Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3071 3.7
Network
Simon Tatham PuTTY PuTTYにおける複数の脆弱性 CWE-345
CWE-347
CVE-2026-4115 2026-05-7 12:27 2026-03-22 Show GitHub Exploit DB Packet Storm
3072 9.8 緊急
Network
cPanel cPanel
WP Squared
cPanel WHM
cPanelのcPanel等の複数製品における重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-41940 2026-05-7 12:27 2026-04-29 Show GitHub Exploit DB Packet Storm
3073 9.8 緊急
Network
Provectus UI for Apache Kafka ProvectusのUI for Apache Kafkaにおける複数の脆弱性 CWE-74
CWE-94
CVE-2026-5562 2026-05-7 12:27 2026-04-5 Show GitHub Exploit DB Packet Storm
3074 6.1 警告
Network
WSO2 WSO2 Identity Server WSO2のWSO2 Identity Serverにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-10503 2026-05-7 12:07 2026-04-29 Show GitHub Exploit DB Packet Storm
3075 5.3 警告
Network
MCPHub MCPHub MCPHubにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2025-13822 2026-05-7 12:07 2026-04-14 Show GitHub Exploit DB Packet Storm
3076 5.3 警告
Network
IBM IBM DB2 IBMのIBM DB2における入力で指定された数量の不適切な検証に関する脆弱性 CWE-1284
入力で指定された数量の不適切な検証
CVE-2025-14688 2026-05-7 12:07 2026-04-30 Show GitHub Exploit DB Packet Storm
3077 6.5 警告
Network
IBM IBM DB2 IBMのIBM DB2における制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2025-36122 2026-05-7 12:07 2026-04-30 Show GitHub Exploit DB Packet Storm
3078 5.3 警告
Network
HCL Technologies Limited HCL AION HCL Technologies LimitedのHCL AIONにおけるエラーメッセージによる情報漏えいに関する脆弱性 CWE-209
エラーメッセージによる情報漏えい
CVE-2025-52641 2026-05-7 12:07 2026-04-15 Show GitHub Exploit DB Packet Storm
3079 6.4 警告
Local
レッドハット Ansible Automation Platform レッドハットのAnsible Automation Platformにおける不適切なデフォルトパーミッションに関する脆弱性 CWE-276
不適切なデフォルトパーミッション
CVE-2025-57847 2026-05-7 12:07 2026-04-8 Show GitHub Exploit DB Packet Storm
3080 6.7 警告
Local
レッドハット Red Hat Advanced Cluster Management for Kubernetes レッドハットのRed Hat Advanced Cluster Management for Kubernetesにおける不適切なデフォルトパーミッションに関する脆弱性 CWE-276
不適切なデフォルトパーミッション
CVE-2025-57851 2026-05-7 12:07 2026-04-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2471 6.2 MEDIUM
Local
- - Visual Ping 0.8.0.0 contains a buffer overflow vulnerability in input field handling that allows local attackers to crash the application by supplying oversized data. Attackers can inject malicious p… CWE-120
Classic Buffer Overflow
CVE-2018-25369 2026-05-27 04:47 2026-05-26 Show GitHub Exploit DB Packet Storm
2472 5.3 MEDIUM
Network
- - Admidio 3.3.5 contains a cross-site request forgery vulnerability that allows low-privilege users to increase their permissions by exploiting improper origin checking. Attackers can craft malicious H… CWE-352
 Origin Validation Error
CVE-2018-25370 2026-05-27 04:47 2026-05-26 Show GitHub Exploit DB Packet Storm
2473 8.2 HIGH
Network
- - mooSocial Store Plugin 2.6 contains a blind SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries through the product parameter in URL rewrite functionality… CWE-89
SQL Injection
CVE-2018-25371 2026-05-27 04:47 2026-05-26 Show GitHub Exploit DB Packet Storm
2474 8.2 HIGH
Network
- - MedDream PACS Server Premium 6.7.1.1 contains an SQL injection vulnerability that allows unauthenticated attackers to execute arbitrary SQL queries by injecting malicious code through the email param… CWE-89
SQL Injection
CVE-2018-25372 2026-05-27 04:47 2026-05-26 Show GitHub Exploit DB Packet Storm
2475 8.4 HIGH
Local
- - SocuSoft DVD Photo Slideshow Professional 8.07 contains a stack-based buffer overflow vulnerability in the registration name field that allows local attackers to execute arbitrary code by exploiting … CWE-121
Stack-based Buffer Overflow
CVE-2018-25373 2026-05-27 04:47 2026-05-26 Show GitHub Exploit DB Packet Storm
2476 7.5 HIGH
Network
- - Softneta MedDream PACS Server Premium 6.7.1.1 contains a directory traversal vulnerability that allows unauthenticated attackers to read arbitrary files by manipulating the path parameter. Attackers … CWE-22
Path Traversal
CVE-2018-25374 2026-05-27 04:47 2026-05-26 Show GitHub Exploit DB Packet Storm
2477 8.4 HIGH
Local
- - SocuSoft iPod Photo Slideshow 8.05 contains a buffer overflow vulnerability in the registration dialog that allows local attackers to execute arbitrary code by overwriting the structured exception ha… CWE-121
Stack-based Buffer Overflow
CVE-2018-25375 2026-05-27 04:47 2026-05-26 Show GitHub Exploit DB Packet Storm
2478 8.4 HIGH
Local
- - Socusoft 3GP Photo Slideshow 8.05 contains a buffer overflow vulnerability in the registration dialog that allows local attackers to execute arbitrary code by exploiting structured exception handling… CWE-120
Classic Buffer Overflow
CVE-2018-25376 2026-05-27 04:47 2026-05-26 Show GitHub Exploit DB Packet Storm
2479 8.4 HIGH
Local
- - Flash Slideshow Maker Professional 5.20 contains a buffer overflow vulnerability in the registration dialog that allows local attackers to execute arbitrary code by exploiting structured exception ha… CWE-120
Classic Buffer Overflow
CVE-2018-25377 2026-05-27 04:47 2026-05-26 Show GitHub Exploit DB Packet Storm
2480 6.2 MEDIUM
Local
- - Notebook Pro 2.0 contains a denial of service vulnerability that allows local attackers to crash the application by supplying an excessively long string in the notebook name field. Attackers can crea… CWE-789
 Memory Allocation with Excessive Size Value
CVE-2018-25378 2026-05-27 04:47 2026-05-26 Show GitHub Exploit DB Packet Storm