Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4131 5.4 警告
Network
EspoCRM EspoCRM EspoCRMにおける複数の脆弱性 CWE-116
CWE-80
CVE-2026-33657 2026-04-23 10:13 2026-04-13 Show GitHub Exploit DB Packet Storm
4132 3.1
Network
EspoCRM EspoCRM EspoCRMにおける複数の脆弱性 CWE-367
CWE-918
CVE-2026-33659 2026-04-23 10:12 2026-04-13 Show GitHub Exploit DB Packet Storm
4133 5.4 警告
Network
EspoCRM EspoCRM EspoCRMにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-33740 2026-04-23 10:12 2026-04-13 Show GitHub Exploit DB Packet Storm
4134 5.3 警告
Network
The Go Project tiff The Go Projectのtiffにおける危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2026-33809 2026-04-23 10:12 2026-03-25 Show GitHub Exploit DB Packet Storm
4135 5.5 警告
Local
jqlang jq jqlangのjqにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2026-33947 2026-04-23 10:12 2026-04-13 Show GitHub Exploit DB Packet Storm
4136 5.3 警告
Network
jqlang jq jqlangのjqにおける複数の脆弱性 CWE-170
CWE-20
CVE-2026-33948 2026-04-23 10:12 2026-04-14 Show GitHub Exploit DB Packet Storm
4137 4.3 警告
Network
openwebui open webui openwebuiのopen webuiにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-34225 2026-04-23 10:12 2026-04-14 Show GitHub Exploit DB Packet Storm
4138 7.7 重要
Network
Weblate Weblate Weblateにおける複数の脆弱性 CWE-200
CWE-22
CWE-59
CVE-2026-34242 2026-04-23 10:12 2026-04-15 Show GitHub Exploit DB Packet Storm
4139 5 警告
Network
Weblate Weblate Weblateにおける複数の脆弱性 CWE-200
CWE-918
CVE-2026-34244 2026-04-23 10:12 2026-04-15 Show GitHub Exploit DB Packet Storm
4140 8.8 重要
Network
Weblate Weblate Weblateにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-34393 2026-04-23 10:12 2026-04-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348151 - redhat linux Linuxconf on Red Hat Linux 6.0 and earlier does not properly disable PAM-based access to the shutdown command, which could allow local users to cause a denial of service. NVD-CWE-Other
CVE-1999-1348 2016-10-18 11:03 1999-06-30 Show GitHub Exploit DB Packet Storm
348152 - xlink_technology omni-nfs_x_enterprise NFS daemon (nfsd.exe) for Omni-NFS/X 6.1 allows remote attackers to cause a denial of service (resource exhaustion) via certain packets, possibly with the Urgent (URG) flag set, to port 111. NVD-CWE-Other
CVE-1999-1349 2016-10-18 11:03 1999-10-6 Show GitHub Exploit DB Packet Storm
348153 - arcad_systemhaus arcad ARCAD Systemhaus 0.078-5 installs critical programs and files with world-writeable permissions, which could allow local users to gain privileges by replacing a program with a Trojan horse. NVD-CWE-Other
CVE-1999-1350 2016-10-18 11:03 1999-09-29 Show GitHub Exploit DB Packet Storm
348154 - kvirc irc_client Directory traversal vulnerability in KVIrc IRC client 0.9.0 with the "Listen to !nick <soundname> requests" option enabled allows remote attackers to read arbitrary files via a .. (dot dot) in a DCC … NVD-CWE-Other
CVE-1999-1351 2016-10-18 11:03 1999-09-24 Show GitHub Exploit DB Packet Storm
348155 - linux linux_kernel mknod in Linux 2.2 follows symbolic links, which could allow local users to overwrite files or gain privileges. NVD-CWE-Other
CVE-1999-1352 2016-10-18 11:03 1999-09-28 Show GitHub Exploit DB Packet Storm
348156 - softarc firstclass_internet_server E-mail client in Softarc FirstClass Internet Server 5.506 and earlier stores usernames and passwords in cleartext in the files (1) home.fc for version 5.506, (2) network.fc for version 3.5, or (3) FC… NVD-CWE-Other
CVE-1999-1354 2016-10-18 11:03 1999-08-30 Show GitHub Exploit DB Packet Storm
348157 - compaq smartstart Compaq Integration Maintenance Utility as used in Compaq Insight Manager agent before SmartStart 4.50 modifies the legal notice caption (LegalNoticeCaption) and text (LegalNoticeText) in Windows NT, … NVD-CWE-Other
CVE-1999-1356 2016-10-18 11:03 1999-09-2 Show GitHub Exploit DB Packet Storm
348158 - netscape communicator Netscape Communicator 4.04 through 4.7 (and possibly other versions) in various UNIX operating systems converts the 0x8b character to a "<" sign, and the 0x9b character to a ">" sign, which could all… NVD-CWE-Other
CVE-1999-1357 2016-10-18 11:03 1999-10-5 Show GitHub Exploit DB Packet Storm
348159 - microsoft windows_nt Windows NT 3.51 and 4.0 running WINS (Windows Internet Name Service) allows remote attackers to cause a denial of service (resource exhaustion) via a flood of malformed packets, which causes the serv… NVD-CWE-Other
CVE-1999-1361 2016-10-18 11:03 1998-05-9 Show GitHub Exploit DB Packet Storm
348160 - david_harris pegasus_mail Pegasus e-mail client 3.0 and earlier uses weak encryption to store POP3 passwords in the pmail.ini file, which allows local users to easily decrypt the passwords and read e-mail. NVD-CWE-Other
CVE-1999-1366 2016-10-18 11:03 1999-05-15 Show GitHub Exploit DB Packet Storm