Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3731 9.1 緊急
Network
citeum opencti citeumのopenctiにおける複数の脆弱性 CWE-285
CWE-566
CWE-863
CWE-915
CVE-2025-61781 2026-02-2 19:23 2026-01-5 Show GitHub Exploit DB Packet Storm
3732 6.5 警告
Network
averta master slider pro AvertaのWordPress用Master Slider Proにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-63045 2026-02-2 19:23 2025-12-9 Show GitHub Exploit DB Packet Storm
3733 7.5 重要
Network
OwnTone project OwnTone OwnTone projectのOwnToneにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2025-63647 2026-02-2 19:23 2026-01-20 Show GitHub Exploit DB Packet Storm
3734 7.5 重要
Network
OwnTone project OwnTone OwnTone projectのOwnToneにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2025-63648 2026-02-2 19:23 2026-01-20 Show GitHub Exploit DB Packet Storm
3735 7.1 重要
Network
ThemeGoods Grand Conference ThemeGoodsのWordPress用Grand Conferenceにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-64224 2026-02-2 19:23 2025-11-6 Show GitHub Exploit DB Packet Storm
3736 2.7
Network
WPDeveloper Essential Addons for Elementor WPDeveloperのWordPress用Essential Addons for Elementorにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2025-64352 2026-02-2 19:23 2025-10-31 Show GitHub Exploit DB Packet Storm
3737 7.5 重要
Network
Typebot Typebot Typebotにおける複数の脆弱性 CWE-284
CWE-639
CWE-639
CVE-2025-64706 2026-02-2 19:23 2025-11-13 Show GitHub Exploit DB Packet Storm
3738 9.9 緊急
Network
Typebot Typebot Typebotにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2025-64709 2026-02-2 19:23 2025-11-13 Show GitHub Exploit DB Packet Storm
3739 7.4 重要
Network
Typebot Typebot Typebotにおける複数の脆弱性 CWE-200
CWE-284
CWE-311
CWE-522
CWE-522
CWE-639
CWE-79
CWE-79
CWE-862
CVE-2025-65098 2026-02-2 19:23 2026-01-22 Show GitHub Exploit DB Packet Storm
3740 9.3 緊急
Network
Vega project Vega Vega projectのVegaにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-65110 2026-02-2 19:23 2026-01-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
349861 - epic epic4 EPIC IRC Client (EPIC4) pre2.002, pre2.003, and possibly later versions, allows remote malicious IRC servers to cause a denial of service (crash) and possibly execute arbitrary code via a CTCP reques… NVD-CWE-Other
CVE-2003-0328 2008-09-6 05:34 2003-06-9 Show GitHub Exploit DB Packet Storm
349862 - demarc_security puresecure Demarc Puresecure 1.6 stores authentication information for the logging server in plaintext, which allows attackers to steal login names and passwords to gain privileges. NVD-CWE-Other
CVE-2003-0340 2008-09-6 05:34 2003-05-21 Show GitHub Exploit DB Packet Storm
349863 - apple
kde
safari
konqueror_embedded
Safari 1.0 Beta 2 (v73) and earlier does not validate the Common Name (CN) field for X.509 Certificates, which could allow remote attackers to spoof certificates. NVD-CWE-Other
CVE-2003-0355 2008-09-6 05:34 2003-06-9 Show GitHub Exploit DB Packet Storm
349864 - stichting_mathematisch_centrum nethack nethack 3.4.0 and earlier installs certain setgid binaries with insecure permissions, which allows local users to gain privileges by replacing the original binaries with malicious code. NVD-CWE-Other
CVE-2003-0359 2008-09-6 05:34 2003-07-24 Show GitHub Exploit DB Packet Storm
349865 - debian debian_linux Multiple buffer overflows in gPS before 1.0.0 allow attackers to cause a denial of service and possibly execute arbitrary code. NVD-CWE-Other
CVE-2003-0360 2008-09-6 05:34 2003-06-9 Show GitHub Exploit DB Packet Storm
349866 - debian debian_linux gPS before 1.1.0 does not properly follow the rgpsp connection source acceptation policy as specified in the rgpsp.conf file, which could allow unauthorized remote attackers to connect to rgpsp. NVD-CWE-Other
CVE-2003-0361 2008-09-6 05:34 2003-06-9 Show GitHub Exploit DB Packet Storm
349867 - debian debian_linux Buffer overflow in gPS before 0.10.2 may allow local users to cause a denial of service (SIGSEGV) in rgpsp via long command lines. NVD-CWE-Other
CVE-2003-0362 2008-09-6 05:34 2003-06-9 Show GitHub Exploit DB Packet Storm
349868 - licq licq Format string vulnerability in LICQ 1.2.6, 1.0.3 and possibly other versions allows remote attackers to perform unknown actions via format string specifiers. NVD-CWE-Other
CVE-2003-0363 2008-09-6 05:34 2003-12-31 Show GitHub Exploit DB Packet Storm
349869 - lysator lyskom-server lyskom-server 2.0.7 and earlier allows unauthenticated users to cause a denial of service (CPU consumption) via a large query. NVD-CWE-Other
CVE-2003-0366 2008-09-6 05:34 2003-07-24 Show GitHub Exploit DB Packet Storm
349870 - apple mac_os_x The Kerberos login authentication feature in Mac OS X, when used with an LDAPv3 server and LDAP bind authentication, may send cleartext passwords to the LDAP server when the AuthenticationAuthority a… NVD-CWE-Other
CVE-2003-0378 2008-09-6 05:34 2003-06-16 Show GitHub Exploit DB Packet Storm