Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3031 5.5 警告
Local
レッドハット
firewalld
firewalld
Red Hat Enterprise Linux
firewalld等の複数ベンダの製品における割り当てられたパーミッションの実行に関する脆弱性 CWE-279
割り当てられたパーミッションの不適切な実行
CVE-2026-4948 2026-05-7 12:29 2026-03-27 Show GitHub Exploit DB Packet Storm
3032 10 緊急
Network
huggingface smolagents huggingfaceのsmolagentsにおける複数の脆弱性 CWE-74
CWE-94
CVE-2026-4963 2026-05-7 12:29 2026-03-27 Show GitHub Exploit DB Packet Storm
3033 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. ch22 ファームウェア Shenzhen Tenda Technology Co.,Ltd.のch22 ファームウェアにおける複数の脆弱性 CWE-119
CWE-121
CVE-2026-5154 2026-05-7 12:28 2026-03-30 Show GitHub Exploit DB Packet Storm
3034 9.8 緊急
Network
TRENDnet TEW-713RE FIRMWARE TRENDnetのTEW-713RE FIRMWAREにおける複数の脆弱性 CWE-74
CWE-77
CVE-2026-5183 2026-05-7 12:28 2026-03-31 Show GitHub Exploit DB Packet Storm
3035 8.8 重要
Network
nothings stb_truetype.h nothingsのstb_truetype.hにおける複数の脆弱性 CWE-119
CWE-125
CVE-2026-5314 2026-05-7 12:28 2026-04-1 Show GitHub Exploit DB Packet Storm
3036 8.8 重要
Network
nothings stb_truetype.h nothingsのstb_truetype.hにおける複数の脆弱性 CWE-119
CWE-125
CVE-2026-5315 2026-05-7 12:28 2026-04-2 Show GitHub Exploit DB Packet Storm
3037 6.5 警告
Network
nothings stb vorbis.c nothingsのstb vorbis.cにおける複数の脆弱性 CWE-400
CWE-770
CVE-2026-5316 2026-05-7 12:28 2026-04-2 Show GitHub Exploit DB Packet Storm
3038 8.8 重要
Network
nothings stb vorbis.c nothingsのstb vorbis.cにおける複数の脆弱性 CWE-119
CWE-787
CVE-2026-5317 2026-05-7 12:28 2026-04-2 Show GitHub Exploit DB Packet Storm
3039 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. ch22 ファームウェア Shenzhen Tenda Technology Co.,Ltd.のch22 ファームウェアにおける複数の脆弱性 CWE-119
CWE-121
CVE-2026-5604 2026-05-7 12:28 2026-04-5 Show GitHub Exploit DB Packet Storm
3040 8.8 重要
Network
Shenzhen Tenda Technology Co.,Ltd. ch22 ファームウェア Shenzhen Tenda Technology Co.,Ltd.のch22 ファームウェアにおける複数の脆弱性 CWE-119
CWE-121
CVE-2026-5605 2026-05-7 12:28 2026-04-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
354431 - 1two 1two_news Cross-site scripting (XSS) vulnerability in index.php for 1Two News 1.0 allows remote attackers to inject arbitrary web script or HTML via the (1) nom, (2) email, (3) siteweb, or (4) commentaire vari… NVD-CWE-Other
CVE-2005-1582 2008-09-6 05:49 2005-05-14 Show GitHub Exploit DB Packet Storm
354432 - 1two 1two_news 1Two News 1.0 allows remote attackers to (1) delete images for new stories via a direct request to admin/delete.php or (2) upload arbitrary images via a direct request to admin/upload.php. NVD-CWE-Other
CVE-2005-1583 2008-09-6 05:49 2005-05-14 Show GitHub Exploit DB Packet Storm
354433 - open_solution quick.forum Cross-site scripting (XSS) vulnerability in index.php for Quick.Forum 2.1.6 allows remote attackers to inject arbitrary web script or HTML via the topic field in a NewTopic action. NVD-CWE-Other
CVE-2005-1584 2008-09-6 05:49 2005-05-14 Show GitHub Exploit DB Packet Storm
354434 - open_solution quick.forum Multiple SQL injection vulnerabilities in Quick.Forum 2.1.6 allow remote attackers to execute arbitrary SQL commands via the (1) iCategory or (2) page parameter to index.php, or (3) iCategory paramet… NVD-CWE-Other
CVE-2005-1585 2008-09-6 05:49 2005-05-11 Show GitHub Exploit DB Packet Storm
354435 - open_solution quick.forum Quick.Forum 2.1.6 stores potentially sensitive information such as usernames, banned IP addresses, censored words, and backups under the web document root, which allows remote attackers to obtain tha… NVD-CWE-Other
CVE-2005-1586 2008-09-6 05:49 2005-05-14 Show GitHub Exploit DB Packet Storm
354436 - open_solution quick.cart Cross-site scripting (XSS) vulnerability in index.php for Quick.cart 0.3.0 allows remote attackers to inject arbitrary web script or HTML via the sWord parameter. NVD-CWE-Other
CVE-2005-1587 2008-09-6 05:49 2005-05-14 Show GitHub Exploit DB Packet Storm
354437 - altiris client_service
deployment_solution
The Altiris Client Service for Windows (ACLIENT.EXE) 6.0.88 allows local users to disable password protection and access the administrative interface by finding and showing the "Altiris Client Servic… NVD-CWE-Other
CVE-2005-1590 2008-09-6 05:49 2005-05-16 Show GitHub Exploit DB Packet Storm
354438 - birdblog birdblog Multiple "javascript vulerabilities in BB code" in BirdBlog before 1.3.1 allow remote attackers to inject arbitrary Javascript. NVD-CWE-Other
CVE-2005-1592 2008-09-6 05:49 2005-05-16 Show GitHub Exploit DB Packet Storm
354439 - codethat shoppingcart Cross-site scripting (XSS) vulnerability in catalog.php for CodeThat ShoppingCart 1.3.1 allows remote attackers to inject arbitrary web script or HTML via the id parameter. NVD-CWE-Other
CVE-2005-1593 2008-09-6 05:49 2005-05-16 Show GitHub Exploit DB Packet Storm
354440 - codethat shoppingcart SQL injection vulnerability in catalog.php for CodeThat ShoppingCart 1.3.1 allows remote attackers to execute arbitrary SQL commands via the id parameter. NVD-CWE-Other
CVE-2005-1594 2008-09-6 05:49 2005-05-16 Show GitHub Exploit DB Packet Storm