Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4791 6.8 警告
Network
オラクル Oracle Financial Services Analytical Applications Infrastructure オラクルのOracle Financial Services Analytical Applications Infrastructureにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-34314 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
4792 4.8 警告
Network
オラクル Oracle Financial Services Analytical Applications Infrastructure オラクルのOracle Financial Services Analytical Applications Infrastructureにおける認可に関する脆弱性 CWE-285
不適切な認可
CVE-2026-34321 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
4793 6.3 警告
Network
オラクル Oracle Life Sciences InForm オラクルのOracle Life Sciences InFormにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34323 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
4794 6.5 警告
Network
オラクル Oracle Life Sciences InForm オラクルのOracle Life Sciences InFormにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34324 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
4795 6.8 警告
Local
オラクル Oracle Financial Services Analytical Applications Infrastructure オラクルのOracle Financial Services Analytical Applications Infrastructureにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-34325 2026-04-27 11:22 2026-04-21 Show GitHub Exploit DB Packet Storm
4796 8.8 重要
Network
jellyfin jellyfin jellyfinにおける複数の脆弱性 CWE-187
CWE-20
CWE-22
CVE-2026-35031 2026-04-27 11:22 2026-04-14 Show GitHub Exploit DB Packet Storm
4797 6.5 警告
Network
jellyfin jellyfin jellyfinにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-35034 2026-04-27 11:22 2026-04-14 Show GitHub Exploit DB Packet Storm
4798 8.8 重要
Network
Glances project Glances Nicolas Hennion (nicolargo)のGlancesにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-35587 2026-04-27 11:21 2026-04-21 Show GitHub Exploit DB Packet Storm
4799 9.3 緊急
Network
nanobot nanobot nanobotにおける WebSocket でのオリジン検証の欠如に関する脆弱性 CWE-1385
WebSocket でのオリジン検証の欠如
CVE-2026-35589 2026-04-27 11:21 2026-04-14 Show GitHub Exploit DB Packet Storm
4800 8.8 重要
Network
webkul krayin crm webkulのkrayin crmにおける複数の脆弱性 CWE-269
CWE-639
CVE-2026-38529 2026-04-27 11:21 2026-04-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347541 - bea weblogic_server Cross-site scripting (XSS) vulnerability in BEA Admin Console 8.1 allows remote attackers to execute arbitrary web script or HTML via the server parameter to a JndiFramesetAction action. NVD-CWE-Other
CVE-2005-1380 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
347542 - oracle application_server_web_cache Multiple cross-site scripting (XSS) vulnerabilities in Oracle Webcache 9i allow remote attackers to inject arbitrary web script or HTML via the (1) cache_dump_file or (2) PartialPageErrorPage paramet… NVD-CWE-Other
CVE-2005-1381 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
347543 - oracle application_server_web_cache The webcacheadmin module in Oracle Webcache 9i allows remote attackers to corrupt arbitrary files via a full pathname in the cache_dump_file parameter. NVD-CWE-Other
CVE-2005-1382 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
347544 - oracle application_server The OHS component 1.0.2 through 10.x, when UseWebcacheIP is disabled, in Oracle Application Server allows remote attackers to bypass HTTP Server mod_access restrictions via a request to the webcache … NVD-CWE-Other
CVE-2005-1383 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
347545 - coinsoft_technologies phpcoin Multiple SQL injection vulnerabilities in phpCoin 1.2.2 allow remote attackers to execute arbitrary SQL commands via the (1) search parameter to index.php, (2) phpcoinsessid parameter to login.php, (… NVD-CWE-Other
CVE-2005-1384 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
347546 - apsis pound Buffer overflow in the add_port function in APSIS Pound 1.8.2 and earlier allows remote attackers to execute arbitrary code via a long Host HTTP header. NVD-CWE-Other
CVE-2005-1391 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
347547 - php-calendar php-calendar SQL injection vulnerability in search.php for PHP-Calendar before 0.10.3 allows remote attackers to execute arbitrary SQL commands via unknown vectors. NVD-CWE-Other
CVE-2005-1397 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
347548 - ibm lotus_notes HTTP response splitting vulnerability in the @SetHTTPHeader function in Lotus Domino 6.5.x before 6.5.4 and 6.0.x before 6.0.5 allows attackers to poison the web cache via malicious applications. NVD-CWE-Other
CVE-2005-1405 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
347549 - cybration icuii Cybration ICUII 7.0 stores passwords in plaintext in the world-readable icuii.ini file, which allows local users to gain privileges. NVD-CWE-Other
CVE-2005-1411 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
347550 - envivosoft envivo_cms Multiple SQL injection vulnerabilities in enVivo!CMS allow remote attackers to execute arbitrary SQL commands and gain privileges via the (1) username or (2) password parameters to admin_login.asp, o… NVD-CWE-Other
CVE-2005-1413 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm