Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3491 5.5 警告
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows GDI の情報漏えいの脆弱性 CWE-125
境界外読み取り
CVE-2026-27930 2026-04-24 11:31 2026-04-14 Show GitHub Exploit DB Packet Storm
3492 5.5 警告
Local
マイクロソフト Microsoft Windows 11 23h2
Microsoft Windows 11 26h1
Microsoft Windows 10 22h2
Microsoft Windows 10 21h2
Microsoft Windows&…
Windows GDI の情報漏えいの脆弱性 CWE-125
境界外読み取り
CVE-2026-27931 2026-04-24 11:31 2026-04-14 Show GitHub Exploit DB Packet Storm
3493 8.1 重要
Network
Mattermost, Inc. Mattermost Server Mattermost, Inc.のMattermost Serverにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-28741 2026-04-24 11:31 2026-04-15 Show GitHub Exploit DB Packet Storm
3494 8.8 重要
Network
infiniflow ragflow infiniflowのragflowにおける複数の脆弱性 CWE-1336
CWE-20
CWE-78
CWE-94
CVE-2026-28797 2026-04-24 11:31 2026-04-3 Show GitHub Exploit DB Packet Storm
3495 7.1 重要
Network
Daylight Studio FUEL CMS Daylight StudioのFUEL CMSにおけるパスワード管理機能に関する脆弱性 CWE-640
パスワードを忘れた場合の脆弱なパスワードリカバリの仕組み
CVE-2026-30459 2026-04-24 11:31 2026-04-16 Show GitHub Exploit DB Packet Storm
3496 9.8 緊急
Network
TOTOLINK a3300r ファームウェア TOTOLINKのa3300r ファームウェアにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-31170 2026-04-24 11:31 2026-04-9 Show GitHub Exploit DB Packet Storm
3497 7 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows Simple Search Discovery Protocol (SSDP) サービスの特権昇格の脆弱性 CWE-362
競合状態
CVE-2026-32068 2026-04-24 11:31 2026-04-14 Show GitHub Exploit DB Packet Storm
3498 7.8 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 11 23h2
Microsoft Windows 11 26h1
Microsoft Windows 10 1809
Microsoft Wind…
Windows Projected File System の特権の昇格の脆弱性 CWE-415
二重解放
CVE-2026-32069 2026-04-24 11:31 2026-04-14 Show GitHub Exploit DB Packet Storm
3499 7 重要
Local
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows 共通ログ ファイル システム ドライバーの特権の昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-32070 2026-04-24 11:31 2026-04-14 Show GitHub Exploit DB Packet Storm
3500 7.5 重要
Network
マイクロソフト Microsoft Windows Server 2019
Microsoft Windows 10 1607
Microsoft Windows Server 2016
Microsoft Windows 11 23h2
Microsoft …
Windows ローカル セキュリティ機関サブシステム サービス (LSASS) のサービス拒否の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-32071 2026-04-24 11:31 2026-04-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347331 - cisco pix_firewall The encryption algorithms for enable and passwd commands on Cisco PIX Firewall can be executed quickly due to a limited number of rounds, which make it easier for an attacker to decrypt the passwords… NVD-CWE-Other
CVE-2002-0954 2016-10-18 11:23 2002-10-4 Show GitHub Exploit DB Packet Storm
347332 - analogx simpleserver_www Buffer overflow in AnalogX SimpleServer:WWW 1.16 and earlier allows remote attackers to cause a denial of service (crash) and execute code via a long HTTP request method name. NVD-CWE-Other
CVE-2002-0968 2016-10-18 11:23 2002-10-4 Show GitHub Exploit DB Packet Storm
347333 - att
tightvnc
tridia
winvnc_server
tightvnc
tridiavnc
Vulnerability in VNC, TightVNC, and TridiaVNC allows local users to execute arbitrary code as LocalSystem by using the Win32 Messaging System to bypass the VNC GUI and access the "Add new clients" di… NVD-CWE-Other
CVE-2002-0971 2016-10-18 11:23 2002-09-24 Show GitHub Exploit DB Packet Storm
347334 - postgresql postgresql Buffer overflows in PostgreSQL 7.2 allow attackers to cause a denial of service and possibly execute arbitrary code via long arguments to the functions (1) lpad or (2) rpad. NVD-CWE-Other
CVE-2002-0972 2016-10-18 11:23 2002-09-24 Show GitHub Exploit DB Packet Storm
347335 - freebsd freebsd Integer signedness error in several system calls for FreeBSD 4.6.1 RELEASE-p10 and earlier may allow attackers to access sensitive kernel memory via large negative values to the (1) accept, (2) getso… NVD-CWE-Other
CVE-2002-0973 2016-10-18 11:23 2002-09-24 Show GitHub Exploit DB Packet Storm
347336 - microsoft directx_files_viewer_control Buffer overflow in Microsoft DirectX Files Viewer ActiveX control (xweb.ocx) 2.0.6.15 and earlier allows remote attackers to execute arbitrary via a long File parameter. NVD-CWE-Other
CVE-2002-0975 2016-10-18 11:23 2002-09-24 Show GitHub Exploit DB Packet Storm
347337 - microsoft virtual_machine The Java logging feature for the Java Virtual Machine in Internet Explorer writes output from functions such as System.out.println to a known pathname, which can be used to execute arbitrary code. NVD-CWE-Other
CVE-2002-0979 2016-10-18 11:23 2002-09-24 Show GitHub Exploit DB Packet Storm
347338 - microsoft sql_server Microsoft SQL Server 2000 SP2, when configured as a distributor, allows attackers to execute arbitrary code via the @scriptfile parameter to the sp_MScopyscript stored procedure. NVD-CWE-Other
CVE-2002-0982 2016-10-18 11:23 2002-09-24 Show GitHub Exploit DB Packet Storm
347339 - rob_flynn gaim The URL handler in the manual browser option for Gaim before 0.59.1 allows remote attackers to execute arbitrary script via shell metacharacters in a link. NVD-CWE-Other
CVE-2002-0989 2016-10-18 11:23 2002-09-24 Show GitHub Exploit DB Packet Storm
347340 - symantec enterprise_firewall
raptor_firewall
velociraptor
gateway_security
The web proxy component in Symantec Enterprise Firewall (SEF) 6.5.2 through 7.0, Raptor Firewall 6.5 and 6.5.3, VelociRaptor, and Symantec Gateway Security allow remote attackers to cause a denial of… NVD-CWE-Other
CVE-2002-0990 2016-10-18 11:23 2002-10-28 Show GitHub Exploit DB Packet Storm