Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3161 5.3 警告
Network
Fleet Device Management fleet Fleet Device Managementのfleetにおけるスプーフィングによる認証回避に関する脆弱性 CWE-290
スプーフィングによる認証回避
CVE-2026-24000 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
3162 7.5 重要
Network
strapi strapi strapiにおける複数の脆弱性 CWE-200
CWE-22
CWE-943
CVE-2026-27886 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
3163 6.5 警告
Network
Grafana Labs Grafana Grafana LabsのGrafanaにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-28376 2026-05-18 12:07 2026-05-13 Show GitHub Exploit DB Packet Storm
3164 2.7
Network
GitLab.org GitLab GitLab.orgのGitLabにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-2900 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
3165 4.3 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-3073 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
3166 4.3 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-3074 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
3167 5.8 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるフィルタリングの回避に関する脆弱性 CWE-441
フィルタリング回避
CVE-2026-3160 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
3168 9.1 緊急
Network
マイクロソフト Azure SDK for Java Azure SDK for Java のセキュリティ機能のバイパスの脆弱性 CWE-287
CWE-347
CVE-2026-33117 2026-05-18 12:07 2026-05-12 Show GitHub Exploit DB Packet Storm
3169 9.9 緊急
Network
マイクロソフト Microsoft Dynamics 365 Customer Insights Microsoft Dynamics 365 Customer Insights の特権昇格の脆弱性 CWE-269
不適切な権限管理
CVE-2026-33821 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
3170 6.5 警告
Adjacent
Pengutronix e.K. barebox Pengutronix e.K.のbareboxにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-34960 2026-05-18 12:06 2026-05-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345381 - mozilla firefox
mozilla
A regression error in Firefox 1.0.3 and Mozilla 1.7.7 allows remote attackers to inject arbitrary Javascript from one page into the frameset of another site, aka the frame injection spoofing vulnerab… NVD-CWE-Other
CVE-2005-1937 2017-10-11 10:30 2005-06-14 Show GitHub Exploit DB Packet Storm
345382 - yukihiro_matsumoto ruby The XMLRPC server in utils.rb for the ruby library (libruby) 1.8 sets an invalid default value that prevents "security protection" using handlers, which allows remote attackers to execute arbitrary c… NVD-CWE-Other
CVE-2005-1992 2017-10-11 10:30 2005-06-20 Show GitHub Exploit DB Packet Storm
345383 - active_web_softwares activebuyandsell Multiple SQL injection vulnerabilities in ActiveBuyAndSell 6.2 allow remote attackers to execute arbitrary SQL commands via the catid parameter to (1) default.asp or (2) buyersend.asp, (3) Administra… NVD-CWE-Other
CVE-2005-2062 2017-10-11 10:30 2005-06-29 Show GitHub Exploit DB Packet Storm
345384 - squirrelmail squirrelmail options_identities.php in SquirrelMail 1.4.4 and earlier uses the extract function to process the $_POST variable, which allows remote attackers to modify or read the preferences of other users, cond… NVD-CWE-noinfo
CVE-2005-2095 2017-10-11 10:30 2005-07-13 Show GitHub Exploit DB Packet Storm
345385 - redhat enterprise_linux
enterprise_linux_desktop
The rw_vm function in usercopy.c in the 4GB split patch for the Linux kernel in Red Hat Enterprise Linux 4 does not perform proper bounds checking, which allows local users to cause a denial of servi… NVD-CWE-Other
CVE-2005-2100 2017-10-11 10:30 2005-10-26 Show GitHub Exploit DB Packet Storm
345386 - redhat sysreport sysreport before 1.3.7 allows local users to obtain sensitive information via a symlink attack on a temporary directory. NVD-CWE-Other
CVE-2005-2104 2017-10-11 10:30 2005-10-8 Show GitHub Exploit DB Packet Storm
345387 - cisco ios Cisco IOS 12.2T through 12.4 allows remote attackers to bypass Authentication, Authorization, and Accounting (AAA) RADIUS authentication, if the fallback method is set to none, via a long username. NVD-CWE-Other
CVE-2005-2105 2017-10-11 10:30 2005-07-5 Show GitHub Exploit DB Packet Storm
345388 - mozilla camino
firefox
mozilla
Mozilla 1.7.8, Firefox 1.0.4, Camino 0.8.4, Netscape 8.0.2, and K-Meleon 0.9, and possibly other products that use the Gecko engine, allow remote attackers to cause a denial of service (application c… NVD-CWE-Other
CVE-2005-2114 2017-10-11 10:30 2005-07-5 Show GitHub Exploit DB Packet Storm
345389 - - - Multiple PHP remote file inclusion vulnerabilities in iPhotoAlbum 1.1 allow remote attackers to execute arbitrary code via the (1) doc_path parameter to getpage.php or (2) set_menu parameter to lib/s… NVD-CWE-Other
CVE-2005-2246 2017-10-11 10:30 2005-07-12 Show GitHub Exploit DB Packet Storm
345390 - secure_reality phpsecurepages PHP remote file inclusion vulnerability in secure.php in PHPSecurePages (phpSP) 0.28beta and earlier allows remote attackers to execute arbitrary code via the cfgProgDir parameter, a variant of CVE-2… NVD-CWE-Other
CVE-2005-2251 2017-10-11 10:30 2005-07-13 Show GitHub Exploit DB Packet Storm