Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3461 4.9 警告
Network
オラクル Oracle Workflow オラクルのOracle Workflowにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-21959 2026-02-2 19:35 2026-01-20 Show GitHub Exploit DB Packet Storm
3462 6.5 警告
Network
オラクル Oracle Applications DBA オラクルのOracle Applications DBAにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-21960 2026-02-2 19:35 2026-01-20 Show GitHub Exploit DB Packet Storm
3463 10 緊急
Network
オラクル Oracle Weblogic Server Proxy Plug-in
Oracle HTTP Server
オラクルのOracle HTTP Server等の複数製品におけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-21962 2026-02-2 19:35 2026-01-20 Show GitHub Exploit DB Packet Storm
3464 6 警告
Local
オラクル Oracle VM VirtualBox オラクルのOracle VM VirtualBoxにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-21963 2026-02-2 19:35 2026-01-20 Show GitHub Exploit DB Packet Storm
3465 4.9 警告
Network
オラクル MySQL オラクルのMySQLにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-21964 2026-02-2 19:35 2026-01-20 Show GitHub Exploit DB Packet Storm
3466 6.1 警告
Network
オラクル Oracle Hospitality OPERA 5 オラクルのOracle Hospitality OPERA 5における不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-21966 2026-02-2 19:35 2026-01-20 Show GitHub Exploit DB Packet Storm
3467 8.6 重要
Network
オラクル Oracle Hospitality OPERA 5 オラクルのOracle Hospitality OPERA 5における不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-21967 2026-02-2 19:35 2026-01-20 Show GitHub Exploit DB Packet Storm
3468 9.8 緊急
Network
オラクル Oracle Agile Product Lifecycle Management for Process オラクルのOracle Agile Product Lifecycle Management for Processにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-21969 2026-02-2 19:35 2026-01-20 Show GitHub Exploit DB Packet Storm
3469 5.3 警告
Network
オラクル Oracle Configurator オラクルのOracle Configuratorにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-21972 2026-02-2 19:35 2026-01-20 Show GitHub Exploit DB Packet Storm
3470 4.5 警告
Network
オラクル Java VM オラクルのJava VMにおけるリソースの不適切なシャットダウンおよびリリースに関する脆弱性 CWE-404
リソースの不適切なシャットダウンおよびリリース
CVE-2026-21975 2026-02-2 19:35 2026-01-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348671 - punbb punbb PunBB before 1.2.8 allows remote attackers to perform "code inclusion" via the user language selection. NVD-CWE-Other
CVE-2005-3079 2008-09-6 05:53 2005-09-28 Show GitHub Exploit DB Packet Storm
348672 - geshi geshi contrib/example.php in GeSHi before 1.0.7.3 allows remote attackers to read arbitrary files via the language field without a source field set. NVD-CWE-Other
CVE-2005-3080 2008-09-6 05:53 2005-09-28 Show GitHub Exploit DB Packet Storm
348673 - wzdftpd wzdftpd wzdftpd 0.5.4 allows remote authenticated users to execute arbitrary commands via shell metacharacters in the SITE command. NVD-CWE-Other
CVE-2005-3081 2008-09-6 05:53 2005-09-28 Show GitHub Exploit DB Packet Storm
348674 - sony playstation_portable Buffer overflow in the TIFF library in the Photo Viewer for Sony PSP 2.0 firmware allows remote attackers to cause a denial of service via a crafted TIFF image. NVD-CWE-Other
CVE-2005-3084 2008-09-6 05:53 2005-09-28 Show GitHub Exploit DB Packet Storm
348675 - riverdark_studios rss_syndicator_module Multiple cross-site scripting (XSS) vulnerabilities in rss.php in Riverdark Studios RSS Syndicator module 2.1.7 allow remote attackers to inject arbitrary web script or HTML via the (1) forum or (2) … NVD-CWE-Other
CVE-2005-3085 2008-09-6 05:53 2005-09-28 Show GitHub Exploit DB Packet Storm
348676 - contentserv contentserv Directory traversal vulnerability in admin/about.php in contentServ 3.1 allows remote attackers to read or include arbitrary files via ".." sequences in the ctsWebsite parameter. NVD-CWE-Other
CVE-2005-3086 2008-09-6 05:53 2005-09-28 Show GitHub Exploit DB Packet Storm
348677 - securew2 securew2 The SecureW2 3.0 TLS implementation uses weak random number generators (rand and srand from system time) during generation of the pre-master secret (PMS), which makes it easier for attackers to guess… NVD-CWE-Other
CVE-2005-3087 2008-09-6 05:53 2005-09-28 Show GitHub Exploit DB Packet Storm
348678 - mantis mantis Cross-site scripting (XSS) vulnerability in Mantis before 1.0.0rc1 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors, as identified by bug#0005751 "thraxisp". NVD-CWE-Other
CVE-2005-3091 2008-09-6 05:53 2005-09-29 Show GitHub Exploit DB Packet Storm
348679 - nokia 3210
7610
Nokia 7610 and 3210 phones allows attackers to cause a denial of service via certain characters in the filename of a Bluetooth OBEX transfer. NVD-CWE-Other
CVE-2005-3093 2008-09-6 05:53 2005-09-29 Show GitHub Exploit DB Packet Storm
348680 - avi_alkalay contribute.cgi Directory traversal vulnerability in Avi Alkalay contribute.cgi (aka contribute.pl), dated 16 Jun 2002, allows remote attackers to overwrite arbitrary files via ".." sequences in the contribdir varia… NVD-CWE-Other
CVE-2005-3097 2008-09-6 05:53 2005-09-29 Show GitHub Exploit DB Packet Storm