Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 22, 2026, 12:22 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
4931 7.5 重要
Network
Niko Fohr (fohrloop) dash-uploader Niko Fohr (fohrloop)のdash-uploaderにおける複数の脆弱性 CWE-400
CWE-670
CWE-noinfo
CVE-2026-38361 2026-05-14 10:12 2026-05-8 Show GitHub Exploit DB Packet Storm
4932 9.8 緊急
Network
Mauricio Poppe (mauriciopoppe) math-codegen Mauricio Poppe (mauriciopoppe)のmath-codegenにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-41507 2026-05-14 10:12 2026-05-8 Show GitHub Exploit DB Packet Storm
4933 9.8 緊急
Network
CROSS-CRYPT.COM CROSS CROSS-CRYPT.COMのCROSSにおける複数の脆弱性 CWE-121
CWE-122
CVE-2026-41509 2026-05-14 10:12 2026-05-8 Show GitHub Exploit DB Packet Storm
4934 7.5 重要
Network
DCIT CryptX DCITのCryptXにおける複数の脆弱性 CWE-335
CWE-338
CVE-2026-41564 2026-05-14 10:12 2026-04-23 Show GitHub Exploit DB Packet Storm
4935 6.1 警告
Network
th30d4y w4nn4d13/ip th30d4yのw4nn4d13/ipにおける複数の脆弱性 CWE-79
CWE-79
CWE-80
CVE-2026-41575 2026-05-14 10:12 2026-05-8 Show GitHub Exploit DB Packet Storm
4936 7.8 重要
Local
dail8859 Notepad Next dail8859のNotepad Nextにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-42214 2026-05-14 10:12 2026-05-7 Show GitHub Exploit DB Packet Storm
4937 7.1 重要
Network
Legeling PromptHUB LegelingのPromptHUBにおける複数の脆弱性 CWE-20
CWE-693
CWE-918
CVE-2026-42261 2026-05-14 10:12 2026-05-8 Show GitHub Exploit DB Packet Storm
4938 9.9 緊急
Network
Apache Software Foundation Polaris Apache Software FoundationのPolarisにおける複数の脆弱性 CWE-20
CWE-862
CVE-2026-42809 2026-05-14 10:12 2026-05-4 Show GitHub Exploit DB Packet Storm
4939 9.9 緊急
Network
Apache Software Foundation Polaris Apache Software FoundationのPolarisにおける複数の脆弱性 CWE-116
CWE-20
CVE-2026-42810 2026-05-14 10:12 2026-05-4 Show GitHub Exploit DB Packet Storm
4940 9.9 緊急
Network
Apache Software Foundation Polaris Apache Software FoundationのPolarisにおける複数の脆弱性 CWE-20
CWE-917
CVE-2026-42811 2026-05-14 10:12 2026-05-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346011 - squid squid The NTLM component in Squid 2.5.STABLE7 and earlier allows remote attackers to cause a denial of service (crash) via a malformed NTLM type 3 message that triggers a NULL dereference. NVD-CWE-Other
CVE-2005-0097 2017-10-11 10:29 2005-01-11 Show GitHub Exploit DB Packet Storm
346012 - squirrelmail squirrelmail PHP remote file inclusion vulnerability in webmail.php in SquirrelMail before 1.4.4 allows remote attackers to execute arbitrary PHP code by modifying a URL parameter to reference a URL on a remote w… CWE-94
Code Injection
CVE-2005-0103 2017-10-11 10:29 2005-01-24 Show GitHub Exploit DB Packet Storm
346013 - squirrelmail squirrelmail Cross-site scripting (XSS) vulnerability in webmail.php in SquirrelMail before 1.4.4 allows remote attackers to inject arbitrary web script or HTML via certain integer variables. NVD-CWE-Other
CVE-2005-0104 2017-10-11 10:29 2005-01-29 Show GitHub Exploit DB Packet Storm
346014 - linux linux_kernel Linux kernel 2.6 on Itanium (ia64) architectures allows local users to cause a denial of service via a "missing Itanium syscall table entry." NVD-CWE-Other
CVE-2005-0137 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm
346015 - mozilla firefox
mozilla
Firefox before 1.0 and Mozilla before 1.7.5 allow remote attackers to load local files via links "with a custom getter and toString method" that are middle-clicked by the user to be opened in a new t… NVD-CWE-Other
CVE-2005-0141 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm
346016 - mozilla firefox
mozilla
thunderbird
Firefox 0.9, Thunderbird 0.6 and other versions before 0.9, and Mozilla 1.7 before 1.7.5 save temporary files with world-readable permissions, which allows local users to read certain web content or … NVD-CWE-Other
CVE-2005-0142 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm
346017 - mozilla firefox
mozilla
Firefox before 1.0 and Mozilla before 1.7.5 display the SSL lock icon when an insecure page loads a binary file from a trusted site, which could facilitate phishing attacks. NVD-CWE-Other
CVE-2005-0143 2017-10-11 10:29 2005-03-23 Show GitHub Exploit DB Packet Storm
346018 - mozilla firefox
mozilla
Firefox before 1.0 and Mozilla before 1.7.5 display the secure site lock icon when a view-source: URL references a secure SSL site while an insecure page is being loaded, which could facilitate phish… NVD-CWE-Other
CVE-2005-0144 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm
346019 - mozilla firefox Firefox before 1.0 does not properly distinguish between user-generated and synthetic click events, which allows remote attackers to use Javascript to bypass the file download prompt when the user us… NVD-CWE-Other
CVE-2005-0145 2017-10-11 10:29 2005-01-24 Show GitHub Exploit DB Packet Storm
346020 - mozilla firefox
mozilla
Firefox before 1.0 and Mozilla before 1.7.5 allow remote attackers to obtain sensitive data from the clipboard via Javascript that generates a middle-click event on systems for which a middle-click p… NVD-CWE-Other
CVE-2005-0146 2017-10-11 10:29 2005-05-2 Show GitHub Exploit DB Packet Storm