Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3921 9.1 緊急
Network
Node.js Foundation Node.js Node.js FoundationのNode.jsにおける代替名による認証回避に関する脆弱性 CWE-289
代替名による認証回避
CVE-2025-55130 2026-02-5 15:46 2026-01-20 Show GitHub Exploit DB Packet Storm
3922 5.3 警告
Network
Node.js Foundation Node.js Node.js FoundationのNode.jsにおける不適切なデフォルトパーミッションに関する脆弱性 CWE-276
不適切なデフォルトパーミッション
CVE-2025-55132 2026-02-5 15:46 2026-01-20 Show GitHub Exploit DB Packet Storm
3923 7.5 重要
Network
OwnTone project OwnTone OwnTone projectのOwnToneにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2025-57155 2026-02-5 15:46 2026-01-20 Show GitHub Exploit DB Packet Storm
3924 6.5 警告
Network
Engineering Ingegneria Informatica knowage Engineering Ingegneria Informaticaのknowageにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2025-58441 2026-02-5 15:46 2026-01-7 Show GitHub Exploit DB Packet Storm
3925 8.7 重要
Network
Ultimate Fosters Ultimate POS Ultimate FostersのUltimate POSにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-60503 2026-02-5 15:46 2025-11-3 Show GitHub Exploit DB Packet Storm
3926 5.3 警告
Network
The Go Project Go The Go ProjectのGoにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2025-61730 2026-02-5 15:46 2026-01-28 Show GitHub Exploit DB Packet Storm
3927 4.3 警告
Network
webinarpress webinarpress WordPress用webinarpressにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2025-62972 2026-02-5 15:45 2025-10-27 Show GitHub Exploit DB Packet Storm
3928 7.5 重要
Network
oneflow oneflow oneflowにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2025-65886 2026-02-5 15:45 2026-01-28 Show GitHub Exploit DB Packet Storm
3929 6.5 警告
Network
oneflow oneflow oneflowにおけるゼロ除算に関する脆弱性 CWE-369
ゼロ除算
CVE-2025-65887 2026-02-5 15:45 2026-01-28 Show GitHub Exploit DB Packet Storm
3930 7.5 重要
Network
oneflow oneflow oneflowにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2025-65888 2026-02-5 15:45 2026-01-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
350481 - apple quicktime
mac_os_x
mac_os_x_server
AFP Server on Mac OS X 10.3.x to 10.3.5, when a guest has mounted an AFP volume, allows the guest to "terminate authenticated user mounts" via modified SessionDestroy packets. NVD-CWE-Other
CVE-2004-0921 2008-09-6 05:39 2005-01-27 Show GitHub Exploit DB Packet Storm
350482 - apple quicktime
mac_os_x
mac_os_x_server
AFP Server on Mac OS X 10.3.x to 10.3.5, under certain conditions, does not properly set the guest group ID, which causes AFP to change a write-only AFP Drop Box to be read-write when the Drop Box is… NVD-CWE-Other
CVE-2004-0922 2008-09-6 05:39 2005-01-27 Show GitHub Exploit DB Packet Storm
350483 - easy_software_products
apple
cups
mac_os_x
mac_os_x_server
NetInfo Manager on Mac OS X 10.3.x through 10.3.5, after an initial root login, reports the root account as being disabled, even when it has not. NVD-CWE-Other
CVE-2004-0924 2008-09-6 05:39 2005-01-27 Show GitHub Exploit DB Packet Storm
350484 - easy_software_products
apple
cups
mac_os_x
mac_os_x_server
Heap-based buffer overflow in Apple QuickTime on Mac OS 10.2.8 through 10.3.5 may allow remote attackers to execute arbitrary code via a certain BMP image. NVD-CWE-Other
CVE-2004-0926 2008-09-6 05:39 2005-01-27 Show GitHub Exploit DB Packet Storm
350485 - easy_software_products
apple
cups
mac_os_x
mac_os_x_server
ServerAdmin in Mac OS X 10.2.8 through 10.3.5 uses the same example self-signed certificate on each system, which allows remote attackers to decrypt sessions. NVD-CWE-Other
CVE-2004-0927 2008-09-6 05:39 2005-01-27 Show GitHub Exploit DB Packet Storm
350486 - - - The web management interface for Mitel 3300 Integrated Communications Platform (ICP) before 4.2.2.11 generates easily predictable web session IDs, which allows remote attackers to hijack other sessio… NVD-CWE-Other
CVE-2004-0944 2008-09-6 05:39 2004-02-28 Show GitHub Exploit DB Packet Storm
350487 - mitel mitel_3300_integrated_communication_platform The web management interface for Mitel 3300 Integrated Communications Platform (ICP) before 4.2.2.11 allows remote authenticated users to cause a denial of service (resource exhaustion) via a large n… NVD-CWE-Other
CVE-2004-0945 2008-09-6 05:39 2005-02-28 Show GitHub Exploit DB Packet Storm
350488 - stonesoft firewall_engine The H.323 protocol agent in StoneSoft firewall engine 2.2.8 and earlier allows remote attackers to cause a denial of service (crash) via crafted H.323 packets. NVD-CWE-Other
CVE-2004-0498 2008-09-6 05:38 2004-12-31 Show GitHub Exploit DB Packet Storm
350489 - university_of_minnesota gopherd Integer overflow in gopher daemon (gopherd) 3.0.3 allows remote attackers to cause a denial of service and possibly execute arbitrary code via crafted content of a certain size that triggers the over… NVD-CWE-Other
CVE-2004-0560 2008-09-6 05:38 2004-12-31 Show GitHub Exploit DB Packet Storm
350490 - university_of_minnesota gopherd Format string vulnerability in the log routine for gopher daemon (gopherd) 3.0.3 allows remote attackers to cause a denial of service and possibly execute arbitrary code. NVD-CWE-Other
CVE-2004-0561 2008-09-6 05:38 2004-12-31 Show GitHub Exploit DB Packet Storm