Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1371 7.4 重要
Network
GitLab.org GitLab GitLab.orgのGitLabにおける未チェックの戻り値に関する脆弱性 CWE-252
未チェックの戻り値
CVE-2026-0723 2026-01-28 12:34 2026-01-22 Show GitHub Exploit DB Packet Storm
1372 7.5 重要
Network
GitLab.org GitLab GitLab.orgのGitLabにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-1102 2026-01-28 12:34 2026-01-22 Show GitHub Exploit DB Packet Storm
1373 7.8 重要
Local
マイクロソフト Office Long Term Servicing Channel (LTSC)
Microsoft Office
Microsoft 365 Apps
Microsoft Office のセキュリティ機能のバイパスの脆弱性 CWE-807
セキュリティ決定の信頼できない入力への依存
CVE-2026-21509 2026-01-28 12:34 2026-01-26 Show GitHub Exploit DB Packet Storm
1374 9.8 緊急
Network
Oxygenz ClipBucket V5 OxygenzのClipBucket V5におけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-21875 2026-01-28 12:34 2026-01-8 Show GitHub Exploit DB Packet Storm
1375 7.3 重要
Local
greenshot Greenshot getgreenshot.orgのGreenshotにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-22035 2026-01-28 12:34 2026-01-8 Show GitHub Exploit DB Packet Storm
1376 6.5 警告
Network
Rocket.Chat Rocket.Chat Rocket.Chatにおける複数の脆弱性 CWE-269
CWE-862
CVE-2026-23477 2026-01-28 12:34 2026-01-14 Show GitHub Exploit DB Packet Storm
1377 9.8 緊急
Network
GNU Project
Debian
Debian GNU/Linux
inetutils
Debian等の複数ベンダの製品における引数の挿入または変更に関する脆弱性 CWE-88
引数の挿入または変更
CVE-2026-24061 2026-01-28 12:34 2026-01-21 Show GitHub Exploit DB Packet Storm
1378 7.2 重要
Network
HGiga isherlock HGigaのisherlockにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2024-4298 2026-01-28 12:31 2024-04-29 Show GitHub Exploit DB Packet Storm
1379 7.2 重要
Network
HGiga isherlock HGigaのisherlockにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2024-4299 2026-01-28 12:31 2024-04-29 Show GitHub Exploit DB Packet Storm
1380 7.9 重要
Local
ARM Ltd. Neoverse V3 ファームウェア
Arm C1-Premium ファームウェア
Cortex-X925 ファームウェア
Cortex-X4 ファームウェア
Neoverse V3AE ファームウェア
Neoverse V2 ファームウェア
Cortex-X…
ARM Ltd.のArm C1-Premium ファームウェア等の複数製品における再利用前に削除されていないリソース内重要情報に関する脆弱性 CWE-226
再利用前に削除されていないリソース内重要情報
CVE-2025-0647 2026-01-28 12:31 2026-01-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
304971 - mnscu_pals webpals PALS Library System pals-cgi program allows remote attackers to execute arbitrary commands via shell metacharacters in the documentName parameter. NVD-CWE-Other
CVE-2001-0216 2017-07-11 10:29 2001-06-2 Show GitHub Exploit DB Packet Storm
304972 - mnscu_pals webpals Directory traversal vulnerability in PALS Library System pals-cgi program allows remote attackers to read arbitrary files via a .. (dot dot) in the documentName parameter. NVD-CWE-Other
CVE-2001-0217 2017-07-11 10:29 2001-06-2 Show GitHub Exploit DB Packet Storm
304973 - brightstation muscat_empower Muscat Empower CGI program allows remote attackers to obtain the absolute pathname of the server via an invalid request in the DB parameter. NVD-CWE-Other
CVE-2001-0224 2017-07-11 10:29 2001-06-2 Show GitHub Exploit DB Packet Storm
304974 - holger_lamm pgp4pine pgp4pine Pine/PGP interface version 1.75-6 does not properly check to see if a public key has expired when obtaining the keys via Gnu Privacy Guard (GnuPG), which causes the message to be sent in cle… NVD-CWE-Other
CVE-2001-0273 2017-07-11 10:29 2001-05-3 Show GitHub Exploit DB Packet Storm
304975 - oracle internet_directory oidldapd 2.1.1.1 in Oracle 8.1.7 records log files in a directory (ldaplog) that has world-writable permissions, which may allow local users to delete logs and/or overwrite other files via a symlink … NVD-CWE-Other
CVE-2001-0300 2017-07-11 10:29 2001-06-2 Show GitHub Exploit DB Packet Storm
304976 - pgp openpgp The OpenPGP PGP standard allows an attacker to determine the private signature key via a cryptanalytic attack in which the attacker alters the encrypted private key file and captures a single message… NVD-CWE-Other
CVE-2001-0381 2017-07-11 10:29 2001-06-27 Show GitHub Exploit DB Packet Storm
304977 - oracle oracle8i Buffer overflow in Transparent Network Substrate (TNS) Listener in Oracle 8i 8.1.7 and earlier allows remote attackers to gain privileges via a long argument to the commands (1) STATUS, (2) PING, (3)… NVD-CWE-Other
CVE-2001-0499 2017-07-11 10:29 2001-07-21 Show GitHub Exploit DB Packet Storm
304978 - screaming_media siteware ScreamingMedia SITEWare versions 2.5 through 3.1 allows a remote attacker to read world-readable files via a .. (dot dot) attack through (1) the SITEWare Editor's Desktop or (2) the template paramet… NVD-CWE-Other
CVE-2001-0555 2017-07-11 10:29 2001-08-14 Show GitHub Exploit DB Packet Storm
304979 - cisco cbos Cisco CBOS 2.3.8 and earlier stores the passwords for (1) exec and (2) enable in cleartext in the NVRAM and a configuration file, which could allow unauthorized users to obtain the passwords and gain… NVD-CWE-Other
CVE-2001-0753 2017-07-11 10:29 2001-10-18 Show GitHub Exploit DB Packet Storm
304980 - sgi irix Buffer overflows in lpsched in IRIX 6.5.13f and earlier allow remote attackers to execute arbitrary commands via a long argument. NVD-CWE-Other
CVE-2001-0799 2017-07-11 10:29 2001-12-6 Show GitHub Exploit DB Packet Storm