Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1511 7.2 重要
Network
BiggiDroid Simple PHP CMS BiggiDroidのSimple PHP CMSにおける複数の脆弱性 CWE-284
CWE-434
CWE-434
CVE-2025-15495 2026-01-27 17:36 2026-01-9 Show GitHub Exploit DB Packet Storm
1512 9.8 緊急
Network
guchengwuyue yshopmall guchengwuyueのyshopmallにおける複数の脆弱性 CWE-74
CWE-89
CWE-89
CVE-2025-15496 2026-01-27 17:36 2026-01-9 Show GitHub Exploit DB Packet Storm
1513 9.8 緊急
Network
Sangfor Technologies OSM Sangfor TechnologiesのOSMにおける複数の脆弱性 CWE-77
CWE-78
CWE-78
CVE-2025-15501 2026-01-27 17:36 2026-01-9 Show GitHub Exploit DB Packet Storm
1514 9.8 緊急
Network
Sangfor Technologies OSM Sangfor TechnologiesのOSMにおける複数の脆弱性 CWE-77
CWE-78
CWE-78
CVE-2025-15502 2026-01-27 17:36 2026-01-10 Show GitHub Exploit DB Packet Storm
1515 9.8 緊急
Network
Sangfor Technologies OSM Sangfor TechnologiesのOSMにおける複数の脆弱性 CWE-284
CWE-434
CWE-434
CVE-2025-15503 2026-01-27 17:36 2026-01-10 Show GitHub Exploit DB Packet Storm
1516 5.5 警告
Local
lief project lief lief projectのliefにおける複数の脆弱性 CWE-404
CWE-476
CWE-476
CVE-2025-15504 2026-01-27 17:36 2026-01-10 Show GitHub Exploit DB Packet Storm
1517 7.8 重要
Local
サムスン android サムスンのAndroidにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2025-20936 2026-01-27 17:36 2025-04-8 Show GitHub Exploit DB Packet Storm
1518 7.1 重要
Local
Debian
Linux
Debian GNU/Linux
Linux Kernel
Debian等の複数ベンダの製品における不特定の脆弱性 CWE-noinfo
情報不足
CVE-2025-21950 2026-01-27 17:36 2025-04-1 Show GitHub Exploit DB Packet Storm
1519 7.1 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2025-21973 2026-01-27 17:36 2025-04-1 Show GitHub Exploit DB Packet Storm
1520 7.1 重要
Network
デル Dell Unisphere for PowerMax
Dell Unisphere for PowerMax Virtual Appliance
デルのDell Unisphere for PowerMax等の複数製品におけるXML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2025-36589 2026-01-27 17:36 2026-01-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
304981 - entrust getaccess Directory traversal vulnerability in Entrust GetAccess allows remote attackers to read arbitrary files via a .. (dot dot) in the locale parameter to (1) helpwin.gas.bat or (2) AboutBox.gas.bat. NVD-CWE-Other
CVE-2001-0853 2017-07-11 10:29 2001-12-6 Show GitHub Exploit DB Packet Storm
304982 - oracle database_server Buffer overflow in dbsnmp in Oracle 8.0.6 through 9.0.1 allows local users to execute arbitrary code via a long ORACLE_HOME environment variable. NVD-CWE-Other
CVE-2001-0941 2017-07-11 10:29 2001-11-30 Show GitHub Exploit DB Packet Storm
304983 - oracle database_server dbsnmp in Oracle 8.1.6 and 8.1.7 uses the ORACLE_HOME environment variable to find and execute the dbsnmp program, which allows local users to execute arbitrary programs by pointing the ORACLE_HOME t… NVD-CWE-Other
CVE-2001-0942 2017-07-11 10:29 2001-11-29 Show GitHub Exploit DB Packet Storm
304984 - tdavid td_forum Cross-site scripting vulnerability in TDForum 1.2 CGI script (tdforum12.cgi) allows remote attackers to execute arbitrary script on other clients via a forum message that contains the script. NVD-CWE-Other
CVE-2001-0970 2017-07-11 10:29 2001-08-31 Show GitHub Exploit DB Packet Storm
304985 - surf-net asp_forum Surf-Net ASP Forum before 2.30 uses easily guessable cookies based on the UserID, which allows remote attackers to gain administrative privileges by calculating the value of the admin cookie (UserID … NVD-CWE-Other
CVE-2001-0972 2017-07-11 10:29 2001-08-31 Show GitHub Exploit DB Packet Storm
304986 - sco openserver Multiple buffer overflows in programs used by scoadmin and sysadmsh in SCO OpenServer 5.0.6a and earlier allow local users to gain privileges via a long TERM environment variable to (1) atcronsh, (2)… NVD-CWE-Other
CVE-2001-1148 2017-07-11 10:29 2001-06-13 Show GitHub Exploit DB Packet Storm
304987 - citrix ica_client Citrix Independent Computing Architecture (ICA) Client for Windows 6.1 allows remote malicious web sites to execute arbitrary code via a .ICA file, which is downloaded and automatically executed by t… NVD-CWE-Other
CVE-2001-1192 2017-07-11 10:29 2001-12-13 Show GitHub Exploit DB Packet Storm
304988 - zyxel prestige_1600
prestige_681
Zyxel Prestige 681 and 1600 SDSL Routers allow remote attackers to cause a denial of service via malformed packets with (1) an IP length less than actual packet size, or (2) fragmented packets whose … NVD-CWE-Other
CVE-2001-1194 2017-07-11 10:29 2001-12-14 Show GitHub Exploit DB Packet Storm
304989 - kde kdeutils klprfax_filter in KDE2 KDEUtils allows local users to overwrite arbitrary files via a symlink attack on the klprfax.filter temporary file. NVD-CWE-Other
CVE-2001-1197 2017-07-11 10:29 2001-12-14 Show GitHub Exploit DB Packet Storm
304990 - total_pc_solutions php_rocket_add-in Directory traversal vulnerability in phprocketaddin in Total PC Solutions PHP Rocket Add-in for FrontPage 1.0 allows remote attackers to read arbitrary files via a .. (dot dot) in the page parameter. NVD-CWE-Other
CVE-2001-1204 2017-07-11 10:29 2001-12-28 Show GitHub Exploit DB Packet Storm