Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3581 8.1 重要
Network
Qode Interactive Lekker Qode InteractiveのWordPress用LekkerにおけるPHP リモートファイルインクルージョンの脆弱性 CWE-98
PHP リモートファイルインクルージョン
CVE-2025-69034 2026-02-2 19:30 2025-12-30 Show GitHub Exploit DB Packet Storm
3582 5.4 警告
Network
remyandrade Domain Availability Checker Using PHP and JavaScript with Source Code Remy AndradeのDomain Availability Checker Using PHP and JavaScript with Source Codeにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-70458 2026-02-2 19:30 2026-01-23 Show GitHub Exploit DB Packet Storm
3583 6.1 警告
Network
fahadmahmood External Store for Shopify fahadmahmoodのWordPress用External Store for Shopifyにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-7808 2026-02-2 19:29 2025-08-14 Show GitHub Exploit DB Packet Storm
3584 9.8 緊急
Network
Cockroach Labs cockroach-k8s-request-cert Cockroach Labsのcockroach-k8s-request-certにおける設定ファイル内の空のパスワードに関する脆弱性 CWE-258
設定ファイル内に空のパスワード
CVE-2025-9276 2026-02-2 19:29 2025-09-2 Show GitHub Exploit DB Packet Storm
3585 7.5 重要
Network
lfprojects MCP TypeScript SDK lfprojectsのMCP TypeScript SDKにおける非効率的な正規表現の複雑さに関する脆弱性 CWE-1333
非効率的な正規表現の複雑さ
CVE-2026-0621 2026-02-2 19:29 2026-01-5 Show GitHub Exploit DB Packet Storm
3586 7.5 重要
Network
TOTOLINK WA1200-PoE Firmware
WA1200-PoE
TOTOLINK等の複数ベンダの製品における複数の脆弱性 CWE-404
CWE-476
CWE-476
CVE-2026-0731 2026-02-2 19:29 2026-01-8 Show GitHub Exploit DB Packet Storm
3587 7.8 重要
Local
Google SentencePiece GoogleのSentencePieceにおけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-1260 2026-02-2 19:29 2026-01-22 Show GitHub Exploit DB Packet Storm
3588 7.2 重要
Network
D-Link Systems, Inc. DCS-700L Firmware D-Link CorporationのDCS-700L Firmwareにおける複数の脆弱性 CWE-74
CWE-77
CWE-77
CVE-2026-1419 2026-02-2 19:29 2026-01-26 Show GitHub Exploit DB Packet Storm
3589 6.5 警告
Adjacent
UI UniFi Connect EV Station Lite Firmware UIのUniFi Connect EV Station Lite Firmwareにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-21635 2026-02-2 19:29 2026-01-5 Show GitHub Exploit DB Packet Storm
3590 8.2 重要
Network
Shopify Remix
React Router
ShopifyのReact Router等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-21884 2026-02-2 19:29 2026-01-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348411 - xi_graphics accelerated-x_server Buffer overflow in Xi Graphics Accelerated-X server allows local users to gain root access via a long display or query parameter. NVD-CWE-Other
CVE-1999-0778 2008-09-9 21:35 1999-06-25 Show GitHub Exploit DB Packet Storm
348412 - hp hp-ux Denial of service in HP-UX SharedX recserv program. NVD-CWE-Other
CVE-1999-0779 2008-09-9 21:35 1998-09-3 Show GitHub Exploit DB Packet Storm
348413 - isc inn The INN inndstart program allows local users to gain root privileges via the "pathrun" parameter in the inn.conf file. NVD-CWE-Other
CVE-1999-0785 2008-09-9 21:35 1999-05-11 Show GitHub Exploit DB Packet Storm
348414 - ibm aix Buffer overflow in AIX ftpd in the libc library. NVD-CWE-Other
CVE-1999-0789 2008-09-9 21:35 1999-09-28 Show GitHub Exploit DB Packet Storm
348415 - netscape communicator A remote attacker can read information from a Netscape user's cache via JavaScript. NVD-CWE-Other
CVE-1999-0790 2008-09-9 21:35 2000-04-1 Show GitHub Exploit DB Packet Storm
348416 - hybrid_network hsmp
cable_modem
Hybrid Network cable modems do not include an authentication mechanism for administration, allowing remote attackers to compromise the system through the HSMP protocol. NVD-CWE-Other
CVE-1999-0791 2008-09-9 21:35 1999-10-6 Show GitHub Exploit DB Packet Storm
348417 - osicom routermate ROUTERmate has a default SNMP community name which allows remote attackers to modify its configuration. NVD-CWE-Other
CVE-1999-0792 2008-09-9 21:35 1998-09-1 Show GitHub Exploit DB Packet Storm
348418 - freebsd freebsd FreeBSD T/TCP Extensions for Transactions can be subjected to spoofing attacks. NVD-CWE-Other
CVE-1999-0796 2008-09-9 21:35 1998-05-1 Show GitHub Exploit DB Packet Storm
348419 - sun sunos NIS finger allows an attacker to conduct a denial of service via a large number of finger requests, resulting in a large number of NIS queries. NVD-CWE-Other
CVE-1999-0797 2008-09-9 21:35 1998-06-29 Show GitHub Exploit DB Packet Storm
348420 - bmc patrol_agent BMC Patrol allows remote attackers to gain access to an agent by spoofing frames. NVD-CWE-Other
CVE-1999-0801 2008-09-9 21:35 1999-04-9 Show GitHub Exploit DB Packet Storm