Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2201 7.5 重要
Network
マイクロソフト .NET
visual studio 2022
.NET のなりすましの脆弱性 CWE-138
特殊要素の不適切な無害化
CVE-2026-32178 2026-05-11 10:58 2026-04-14 Show GitHub Exploit DB Packet Storm
2202 6.5 警告
Local
sandboxie-plus Sandboxie sandboxie-plusのSandboxieにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-32603 2026-05-11 10:58 2026-05-5 Show GitHub Exploit DB Packet Storm
2203 9.1 緊急
Network
X.Org Foundation
レッドハット
X.Org X Server
Red Hat Enterprise Linux
レッドハット等の複数ベンダの製品における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-34000 2026-05-11 10:58 2026-05-5 Show GitHub Exploit DB Packet Storm
2204 9.1 緊急
Network
X.Org Foundation
レッドハット
X.Org X Server
Red Hat Enterprise Linux
レッドハット等の複数ベンダの製品における不適切な長さの値によるバッファへのアクセスに関する脆弱性 CWE-805
不適切な長さの値によるバッファへのアクセス
CVE-2026-34002 2026-05-11 10:58 2026-05-5 Show GitHub Exploit DB Packet Storm
2205 8.8 重要
Local
sandboxie-plus Sandboxie sandboxie-plusのSandboxieにおけるCRLF インジェクションの脆弱性 CWE-93
CRLF インジェクション
CVE-2026-34458 2026-05-11 10:58 2026-05-5 Show GitHub Exploit DB Packet Storm
2206 8.8 重要
Local
sandboxie-plus Sandboxie sandboxie-plusのSandboxieにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-34459 2026-05-11 10:58 2026-05-5 Show GitHub Exploit DB Packet Storm
2207 7.8 重要
Local
sandboxie-plus Sandboxie sandboxie-plusのSandboxieにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-34461 2026-05-11 10:58 2026-05-5 Show GitHub Exploit DB Packet Storm
2208 7.8 重要
Local
sandboxie-plus Sandboxie sandboxie-plusのSandboxieにおける複数の脆弱性 CWE-121
CWE-170
CVE-2026-34462 2026-05-11 10:58 2026-05-5 Show GitHub Exploit DB Packet Storm
2209 8.8 重要
Local
sandboxie-plus Sandboxie sandboxie-plusのSandboxieにおける複数の脆弱性 CWE-121
CWE-170
CVE-2026-34464 2026-05-11 10:58 2026-05-5 Show GitHub Exploit DB Packet Storm
2210 7 重要
Local
sandboxie-plus Sandboxie sandboxie-plusのSandboxieにおけるTime-of-check Time-of-use (TOCTOU) 競合状態の脆弱性 CWE-367
Time-of-check Time-of-use (TOCTOU) 競合状態
CVE-2026-34596 2026-05-11 10:58 2026-05-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345761 - webcam_corp webcam_watchdog Buffer overflow in the web server of Webcam Watchdog 3.63 allows remote attackers to execute arbitrary code via a long HTTP GET request. NVD-CWE-Other
CVE-2004-1784 2017-07-11 10:31 2004-01-3 Show GitHub Exploit DB Packet Storm
345762 - iatek portalapp PortalApp places user credentials under the web root with insufficient access control, which allows remote attackers to gain access to sensitive information via a direct request to 8275.mdb. NVD-CWE-Other
CVE-2004-1786 2017-07-11 10:31 2004-01-4 Show GitHub Exploit DB Packet Storm
345763 - postnuke_software_foundation postcalendar SQL injection vulnerability in PostCalendar 4.0.0 allows remote attackers to execute arbitrary SQL commands via search queries. NVD-CWE-Other
CVE-2004-1787 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
345764 - zyxel zywall10 Cross-site scripting (XSS) vulnerability in the web management interface in ZyWALL 10 4.07 allows remote attackers to inject arbitrary web script or HTML via the rpAuth_1 page. NVD-CWE-Other
CVE-2004-1789 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
345765 - edimax full_rate_adsl_router Cross-site scripting (XSS) vulnerability in the web management interface in Edimax AR-6004 ADSL Routers allows remote attackers to inject arbitrary web script or HTML via the URL. NVD-CWE-Other
CVE-2004-1790 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
345766 - yatsoft switch_off swnet.dll in YaSoft Switch Off 2.3 and earlier allows remote attackers to cause a denial of service (infinite loop) via a long packet with two CRLF sequences to the service management port (TCP 8000). NVD-CWE-Other
CVE-2004-1792 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
345767 - yatsoft switch_off Stack-based buffer overflow in swnet.dll in YaSoft Switch Off 2.3 and earlier allows remote authenticated users to execute arbitrary code via a long message parameter in a SendMsg action to action.ht… NVD-CWE-Other
CVE-2004-1793 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
345768 - vcard4j vcard4j Cross-site scripting (XSS) vulnerability in the VCard4J Toolkit allows remote attackers to inject arbitrary web script or HTML via the NICKNAME tag in a vCard. NVD-CWE-Other
CVE-2004-1794 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
345769 - hotnews hotnews PHP remote file inclusion vulnerability in HotNews 0.7.2 and earlier allows remote attackers to execute arbitrary PHP code via the (1) config[header] parameter to hotnews-engine.inc.php3 or (2) confi… NVD-CWE-Other
CVE-2004-1796 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
345770 - - - Cross-site scripting (XSS) vulnerability in search.php for FreznoShop 1.3.0 RC1 and earlier allows remote attackers to inject arbitrary web script or HTML via the search parameter. NVD-CWE-Other
CVE-2004-1797 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm