Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3931 7.5 重要
Network
scshr hr portal scshrのhr portalにおけるファイル名やパス名の外部制御に関する脆弱性 CWE-73
ファイル名やパス名の外部制御
CVE-2025-48783 2026-02-6 10:41 2025-06-6 Show GitHub Exploit DB Packet Storm
3932 7.5 重要
Network
scshr hr portal scshrのhr portalにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2025-48784 2026-02-6 10:41 2025-06-6 Show GitHub Exploit DB Packet Storm
3933 7.5 重要
Network
scshr hr portal scshrのhr portalにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2025-5192 2026-02-6 10:41 2025-06-6 Show GitHub Exploit DB Packet Storm
3934 6.8 警告
Physics
Elspec LTD G5DFR ファームウェア Elspec LTDのG5DFR ファームウェアにおける代替パスまたはチャネルを使用した認証回避に関する脆弱性 CWE-288
代替パスまたはチャネルを使用した認証回避
CVE-2025-59392 2026-02-6 10:41 2025-11-6 Show GitHub Exploit DB Packet Storm
3935 7.2 重要
Network
Sangoma freepbx SangomaのfreepbxにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2025-64328 2026-02-6 10:41 2025-11-7 Show GitHub Exploit DB Packet Storm
3936 6.5 警告
Network
Salesforce.com, inc. MuleSoft Anypoint Extension Pack Salesforce.com, inc.のMuleSoft Anypoint Extension Packにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2025-10875 2026-02-6 10:41 2025-11-4 Show GitHub Exploit DB Packet Storm
3937 7.5 重要
Network
Intelbras ICIP 30 Firmware IntelbrasのICIP 30 Firmwareにおける複数の脆弱性 CWE-255
CWE-256
CWE-522
CVE-2025-13187 2026-02-6 10:41 2025-11-14 Show GitHub Exploit DB Packet Storm
3938 5.3 警告
Network
Zeit, Inc. AI Vercel, Inc. (旧 Zeit, Inc.)のAIにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2025-48985 2026-02-6 10:41 2025-11-7 Show GitHub Exploit DB Packet Storm
3939 5.5 警告
Local
Open JS Foundation ESLint Open JS FoundationのESLintにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2025-50537 2026-02-6 10:40 2026-01-26 Show GitHub Exploit DB Packet Storm
3940 6.1 警告
Network
nuxt Nuxt Devtools nuxtのNuxt Devtoolsにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-52662 2026-02-6 10:40 2025-11-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
349111 - caldera unixware
openunix
Vulnerability in webtop in UnixWare 7.1.1 and Open UNIX 8.0.0 allows local and possibly remote attackers to gain root privileges via shell metacharacters in the -c argument for (1) in scoadminreg.cgi… NVD-CWE-Other
CVE-2002-0311 2008-09-11 09:00 2002-05-31 Show GitHub Exploit DB Packet Storm
349112 - madwifi madwifi The ath_rate_sample function in the ath_rate/sample/sample.c sample code in MadWifi before 0.9.3 allows remote attackers to cause a denial of service (failed KASSERT and system crash) by moving a con… NVD-CWE-Other
CVE-2005-4835 2008-09-11 04:54 2005-12-31 Show GitHub Exploit DB Packet Storm
349113 - spey spey Unspecified vulnerability in Spey 0.3.3 has unknown impact and attack vectors related to "A number of security holes which could lead to compromise," a different issue than CVE-2005-4846. NVD-CWE-noinfo
CVE-2005-4847 2008-09-11 04:54 2005-12-31 Show GitHub Exploit DB Packet Storm
349114 - ocomon ocomon Cross-site scripting (XSS) vulnerability in OcoMon 1.20, and possibly earlier versions, allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors. NVD-CWE-Other
CVE-2005-4663 2008-09-11 04:53 2005-12-31 Show GitHub Exploit DB Packet Storm
349115 - rarlab winrar Format string vulnerability in RARLAB WinRAR 2.90 through 3.50 allows remote attackers to execute arbitrary code via format string specifiers in a UUE/XXE file, which are not properly handled when Wi… NVD-CWE-Other
CVE-2005-3262 2008-09-11 04:46 2005-10-20 Show GitHub Exploit DB Packet Storm
349116 - rarlab winrar Stack-based buffer overflow in UNACEV2.DLL for RARLAB WinRAR 2.90 through 3.50 allows remote attackers to execute arbitrary code via an ACE archive containing a file with a long name. NVD-CWE-Other
CVE-2005-3263 2008-09-11 04:46 2005-10-20 Show GitHub Exploit DB Packet Storm
349117 - accelerated_enterprise_solutions accelerated_mortgage_manager SQL injection vulnerability in Accelerated Mortgage Manager allows remote attackers to execute arbitrary SQL commands via the password field. NVD-CWE-Other
CVE-2005-3290 2008-09-11 04:46 2005-10-23 Show GitHub Exploit DB Packet Storm
349118 - squid
suse
squid
suse_linux
Unspecified vulnerability in Squid on SUSE Linux 9.0 allows remote attackers to cause a denial of service (crash) via HTTPs (SSL). NVD-CWE-Other
CVE-2005-3322 2008-09-11 04:46 2005-10-27 Show GitHub Exploit DB Packet Storm
349119 - sco unixware Stack-based buffer overflow in ppp in SCO Unixware 7.1.3 and 7.1.4, and possibly earlier versions, allows local users to execute arbitrary code via a long argument to the (1) prompt or (2) defprompt … NVD-CWE-Other
CVE-2005-2927 2008-09-11 04:44 2005-10-26 Show GitHub Exploit DB Packet Storm
349120 - ibm rational_clearquest Unspecified vulnerability in the web client for IBM Rational ClearQuest 2002.05.00 and 2002.05.20, and 2003.06.00 through 2003.06.15 before SR5, allows remote attackers to execute XML Style Sheets (X… NVD-CWE-Other
CVE-2005-2994 2008-09-11 04:44 2005-09-21 Show GitHub Exploit DB Packet Storm