Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4001 4.8 警告
Network
Joom Sky JS Help Desk Joom SkyのWordPress用JS Help Deskにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-51670 2026-02-6 10:38 2024-11-9 Show GitHub Exploit DB Packet Storm
4002 5.3 警告
Network
Django Software Foundation Django Django Software FoundationのDjangoにおけるタイミングの違いに起因する情報漏えいに関する脆弱性 CWE-208
タイミングの違いに起因する情報漏えい
CVE-2025-13473 2026-02-6 10:38 2026-02-3 Show GitHub Exploit DB Packet Storm
4003 7.5 重要
Network
Django Software Foundation Django Django Software FoundationのDjangoにおけるアルゴリズムの複雑さに関する脆弱性 CWE-407
アルゴリズムの複雑性
CVE-2025-14550 2026-02-6 10:38 2026-02-3 Show GitHub Exploit DB Packet Storm
4004 9.8 緊急
Network
ThemeMove Makeaholic ThemeMoveのWordPress用MakeaholicにおけるPHP リモートファイルインクルージョンの脆弱性 CWE-98
PHP リモートファイルインクルージョン
CVE-2025-54700 2026-02-6 10:38 2025-08-14 Show GitHub Exploit DB Packet Storm
4005 5.5 警告
Local
Python Software Foundation Python Python Software FoundationのPythonにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2025-6075 2026-02-6 10:38 2025-10-31 Show GitHub Exploit DB Packet Storm
4006 5.5 警告
Local
libarchive libarchive libarchiveにおける複数の脆弱性 CWE-400
CWE-835
CVE-2025-60753 2026-02-6 10:38 2025-11-5 Show GitHub Exploit DB Packet Storm
4007 8.8 重要
Network
Kagilum IceScrum KagilumのIceScrumにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2025-60785 2026-02-6 10:38 2025-11-3 Show GitHub Exploit DB Packet Storm
4008 8.1 重要
Network
hono hono honoにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2025-62610 2026-02-6 10:38 2025-10-22 Show GitHub Exploit DB Packet Storm
4009 7.3 重要
Network
Open Source Social Network Open Source Social Network Open Source Social Networkにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-63441 2026-02-6 10:38 2025-11-3 Show GitHub Exploit DB Packet Storm
4010 7.5 重要
Network
MetInfo MetInfo MetInfoにおける複数の脆弱性 CWE-611
CWE-918
CVE-2025-63551 2026-02-6 10:37 2025-11-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
349601 - microsoft virtual_machine Microsoft Java Virtual Machine allows remote attackers to read files via the getSystemResourceAsStream function. CWE-200
Information Exposure
CVE-2000-0132 2008-09-11 04:03 2000-01-31 Show GitHub Exploit DB Packet Storm
349602 - h._nomura tiny_ftpdaemon Buffer overflows in Tiny FTPd 0.52 beta3 FTP server allows users to execute commands via the STOR, RNTO, MKD, XMKD, RMD, XRMD, APPE, SIZE, and RNFR commands. NVD-CWE-Other
CVE-2000-0133 2008-09-11 04:03 2000-02-1 Show GitHub Exploit DB Packet Storm
349603 - axis 700_network_document_server Axis 700 Network Scanner does not properly restrict access to administrator URLs, which allows users to bypass the password protection via a .. (dot dot) attack. NVD-CWE-Other
CVE-2000-0144 2008-09-11 04:03 2000-02-7 Show GitHub Exploit DB Packet Storm
349604 - novell groupwise The Java Server in the Novell GroupWise Web Access Enhancement Pack allows remote attackers to cause a denial of service via a long URL to the servlet. NVD-CWE-Other
CVE-2000-0146 2008-09-11 04:03 2000-02-7 Show GitHub Exploit DB Packet Storm
349605 - gnu make GNU make follows symlinks when it reads a Makefile from stdin, which allows other local users to execute commands. NVD-CWE-Other
CVE-2000-0151 2008-09-11 04:03 2000-02-1 Show GitHub Exploit DB Packet Storm
349606 - novell bordermanager Remote attackers can cause a denial of service in Novell BorderManager 3.5 by pressing the enter key in a telnet connection to port 2000. NVD-CWE-Other
CVE-2000-0152 2008-09-11 04:03 2000-03-30 Show GitHub Exploit DB Packet Storm
349607 - netbsd netbsd NetBSD ptrace call on VAX allows local users to gain privileges by modifying the PSL contents in the debugging process. NVD-CWE-Other
CVE-2000-0157 2008-09-11 04:03 2000-02-1 Show GitHub Exploit DB Packet Storm
349608 - freebsd freebsd asmon and ascpu in FreeBSD allow local users to gain root privileges via a configuration file. NVD-CWE-Other
CVE-2000-0163 2008-09-11 04:03 2000-02-21 Show GitHub Exploit DB Packet Storm
349609 - microsoft internet_information_server IIS Inetinfo.exe allows local users to cause a denial of service by creating a mail file with a long name and a .txt.eml extension in the pickup directory. NVD-CWE-Other
CVE-2000-0167 2008-09-11 04:03 2000-02-15 Show GitHub Exploit DB Packet Storm
349610 - oracle application_server Batch files in the Oracle web listener ows-bin directory allow remote attackers to execute commands via a malformed URL that includes '?&'. NVD-CWE-Other
CVE-2000-0169 2008-09-11 04:03 2000-03-15 Show GitHub Exploit DB Packet Storm