Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
181 7.5 重要
Network
Vercel, Inc. (旧 Zeit, Inc.) Next.js Vercel, Inc. (旧 Zeit, Inc.)のNext.jsにおける代替パスまたはチャネルを使用した認証回避に関する脆弱性 New CWE-288
代替パスまたはチャネルを使用した認証回避
CVE-2026-45109 2026-05-18 12:10 2026-05-13 Show GitHub Exploit DB Packet Storm
182 7.5 重要
Network
libexpat project libexpat libexpat projectのlibexpatにおけるアルゴリズムの複雑さに関する脆弱性 New CWE-407
アルゴリズムの複雑性
CVE-2026-45186 2026-05-18 12:10 2026-05-10 Show GitHub Exploit DB Packet Storm
183 9.8 緊急
Network
vm2 project vm2 vm2 projectのvm2における誤った領域へのリソースの漏えいに関する脆弱性 New CWE-668
誤った領域へのリソースの漏えい
CVE-2026-45411 2026-05-18 12:10 2026-05-13 Show GitHub Exploit DB Packet Storm
184 5.9 警告
Network
Haxx cURL HaxxのcURLにおける複数の脆弱性 New CWE-295
CWE-319
CVE-2026-4873 2026-05-18 12:10 2026-05-13 Show GitHub Exploit DB Packet Storm
185 5.9 警告
Network
Haxx cURL HaxxのcURLにおける認証情報の不十分な保護に関する脆弱性 New CWE-522
認証情報の不十分な保護
CVE-2026-6253 2026-05-18 12:10 2026-05-13 Show GitHub Exploit DB Packet Storm
186 7.5 重要
Network
Haxx cURL HaxxのcURLにおける重要な情報の平文での送信に関する脆弱性 New CWE-319
重要な情報の平文での送信
CVE-2026-6276 2026-05-18 12:10 2026-05-13 Show GitHub Exploit DB Packet Storm
187 5.3 警告
Network
Haxx cURL HaxxのcURLにおける不特定の脆弱性 New CWE-noinfo
情報不足
CVE-2026-6429 2026-05-18 12:10 2026-05-13 Show GitHub Exploit DB Packet Storm
188 7.5 重要
Network
PgBouncer PgBouncer PgBouncerにおける整数オーバーフローの脆弱性 New CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-6664 2026-05-18 12:10 2026-05-9 Show GitHub Exploit DB Packet Storm
189 9.8 緊急
Network
PgBouncer PgBouncer PgBouncerにおけるスタックベースのバッファオーバーフローの脆弱性 New CWE-121
スタックオーバーフロー
CVE-2026-6665 2026-05-18 12:10 2026-05-9 Show GitHub Exploit DB Packet Storm
190 7.5 重要
Network
PgBouncer PgBouncer PgBouncerにおけるNULL ポインタデリファレンスに関する脆弱性 New CWE-476
NULL ポインタデリファレンス
CVE-2026-6666 2026-05-18 12:09 2026-05-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346381 - sun sdk Directory traversal vulnerability in the Java Archive Tool (Jar) utility in J2SE SDK 1.4.2 and 1.5, and OpenJDK, allows remote attackers to create or overwrite arbitrary files via a .. (dot dot) in f… NVD-CWE-Other
CVE-2005-1080 2017-01-3 11:59 2005-05-2 Show GitHub Exploit DB Packet Storm
346382 - unix unix Process table attack in Unix systems allows a remote attacker to perform a denial of service by filling a machine's process tables through multiple connections to network services. NVD-CWE-Other
CVE-1999-0377 2016-12-28 11:59 1999-02-22 Show GitHub Exploit DB Packet Storm
346383 - gnu mailman Pipermail in Mailman stores private mail messages with predictable filenames in a world-executable directory, which allows local users to read private mailing list archives. NVD-CWE-Other
CVE-2002-0389 2016-12-28 11:59 2002-06-18 Show GitHub Exploit DB Packet Storm
346384 - intel graphics_accelerator_driver ialmnt5.sys in the ialmrnt5 display driver in Intel Graphics Accelerator Driver 6.14.10.4308 allows attackers to cause a denial of service (crash or screen resolution change) via a long text field, a… CWE-399
 Resource Management Errors
CVE-2006-0081 2016-12-20 11:59 2006-01-4 Show GitHub Exploit DB Packet Storm
346385 - suse suse_linux The send_pinentry_environment function in asshelp.c in gpg2 on SUSE Linux 9.3 does not properly handle certain options, which can prevent pinentry from being found and causes S/MIME signing to fail. NVD-CWE-Other
CVE-2005-2023 2016-12-20 11:59 2005-06-17 Show GitHub Exploit DB Packet Storm
346386 - protector_system protector_system blocker.php in Protector System 1.15b1 allows remote attackers to bypass SQL injection protection and execute limited SQL commands via URL-encoded "'" characters ("%27"). NVD-CWE-Other
CVE-2004-1961 2016-12-20 11:59 2004-04-23 Show GitHub Exploit DB Packet Storm
346387 - pi3 pi3web Pi3Web web server 2.0.2 Beta 1, when the Directory Index is configured to use the "Name" column and sort using the column title as a hyperlink, allows remote attackers to cause a denial of service (c… NVD-CWE-Other
CVE-2003-1032 2016-12-20 11:59 2004-02-17 Show GitHub Exploit DB Packet Storm
346388 - padl_software migrationtools PADL MigrationTools 46 creates temporary files insecurely, which allows local users to overwrite arbitrary files via a symlink attack on the temporary files, which are not properly created by (1) mig… NVD-CWE-Other
CVE-2006-0512 2016-12-8 12:00 2006-02-2 Show GitHub Exploit DB Packet Storm
346389 - openbsd openssh OpenSSH 4.0, and other versions before 4.2, does not properly handle dynamic port forwarding ("-D" option) when a listen address is not provided, which may cause OpenSSH to enable the GatewayPorts fu… NVD-CWE-Other
CVE-2005-2797 2016-12-8 12:00 2005-09-7 Show GitHub Exploit DB Packet Storm
346390 - carnegie_mellon_university
openpkg
conectiva
redhat
trustix
ubuntu
cyrus_imap_server
openpkg
linux
fedora_core
secure_linux
ubuntu_linux
The argument parser of the FETCH command in Cyrus IMAP Server 2.2.x through 2.2.8 allows remote authenticated users to execute arbitrary code via certain commands such as (1) "body[p", (2) "binary[p"… NVD-CWE-Other
CVE-2004-1013 2016-12-8 11:59 2005-01-10 Show GitHub Exploit DB Packet Storm