Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
2961 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows メッセージ キュー (MSMQ) の特権昇格の脆弱性 CWE-415
二重解放
CVE-2026-33838 2026-05-18 12:17 2026-05-12 Show GitHub Exploit DB Packet Storm
2962 7 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Wind…
Win32k の特権の昇格の脆弱性 CWE-362
競合状態
CVE-2026-33839 2026-05-18 12:17 2026-05-12 Show GitHub Exploit DB Packet Storm
2963 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows 11 24h2
Microsoft Windows 11 26h1
Microsoft Windows Server 2025
Win32k の特権の昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-33840 2026-05-18 12:17 2026-05-12 Show GitHub Exploit DB Packet Storm
2964 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows 11 23h2
Microsoft Windows Server 2022
Microsoft Windows 11 24h2
Microsoft Wind…
Windows カーネルの特権の昇格の脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-33841 2026-05-18 12:17 2026-05-12 Show GitHub Exploit DB Packet Storm
2965 7.5 重要
Network
MediaWiki MediaWiki MediaWikiにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-34087 2026-05-18 12:17 2026-05-11 Show GitHub Exploit DB Packet Storm
2966 7.5 重要
Network
MediaWiki MediaWiki MediaWikiにおける情報漏えいに関する脆弱性 CWE-200
CWE-noinfo
CVE-2026-34088 2026-05-18 12:17 2026-05-11 Show GitHub Exploit DB Packet Storm
2967 7.5 重要
Network
MediaWiki Checkuser MediaWikiのCheckuserにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-34090 2026-05-18 12:17 2026-05-11 Show GitHub Exploit DB Packet Storm
2968 7.5 重要
Network
MediaWiki MediaWiki MediaWikiにおける情報漏えいに関する脆弱性 CWE-200
CWE-noinfo
CVE-2026-34091 2026-05-18 12:17 2026-05-11 Show GitHub Exploit DB Packet Storm
2969 7.5 重要
Network
MediaWiki MediaWiki MediaWikiにおける情報漏えいに関する脆弱性 CWE-200
CWE-noinfo
CVE-2026-34092 2026-05-18 12:17 2026-05-11 Show GitHub Exploit DB Packet Storm
2970 8.8 重要
Adjacent
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Microsoft Message Queuing (MSMQ) のリモートでコードが実行される脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-34329 2026-05-18 12:17 2026-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
357441 - clever_copy clever_copy Cross-site scripting (XSS) vulnerability in Clever Copy 2.0 and 2.0a allows remote attackers to inject arbitrary web script or HTML via the yr parameter to calendar.php. NVD-CWE-Other
CVE-2005-2326 2008-09-6 05:51 2005-07-19 Show GitHub Exploit DB Packet Storm
357442 - laffer laffer PHP remote file inclusion vulnerability in im.php in Laffer 0.3.2.6 and 0.3.2.7 allows remote attackers to execute arbitrary PHP code via the CFG_PATH variable. NVD-CWE-Other
CVE-2005-2328 2008-09-6 05:51 2005-07-20 Show GitHub Exploit DB Packet Storm
357443 - - - MRV Communications In-Reach LX-8000S, LX-4000S, and LX-1000S 3.5.0, when using SSH public key authentication, does not properly restrict access to ports, which allows remote authenticated users to ac… NVD-CWE-Other
CVE-2005-2329 2008-09-6 05:51 2005-07-20 Show GitHub Exploit DB Packet Storm
357444 - php.warpedweb.net phppageprotect Cross-site scripting (XSS) vulnerability in PHPPageProtect 1.0.0a allows remote attackers to inject arbitrary web script or HTML via the username parameter to (1) admin.php or (2) login.php. NVD-CWE-Other
CVE-2005-2332 2008-09-6 05:51 2005-07-20 Show GitHub Exploit DB Packet Storm
357445 - y.sak y.sak Y.SAK allows remote attackers to execute arbitrary commands via shell metacharacters in the $no variable to (1) w_s3mbfm.cgi, (2) w_s3adix.cgi, or (3) w_s3sbfm.cgi. NVD-CWE-Other
CVE-2005-2334 2008-09-6 05:51 2005-07-20 Show GitHub Exploit DB Packet Storm
357446 - msearch unicode_msearch Cross-site scripting (XSS) vulnerability in the Unicode version of msearch (unicode-msearch) 1.51(U1)-beta1, 1.51(U1), and 1.52(U1) allows remote attackers to inject arbitrary web script or HTML via … NVD-CWE-Other
CVE-2005-2339 2008-09-6 05:51 2005-11-22 Show GitHub Exploit DB Packet Storm
357447 - emc navisphere_manager EMC Navisphere Manager 6.4.1.0.0 allows remote attackers to list arbitrary directories via an HTTP request for a directory that ends in a "." (trailing dot). NVD-CWE-Other
CVE-2005-2358 2008-09-6 05:51 2005-08-16 Show GitHub Exploit DB Packet Storm
357448 - alwil avast_antivirus Directory traversal vulnerability in a third-party compression library (UNACEV2.DLL), as used in avast! Antivirus Home/Professional Edition 4.6.665 and Server Edition 4.6.460, allows remote attackers… NVD-CWE-Other
CVE-2005-2384 2008-09-6 05:51 2005-07-27 Show GitHub Exploit DB Packet Storm
357449 - alwil avast_antivirus Buffer overflow in a third-party compression library (UNACEV2.DLL), as used in avast! Antivirus Home/Professional Edition 4.6.665 and Server Edition 4.6.460, allows remote attackers to execute arbitr… NVD-CWE-Other
CVE-2005-2385 2008-09-6 05:51 2005-07-27 Show GitHub Exploit DB Packet Storm
357450 - elemental_software cartwiz Cross-site scripting (XSS) vulnerability in viewCart.asp in CartWIZ 1.20 allows remote attackers to inject arbitrary web script or HTML via the message parameter. NVD-CWE-Other
CVE-2005-2386 2008-09-6 05:51 2005-07-27 Show GitHub Exploit DB Packet Storm