Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2151 7.5 重要
Network
HACS (Home Assistant Community Store) HACS (Home Assistant Community Store) HACS (Home Assistant Community Store)におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2021-47942 2026-05-29 11:20 2026-05-16 Show GitHub Exploit DB Packet Storm
2152 7.3 重要
Local
Airbus TETRA Connectivity Server AirbusのTETRA Connectivity Serverにおける不適切なデフォルトパーミッションに関する脆弱性 CWE-276
不適切なデフォルトパーミッション
CVE-2025-7024 2026-05-29 11:20 2026-04-3 Show GitHub Exploit DB Packet Storm
2153 7.5 重要
Network
マイクロソフト Microsoft Global Secure Access (GSA) Microsoft グローバル セキュア アクセス (GSA) の情報漏えいの脆弱性 CWE-269
不適切な権限管理
CVE-2026-23663 2026-05-29 11:20 2026-05-22 Show GitHub Exploit DB Packet Storm
2154 8.8 重要
Network
マイクロソフト Azure Privileged Identity Management (PIM) Azure Privileged Identity Management (PIM) Elevation of Privilege Vulnerability CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-35430 2026-05-29 11:20 2026-05-22 Show GitHub Exploit DB Packet Storm
2155 8.8 重要
Network
マイクロソフト Azure Virtual Network Gateway Azure Virtual Network Gateway Remote Code Execution Vulnerability CWE-20
CWE-noinfo
CVE-2026-40411 2026-05-29 11:20 2026-05-22 Show GitHub Exploit DB Packet Storm
2156 9.8 緊急
Network
マイクロソフト Azure Orbital Spatio Azure Orbital Spatio のリモートでコードが実行される脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2026-40412 2026-05-29 11:20 2026-05-22 Show GitHub Exploit DB Packet Storm
2157 9.8 緊急
Network
midoks mdserver-web midoksのmdserver-webにおける複数の脆弱性 CWE-78
CWE-862
CVE-2026-41315 2026-05-29 11:20 2026-05-14 Show GitHub Exploit DB Packet Storm
2158 7.5 重要
Network
opentelemetry OpenTelemetry.OpAmp.Client opentelemetryのOpenTelemetry.OpAmp.Clientにおける過剰なサイズ値のメモリ割り当てに関する脆弱性 CWE-789
過剰なサイズ値のメモリ割り当て
CVE-2026-42348 2026-05-29 11:20 2026-05-12 Show GitHub Exploit DB Packet Storm
2159 9.1 緊急
Network
Archive::Tar project Archive::Tar Archive::Tar projectのArchive::Tarにおけるリンク解釈に関する脆弱性 CWE-59
リンク解釈の問題
CVE-2026-42496
CVE-2026-42497
2026-05-29 11:20 2026-05-26 Show GitHub Exploit DB Packet Storm
2160 7.5 重要
Network
Archive::Tar project Archive::Tar Archive::Tar projectのArchive::Tarにおける複数の脆弱性 CWE-59
CWE-732
CVE-2026-42496
CVE-2026-42497
2026-05-29 11:20 2026-05-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
358401 - checkpoint firewall-1 Check Point FireWall-1 4.1 and Next Generation (NG), with UserAuth configured to proxy HTTP traffic only, allows remote attackers to pass unauthorized HTTPS, FTP and possibly other traffic through th… CWE-264
Permissions, Privileges, and Access Controls
CVE-2002-2405 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm
358402 - perception liteserve Buffer overflow in HTTP server in LiteServe 2.0, 2.0.1 and 2.0.2 allows remote attackers to cause a denial of service (hang) via a large number of percent characters (%) in an HTTP GET request. CWE-20
 Improper Input Validation 
CVE-2002-2406 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm
358403 - qnx rtos Certain patches for QNX Neutrino realtime operating system (RTOS) 6.2.0 set insecure permissions for the files (1) /sbin/io-audio by OS Update Patch A, (2) /bin/shutdown, (3) /sbin/fs-pkg, and (4) ph… CWE-264
Permissions, Privileges, and Access Controls
CVE-2002-2407 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm
358404 - gordano ntmail Gordano Messaging Server (GMS) Mail 8 (a.k.a. NTMail) only filters email messages for the first recipient, which allows remote attackers to bypass JUCE filters by sending a message to more than one u… NVD-CWE-Other
CVE-2002-2408 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm
358405 - qnx neutrino_rtos
photon_microgui
Photon microGUI in QNX Neutrino realtime operating system (RTOS) 6.1.0 and 6.2.0 allows attackers to read user clipboard information via a direct request to the 1.TEXT file in a directory whose name … CWE-200
Information Exposure
CVE-2002-2409 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm
358406 - open_webmail open_webmail openwebmail.pl in Open WebMail 1.7 and 1.71 reveals sensitive information in error messages and generates different responses whether a user exists or not, which allows remote attackers to identify v… CWE-200
Information Exposure
CVE-2002-2410 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm
358407 - nullsoft winamp Winamp 2.80 stores authentication credentials in plaintext in the (1) [HTTP-AUTH] and (2) [winamp] sections in winamp.ini, which allows local users to gain access to other accounts. CWE-255
Credentials Management
CVE-2002-2412 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm
358408 - deerfield website_pro WebSite Pro 3.1.11.0 on Windows allows remote attackers to read script source code for files with extensions greater than 3 characters via a URL request that uses the equivalent 8.3 file name. NVD-CWE-Other
CVE-2002-2413 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm
358409 - alliedtelesyn at-8024
rapier_24
Allied Telesyn AT-8024 1.3.1 and Rapier 24 switches allow remote authenticated users to cause a denial of service in the management interface via a stream of zero (null) bytes sent via UDP to a runni… CWE-20
 Improper Input Validation 
CVE-2002-2415 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm
358410 - zeroo http_server Directory traversal vulnerability in Zeroo web server 1.5 allows remote attackers to read arbitrary files via a .. (dot dot) in a URL GET request. CWE-22
Path Traversal
CVE-2002-2416 2008-09-6 05:33 2002-12-31 Show GitHub Exploit DB Packet Storm