Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3551 6.1 警告
Local
openCryptoki Project openCryptoki openCryptoki ProjectのopenCryptokiにおけるバッファサイズの計算の誤りに関する脆弱性 CWE-131
正しくないバッファサイズ計算
CVE-2026-22791 2026-02-5 15:44 2026-01-13 Show GitHub Exploit DB Packet Storm
3552 9.8 緊急
Network
cal cal.com calのcal.comにおける複数の脆弱性 CWE-602
CWE-639
CVE-2026-23478 2026-02-5 15:44 2026-01-13 Show GitHub Exploit DB Packet Storm
3553 7.8 重要
Local
- sumatrapdfreaderのSumatra PDFにおける信頼できない検索パスに関する脆弱性 Fix CWE-426 Untrusted Search Path for notepad.exe  sumatrapdfreader/sumatrapdf@2762e02  GitHub
CWE-426
CVE-2026-23512 2026-02-5 15:44 2026-01-14 Show GitHub Exploit DB Packet Storm
3554 6.1 警告
Network
Lee Peuker Movary Lee PeukerのMovaryにおける複数の脆弱性 CWE-20
CWE-79
CVE-2026-23839 2026-02-5 15:44 2026-01-19 Show GitHub Exploit DB Packet Storm
3555 6.1 警告
Network
Lee Peuker Movary Lee PeukerのMovaryにおける複数の脆弱性 CWE-20
CWE-79
CVE-2026-23840 2026-02-5 15:44 2026-01-19 Show GitHub Exploit DB Packet Storm
3556 6.5 警告
Network
BentoML BentoML BentoMLにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-24123 2026-02-5 15:44 2026-01-26 Show GitHub Exploit DB Packet Storm
3557 9.8 緊急
Network
マイクロソフト Microsoft Entra ID Azure Entra ID に存在する特権昇格の脆弱性 CWE-285
不適切な認可
CVE-2026-24305 2026-02-5 15:44 2026-01-22 Show GitHub Exploit DB Packet Storm
3558 8.1 重要
Network
International Color Consortium (ICC) iccDEV International Color Consortium (ICC)のiccDEVにおける複数の脆弱性 CWE-122
CWE-125
CWE-170
CVE-2026-24852 2026-02-5 15:44 2026-01-28 Show GitHub Exploit DB Packet Storm
3559 7.8 重要
Local
International Color Consortium (ICC) iccDEV International Color Consortium (ICC)のiccDEVにおける複数の脆弱性 CWE-20
CWE-681
CWE-704
CVE-2026-24856 2026-02-5 15:43 2026-01-28 Show GitHub Exploit DB Packet Storm
3560 - - Ubia Ubox Ubia 製 Ubox における認証情報の不十分な保護の脆弱性 CWE-522
認証情報の不十分な保護
CVE-2025-12636 2026-02-5 14:33 2025-11-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348231 - talentsoft web\+ TalentSoft webpsvr daemon in the Web+ shopping cart application allows remote attackers to read arbitrary files via a .. (dot dot) attack on the webplus CGI program. NVD-CWE-Other
CVE-2000-0282 2008-09-11 04:03 2000-04-12 Show GitHub Exploit DB Packet Storm
348232 - ibm aix dpsexec (DPS Server) when running under XDM in IBM AIX 3.2.5 and earlier does not properly check privileges, which allows local users to overwrite arbitrary files and gain privileges. NVD-CWE-Other
CVE-1999-1552 2008-09-11 04:02 1994-07-20 Show GitHub Exploit DB Packet Storm
348233 - nortel optivity_net_architect The bna_pass program in Optivity NETarchitect uses the PATH environmental variable for finding the "rm" program, which allows local users to execute arbitrary commands. NVD-CWE-Other
CVE-2000-0009 2008-09-11 04:02 1999-12-29 Show GitHub Exploit DB Packet Storm
348234 - analogx simpleserver_www Buffer overflow in AnalogX SimpleServer:WWW HTTP server allows remote attackers to execute commands via a long GET request. NVD-CWE-Other
CVE-2000-0011 2008-09-11 04:02 1999-12-31 Show GitHub Exploit DB Packet Storm
348235 - hughes msql Buffer overflow in w3-msql CGI program in miniSQL package allows remote attackers to execute commands. NVD-CWE-Other
CVE-2000-0012 2008-09-11 04:02 1999-12-27 Show GitHub Exploit DB Packet Storm
348236 - sgi irix IRIX soundplayer program allows local users to gain privileges by including shell metacharacters in a .wav file, which is executed via the midikeys program. NVD-CWE-Other
CVE-2000-0013 2008-09-11 04:02 1999-12-31 Show GitHub Exploit DB Packet Storm
348237 - michael_lamont savant_webserver Denial of service in Savant web server via a null character in the requested URL. NVD-CWE-Other
CVE-2000-0014 2008-09-11 04:02 1999-12-28 Show GitHub Exploit DB Packet Storm
348238 - ascend cascadeview_ux CascadeView TFTP server allows local users to gain privileges via a symlink attack. NVD-CWE-Other
CVE-2000-0015 2008-09-11 04:02 1999-12-31 Show GitHub Exploit DB Packet Storm
348239 - true_north internet_anywhere_mail_server Buffer overflow in Internet Anywhere POP3 Mail Server allows remote attackers to cause a denial of service or execute commands via a long username. NVD-CWE-Other
CVE-2000-0016 2008-09-11 04:02 1999-10-1 Show GitHub Exploit DB Packet Storm
348240 - windowmaker wmmon wmmon in FreeBSD allows local users to gain privileges via the .wmmonrc configuration file. NVD-CWE-Other
CVE-2000-0018 2008-09-11 04:02 1999-12-22 Show GitHub Exploit DB Packet Storm