Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4151 7.8 重要
Local
Sebastian Bergmann PHPUnit Sebastian BergmannのPHPUnitにおける複数の脆弱性 CWE-88
CWE-93
CVE-2026-41570 2026-05-11 11:09 2026-05-8 Show GitHub Exploit DB Packet Storm
4152 7.5 重要
Network
Zcash Foundation Zebra-chain
Zebrad
Zcash FoundationのZebra-chain等の複数製品における到達可能なアサーションに関する脆弱性 CWE-617
到達可能なアサーション
CVE-2026-41584 2026-05-11 11:09 2026-05-8 Show GitHub Exploit DB Packet Storm
4153 5.3 警告
Network
projectdiscovery Nuclei ProjectDiscovery, Inc.のNucleiにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-41645 2026-05-11 11:09 2026-05-8 Show GitHub Exploit DB Packet Storm
4154 5.5 警告
Local
projectdiscovery Nuclei ProjectDiscovery, Inc.のNucleiにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-41646 2026-05-11 11:09 2026-05-8 Show GitHub Exploit DB Packet Storm
4155 8.1 重要
Network
- OpenC3のOpenC3 COSMOSにおける未検証のパスワード変更に関する脆弱性 CWE-620
未検証のパスワード変更
CVE-2026-42084 2026-05-11 11:09 2026-05-4 Show GitHub Exploit DB Packet Storm
4156 4.3 警告
Network
- OpenC3のOpenC3 COSMOSにおける相対パストラバーサルの脆弱性 CWE-23
相対的パストラバーサル
CVE-2026-42085 2026-05-11 11:09 2026-05-4 Show GitHub Exploit DB Packet Storm
4157 4.6 警告
Network
- OpenC3のOpenC3 COSMOSにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-42086 2026-05-11 11:09 2026-05-4 Show GitHub Exploit DB Packet Storm
4158 9.6 緊急
Network
- OpenC3のOpenC3 COSMOSにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-42087 2026-05-11 11:09 2026-05-4 Show GitHub Exploit DB Packet Storm
4159 9.8 緊急
Network
litellm litellm LiteLLMにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-42208 2026-05-11 11:09 2026-05-8 Show GitHub Exploit DB Packet Storm
4160 9.1 緊急
Network
OpenEXR OpenEXR OpenEXRにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-42216 2026-05-11 11:09 2026-05-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345721 - elm_development_group elm Buffer overflow in the frm command in elm 2.5.6 and earlier, and possibly later versions, allows remote attackers to execute arbitrary code via a long Subject line. NVD-CWE-Other
CVE-2003-0966 2017-10-10 10:30 2004-02-17 Show GitHub Exploit DB Packet Storm
345722 - mpg321 mpg321 mpg321 0.2.10 allows remote attackers to overwrite memory and possibly execute arbitrary code via an mp3 file that passes certain strings to the printf function, possibly triggering a format string v… NVD-CWE-Other
CVE-2003-0969 2017-10-10 10:30 2004-01-20 Show GitHub Exploit DB Packet Storm
345723 - kde kde Buffer overflow in the VCF file information reader for KDE Personal Information Management (kdepim) suite in KDE 3.1.0 through 3.1.4 allows attackers to execute arbitrary code via a VCF file. NVD-CWE-Other
CVE-2003-0988 2017-10-10 10:30 2004-02-17 Show GitHub Exploit DB Packet Storm
345724 - gnu
sgi
mailman
propack
Unknown vulnerability in the mail command handler in Mailman before 2.0.14 allows remote attackers to cause a denial of service (crash) via malformed e-mail commands. NVD-CWE-Other
CVE-2003-0991 2017-10-10 10:30 2004-03-3 Show GitHub Exploit DB Packet Storm
345725 - debian fsp Directory traversal vulnerability in fsp before 2.81.b18 allows remote users to access files outside the FSP root directory. NVD-CWE-Other
CVE-2003-1022 2017-10-10 10:30 2004-01-20 Show GitHub Exploit DB Packet Storm
345726 - cisco pix_firewall_manager Cisco PIX firewall manager (PFM) 4.3(2)g logs the enable password in plaintext in the pfm.log file, which could allow local users to obtain the password by reading the file. NVD-CWE-Other
CVE-2001-1098 2017-10-10 10:30 2001-10-10 Show GitHub Exploit DB Packet Storm
345727 - spencer_miles w3mail sendmessage.cgi in W3Mail 1.0.2, and possibly other CGI programs, allows remote attackers to execute arbitrary commands via shell metacharacters in any field of the 'Compose Message' page. NVD-CWE-Other
CVE-2001-1100 2017-10-10 10:30 2001-10-7 Show GitHub Exploit DB Packet Storm
345728 - rhinosoft ftp_voyager FTP Voyager ActiveX control before 8.0, when it is marked as safe for scripting (the default) or if allowed by the IObjectSafety interface, allows remote attackers to execute arbitrary commands. NVD-CWE-Other
CVE-2001-1103 2017-10-10 10:30 2001-03-3 Show GitHub Exploit DB Packet Storm
345729 - sambar sambar_server The default configuration of Sambar Server 5 and earlier uses a symmetric key that is compiled into the binary program for encrypting passwords, which could allow local users to break all user passwo… NVD-CWE-Other
CVE-2001-1106 2017-10-10 10:30 2001-07-25 Show GitHub Exploit DB Packet Storm
345730 - snapstream pvs Directory traversal vulnerability in SnapStream PVS 1.2a allows remote attackers to read arbitrary files via a .. (dot dot) attack in the requested URL. NVD-CWE-Other
CVE-2001-1108 2017-10-10 10:30 2001-07-26 Show GitHub Exploit DB Packet Storm