Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3491 9.6 緊急
Network
5ire 5ire 5ireにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-22793 2026-02-2 19:34 2026-01-21 Show GitHub Exploit DB Packet Storm
3492 9.8 緊急
Network
vLLM vLLM vLLMにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-22807 2026-02-2 19:34 2026-01-21 Show GitHub Exploit DB Packet Storm
3493 4.8 警告
Network
saleor saleor saleorにおける複数の脆弱性 CWE-79
CWE-83
CVE-2026-22849 2026-02-2 19:34 2026-01-21 Show GitHub Exploit DB Packet Storm
3494 7.5 重要
Network
Ethereum Foundation Go Ethereum Ethereum FoundationのGo Ethereumにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-22862 2026-02-2 19:34 2026-01-13 Show GitHub Exploit DB Packet Storm
3495 7.5 重要
Network
Ethereum Foundation Go Ethereum Ethereum FoundationのGo Ethereumにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-22868 2026-02-2 19:33 2026-01-13 Show GitHub Exploit DB Packet Storm
3496 4.3 警告
Network
pimcore admin classic bundle pimcoreのadmin classic bundleにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-23495 2026-02-2 19:33 2026-01-15 Show GitHub Exploit DB Packet Storm
3497 5.4 警告
Network
saleor saleor saleorにおける複数の脆弱性 CWE-434
CWE-79
CVE-2026-23499 2026-02-2 19:33 2026-01-21 Show GitHub Exploit DB Packet Storm
3498 6.1 警告
Network
b3log SiYuan B3logのSiYuanにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-23645 2026-02-2 19:33 2026-01-16 Show GitHub Exploit DB Packet Storm
3499 6.1 警告
Network
WeGIA WeGIA WeGIAにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-23722 2026-02-2 19:33 2026-01-16 Show GitHub Exploit DB Packet Storm
3500 7.2 重要
Network
WeGIA WeGIA WeGIAにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-23723 2026-02-2 19:33 2026-01-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348781 - phpgroupware phpgroupware Cross-site scripting (XSS) vulnerability in phpGroupWare 0.9.16.000 allows administrators to inject arbitrary web script or HTML by modifying the main screen message. NVD-CWE-Other
CVE-2005-2761 2008-09-6 05:52 2005-09-1 Show GitHub Exploit DB Packet Storm
348782 - avaya vpnremote Avaya VPNRemote before 4.2.33 stores credentials in cleartext in process memory, which allows attackers to obtain the VPN user's credentials. NVD-CWE-Other
CVE-2005-2762 2008-09-6 05:52 2005-12-31 Show GitHub Exploit DB Packet Storm
348783 - microsoft windows_2003_server
windows_xp
The user interface in the Windows Firewall does not properly display certain malformed entries in the Windows Registry, which makes it easier for attackers with administrator privileges to hide activ… NVD-CWE-Other
CVE-2005-2765 2008-09-6 05:52 2005-09-2 Show GitHub Exploit DB Packet Storm
348784 - wrq wrq_reflection_for_secure_it_windows_server WRQ Reflection for Secure IT Windows Server 6.0 (formerly known as F-Secure SSH server) does not properly handle when the Windows Administrator or Guest accounts are renamed after SSH key authenticat… NVD-CWE-Other
CVE-2005-2770 2008-09-6 05:52 2005-09-3 Show GitHub Exploit DB Packet Storm
348785 - f-secure
wrq
f-secure_ssh_server
wrq_reflection_for_secure_it_windows_server
WRQ Reflection for Secure IT Windows Server 6.0 (formerly known as F-Secure SSH server) processes access and deny lists in a case-sensitive manner, when previous versions were case-insensitive, which… NVD-CWE-Other
CVE-2005-2771 2008-09-6 05:52 2005-09-3 Show GitHub Exploit DB Packet Storm
348786 - linksys wrt54g Buffer overflow in apply.cgi in Linksys WRT54G 3.01.03, 3.03.6, and possibly other versions before 4.20.7, allows remote attackers to execute arbitrary code via a long HTTP POST request. NVD-CWE-Other
CVE-2005-2799 2008-09-6 05:52 2005-09-16 Show GitHub Exploit DB Packet Storm
348787 - frox frox frox 0.7.18, when running setuid root, does not properly drop privileges when reading a configuration file, which allows local users to read portions of arbitrary files via the -f command line option. NVD-CWE-Other
CVE-2005-2807 2008-09-6 05:52 2005-09-8 Show GitHub Exploit DB Packet Storm
348788 - frox frox frox 0.7.16 and 0.7.17 does not properly parse certain Deny ACLs, which might allow attackers to bypass intended restrictions and access blocked hosts. NVD-CWE-Other
CVE-2005-2808 2008-09-6 05:52 2005-09-8 Show GitHub Exploit DB Packet Storm
348789 - silc secure_internet_live_conferencing silc daemon (silcd.c) in Secure Internet Live Conferencing (SILC) 1.0 and earlier allows local users to overwrite arbitrary files via a symlink attack on the silcd.[PID].stats temporary file. NVD-CWE-Other
CVE-2005-2809 2008-09-6 05:52 2005-09-8 Show GitHub Exploit DB Packet Storm
348790 - net-snmp net-snmp Untrusted search path vulnerability in Net-SNMP 5.2.1.2 and earlier, on Gentoo Linux, installs certain Perl modules with an insecure DT_RPATH, which could allow local users to gain privileges. NVD-CWE-Other
CVE-2005-2811 2008-09-6 05:52 2005-09-8 Show GitHub Exploit DB Packet Storm