Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
21 9.8 緊急
Network
EUROLAB srl ELTS 100 Firmware EUROLAB srlのELTS 100 Firmwareにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2025-63225 2026-02-6 10:40 2025-11-18 Show GitHub Exploit DB Packet Storm
22 3.5
Adjacent
Freebox Freebox One Firmware
Freebox v5 HD Firmware
Freebox v5 Crystal Firmware
Freebox v6 Revolution Firmware
Freebox Mini 4K&nbs…
FreeboxのFreebox Mini 4K Firmware等の複数製品における重要な情報の平文での送信に関する脆弱性 CWE-319
重要な情報の平文での送信
CVE-2025-63292 2026-02-6 10:40 2025-11-17 Show GitHub Exploit DB Packet Storm
23 6.5 警告
Network
workdo HRM SaaS WorkDoのHRM SaaSにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2025-63294 2026-02-6 10:40 2025-11-4 Show GitHub Exploit DB Packet Storm
24 7.5 重要
Network
kiloview E3 Firmware Kiloview Electronics Co., Ltd.のE3 Firmwareにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2025-63560 2026-02-6 10:40 2025-11-6 Show GitHub Exploit DB Packet Storm
25 6.5 警告
Network
GuoMinJim PersonManage GuoMinJimのPersonManageにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2025-63686 2026-02-6 10:40 2025-11-7 Show GitHub Exploit DB Packet Storm
26 5.4 警告
Network
Magento, Inc. E-Commerce Bhabishya-123のE-commerceにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-63883 2026-02-6 10:40 2025-11-18 Show GitHub Exploit DB Packet Storm
27 5.3 警告
Network
Salesforce.com, inc. MuleSoft Anypoint Extension Pack Salesforce.com, inc.のMuleSoft Anypoint Extension Packにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2025-64318 2026-02-6 10:40 2025-11-4 Show GitHub Exploit DB Packet Storm
28 5.3 警告
Network
Salesforce.com, inc. MuleSoft Anypoint Extension Pack Salesforce.com, inc.のMuleSoft Anypoint Extension Packにおける重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2025-64319 2026-02-6 10:40 2025-11-4 Show GitHub Exploit DB Packet Storm
29 6.5 警告
Network
Salesforce.com, inc. Agentforce Vibes Salesforce.com, inc.のAgentforce Vibesにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2025-64320 2026-02-6 10:40 2025-11-4 Show GitHub Exploit DB Packet Storm
30 5.3 警告
Network
Salesforce.com, inc. Agentforce Vibes Salesforce.com, inc.のAgentforce Vibesにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2025-64321 2026-02-6 10:40 2025-11-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 17, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
307291 - eset remote_administrator Cross-site scripting (XSS) vulnerability in the Additional Report Settings interface in ESET Remote Administrator before 3.0.105 allows remote attackers to inject arbitrary web script or HTML via uns… CWE-79
Cross-site Scripting
CVE-2009-0548 2011-03-8 12:18 2009-02-13 Show GitHub Exploit DB Packet Storm
307292 - apple mac_os_x
mac_os_x_server
Folder Manager in Apple Mac OS X 10.5.6 uses insecure default permissions when recreating a Downloads folder after it has been deleted, which allows local users to bypass intended access restrictions… CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-0014 2011-03-8 12:17 2009-02-13 Show GitHub Exploit DB Packet Storm
307293 - apple mac_os_x
mac_os_x_server
Unspecified vulnerability in fseventsd in the FSEvents framework in Apple Mac OS X 10.5.6 allows local users to obtain sensitive information (filesystem activities and directory names) via unknown ve… CWE-255
Credentials Management
CVE-2009-0015 2011-03-8 12:17 2009-02-13 Show GitHub Exploit DB Packet Storm
307294 - apple mac_os_x
mac_os_x_server
csregprinter in the Printing component in Apple Mac OS X 10.4.11 and 10.5.6 does not properly handle error conditions, which allows local users to execute arbitrary code via unknown vectors that trig… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-0017 2011-03-8 12:17 2009-02-13 Show GitHub Exploit DB Packet Storm
307295 - apple mac_os_x
mac_os_x_server
The Remote Apple Events server in Apple Mac OS X 10.4.11 and 10.5.6 does not properly initialize a buffer, which allows remote attackers to read portions of memory. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-0018 2011-03-8 12:17 2009-02-13 Show GitHub Exploit DB Packet Storm
307296 - apple mac_os_x
mac_os_x_server
Remote Apple Events in Apple Mac OS X 10.4.11 and 10.5.6 allows remote attackers to cause a denial of service (application termination) or obtain sensitive information via unspecified vectors that tr… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-0019 2011-03-8 12:17 2009-02-13 Show GitHub Exploit DB Packet Storm
307297 - apple mac_os_x
mac_os_x_server
Unspecified vulnerability in CarbonCore in Apple Mac OS X 10.4.11 and 10.5.6 allows remote attackers to cause a denial of service (application termination) and execute arbitrary code via a crafted re… CWE-399
 Resource Management Errors
CVE-2009-0020 2011-03-8 12:17 2009-02-13 Show GitHub Exploit DB Packet Storm
307298 - cisco ironport_encryption_appliance
ironport_postx
PXE Encryption in Cisco IronPort Encryption Appliance 6.2.4 before 6.2.4.1.1, 6.2.5, 6.2.6, 6.2.7 before 6.2.7.7, 6.3 before 6.3.0.4, and 6.5 before 6.5.0.2; and Cisco IronPort PostX 6.2.1 before 6.2… CWE-310
Cryptographic Issues
CVE-2009-0053 2011-03-8 12:17 2009-01-17 Show GitHub Exploit DB Packet Storm
307299 - cisco ironport_encryption_appliance
ironport_postx
PXE Encryption in Cisco IronPort Encryption Appliance 6.2.4 before 6.2.4.1.1, 6.2.5, 6.2.6, 6.2.7 before 6.2.7.7, 6.3 before 6.3.0.4, and 6.5 before 6.5.0.2; and Cisco IronPort PostX 6.2.1 before 6.2… CWE-255
Credentials Management
CVE-2009-0054 2011-03-8 12:17 2009-01-17 Show GitHub Exploit DB Packet Storm
307300 - cisco ironport_encryption_appliance
ironport_postx
Cross-site request forgery (CSRF) vulnerability in the administration interface in Cisco IronPort Encryption Appliance 6.2.4 before 6.2.4.1.1, 6.2.5, 6.2.6, 6.2.7 before 6.2.7.7, 6.3 before 6.3.0.4, … CWE-352
 Origin Validation Error
CVE-2009-0055 2011-03-8 12:17 2009-01-17 Show GitHub Exploit DB Packet Storm