Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
21 9.8 緊急
Network
EUROLAB srl ELTS 100 Firmware EUROLAB srlのELTS 100 Firmwareにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2025-63225 2026-02-6 10:40 2025-11-18 Show GitHub Exploit DB Packet Storm
22 3.5
Adjacent
Freebox Freebox One Firmware
Freebox v5 HD Firmware
Freebox v5 Crystal Firmware
Freebox v6 Revolution Firmware
Freebox Mini 4K&nbs…
FreeboxのFreebox Mini 4K Firmware等の複数製品における重要な情報の平文での送信に関する脆弱性 CWE-319
重要な情報の平文での送信
CVE-2025-63292 2026-02-6 10:40 2025-11-17 Show GitHub Exploit DB Packet Storm
23 6.5 警告
Network
workdo HRM SaaS WorkDoのHRM SaaSにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2025-63294 2026-02-6 10:40 2025-11-4 Show GitHub Exploit DB Packet Storm
24 7.5 重要
Network
kiloview E3 Firmware Kiloview Electronics Co., Ltd.のE3 Firmwareにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2025-63560 2026-02-6 10:40 2025-11-6 Show GitHub Exploit DB Packet Storm
25 6.5 警告
Network
GuoMinJim PersonManage GuoMinJimのPersonManageにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2025-63686 2026-02-6 10:40 2025-11-7 Show GitHub Exploit DB Packet Storm
26 5.4 警告
Network
Magento, Inc. E-Commerce Bhabishya-123のE-commerceにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-63883 2026-02-6 10:40 2025-11-18 Show GitHub Exploit DB Packet Storm
27 5.3 警告
Network
Salesforce.com, inc. MuleSoft Anypoint Extension Pack Salesforce.com, inc.のMuleSoft Anypoint Extension Packにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2025-64318 2026-02-6 10:40 2025-11-4 Show GitHub Exploit DB Packet Storm
28 5.3 警告
Network
Salesforce.com, inc. MuleSoft Anypoint Extension Pack Salesforce.com, inc.のMuleSoft Anypoint Extension Packにおける重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2025-64319 2026-02-6 10:40 2025-11-4 Show GitHub Exploit DB Packet Storm
29 6.5 警告
Network
Salesforce.com, inc. Agentforce Vibes Salesforce.com, inc.のAgentforce Vibesにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2025-64320 2026-02-6 10:40 2025-11-4 Show GitHub Exploit DB Packet Storm
30 5.3 警告
Network
Salesforce.com, inc. Agentforce Vibes Salesforce.com, inc.のAgentforce Vibesにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2025-64321 2026-02-6 10:40 2025-11-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306551 - tiny_software tiny_personal_firewall Tiny Personal Firewall (TPF) 2.0.15, under certain configurations, will pop up an alert to the system even when the screen is locked, which could allow an attacker with physical access to the machine… NVD-CWE-Other
CVE-2002-0349 2016-10-18 11:19 2002-06-25 Show GitHub Exploit DB Packet Storm
306552 - hp procurve_switch_4000m HP Procurve Switch 4000M running firmware C.08.22 and C.09.09 allows remote attackers to cause a denial of service via a port scan of the management IP address, which disables the telnet service. NVD-CWE-Other
CVE-2002-0350 2016-10-18 11:19 2002-06-25 Show GitHub Exploit DB Packet Storm
306553 - phorum phorum Phorum 3.3.2 allows remote attackers to determine the email addresses of the 10 most active users via a direct HTTP request to the stats.php program, which does not require authentication. NVD-CWE-Other
CVE-2002-0352 2016-10-18 11:19 2002-06-25 Show GitHub Exploit DB Packet Storm
306554 - mozilla
netscape
mozilla
navigator
The XMLHttpRequest object (XMLHTTP) in Netscape 6.1 and Mozilla 0.9.7 allows remote attackers to read arbitrary files and list directories on a client system by opening a URL that redirects the brows… NVD-CWE-Other
CVE-2002-0354 2016-10-18 11:19 2002-06-25 Show GitHub Exploit DB Packet Storm
306555 - sgi irix xfsmd for IRIX 6.5 through 6.5.16 uses weak authentication, which allows remote attackers to call dangerous RPC functions, including those that can mount or unmount xfs file systems, to gain root pri… NVD-CWE-Other
CVE-2002-0359 2016-10-18 11:19 2002-07-3 Show GitHub Exploit DB Packet Storm
306556 - sun solaris_answerbook2 Buffer overflow in Sun AnswerBook2 1.4 through 1.4.3 allows remote attackers to execute arbitrary code via a long filename argument to the gettransbitmap CGI program. NVD-CWE-Other
CVE-2002-0360 2016-10-18 11:19 2002-06-25 Show GitHub Exploit DB Packet Storm
306557 - aol instant_messenger Buffer overflow in AOL Instant Messenger (AIM) 4.2 and later allows remote attackers to execute arbitrary code via a long AddExternalApp request and a TLV type greater than 0x2711. NVD-CWE-Other
CVE-2002-0362 2016-10-18 11:19 2002-05-29 Show GitHub Exploit DB Packet Storm
306558 - padl_software pam_ldap Format string vulnerability in the logging function for the pam_ldap PAM LDAP module before version 144 allows attackers to execute arbitrary code via format strings in the configuration file name. NVD-CWE-Other
CVE-2002-0374 2016-10-18 11:19 2002-05-29 Show GitHub Exploit DB Packet Storm
306559 - rob_flynn gaim Gaim 0.57 stores sensitive information in world-readable and group-writable files in the /tmp directory, which allows local users to access MSN web email accounts of other users who run Gaim by readi… NVD-CWE-Other
CVE-2002-0377 2016-10-18 11:19 2002-05-29 Show GitHub Exploit DB Packet Storm
306560 - lbl tcpdump Buffer overflow in tcpdump 3.6.2 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary code via an NFS packet. NVD-CWE-Other
CVE-2002-0380 2016-10-18 11:19 2002-06-18 Show GitHub Exploit DB Packet Storm