Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4491 7.8 重要
Local
マイクロソフト Azure Monitor Agent Azure Monitor エージェントの特権昇格の脆弱性 CWE-20
不適切な入力確認
CVE-2026-32168 2026-05-8 12:23 2026-04-14 Show GitHub Exploit DB Packet Storm
4492 7.8 重要
Local
マイクロソフト Azure Monitor Agent Azure Monitor エージェントの特権昇格の脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-32192 2026-05-8 12:23 2026-04-14 Show GitHub Exploit DB Packet Storm
4493 5.9 警告
Network
マイクロソフト Microsoft .NET Framework .NET Framework のサービス拒否の脆弱性 CWE-362
競合状態
CVE-2026-32226 2026-05-8 12:23 2026-04-14 Show GitHub Exploit DB Packet Storm
4494 8.8 重要
Network
Kubernetes ingress-nginx Kubernetesのingress-nginxにおける入力確認に関する脆弱性 CWE-20
CWE-noinfo
CVE-2026-3288 2026-05-8 12:23 2026-03-9 Show GitHub Exploit DB Packet Storm
4495 7.5 重要
Network
マイクロソフト Microsoft .NET Framework
.NET
.NET、.NET Framework、Visual Studio のサービス拒否の脆弱性 CWE-20
CWE-400
CWE-835
CVE-2026-33116 2026-05-8 12:23 2026-04-14 Show GitHub Exploit DB Packet Storm
4496 8.8 重要
Network
マイクロソフト SQL Server 2016
SQL Server 2017
SQL Server 2022
SQL Server 2019
SQL Server 2025
Microsoft SQL Server のリモート コードが実行される脆弱性 CWE-822
信頼性のないポインタデリファレンス
CVE-2026-33120 2026-05-8 12:23 2026-04-14 Show GitHub Exploit DB Packet Storm
4497 5.9 警告
Network
Apache Software Foundation Apache Log4j Apache Software FoundationのApache Log4jにおける複数の脆弱性 CWE-295
CWE-297
CVE-2026-34477 2026-05-8 12:23 2026-04-10 Show GitHub Exploit DB Packet Storm
4498 7.5 重要
Network
Apache Software Foundation Apache Log4j Apache Software FoundationのApache Log4jにおけるエンコードおよびエスケープに関する脆弱性 CWE-116
不適切なエンコード、または出力のエスケープ
CVE-2026-34479 2026-05-8 12:23 2026-04-10 Show GitHub Exploit DB Packet Storm
4499 7.4 重要
Network
GNU Project
レッドハット
Red Hat Hardened Images
Red Hat Enterprise Linux
Red Hat OpenShift Container Platform
GnuTLS
GNU Project等の複数ベンダの製品における大文字と小文字の区別の不適切な処理に関する脆弱性 CWE-178
大文字と小文字の区別の不適切な処理
CVE-2026-3833 2026-05-8 12:23 2026-04-30 Show GitHub Exploit DB Packet Storm
4500 9.1 緊急
Network
Apache Software Foundation Apache Wicket Apache Software FoundationのApache Wicketにおけるセッションの固定化の脆弱性 CWE-384
CWE-384
CVE-2026-40010 2026-05-8 12:23 2026-05-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346131 - mendel_cooper shred shred 1.0 file wiping utility does not properly open a file for overwriting or flush its buffers, which prevents shred from properly replacing the file's data and allows local users to recover the fi… NVD-CWE-Other
CVE-2000-1018 2017-10-10 10:29 2000-12-11 Show GitHub Exploit DB Packet Storm
346132 - inktomi search_software Search engine in Ultraseek 3.1 and 3.1.10 (aka Inktomi Search) allows remote attackers to cause a denial of service via a malformed URL. NVD-CWE-Other
CVE-2000-1019 2017-10-10 10:29 2000-12-11 Show GitHub Exploit DB Packet Storm
346133 - unify ewave_servletexec eWave ServletExec 3.0C and earlier does not restrict access to the UploadServlet Java/JSP servlet, which allows remote attackers to upload files and execute arbitrary commands. NVD-CWE-Other
CVE-2000-1024 2017-10-10 10:29 2000-12-11 Show GitHub Exploit DB Packet Storm
346134 - checkpoint firewall-1 The client authentication interface for Check Point Firewall-1 4.0 and earlier generates different error messages for invalid usernames versus invalid passwords, which allows remote attackers to iden… NVD-CWE-Other
CVE-2000-1032 2017-10-10 10:29 2000-12-11 Show GitHub Exploit DB Packet Storm
346135 - extent_technologies rbs_isp Directory traversal vulnerability in Extent RBS ISP web server allows remote attackers to read sensitive information via a .. (dot dot) attack on the Image parameter. NVD-CWE-Other
CVE-2000-1036 2017-10-10 10:29 2000-12-11 Show GitHub Exploit DB Packet Storm
346136 - ibm as400_firewall The web administration interface for IBM AS/400 Firewall allows remote attackers to cause a denial of service via an empty GET request. NVD-CWE-Other
CVE-2000-1038 2017-10-10 10:29 2000-12-11 Show GitHub Exploit DB Packet Storm
346137 - suse suse_linux Format string vulnerability in logging function of ypbind 3.3, while running in debug mode, leaks file descriptors and allows an attacker to cause a denial of service. NVD-CWE-Other
CVE-2000-1040 2017-10-10 10:29 2000-12-11 Show GitHub Exploit DB Packet Storm
346138 - swen_thuemmler ypbind Buffer overflow in ypbind 3.3 possibly allows an attacker to gain root privileges. NVD-CWE-Other
CVE-2000-1041 2017-10-10 10:29 2000-12-11 Show GitHub Exploit DB Packet Storm
346139 - mandrakesoft mandrake_linux Buffer overflow in ypserv in Mandrake Linux 7.1 and earlier, and possibly other Linux operating systems, allows an attacker to gain root privileges when ypserv is built without a vsyslog() function. NVD-CWE-Other
CVE-2000-1042 2017-10-10 10:29 2000-12-11 Show GitHub Exploit DB Packet Storm
346140 - mandrakesoft mandrake_linux Format string vulnerability in ypserv in Mandrake Linux 7.1 and earlier, and possibly other Linux operating systems, allows an attacker to gain root privileges when ypserv is built without a vsyslog(… NVD-CWE-Other
CVE-2000-1043 2017-10-10 10:29 2000-12-11 Show GitHub Exploit DB Packet Storm