Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1881 9.8 緊急
Network
HCL Technologies Limited HCL MyXalytics HCL Technologies LimitedのHCL MyXalyticsにおける暗号化処理のナンスおよび鍵ペアの再利用に関する脆弱性 CWE-323
暗号化処理のナンスおよび鍵ペアの再利用
CVE-2025-59870 2026-01-26 19:31 2026-01-16 Show GitHub Exploit DB Packet Storm
1882 8.6 重要
Network
ジュニパーネットワークス Juniper Space Security Director ジュニパーネットワークスのJuniper Space Security Directorにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2025-59968 2026-01-26 19:31 2025-10-9 Show GitHub Exploit DB Packet Storm
1883 8.4 重要
Network
ジュニパーネットワークス Juniper Space Security Director ジュニパーネットワークスのJuniper Space Security Directorにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-59974 2026-01-26 19:31 2025-10-9 Show GitHub Exploit DB Packet Storm
1884 5.4 警告
Network
pH7Builder pH7 Social Dating Builder pH7BuilderのpH7 Social Dating Builderにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-63644 2026-01-26 19:31 2026-01-14 Show GitHub Exploit DB Packet Storm
1885 5.4 警告
Network
Each Italy Wireless Mini Router WIRELESS-N 300M Firmware Each ItalyのWireless Mini Router WIRELESS-N 300M Firmwareにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-65349 2026-01-26 19:31 2026-01-15 Show GitHub Exploit DB Packet Storm
1886 7.3 重要
Local
Ludashi Ludashi Driver LudashiのLudashi Driverにおける複数の脆弱性 CWE-269
CWE-732
CVE-2025-67246 2026-01-26 19:31 2026-01-15 Show GitHub Exploit DB Packet Storm
1887 8.2 重要
Network
Mitel Networks Corporation Mitel CX
MiContact Center Business
Mitel Networks CorporationのMitel CX等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-67823 2026-01-26 19:31 2026-01-15 Show GitHub Exploit DB Packet Storm
1888 7.8 重要
Local
steelseries Nahimic SteelSeriesのNahimicにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2025-68921 2026-01-26 19:31 2026-01-16 Show GitHub Exploit DB Packet Storm
1889 8.2 重要
Network
GPAC GPAC GPACにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2025-70298 2026-01-26 19:31 2026-01-15 Show GitHub Exploit DB Packet Storm
1890 5.5 警告
Local
GPAC GPAC GPACにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-122
ヒープオーバーフロー
CVE-2025-70302 2026-01-26 19:31 2026-01-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
304731 - digi www_server DiGi Web Server allows remote attackers to cause a denial of service (CPU consumption) via an HTTP GET request that contains a large number of / (slash) characters, which consumes resources when DiGi… NVD-CWE-Other
CVE-2004-1973 2017-07-11 10:31 2004-04-27 Show GitHub Exploit DB Packet Storm
304732 - php_arena pafiledb paFileDB 3.1 allows remote attackers to gain sensitive information via a direct request to (1) login.php, (2) category.php, (3) search.php, (4) main.php, (5) viewall.php, (6) download.php, (7) email.… NVD-CWE-Other
CVE-2004-1974 2017-07-11 10:31 2004-04-27 Show GitHub Exploit DB Packet Storm
304733 - php_arena pafiledb Cross-site scripting (XSS) vulnerability in the category module in pafiledb.php for paFileDB 3.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter, a vulnerability t… NVD-CWE-Other
CVE-2004-1975 2017-07-11 10:31 2004-04-27 Show GitHub Exploit DB Packet Storm
304734 - smc_networks smc7004vbr SMC Barricade broadband router 7008ABR and 7004VBR enable remote administration by default, which allows remote attackers to gain access by connecting to port 1900. NVD-CWE-Other
CVE-2004-1976 2017-07-11 10:31 2004-04-28 Show GitHub Exploit DB Packet Storm
304735 - 3com webbngss3nbxnts 3com NBX IP VOIP NetSet Configuration Manager allows remote attackers to cause a denial of service (crash) via a Nessus scan in safeChecks mode. NVD-CWE-Other
CVE-2004-1977 2017-07-11 10:31 2004-04-29 Show GitHub Exploit DB Packet Storm
304736 - props props Cross-site scripting (XSS) vulnerability in do_search.php in PROPS 0.6.1 allows remote attackers to inject arbitrary HTML or web script via the search_string parameter. NVD-CWE-Other
CVE-2004-1979 2017-07-11 10:31 2004-04-30 Show GitHub Exploit DB Packet Storm
304737 - props props Directory traversal vulnerability in glossary.php in PROPS 0.6.1 allows remote attackers to view arbitrary files via a .. (dot dot) in (1) module or (2) format variables. NVD-CWE-Other
CVE-2004-1980 2017-07-11 10:31 2004-04-30 Show GitHub Exploit DB Packet Storm
304738 - businessobjects crystal_enterprise
crystal_reports
The web interface for Crystal Reports allows remote attackers to cause a denial of service (disk exhaustion) by repeatedly requesting reports without retrieving the associated image files, which are … NVD-CWE-Other
CVE-2004-1981 2017-07-11 10:31 2004-05-2 Show GitHub Exploit DB Packet Storm
304739 - the_pax_team
gentoo
pax_linux
linux
The arch_get_unmapped_area function in mmap.c in the PaX patches for Linux kernel 2.6, when Address Space Layout Randomization (ASLR) is enabled, allows local users to cause a denial of service (infi… NVD-CWE-Other
CVE-2004-1983 2017-07-11 10:31 2004-05-2 Show GitHub Exploit DB Packet Storm
304740 - coppermine
francisco_burzi
coppermine_photo_gallery
php-nuke
Coppermine Photo Gallery 1.2.2b and 1.2.0 RC4 allows remote attackers to obtain sensitive information via a direct HTTP request to (1) phpinfo.php, (2) addpic.php, (3) config.php, (4) db_input.php, (… NVD-CWE-Other
CVE-2004-1984 2017-07-11 10:31 2004-05-2 Show GitHub Exploit DB Packet Storm