Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3261 9.8 緊急
Network
マイクロソフト Azure HorizonDB Azure HorizonDB Elevation of Privilege Vulnerability CWE-290
スプーフィングによる認証回避
CVE-2026-48567 2026-06-8 12:28 2026-06-4 Show GitHub Exploit DB Packet Storm
3262 7.5 重要
Network
マイクロソフト Microsoft Exchange Online Microsoft Exchange Online Information Disclosure Vulnerability CWE-285
不適切な認可
CVE-2026-48579 2026-06-8 12:27 2026-06-4 Show GitHub Exploit DB Packet Storm
3263 9.1 緊急
Network
CHORNY Apache::Session::Generate::ModUniqueId CHORNYのApache::Session::Generate::ModUniqueIdにおける予測可能な数字や識別子の生成に関する脆弱性 CWE-340
予測可能な数字や識別子の生成
CVE-2026-5081 2026-06-8 12:27 2026-05-6 Show GitHub Exploit DB Packet Storm
3264 7.1 重要
Adjacent
Securly, Inc. Securly Securly, Inc.のSecurlyにおける重要な情報の平文での送信に関する脆弱性 CWE-319
重要な情報の平文での送信
CVE-2026-8874 2026-06-8 12:27 2026-06-3 Show GitHub Exploit DB Packet Storm
3265 7.5 重要
Network
Securly, Inc. Securly Securly, Inc.のSecurlyにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-8881 2026-06-8 12:27 2026-06-3 Show GitHub Exploit DB Packet Storm
3266 7.5 重要
Network
Securly, Inc. Securly Securly, Inc.のSecurlyにおける複数の脆弱性 CWE-1333
CWE-917
CVE-2026-8888 2026-06-8 12:27 2026-06-3 Show GitHub Exploit DB Packet Storm
3267 7.5 重要
Network
Securly, Inc. Securly Securly, Inc.のSecurlyにおけるアルゴリズムの複雑さに関する脆弱性 CWE-407
アルゴリズムの複雑性
CVE-2026-8889 2026-06-8 12:27 2026-06-3 Show GitHub Exploit DB Packet Storm
3268 9.8 緊急
Network
IBM IBM Operations Analytics Log Analysis IBMのIBM Operations Analytics Log Analysisにおける脆弱なパスワードの要求に関する脆弱性 CWE-521
CWE-521
CVE-2024-40684 2026-06-8 12:27 2026-05-27 Show GitHub Exploit DB Packet Storm
3269 8.8 重要
Network
IBM IBM Security QRadar SIEM IBMのIBM Security QRadar SIEMにおける複数の脆弱性 CWE-530
CWE-552
CVE-2024-56462 2026-06-8 12:27 2026-05-27 Show GitHub Exploit DB Packet Storm
3270 9.8 緊急
Network
Python Software Foundation Python Python Software FoundationのPythonにおける複数の脆弱性 CWE-20
CWE-434
CWE-74
CVE-2025-13462 2026-06-8 12:27 2026-03-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
344101 - xpdf xpdf Stream.cc in Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to modify memory and possibly execute arbitrary code via a DCTDe… NVD-CWE-noinfo
CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2005-3627 2018-10-20 00:37 2005-12-31 Show GitHub Exploit DB Packet Storm
344102 - easy_software_products
kde
libextractor
poppler
sgi
tetex
xpdf
conectiva
debian
gentoo
mandrakesoft
redhat
sco
slackware
suse
trustix
turbolinux
ubuntu
cups
kdegraphics
koffice
kpdf
kword
libextractor
poppler
propack
tetex
xpdf
linux
debian_linux
mandrake_linux
mandrake_linux_corporate_server
enterprise_linu…
The CCITTFaxStream::CCITTFaxStream function in Stream.cc for xpdf, gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others allows attackers to corrupt the heap via negative or large int… CWE-189
Numeric Errors
CVE-2005-3624 2018-10-20 00:37 2005-12-31 Show GitHub Exploit DB Packet Storm
344103 - easy_software_products
kde
libextractor
poppler
sgi
tetex
xpdf
conectiva
debian
gentoo
mandrakesoft
redhat
sco
slackware
suse
trustix
turbolinux
ubuntu
cups
kdegraphics
koffice
kpdf
kword
libextractor
poppler
propack
tetex
xpdf
linux
debian_linux
mandrake_linux
mandrake_linux_corporate_server
enterprise_linu…
Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (infinite loop) via streams that end prematurely… CWE-399
 Resource Management Errors
CVE-2005-3625 2018-10-20 00:37 2005-12-31 Show GitHub Exploit DB Packet Storm
344104 - easy_software_products
kde
libextractor
poppler
sgi
tetex
xpdf
conectiva
debian
gentoo
mandrakesoft
redhat
sco
slackware
suse
trustix
turbolinux
ubuntu
cups
kdegraphics
koffice
kpdf
kword
libextractor
poppler
propack
tetex
xpdf
linux
debian_linux
mandrake_linux
mandrake_linux_corporate_server
enterprise_linu…
Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers to cause a denial of service (crash) via a crafted FlateDecode stream that tr… CWE-399
 Resource Management Errors
CVE-2005-3626 2018-10-20 00:37 2005-12-31 Show GitHub Exploit DB Packet Storm
344105 - saphp saphplesson SQL injection vulnerability in Saphp Lesson, possibly saphp Lesson1.1 and saphpLesson2.0, allows remote attackers to execute arbitrary SQL commands via the forumid parameter in (1) showcat.php and (2… NVD-CWE-Other
CVE-2005-3363 2018-10-20 00:36 2005-10-30 Show GitHub Exploit DB Packet Storm
344106 - codeworx_technologies dcp-portal Multiple SQL injection vulnerabilities in DCP-Portal 6 and earlier allow remote attackers to execute arbitrary SQL commands, possibly requiring encoded characters, via (1) the name parameter in regis… CWE-89
SQL Injection
CVE-2005-3365 2018-10-20 00:36 2005-10-30 Show GitHub Exploit DB Packet Storm
344107 - trend_micro officescan
pc-cillin_2005
Multiple interpretation error in Trend Micro (1) PC-Cillin 2005 12.0.1244 with the 7.510.1002 engine and (2) OfficeScan 7.0 with the 7.510.1002 engine allows remote attackers to bypass virus scanning… NVD-CWE-Other
CVE-2005-3379 2018-10-20 00:36 2005-10-30 Show GitHub Exploit DB Packet Storm
344108 - oaboard oaboard Multiple SQL injection vulnerabilities in forum.php in oaboard forum 1.0 allow remote attackers to execute arbitrary SQL commands via the (1) channel parameter in the topics module and (2) topic para… NVD-CWE-Other
CVE-2005-3394 2018-10-20 00:36 2005-11-1 Show GitHub Exploit DB Packet Storm
344109 - invision_power_services invision_gallery SQL injection vulnerability in Invision Gallery 2.0.3 allows remote attackers to execute arbitrary SQL commands via the st parameter. NVD-CWE-Other
CVE-2005-3395 2018-10-20 00:36 2005-11-1 Show GitHub Exploit DB Packet Storm
344110 - elite_forum elite_forum Cross-site scripting (XSS) vulnerability in Elite Forum 1.0.0.0 allows remote attackers to inject arbitrary web script or HTML via a Post Reply to a topic, in which the reply contains a javascript: U… NVD-CWE-Other
CVE-2005-3412 2018-10-20 00:36 2005-11-2 Show GitHub Exploit DB Packet Storm