Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4371 9.1 緊急
Network
Open JS Foundation fastify/middie Open JS Foundationの@fastify/middieにおける解釈の競合に関する脆弱性 CWE-436
解釈の競合
CVE-2026-6270 2026-04-24 11:40 2026-04-16 Show GitHub Exploit DB Packet Storm
4372 9.9 緊急
Network
ASUSTOR Inc. data master ASUSTOR Inc.のdata masterにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-6643 2026-04-24 11:40 2026-04-20 Show GitHub Exploit DB Packet Storm
4373 9.1 緊急
Network
ASUSTOR Inc. data master ASUSTOR Inc.のdata masterにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-6644 2026-04-24 11:40 2026-04-20 Show GitHub Exploit DB Packet Storm
4374 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-6746 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
4375 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-6747 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
4376 9.8 緊急
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における初期化されていない変数の使用に関する脆弱性 CWE-457
初期化されていない変数の使用
CVE-2026-6748 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
4377 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における初期化されていないリソースの使用に関する脆弱性 CWE-908
初期化されていないリソースの使用
CVE-2026-6749 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
4378 9.8 緊急
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-6750 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
4379 7.3 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における初期化されていない変数の使用に関する脆弱性 CWE-457
初期化されていない変数の使用
CVE-2026-6751 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
4380 7.3 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-6752 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348191 - granite_software zmerge The default Access Control Lists (ACLs) of the administration database for ZMerge 4.x and 5.x provides arbitrary users (including anonymous users) with Manager level access, which allows the users to… NVD-CWE-Other
CVE-2002-0664 2016-10-18 11:21 2002-10-4 Show GitHub Exploit DB Packet Storm
348192 - macromedia jrun Macromedia JRun Administration Server allows remote attackers to bypass authentication on the login form via an extra slash (/) in the URL. NVD-CWE-Other
CVE-2002-0665 2016-10-18 11:21 2002-07-11 Show GitHub Exploit DB Packet Storm
348193 - pacific_software carello Directory traversal vulnerability in Carello 1.3 allows remote attackers to execute programs on the server via a .. (dot dot) in the VBEXE parameter. NVD-CWE-Other
CVE-2002-0683 2016-10-18 11:21 2002-07-23 Show GitHub Exploit DB Packet Storm
348194 - gnu
isc
glibc
bind
Buffer overflow in DNS resolver functions that perform lookup of network names and addresses, as used in BIND 4.9.8 and ported to glibc 2.2.5 and earlier, allows remote malicious DNS servers to execu… NVD-CWE-Other
CVE-2002-0684 2016-10-18 11:21 2002-08-12 Show GitHub Exploit DB Packet Storm
348195 - pgp desktop_security
freeware
personal_security
Heap-based buffer overflow in the message decoding functionality for PGP Outlook Encryption Plug-In, as used in NAI PGP Desktop Security 7.0.4, Personal Security 7.0.3, and Freeware 7.0.3, allows rem… NVD-CWE-Other
CVE-2002-0685 2016-10-18 11:21 2002-07-23 Show GitHub Exploit DB Packet Storm
348196 - iplanet iplanet_web_server Buffer overflow in the search component for iPlanet Web Server (iWS) 4.1 and Sun ONE Web Server 6.0 allows remote attackers to execute arbitrary code via a long argument to the NS-rel-doc-name parame… NVD-CWE-Other
CVE-2002-0686 2016-10-18 11:21 2002-07-23 Show GitHub Exploit DB Packet Storm
348197 - freebsd
openbsd
freebsd
openbsd
ktrace in BSD-based operating systems allows the owner of a process with special privileges to trace the process after its privileges have been lowered, which may allow the owner to obtain sensitive … NVD-CWE-Other
CVE-2002-0701 2016-10-18 11:21 2002-07-23 Show GitHub Exploit DB Packet Storm
348198 - isc dhcpd Format string vulnerabilities in the logging routines for dynamic DNS code (print.c) of ISC DHCP daemon (DHCPD) 3 to 3.0.1rc8, with the NSUPDATE option enabled, allow remote malicious DNS servers to … NVD-CWE-Other
CVE-2002-0702 2016-10-18 11:21 2002-07-26 Show GitHub Exploit DB Packet Storm
348199 - surfcontrol superscout_web_filter
web_filter
The Web Reports Server for SurfControl SuperScout WebFilter stores the "scwebusers" username and password file in a web-accessible directory, which allows remote attackers to obtain valid usernames a… NVD-CWE-Other
CVE-2002-0705 2016-10-18 11:21 2002-10-10 Show GitHub Exploit DB Packet Storm
348200 - surfcontrol superscout_web_filter
web_filter
UserManager.js in the Web Reports Server for SurfControl SuperScout WebFilter uses weak encryption for administrator functions, which allows remote attackers to decrypt the administrative password us… NVD-CWE-Other
CVE-2002-0706 2016-10-18 11:21 2002-10-10 Show GitHub Exploit DB Packet Storm