Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3901 9.8 緊急
Network
Tomas Varaneckas JAD Java Decompiler Tomas VaraneckasのJAD Java Decompilerにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2016-20049 2026-04-24 11:35 2026-03-28 Show GitHub Exploit DB Packet Storm
3902 6.1 警告
Network
WSO2 WSO2 API Manager WSO2のWSO2 API Managerにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-10242 2026-04-24 11:35 2026-04-16 Show GitHub Exploit DB Packet Storm
3903 9.1 緊急
Network
WSO2 Identity Server as Key Manager
WSO2 API Manager
WSO2 Identity Server
WSO2 Open Banking AM
WSO2 Open Banking IAM
WSO2のWSO2 API Manager等の複数製品におけるXML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2024-2374 2026-04-24 11:35 2026-04-16 Show GitHub Exploit DB Packet Storm
3904 5.4 警告
Network
WSO2 WSO2 API Manager WSO2のWSO2 API Managerにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-4867 2026-04-24 11:34 2026-04-16 Show GitHub Exploit DB Packet Storm
3905 7.5 重要
Network
WSO2 WSO2 API Manager WSO2のWSO2 API ManagerにおけるXML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2024-8010 2026-04-24 11:34 2026-04-16 Show GitHub Exploit DB Packet Storm
3906 5.4 警告
Network
WSO2 WSO2 Identity Server WSO2のWSO2 Identity Serverにおけるセッション期限に関する脆弱性 CWE-613
不適切なセッション期限
CVE-2025-12624 2026-04-24 11:34 2026-04-16 Show GitHub Exploit DB Packet Storm
3907 8.2 重要
Network
HCL Technologies Limited HCL BigFix Service Management (SM) HCL Technologies LimitedのHCL BigFix Service Management (SM)におけるHTTP リクエストスマグリングに関する脆弱性 CWE-444
HTTP リクエストスマグリング
CVE-2025-31958 2026-04-24 11:34 2026-04-21 Show GitHub Exploit DB Packet Storm
3908 5.3 警告
Network
HCL Technologies Limited HCL BigFix Service Management (SM) HCL Technologies LimitedのHCL BigFix Service Management (SM)における重要な情報の平文での送信に関する脆弱性 CWE-319
重要な情報の平文での送信
CVE-2025-31981 2026-04-24 11:34 2026-04-21 Show GitHub Exploit DB Packet Storm
3909 6.1 警告
Network
WSO2 WSO2 API Manager
WSO2 Identity Server
WSO2のWSO2 API Manager等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-6024 2026-04-24 11:34 2026-04-16 Show GitHub Exploit DB Packet Storm
3910 6.5 警告
Network
フォーティネット FortiOS
FortiPAM
FortiProxy
FortiSwitch Manager
フォーティネットのFortiOS等の複数製品におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2025-61624 2026-04-24 11:34 2026-04-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347671 - juniper netscreen_screenos NetScreen ScreenOS before 2.6.1 does not support a maximum number of concurrent sessions for a system, which allows an attacker on the trusted network to cause a denial of service (resource exhaustio… NVD-CWE-Other
CVE-2002-0234 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm
347672 - lucent vitalanalysis
vitalevent
vitalhelp
vitalnet
vitalsuite
Lucent VitalSuite 8.0 through 8.2, including VitalNet, VitalEvent, and VitalHelp/VitalAnalysis, allows remote attackers to bypass authentication via a direct HTTP request to the VsSetCookie.exe progr… NVD-CWE-Other
CVE-2002-0236 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm
347673 - iss blackice_agent
blackice_defender
realsecure_server_sensor
Buffer overflow in ISS BlackICE Defender 2.9 and earlier, BlackICE Agent 3.0 and 3.1, and RealSecure Server Sensor 6.0.1 and 6.5 allow remote attackers to cause a denial of service (crash) and possib… NVD-CWE-Other
CVE-2002-0237 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm
347674 - netgear rt314 Cross-site scripting vulnerability in web administration interface for NetGear RT314 and RT311 Gateway Routers allows remote attackers to execute arbitrary script on another client via a URL that con… NVD-CWE-Other
CVE-2002-0238 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm
347675 - hanterm hanterm Buffer overflow in hanterm 3.3.1 and earlier allows local users to execute arbitrary code via a long string in the (1) -fn, (2) -hfb, or (3) -hfn argument. NVD-CWE-Other
CVE-2002-0239 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm
347676 - apache http_server PHP, when installed with Apache and configured to search for index.php as a default web page, allows remote attackers to obtain the full pathname of the server via the HTTP OPTIONS method, which reve… NVD-CWE-Other
CVE-2002-0240 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm
347677 - opera_software opera_web_browser Cross-site scripting vulnerability in Opera 6.0 and earlier allows remote attackers to execute arbitrary script via an Extended HTML Form, whose output from the remote server is not properly cleansed. NVD-CWE-Other
CVE-2002-0243 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm
347678 - lotus domino Lotus Domino server 5.0.8 with NoBanner enabled allows remote attackers to (1) determine the physical path of the server via a request for a nonexistent file with a .pl (Perl) extension, which leaks … NVD-CWE-Other
CVE-2002-0245 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm
347679 - apache http_server PHP for Windows, when installed on Apache 2.0.28 beta as a standalone CGI module, allows remote attackers to obtain the physical path of the php.exe via a request with malformed arguments such as /12… NVD-CWE-Other
CVE-2002-0249 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm
347680 - hp advancestack_10base-t_switching_hub_j3200a
advancestack_10base-t_switching_hub_j3201a
advancestack_10base-t_switching_hub_j3202a
advancestack_10base-t_switching_hub_j3203a
advancestack_10…
Web configuration utility in HP AdvanceStack hubs J3200A through J3210A with firmware version A.03.07 and earlier, allows unauthorized users to bypass authentication via a direct HTTP request to the … NVD-CWE-Other
CVE-2002-0250 2016-10-18 11:17 2002-05-29 Show GitHub Exploit DB Packet Storm