Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2901 6.1 警告
Network
FreeRDP FreeRDP FreeRDPにおける境界条件の判定に関する脆弱性 CWE-193
境界条件の判定
CVE-2026-40254 2026-04-30 12:28 2026-04-24 Show GitHub Exploit DB Packet Storm
2902 3.7
Network
BACnet Stack BACnet Stack BACnet Stackにおける未定義、未指定、または実装定義の動作への依存に関する脆弱性 CWE-758
未定義、未指定、または実装定義の動作への依存
CVE-2026-40279 2026-04-30 12:28 2026-04-21 Show GitHub Exploit DB Packet Storm
2903 7.6 重要
Network
WeGIA WeGIA WeGIAにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-40283 2026-04-30 12:28 2026-04-17 Show GitHub Exploit DB Packet Storm
2904 6.5 警告
Network
OpenFGA OpenFGA OpenFGAにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-40293 2026-04-30 12:28 2026-04-17 Show GitHub Exploit DB Packet Storm
2905 9.9 緊急
Network
FirebirdSQL Firebird FirebirdSQLのFirebirdにおける複数の脆弱性 CWE-22
CWE-427
CWE-73
CWE-94
CVE-2026-40342 2026-04-30 12:28 2026-04-17 Show GitHub Exploit DB Packet Storm
2906 8.2 重要
Network
Minio Inc. Minio Minio Inc.のMinioにおける複数の脆弱性 CWE-287
CWE-306
CVE-2026-40344 2026-04-30 12:28 2026-04-22 Show GitHub Exploit DB Packet Storm
2907 9.8 緊急
Network
FastGPT FastGPT FastGPTにおけるデータクエリロジックの特殊要素の不適切な中立化に関する脆弱性 CWE-943
データクエリロジックの特殊要素の不適切な中立化
CVE-2026-40351 2026-04-30 12:28 2026-04-17 Show GitHub Exploit DB Packet Storm
2908 8.8 重要
Network
FastGPT FastGPT FastGPTにおけるデータクエリロジックの特殊要素の不適切な中立化に関する脆弱性 CWE-943
データクエリロジックの特殊要素の不適切な中立化
CVE-2026-40352 2026-04-30 12:28 2026-04-17 Show GitHub Exploit DB Packet Storm
2909 9.1 緊急
Network
マイクロソフト ASP.NET Core ASP.NET Core Elevation of Privilege Vulnerability CWE-347
デジタル署名の不適切な検証
CVE-2026-40372 2026-04-30 12:28 2026-04-21 Show GitHub Exploit DB Packet Storm
2910 5.4 警告
Network
Kimai project kimai Kimai projectのKimaiにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-40479 2026-04-30 12:28 2026-04-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
351621 - - - Microsoft Office InfoPath 2003 SP1 includes sensitive information in the Manifest.xsf file in a custom .xsn form, which allows attackers to obtain printer and network information, obtain the database… NVD-CWE-Other
CVE-2005-0820 2008-09-6 05:47 2005-05-2 Show GitHub Exploit DB Packet Storm
351622 - citrix metaframe_password_manager Citrix Metaframe Password Manager 2.5 and earlier stores a password in cleartext although it is obfuscated when presented to a user, which allows users to view their secondary passwords even if it is… NVD-CWE-Other
CVE-2005-0822 2008-09-6 05:47 2005-05-2 Show GitHub Exploit DB Packet Storm
351623 - lgames ltris Buffer overflow in LTris before 1.0.10 allows local users to execute arbitrary code via a crafted highscores file. NVD-CWE-Other
CVE-2005-0825 2008-09-6 05:47 2005-05-2 Show GitHub Exploit DB Packet Storm
351624 - xzabite dyndnsupdate Multiple buffer overflows in Xzabite DYNDNSUpdate 0.6.15 and earlier, including the ipcheck function in dyndnsupdate.c, allow remote attackers who spoof a dyndns.org server to execute arbitrary code … NVD-CWE-Other
CVE-2005-0830 2008-09-6 05:47 2005-05-2 Show GitHub Exploit DB Packet Storm
351625 - php-post php-post_web_forum PHP-Post allows remote attackers to spoof the names of other users by registering with a username containing hex-encoded characters. NVD-CWE-Other
CVE-2005-0831 2008-09-6 05:47 2005-05-2 Show GitHub Exploit DB Packet Storm
351626 - belkin belkin_54g_wireless_router Belkin 54G (F5D7130) wireless router allows remote attackers to access restricted resources by sniffing URIs from UPNP datagrams, then accessing those URIs, which do not require authentication. NVD-CWE-Other
CVE-2005-0833 2008-09-6 05:47 2005-05-2 Show GitHub Exploit DB Packet Storm
351627 - - - Belkin 54G (F5D7130) wireless router enables SNMP by default in a manner that allows remote attackers to obtain sensitive information. NVD-CWE-Other
CVE-2005-0834 2008-09-6 05:47 2005-05-2 Show GitHub Exploit DB Packet Storm
351628 - belkin 54g_wireless_router The SNMP service in the Belkin 54G (F5D7130) wireless router allows remote attackers to cause a denial of service via unknown vectors. NVD-CWE-Other
CVE-2005-0835 2008-09-6 05:47 2005-05-2 Show GitHub Exploit DB Packet Storm
351629 - funlabs 4x4_off-road_adventure_iii
cabelas_big_game_hunter_2004_season
cabelas_big_game_hunter_2005
cabelas_dangerous_hunts
cabelas_deer_hunt_2005_season
revolution
secret_service_in_harms_…
Multiple games developed by FUN labs, including 4X4 Off-road Adventure III, Big Game Hunter, Dangerous Hunts, Deer Hunt, Revolution, Secret Service, Shadow Force, and US Most Wanted, allow remote att… NVD-CWE-Other
CVE-2005-0849 2008-09-6 05:47 2005-05-2 Show GitHub Exploit DB Packet Storm
351630 - - - Microsoft Windows XP SP1 allows local users to cause a denial of service (system crash) via an empty datagram to a raw IP over IP socket (IP protocol 4), as originally demonstrated using code in Pyth… NVD-CWE-Other
CVE-2005-0852 2008-09-6 05:47 2005-05-2 Show GitHub Exploit DB Packet Storm