Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3621 5.4 警告
Network
lfprojects mlflow lfprojectsのmlflowにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-33865 2026-04-21 10:43 2026-04-7 Show GitHub Exploit DB Packet Storm
3622 4.3 警告
Network
lfprojects mlflow lfprojectsのmlflowにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-33866 2026-04-21 10:43 2026-04-7 Show GitHub Exploit DB Packet Storm
3623 9.1 緊急
Network
Mervin Praison (MervinPraison) PraisonAI Mervin Praison (MervinPraison)のPraisonAIにおける信頼できない制御領域からの機能の組み込みに関する脆弱性 CWE-829
信頼性のない制御領域からの機能の組み込み
CVE-2026-40313 2026-04-21 10:43 2026-04-14 Show GitHub Exploit DB Packet Storm
3624 6.5 警告
Network
PAC4J pac4j PAC4Jのpac4jにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-40458 2026-04-21 10:43 2026-04-17 Show GitHub Exploit DB Packet Storm
3625 8.8 重要
Network
PAC4J pac4j PAC4Jのpac4jにおけるLDAP インジェクションの脆弱性 CWE-90
LDAP インジェクション
CVE-2026-40459 2026-04-21 10:43 2026-04-17 Show GitHub Exploit DB Packet Storm
3626 7.8 重要
Local
Rubicon Communications, LLC (Netgate). NETGATE Registry Cleaner Rubicon Communications, LLC (Netgate).のNETGATE Registry Cleanerにおける引用されない検索パスまたは要素に関する脆弱性 CWE-428
引用されない検索パスまたは要素
CVE-2016-20057 2026-04-21 10:43 2026-04-4 Show GitHub Exploit DB Packet Storm
3627 6.1 警告
Network
Thank You/Like System project Thank You/Like System MyBB GroupのThank You/Like Systemにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2018-25247 2026-04-21 10:43 2026-04-4 Show GitHub Exploit DB Packet Storm
3628 6.1 警告
Network
MyBB Group MyBB Last User's Threads MyBB GroupのMyBB Last User's Threadsにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2018-25250 2026-04-21 10:43 2026-04-4 Show GitHub Exploit DB Packet Storm
3629 5.5 警告
Local
AnyBurn AnyBurn AnyBurnにおける再利用前に削除されていないリソース内重要情報に関する脆弱性 CWE-226
再利用前に削除されていないリソース内重要情報
CVE-2019-25657 2026-04-21 10:43 2026-04-5 Show GitHub Exploit DB Packet Storm
3630 5.5 警告
Local
Hainsoft.com LanHelper Hainsoft.comのLanHelperにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2019-25660 2026-04-21 10:43 2026-04-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347811 - hyper_estraier hyper_estraier Cross-site request forgery (CSRF) vulnerability in the communicate function in estmaster.c for Hyper Estraier before 1.3.3 allows remote attackers to perform unauthorized actions as other users via u… NVD-CWE-Other
CVE-2006-3671 2011-03-8 11:39 2006-07-19 Show GitHub Exploit DB Packet Storm
347812 - hyper_estraier hyper_estraier This vulnerability is addressed in the following product release: Hyper Estraier, Hyper Estraier, 1.3.3 NVD-CWE-Other
CVE-2006-3671 2011-03-8 11:39 2006-07-19 Show GitHub Exploit DB Packet Storm
347813 - hp openvms Unspecified vulnerability in [SYSEXE]SMPUTIL.EXE in HP OpenVMS 7.3-2 allows local users and "remote users" to cause a denial of service (crash). NVD-CWE-Other
CVE-2006-3686 2011-03-8 11:39 2006-07-21 Show GitHub Exploit DB Packet Storm
347814 - citrix metaframe
metaframe_presentation_server
presentation_server
Citrix MetaFrame up to XP 1.0 Feature 1, except when running on Windows Server 2003, installs a registry key with an insecure ACL, which allows remote authenticated users to gain privileges. NVD-CWE-Other
CVE-2006-3779 2011-03-8 11:39 2006-07-24 Show GitHub Exploit DB Packet Storm
347815 - krusader krusader Krusader 1.50-beta1 up to 1.70.0 stores passwords for remote connections in cleartext in the bookmark file (krbookmarks.xml), which allows attackers to steal passwords by obtaining the file. NVD-CWE-Other
CVE-2006-3816 2011-03-8 11:39 2006-07-25 Show GitHub Exploit DB Packet Storm
347816 - geodesicsolutions geoauctions_enterprise SQL injection vulnerability in index.php in GeodesicSolutions GeoAuctions Enterprise 1.0.6 allows remote attackers to execute arbitrary SQL commands via the d parameter. NVD-CWE-Other
CVE-2006-3822 2011-03-8 11:39 2006-07-25 Show GitHub Exploit DB Packet Storm
347817 - geodesicsolutions geoauctions_enterprise Successful exploitation requires that the 'accumulative feedback' feature is turned on. NVD-CWE-Other
CVE-2006-3822 2011-03-8 11:39 2006-07-25 Show GitHub Exploit DB Packet Storm
347818 - phpfaber topsites Cross-site scripting (XSS) vulnerability in index.php in phpFaber TopSites 2.0.9 allows remote attackers to inject arbitrary web script or HTML via the i_cat parameter. NOTE: the provenance of this … NVD-CWE-Other
CVE-2006-3902 2011-03-8 11:39 2006-07-28 Show GitHub Exploit DB Packet Storm
347819 - intel 2200bg_proset_wireless
2915abg_proset_wireless
Unspecified vulnerability in the Centrino (1) w22n50.sys, (2) w22n51.sys, (3) w29n50.sys, and (4) w29n51.sys Microsoft Windows drivers for Intel 2200BG and 2915ABG PRO/Wireless Network Connection bef… NVD-CWE-Other
CVE-2006-3992 2011-03-8 11:39 2006-08-5 Show GitHub Exploit DB Packet Storm
347820 - intel 2200bg_proset_wireless
2915abg_proset_wireless
Affected versions are only vulnerable with driver version 9.0.4.16 This vulnerability is addressed in the following product releases: Intel, 2200BG PROSet/Wireless, 10.5 Intel, 2915ABG PROSet/Wire… NVD-CWE-Other
CVE-2006-3992 2011-03-8 11:39 2006-08-5 Show GitHub Exploit DB Packet Storm