Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4891 9.1 緊急
Network
Open JS Foundation fastify/middie Open JS Foundationの@fastify/middieにおける解釈の競合に関する脆弱性 CWE-436
解釈の競合
CVE-2026-6270 2026-04-24 11:40 2026-04-16 Show GitHub Exploit DB Packet Storm
4892 9.9 緊急
Network
ASUSTOR Inc. data master ASUSTOR Inc.のdata masterにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-6643 2026-04-24 11:40 2026-04-20 Show GitHub Exploit DB Packet Storm
4893 9.1 緊急
Network
ASUSTOR Inc. data master ASUSTOR Inc.のdata masterにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-6644 2026-04-24 11:40 2026-04-20 Show GitHub Exploit DB Packet Storm
4894 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-6746 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
4895 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-6747 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
4896 9.8 緊急
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における初期化されていない変数の使用に関する脆弱性 CWE-457
初期化されていない変数の使用
CVE-2026-6748 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
4897 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における初期化されていないリソースの使用に関する脆弱性 CWE-908
初期化されていないリソースの使用
CVE-2026-6749 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
4898 9.8 緊急
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-6750 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
4899 7.3 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における初期化されていない変数の使用に関する脆弱性 CWE-457
初期化されていない変数の使用
CVE-2026-6751 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
4900 7.3 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品におけるバッファエラーの脆弱性 CWE-119
バッファエラー
CVE-2026-6752 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
349971 - horde horde Horde before 2.2.4 allows remote malicious web sites to steal session IDs and read or create arbitrary email by stealing the ID from a referrer URL. NVD-CWE-Other
CVE-2003-0728 2016-10-18 11:36 2003-10-20 Show GitHub Exploit DB Packet Storm
349972 - tellurian tftpdnt Buffer overflow in Tellurian TftpdNT 1.8 allows remote attackers to execute arbitrary code via a TFTP request with a long filename. NVD-CWE-Other
CVE-2003-0729 2016-10-18 11:36 2003-10-20 Show GitHub Exploit DB Packet Storm
349973 - xfree86_project
netbsd
x11r6
netbsd
Multiple integer overflows in the font libraries for XFree86 4.3.0 allow local or remote attackers to cause a denial of service or execute arbitrary code via heap-based and stack-based buffer overflo… NVD-CWE-Other
CVE-2003-0730 2016-10-18 11:36 2003-10-20 Show GitHub Exploit DB Packet Storm
349974 - phpwebsite phpwebsite SQL injection vulnerability in the Calendar module of phpWebSite 0.9.x and earlier allows remote attackers to execute arbitrary SQL queries, as demonstrated using the year parameter. NVD-CWE-Other
CVE-2003-0735 2016-10-18 11:36 2003-10-20 Show GitHub Exploit DB Packet Storm
349975 - phpsysinfo phpsysinfo Directory traversal vulnerability in phpSysInfo 2.1 and earlier allows attackers with write access to a local directory to read arbitrary files as the PHP user or cause a denial of service via .. (do… NVD-CWE-Other
CVE-2003-0536 2016-10-18 11:35 2003-08-18 Show GitHub Exploit DB Packet Storm
349976 - netscape navigator Buffer overflow in the Client Detection Tool (CDT) plugin (npcdt.dll) for Netscape 7.02 allows remote attackers to execute arbitrary code via an attachment with a long filename. NVD-CWE-Other
CVE-2003-0553 2016-10-18 11:35 2003-08-18 Show GitHub Exploit DB Packet Storm
349977 - neomodus direct_connect NeoModus Direct Connect 1.0 build 9, and possibly other versions, allows remote attackers to cause a denial of service (connection and possibly memory exhaustion) via a flood of ConnectToMe requests … NVD-CWE-Other
CVE-2003-0554 2016-10-18 11:35 2003-08-18 Show GitHub Exploit DB Packet Storm
349978 - imagemagick imagemagick ImageMagick 5.4.3.x and earlier allows attackers to cause a denial of service (crash) and possibly execute arbitrary code via a "%x" filename, possibly triggering a format string vulnerability. NVD-CWE-Other
CVE-2003-0555 2016-10-18 11:35 2003-08-18 Show GitHub Exploit DB Packet Storm
349979 - polycom mgc-100
mgc-25
mgc-50
Polycom MGC 25 allows remote attackers to cause a denial of service (crash) via a large number of "user" requests to the control port 5003, as demonstrated using the blast TCP stress tester. NVD-CWE-Other
CVE-2003-0556 2016-10-18 11:35 2003-08-18 Show GitHub Exploit DB Packet Storm
349980 - lagarde storefront SQL injection vulnerability in login.asp for StoreFront 6.0, and possibly earlier versions, allows remote attackers to obtain sensitive user information via SQL statements in the password field. NVD-CWE-Other
CVE-2003-0557 2016-10-18 11:35 2003-08-18 Show GitHub Exploit DB Packet Storm