Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
481 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows WAN ARP Driver Elevation of Privilege Vulnerability New CWE-416
解放済みメモリの使用
CVE-2026-40408 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
482 7 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows SMB クライアントの特権の昇格の脆弱性 New CWE-416
解放済みメモリの使用
CVE-2026-40410 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
483 9.6 緊急
Network
TanStack tanstack/react-start-rsc
@tanstack/router-devtools-core
@tanstack/router-utils
@tanstack/react-router-devtools
@tanstack/valibot-adapter
@tanstack/zod-adapter
@tanstack/vue-start-se…
TanStackの@tanstack/arktype-adapter等の複数製品における埋め込まれた悪意のあるコードに関する脆弱性 New CWE-506
埋め込まれた悪意のあるコード
CVE-2026-45321 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
484 6.5 警告
Network
IBM
HCL Technologies Limited
BigFix WebUI Reports
BigFix WebUI Common
BigFix WebUI API
BigFix WebUI Framework
BigFix WebUI Profile Management
BigFix WebU…
HCL Technologies LimitedのBigFix WebUI API等の複数製品における不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2025-15633 2026-05-18 12:06 2026-05-9 Show GitHub Exploit DB Packet Storm
485 4.3 警告
Network
IBM
HCL Technologies Limited
BigFix WebUI Reports
BigFix WebUI Common
BigFix WebUI API
BigFix WebUI Framework
BigFix WebUI Profile Management
BigFix WebU…
HCL Technologies LimitedのBigFix WebUI API等の複数製品における認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2025-15634 2026-05-18 12:06 2026-05-9 Show GitHub Exploit DB Packet Storm
486 4.9 警告
Network
Buffalo Americas, Inc. TeraStation NAS TS5400R Firmware Buffalo Americas, Inc.のTeraStation NAS TS5400R Firmwareにおける重要なリソースに対する不適切なパーミッションの割り当てに関する脆弱性 New CWE-732
重要なリソースに対する不適切なパーミッションの割り当て
CVE-2026-29516 2026-05-18 12:06 2026-03-16 Show GitHub Exploit DB Packet Storm
487 6.5 警告
Network
Mem0 mem0 Mem0のmem0における複数の脆弱性 New CWE-306
CWE-862
CVE-2026-31241 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
488 9.1 緊急
Network
Mem0 mem0 Mem0のmem0における複数の脆弱性 New CWE-306
CWE-862
CVE-2026-31242 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
489 6.5 警告
Network
Mem0 mem0 Mem0のmem0における複数の脆弱性 New CWE-306
CWE-862
CVE-2026-31243 2026-05-18 12:05 2026-05-12 Show GitHub Exploit DB Packet Storm
490 6.5 警告
Network
Mem0 mem0 Mem0のmem0における複数の脆弱性 New CWE-306
CWE-862
CVE-2026-31244 2026-05-18 12:05 2026-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346131 - scriptlogic scriptlogic ScriptLogic 4.01, and possibly other versions before 4.14, uses insecure permissions for the LOGS$ share, which allows users to modify log records and possibly execute arbitrary code. NVD-CWE-Other
CVE-2003-1122 2017-07-11 10:29 2003-12-31 Show GitHub Exploit DB Packet Storm
346132 - sun jdk
jre
Sun Java Runtime Environment (JRE) and SDK 1.4.0_01 and earlier allows untrusted applets to access certain information within trusted applets, which allows attackers to bypass the restrictions of the… NVD-CWE-Other
CVE-2003-1123 2017-07-11 10:29 2003-12-31 Show GitHub Exploit DB Packet Storm
346133 - sun management\+center Unknown vulnerability in Sun Management Center (SunMC) 2.1.1, 3.0, and 3.0 Revenue Release (RR), when installed and run by root, allows local users to create or modify arbitrary files. NVD-CWE-Other
CVE-2003-1124 2017-07-11 10:29 2003-12-31 Show GitHub Exploit DB Packet Storm
346134 - whale_communications e-gap Whale Communications e-Gap 2.5 on Windows 2000 allows remote attackers to obtain the source code for the login page via the HTTP TRACE method, which bypasses the preprocessor. NVD-CWE-Other
CVE-2003-1127 2017-07-11 10:29 2003-12-31 Show GitHub Exploit DB Packet Storm
346135 - x2_studios xmms_remote XMMS.pm in X2 XMMS Remote, as obtained from the vendor server between 4 AM 11 AM PST on May 7, 2003, allows remote attackers to execute arbitrary commands via shell metacharacters in a request to TCP… NVD-CWE-Other
CVE-2003-1128 2017-07-11 10:29 2003-12-31 Show GitHub Exploit DB Packet Storm
346136 - yahoo audio_conferencing_activex_control Buffer overflow in the Yahoo! Audio Conferencing (aka Voice Chat) ActiveX control before 1,0,0,45 allows remote attackers to cause a denial of service and possibly execute arbitrary code via a URL wi… NVD-CWE-Other
CVE-2003-1129 2017-07-11 10:29 2003-12-31 Show GitHub Exploit DB Packet Storm
346137 - activecampaign knowledgebuilder PHP remote file inclusion vulnerability in index.php in KnowledgeBuilder, referred to as KnowledgeBase, allows remote attackers to execute arbitrary PHP code by modifying the page parameter to refere… NVD-CWE-Other
CVE-2003-1131 2017-07-11 10:29 2003-12-31 Show GitHub Exploit DB Packet Storm
346138 - ritlabs the_bat Rit Research Labs The Bat! 1.0.11 through 2.0 creates new accounts with insecure ACLs, which allows local users to read other users' email messages. NVD-CWE-Other
CVE-2003-1133 2017-07-11 10:29 2003-12-31 Show GitHub Exploit DB Packet Storm
346139 - chi_kien_uong chi_kien_uong_guestbook Cross-site scripting (XSS) vulnerability in Chi Kien Uong Guestbook 1.51 allows remote attackers to inject arbitrary web script or HTML via (1) HTML in a posted message or (2) Javascript in an onmous… NVD-CWE-Other
CVE-2003-1136 2017-07-11 10:29 2003-10-23 Show GitHub Exploit DB Packet Storm
346140 - charles_steinkuehler sh-httpd Charles Steinkuehler sh-httpd 0.3 and 0.4 allows remote attackers to read files or execute arbitrary CGI scripts via a GET request that contains an asterisk (*) wildcard character. NVD-CWE-Other
CVE-2003-1137 2017-07-11 10:29 2003-10-27 Show GitHub Exploit DB Packet Storm