストに対するレスポンス内容の違いに起因する情報漏えいに関する脆弱性 CWE-204
リクエストに対するレスポンス内容の違いに起因する情報漏えい
CVE-2025-58586 2026-01-29 16:00 2025-10-6 Show GitHub Exploit DB Packet Storm
1136 9.8 緊急
Network
Sick Package Analytics
Enterprise Analytics
Logistics Diagnostic Analytics
Tire Analytics
Baggage Analytics
SickのBaggage Analytics等の複数製品における過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2025-58587 2026-01-29 16:00 2025-10-6 Show GitHub Exploit DB Packet Storm
1137 6.5 警告
Network
Sick Tire Analytics
Logistics Diagnostic Analytics
Package Analytics
Baggage Analytics
SickのBaggage Analytics等の複数製品における情報漏えいに関する脆弱性 CWE-200
CWE-noinfo
CVE-2025-58589 2026-01-29 16:00 2025-10-6 Show GitHub Exploit DB Packet Storm
1138 7.5 重要
Network
Sick Tire Analytics
Logistics Diagnostic Analytics
Package Analytics
Baggage Analytics
SickのBaggage Analytics等の複数製品におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2025-58590 2026-01-29 16:00 2025-10-6 Show GitHub Exploit DB Packet Storm
1139 7.5 重要
Network
Sick Tire Analytics
Logistics Diagnostic Analytics
Package Analytics
Baggage Analytics
SickのBaggage Analytics等の複数製品におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2025-58591 2026-01-29 16:00 2025-10-6 Show GitHub Exploit DB Packet Storm
1140 6.5 警告
Network
Apache Software Foundation Linkis Apache Software FoundationのLinkisにおけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2025-59355 2026-01-29 16:00 2026-01-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314701 - sun java Sun Java 1.3.1, 1.4.1, and 1.4.2 allows local users to cause a denial of service (JVM crash), possibly by calling the ClassDepth function with a null parameter, which causes a crash instead of genera… NVD-CWE-Other
CVE-2003-1134 2008-09-6 05:36 2003-12-31 Show GitHub Exploit DB Packet Storm
314702 - yahoo messenger Buffer overflow in Yahoo! Messenger 5.6 allows remote attackers to cause a denial of service (crash) via a file send request (sendfile) with a large number of "%" (percent) characters after the Yahoo… NVD-CWE-Other
CVE-2003-1135 2008-09-6 05:36 2003-12-31 Show GitHub Exploit DB Packet Storm
314703 - redhat interchange The default configuration of Apache 2.0.40, as shipped with Red Hat Linux 9.0, allows remote attackers to list directory contents, even if auto indexing is turned off and there is a default web page … NVD-CWE-Other
CVE-2003-1138 2008-09-6 05:36 2003-10-27 Show GitHub Exploit DB Packet Storm
314704 - john_beatty easy_php_photo_album Cross-site scripting (XSS) vulnerability in John Beatty Easy PHP Photo Album 1.0 allows remote attackers to inject arbitrary web script or HTML via the dir parameter. NVD-CWE-Other
CVE-2003-1146 2008-09-6 05:36 2003-05-11 Show GitHub Exploit DB Packet Storm
314705 - linux linux_kernel exit.c in Linux kernel 2.6-test9-CVS, as stored on kernel.bkbits.net, was modified to contain a backdoor, which could allow local users to elevate their privileges by passing __WCLONE|__WALL to the s… NVD-CWE-Other
CVE-2003-1161 2008-09-6 05:36 2003-12-31 Show GitHub Exploit DB Packet Storm
314706 - - - HTTP Commander 4.0 allows remote attackers to obtain sensitive information via an HTTP request that contains a . (dot) in the file parameter, which reveals the installation path in an error message. NVD-CWE-Other
CVE-2003-1168 2008-09-6 05:36 2003-12-31 Show GitHub Exploit DB Packet Storm
314707 - gernot_stocker kpopup Format string vulnerability in main.cpp in kpopup 0.9.1 and 0.9.5pre2 allows local users to cause a denial of service (segmentation fault) and possibly execute arbitrary code via format string specif… NVD-CWE-Other
CVE-2003-1170 2008-09-6 05:36 2003-12-31 Show GitHub Exploit DB Packet Storm
314708 - - - BRW WebWeaver 1.03 allows remote attackers to obtain sensitive server environment information via a URL request for testcgi.exe, which lists the values of environment variables and the current workin… NVD-CWE-Other
CVE-2003-1235 2008-09-6 05:36 2003-12-31 Show GitHub Exploit DB Packet Storm
314709 - tanne tanne Multiple format string vulnerabilities in the logger function in netzio.c for Tanne 0.6.17 allows remote attackers to execute arbitrary code via format string specifiers in syslog. NVD-CWE-Other
CVE-2003-1236 2008-09-6 05:36 2003-12-31 Show GitHub Exploit DB Packet Storm
314710 - - - Cross-site scripting vulnerability (XSS) in WWWBoard 2.0A2.1 and earlier allows remote attackers to inject arbitrary HTML or web script via a message post. NVD-CWE-Other
CVE-2003-1237 2008-09-6 05:36 2003-12-31 Show GitHub Exploit DB Packet Storm