Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1771 4.4 警告
Local
Craig J. Bass (craigjbass) ClearanceKit Craig J. Bass (craigjbass)のClearanceKitにおける保護メカニズムの不具合に関する脆弱性 CWE-693
保護メカニズムの不具合
CVE-2026-40604 2026-04-27 10:47 2026-04-21 Show GitHub Exploit DB Packet Storm
1772 4.8 警告
Network
mitmproxy mitmproxy mitmproxyにおけるLDAP インジェクションの脆弱性 CWE-90
LDAP インジェクション
CVE-2026-40606 2026-04-27 10:47 2026-04-21 Show GitHub Exploit DB Packet Storm
1773 7.5 重要
Network
coturn project coturn coturn projectのcoturnにおける不正な型変換に関する脆弱性 CWE-704
不正な型変換またはキャスト
CVE-2026-40613 2026-04-27 10:47 2026-04-21 Show GitHub Exploit DB Packet Storm
1774 8.8 重要
Network
goshs goshs goshsにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-40876 2026-04-27 10:47 2026-04-21 Show GitHub Exploit DB Packet Storm
1775 7.5 重要
Network
- NestJSにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2026-40879 2026-04-27 10:47 2026-04-21 Show GitHub Exploit DB Packet Storm
1776 7.6 重要
Network
openremote openremote openremoteにおけるXML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2026-40882 2026-04-27 10:47 2026-04-22 Show GitHub Exploit DB Packet Storm
1777 8.3 重要
Network
WWBN AVideo WWBNのAVideoにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-40925 2026-04-27 10:47 2026-04-21 Show GitHub Exploit DB Packet Storm
1778 8.3 重要
Network
RustFS RustFS RustFSにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-40937 2026-04-27 10:47 2026-04-22 Show GitHub Exploit DB Packet Storm
1779 7.1 重要
Network
WWBN AVideo WWBNのAVideoにおける同一生成元ポリシー違反に関する脆弱性 CWE-346
同一生成元ポリシー違反
CVE-2026-41057 2026-04-27 10:47 2026-04-21 Show GitHub Exploit DB Packet Storm
1780 8.1 重要
Network
WWBN AVideo WWBNのAVideoにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-41058 2026-04-27 10:47 2026-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347221 - aol instant_messenger AOL Instant Messenger (AIM) client allows remote attackers to cause a denial of service via a message with a malformed ASCII value. NVD-CWE-Other
CVE-2000-0190 2008-09-11 04:03 2000-03-2 Show GitHub Exploit DB Packet Storm
347222 - caldera openlinux The default installation of Caldera OpenLinux 2.3 includes the CGI program rpm_query, which allows remote attackers to determine what packages are installed on the system. NVD-CWE-Other
CVE-2000-0192 2008-09-11 04:03 2000-03-5 Show GitHub Exploit DB Packet Storm
347223 - corel linux buildxconf in Corel Linux allows local users to modify or create arbitrary files via the -x or -f parameters. NVD-CWE-Other
CVE-2000-0194 2008-09-11 04:03 2000-02-24 Show GitHub Exploit DB Packet Storm
347224 - corel linux setxconf in Corel Linux allows local users to gain root access via the -T parameter, which executes the user's .xserverrc file. NVD-CWE-Other
CVE-2000-0195 2008-09-11 04:03 2000-02-24 Show GitHub Exploit DB Packet Storm
347225 - nmh
redhat
turbolinux
nmh
linux
turbolinux
Buffer overflow in mhshow in the Linux nmh package allows remote attackers to execute commands via malformed MIME headers in an email message. NVD-CWE-Other
CVE-2000-0196 2008-09-11 04:03 2000-02-28 Show GitHub Exploit DB Packet Storm
347226 - microsoft windows_nt The Windows NT scheduler uses the drive mapping of the interactive user who is currently logged onto the system, which allows the local user to gain privileges by providing a Trojan horse batch file … NVD-CWE-Other
CVE-2000-0197 2008-09-11 04:03 2000-02-14 Show GitHub Exploit DB Packet Storm
347227 - atrium_software mercur_imap4_server
mercur_mailserver
mercur_pop3_server
Buffer overflow in POP3 and IMAP servers in the MERCUR mail server suite allows remote attackers to cause a denial of service. NVD-CWE-Other
CVE-2000-0198 2008-09-11 04:03 2000-03-15 Show GitHub Exploit DB Packet Storm
347228 - microsoft sql_server When a new SQL Server is registered in Enterprise Manager for Microsoft SQL Server 7.0 and the "Always prompt for login name and password" option is not set, then the Enterprise Manager uses weak enc… NVD-CWE-Other
CVE-2000-0199 2008-09-11 04:03 2000-03-14 Show GitHub Exploit DB Packet Storm
347229 - oracle oracle8i The installation of Oracle 8.1.5.x on Linux follows symlinks and creates the orainstRoot.sh file with world-writeable permissions, which allows local users to gain privileges. NVD-CWE-Other
CVE-2000-0206 2008-09-11 04:03 2000-03-5 Show GitHub Exploit DB Packet Storm
347230 - sgi infosearch
irix
SGI InfoSearch CGI program infosrch.cgi allows remote attackers to execute commands via shell metacharacters. NVD-CWE-Other
CVE-2000-0207 2008-09-11 04:03 2000-03-1 Show GitHub Exploit DB Packet Storm