Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 4:09 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4401 6.5 警告
Network
Project Jupyter nbconvert Project Jupyterのnbconvertにおける複数の脆弱性 CWE-22
CWE-73
CVE-2026-39377 2026-04-27 11:21 2026-04-21 Show GitHub Exploit DB Packet Storm
4402 6.5 警告
Network
Project Jupyter nbconvert Project Jupyterのnbconvertにおける複数の脆弱性 CWE-22
CWE-73
CVE-2026-39378 2026-04-27 11:21 2026-04-21 Show GitHub Exploit DB Packet Storm
4403 7.2 重要
Network
boidcms boidcms boidcmsにおけるPHP リモートファイルインクルージョンの脆弱性 CWE-98
PHP リモートファイルインクルージョン
CVE-2026-39387 2026-04-27 11:21 2026-04-14 Show GitHub Exploit DB Packet Storm
4404 9.9 緊急
Network
openremote openremote openremoteにおける複数の脆弱性 CWE-917
CWE-94
CVE-2026-39842 2026-04-27 11:21 2026-04-15 Show GitHub Exploit DB Packet Storm
4405 10 緊急
Network
Anthropic PBC Claude Code Anthropic PBCのClaude Codeにおける複数の脆弱性 CWE-22
CWE-61
CVE-2026-39861 2026-04-27 11:21 2026-04-21 Show GitHub Exploit DB Packet Storm
4406 8.1 重要
Network
Suyog Sonwalkar MCP Server Kubernetes Suyog SonwalkarのMCP Server Kubernetesにおける引数の挿入または変更に関する脆弱性 CWE-88
引数の挿入または変更
CVE-2026-39884 2026-04-27 11:21 2026-04-15 Show GitHub Exploit DB Packet Storm
4407 6.5 警告
Network
jqlang jq jqlangのjqにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-39979 2026-04-27 11:21 2026-04-13 Show GitHub Exploit DB Packet Storm
4408 5.5 警告
Local
Linux Foundation Sigstore Timestamp Authority Linux FoundationのSigstore Timestamp Authorityにおける証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2026-39984 2026-04-27 11:21 2026-04-15 Show GitHub Exploit DB Packet Storm
4409 7.1 重要
Network
lfprojects Zarf lfprojectsのZarfにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-40090 2026-04-27 11:21 2026-04-15 Show GitHub Exploit DB Packet Storm
4410 4.4 警告
Local
Authzed, Inc. SpiceDB Authzed, Inc.のSpiceDBにおけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2026-40091 2026-04-27 11:21 2026-04-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347471 - midnight_commander
debian
gentoo
redhat
suse
turbolinux
midnight_commander
debian_linux
linux
enterprise_linux
linux_advanced_workstation
suse_linux
turbolinux_server
turbolinux_workstation
Multiple format string vulnerabilities in Midnight Commander (mc) 4.5.55 and earlier allow remote attackers to have an unknown impact. NVD-CWE-Other
CVE-2004-1004 2017-07-11 10:30 2005-04-14 Show GitHub Exploit DB Packet Storm
347472 - midnight_commander
debian
gentoo
redhat
suse
turbolinux
midnight_commander
debian_linux
linux
enterprise_linux
linux_advanced_workstation
suse_linux
turbolinux_server
turbolinux_workstation
Multiple buffer overflows in Midnight Commander (mc) 4.5.55 and earlier allow remote attackers to have an unknown impact. NVD-CWE-Other
CVE-2004-1005 2017-07-11 10:30 2005-04-14 Show GitHub Exploit DB Packet Storm
347473 - isc dhcpd Format string vulnerability in the log functions in dhcpd for dhcp 2.x allows remote DNS servers to execute arbitrary code via certain DNS messages, a different vulnerability than CVE-2002-0702. NVD-CWE-Other
CVE-2004-1006 2017-07-11 10:30 2005-03-1 Show GitHub Exploit DB Packet Storm
347474 - bogofilter
ubuntu
email_filter
ubuntu_linux
The quoted-printable decoder in bogofilter 0.17.4 to 0.92.7 allows remote attackers to cause a denial of service (application crash) via mail headers that cause a line feed (LF) to be replaced by a n… NVD-CWE-Other
CVE-2004-1007 2017-07-11 10:30 2005-03-1 Show GitHub Exploit DB Packet Storm
347475 - putty
tortoisecvs
putty
tortoisecvs
Integer signedness error in the ssh2_rdpkt function in PuTTY before 0.56 allows remote attackers to execute arbitrary code via a SSH2_MSG_DEBUG packet with a modified stringlen parameter, which leads… NVD-CWE-Other
CVE-2004-1008 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
347476 - midnight_commander
debian
gentoo
redhat
suse
turbolinux
midnight_commander
debian_linux
linux
enterprise_linux
linux_advanced_workstation
suse_linux
turbolinux_server
turbolinux_workstation
Midnight commander (mc) 4.5.55 and earlier allows remote attackers to cause a denial of service (infinite loop) via unknown attack vectors. NVD-CWE-Other
CVE-2004-1009 2017-07-11 10:30 2005-04-14 Show GitHub Exploit DB Packet Storm
347477 - carnegie_mellon_university
openpkg
conectiva
redhat
trustix
ubuntu
cyrus_imap_server
openpkg
linux
fedora_core
secure_linux
ubuntu_linux
Stack-based buffer overflow in Cyrus IMAP Server 2.2.4 through 2.2.8, with the imapmagicplus option enabled, allows remote attackers to execute arbitrary code via a long (1) PROXY or (2) LOGIN comman… NVD-CWE-Other
CVE-2004-1011 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
347478 - carnegie_mellon_university
openpkg
conectiva
redhat
trustix
ubuntu
cyrus_imap_server
openpkg
linux
fedora_core
secure_linux
ubuntu_linux
The argument parser of the PARTIAL command in Cyrus IMAP Server 2.2.6 and earlier allows remote authenticated users to execute arbitrary code via a certain command ("body[p") that is treated as a dif… NVD-CWE-Other
CVE-2004-1012 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
347479 - carnegie_mellon_university
redhat
ubuntu
cyrus_imap_server
fedora_core
ubuntu_linux
Buffer overflow in proxyd for Cyrus IMAP Server 2.2.9 and earlier, with the imapmagicplus option enabled, may allow remote attackers to execute arbitrary code, a different vulnerability than CVE-2004… NVD-CWE-Other
CVE-2004-1015 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm
347480 - php php The addslashes function in PHP 4.3.9 does not properly escape a NULL (/0) character, which may allow remote attackers to read arbitrary files in PHP applications that contain a directory traversal vu… NVD-CWE-Other
CVE-2004-1020 2017-07-11 10:30 2005-01-10 Show GitHub Exploit DB Packet Storm