Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3401 8.7 重要
Local
Linaro OP-TEE Trusted OS LinaroのOP-TEE Trusted OSにおける複数の脆弱性 CWE-125
CWE-787
CVE-2026-33317 2026-04-30 12:30 2026-04-24 Show GitHub Exploit DB Packet Storm
3402 8.8 重要
Network
Actual Budget Actual Actual BudgetのActualにおける複数の脆弱性 CWE-284
CWE-862
CVE-2026-33318 2026-04-30 12:30 2026-04-24 Show GitHub Exploit DB Packet Storm
3403 7.5 重要
Network
FirebirdSQL Firebird FirebirdSQLのFirebirdにおける複数の脆弱性 CWE-120
CWE-502
CVE-2026-33337 2026-04-30 12:30 2026-04-17 Show GitHub Exploit DB Packet Storm
3404 4.9 警告
Network
PowerDNS PowerDNS Recursor PowerDNSのPowerDNS RecursorにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-33600 2026-04-30 12:30 2026-04-22 Show GitHub Exploit DB Packet Storm
3405 4.9 警告
Network
PowerDNS PowerDNS Recursor PowerDNSのPowerDNS RecursorにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-33601 2026-04-30 12:30 2026-04-22 Show GitHub Exploit DB Packet Storm
3406 9.1 緊急
Network
EspoCRM EspoCRM EspoCRMにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-33656 2026-04-30 12:30 2026-04-22 Show GitHub Exploit DB Packet Storm
3407 7.2 重要
Network
EspoCRM EspoCRM EspoCRMにおける相対パストラバーサルの脆弱性 CWE-23
相対的パストラバーサル
CVE-2026-33733 2026-04-30 12:30 2026-04-22 Show GitHub Exploit DB Packet Storm
3408 7.5 重要
Network
FirebirdSQL Firebird FirebirdSQLのFirebirdにおける不正な構文構造の不適切な処理に関する脆弱性 CWE-228
不正な構文構造の不適切な処理
CVE-2026-34232 2026-04-30 12:30 2026-04-17 Show GitHub Exploit DB Packet Storm
3409 5.3 警告
Network
オラクル Oracle GoldenGate オラクルのOracle GoldenGateにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-34273 2026-04-30 12:30 2026-04-21 Show GitHub Exploit DB Packet Storm
3410 8.1 重要
Network
getkirby kirby getkirbyのkirbyにおけるテンプレートエンジンで使用される特殊な要素の不適切な無効化に関する脆弱性 CWE-1336
テンプレートエンジンで使用される特殊な要素の不適切な無効化
CVE-2026-34587 2026-04-30 12:30 2026-04-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 26, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346321 - yanf yanf Buffer overflow in the get function in get.c for Yanf 0.4 allows remote malicious web servers to execute arbitrary code via crafted HTTP responses. NVD-CWE-Other
CVE-2004-1303 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346322 - file
gentoo
trustix
file
linux
secure_linux
Stack-based buffer overflow in the ELF header parsing code in file before 4.12 allows attackers to execute arbitrary code via a crafted ELF file. NVD-CWE-Other
CVE-2004-1304 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346323 - mplayer unix_mplayer Heap-based buffer overflow in the demux_open_bmp function in demux_bmp.c for Unix MPlayer 1.0pre5 allows remote attackers to execute arbitrary code via a bitmap (BMP) file containing a large biClrUse… NVD-CWE-Other
CVE-2004-1309 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346324 - mplayer mplayer Stack-based buffer overflow in the asf_mmst_streaming.c functionality for MPlayer 1.0pre5 allows remote attackers to execute arbitrary code via a large MMST stream packet. NVD-CWE-Other
CVE-2004-1310 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346325 - mplayer mplayer Integer overflow in the real_setup_and_get_header function in real.c for Unix MPlayer 1.0pre5 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary c… NVD-CWE-Other
CVE-2004-1311 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346326 - webroot_software my_firewall_plus The Smc.exe process in My Firewall Plus 5.0 build 1117, and possibly other versions, does not drop privileges before invoking help, which allows local users to gain privileges. NVD-CWE-Other
CVE-2004-1313 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346327 - apple safari Safari 1.x allows remote attackers to spoof arbitrary web sites by injecting content from one window into a target window whose name is known but resides in a different domain, as demonstrated using … NVD-CWE-Other
CVE-2004-1314 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
346328 - phpbb_group phpbb viewtopic.php in phpBB 2.x before 2.0.11 improperly URL decodes the highlight parameter when extracting words and phrases to highlight, which allows remote attackers to execute arbitrary PHP code by … NVD-CWE-Other
CVE-2004-1315 2017-07-11 10:30 2004-11-12 Show GitHub Exploit DB Packet Storm
346329 - - - Stack-based buffer overflow in doexec.c in Netcat for Windows 1.1, when running with the -e option, allows remote attackers to execute arbitrary code via a long DNS command. NVD-CWE-Other
CVE-2004-1317 2017-07-11 10:30 2004-12-27 Show GitHub Exploit DB Packet Storm
346330 - namazu namazu Cross-site scripting (XSS) vulnerability in namazu.cgi for Namazu 2.0.13 and earlier allows remote attackers to inject arbitrary HTML and web script via a query that starts with a tab ("%09") charact… NVD-CWE-Other
CVE-2004-1318 2017-07-11 10:30 2005-01-6 Show GitHub Exploit DB Packet Storm