Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
161 6.5 警告
Network
Keichi Takahashi binary-parser Keichi TakahashiのBinary-parserにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-1245 2026-02-5 15:50 2026-01-20 Show GitHub Exploit DB Packet Storm
162 9.8 緊急
Network
csa-iot matter GoogleのMatterにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2026-20418 2026-02-5 15:50 2026-02-2 Show GitHub Exploit DB Packet Storm
163 9.8 緊急
Network
tarkov.dev Tarkov Data Manager tarkov.devのTarkov Data Managerにおける複数の脆弱性 CWE-1321
CWE-287
CWE-843
CVE-2026-21854 2026-02-5 15:49 2026-01-7 Show GitHub Exploit DB Packet Storm
164 6.1 警告
Network
tarkov.dev Tarkov Data Manager tarkov.devのTarkov Data Managerにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-21855 2026-02-5 15:49 2026-01-7 Show GitHub Exploit DB Packet Storm
165 8.8 重要
Network
tarkov.dev Tarkov Data Manager tarkov.devのTarkov Data ManagerにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-21856 2026-02-5 15:49 2026-01-7 Show GitHub Exploit DB Packet Storm
166 5.3 警告
Network
ajax file browser File Browserにおける複数の脆弱性 CWE-203
CWE-208
CVE-2026-23849 2026-02-5 15:49 2026-01-19 Show GitHub Exploit DB Packet Storm
167 8.8 重要
Network
Chikitsa Patient Management System ChikitsaのPatient Management Systemにおける危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2021-47758 2026-02-5 15:49 2026-01-15 Show GitHub Exploit DB Packet Storm
168 9.8 緊急
Network
ImpressCMS ImpressCMS ImpressCMSにおける危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2022-50912 2026-02-5 15:49 2026-01-13 Show GitHub Exploit DB Packet Storm
169 7.8 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける二重解放に関する脆弱性 CWE-415
二重解放
CVE-2023-53626 2026-02-5 15:49 2025-10-7 Show GitHub Exploit DB Packet Storm
170 5.5 警告
Local
Linux Linux Kernel LinuxのLinux KernelにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2023-53627 2026-02-5 15:49 2025-10-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306621 - php php PHP, when not configured with the "display_errors = Off" setting in php.ini, allows remote attackers to obtain the physical path for an include file via a trailing slash in a request to a directly ac… NVD-CWE-Other
CVE-2002-0253 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm
306622 - mirabilis icq ICQ 2001b Build 3659 allows remote attackers to cause a denial of service (crash) via a malformed picture that contains large height and width values, which causes the crash when viewed in Userdetail… NVD-CWE-Other
CVE-2002-0254 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm
306623 - arescom netdsl The default configuration of Arescom NetDSL 800 does not require authentication, which allows remote attackers to cause a denial of service or reconfigure the router. NVD-CWE-Other
CVE-2002-0255 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm
306624 - arescom netdsl The telnet port in Arescom NetDSL 1000 router allows remote attackers to cause a denial of service via a series of connections with long strings, which causes a large number of login failures and cau… NVD-CWE-Other
CVE-2002-0256 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm
306625 - apache
usanet_creations
http_server
makebid_auction_deluxe
Cross-site scripting vulnerability in auction.pl of MakeBid Auction Deluxe 3.30 allows remote attackers to obtain information from other users via the form fields (1) TITLE, (2) DESCTIT, (3) DESC, (4… NVD-CWE-Other
CVE-2002-0257 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm
306626 - icewarp
merak
web_mail
mail_server
Merak Mail IceWarp Web Mail uses a static identifier as a user session ID that does not change across sessions, which could allow remote attackers with access to the ID to gain privileges as that use… NVD-CWE-Other
CVE-2002-0258 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm
306627 - instantservers_inc. miniportal InstantServers MiniPortal 1.1.5 and earlier stores sensitive login and account data in plaintext in (1) .pwd files in the miniportal/apache directory, or (2) mplog.txt, which could allow local users … NVD-CWE-Other
CVE-2002-0259 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm
306628 - instantservers_inc. miniportal Buffer overflow in InstantServers MiniPortal 1.1.5 and earlier allows remote attackers to execute arbitrary code via a long login name, which is not properly handled by the logging utility. NVD-CWE-Other
CVE-2002-0260 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm
306629 - instantservers_inc. miniportal Directory traversal vulnerability in InstantServers MiniPortal 1.1.5 and earlier allows remote authenticated users to read arbitrary files via a ... (modified dot dot) in the GET command. NVD-CWE-Other
CVE-2002-0261 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm
306630 - sybex e-trainer Directory traversal vulnerability in netget for Sybex E-Trainer web server allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter. NVD-CWE-Other
CVE-2002-0262 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm