Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5011 6.1 警告
Network
WSO2 WSO2 API Manager
WSO2 Identity Server
WSO2のWSO2 API Manager等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-6024 2026-04-24 11:34 2026-04-16 Show GitHub Exploit DB Packet Storm
5012 6.5 警告
Network
フォーティネット FortiOS
FortiPAM
FortiProxy
FortiSwitch Manager
フォーティネットのFortiOS等の複数製品におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2025-61624 2026-04-24 11:34 2026-04-14 Show GitHub Exploit DB Packet Storm
5013 5.4 警告
Network
フォーティネット FortiSandbox
FortiSandbox Cloud
フォーティネットのFortiSandbox等の複数製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-61886 2026-04-24 11:34 2026-04-14 Show GitHub Exploit DB Packet Storm
5014 5.3 警告
Network
Apache Software Foundation Apache Doris-MCP-Server Apache Software FoundationのApache Doris-MCP-ServerにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2025-66335 2026-04-24 11:34 2026-04-20 Show GitHub Exploit DB Packet Storm
5015 6.5 警告
Network
フォーティネット FortiManager Cloud
FortiAnalyzer
FortiAnalyzer Cloud
FortiManager
フォーティネットのFortiAnalyzer等の複数製品におけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2025-68649 2026-04-24 11:34 2026-04-14 Show GitHub Exploit DB Packet Storm
5016 8.4 重要
Local
Nitro Software Inc. Nitro PDF Pro Nitro Software Inc.のNitro PDF Proにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2025-69627 2026-04-24 11:34 2026-04-13 Show GitHub Exploit DB Packet Storm
5017 4.3 警告
Network
Fortra GoAnywhere Managed File Transfer FortraのGoAnywhere Managed File Transferにおけるセッション期限に関する脆弱性 CWE-613
不適切なセッション期限
CVE-2026-0971 2026-04-24 11:34 2026-04-21 Show GitHub Exploit DB Packet Storm
5018 5.4 警告
Network
Fortra GoAnywhere Managed File Transfer FortraのGoAnywhere Managed File Transferにおけるインジェクションに関する脆弱性 CWE-74
インジェクション
CVE-2026-0972 2026-04-24 11:34 2026-04-21 Show GitHub Exploit DB Packet Storm
5019 6.5 警告
Network
Fortra GoAnywhere Managed File Transfer FortraのGoAnywhere Managed File Transferにおけるインジェクションに関する脆弱性 CWE-74
インジェクション
CVE-2026-1089 2026-04-24 11:34 2026-04-21 Show GitHub Exploit DB Packet Storm
5020 4.9 警告
Network
オラクル MySQL Server オラクルのMySQL Serverにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-21998 2026-04-24 11:34 2026-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348951 - sambar sambar_server HTTP Proxy in Sambar Server before 6.0 beta 6, when security.ini lacks a 127.0.0.1 proxydeny entry, allows remote attackers to send proxy HTTP requests to the Sambar Server's administrative interface… NVD-CWE-Other
CVE-2003-1286 2017-07-11 10:29 2003-12-31 Show GitHub Exploit DB Packet Storm
348952 - sambar sambar_server Sambar Server before 6.0 beta 3 allows attackers with physical access to execute arbitrary code via a request with an MS-DOS device name such as com1.pl, con.pl, or aux.pl, which causes Perl to read … NVD-CWE-Other
CVE-2003-1287 2017-07-11 10:29 2003-12-31 Show GitHub Exploit DB Packet Storm
348953 - microsoft windows_nt The default setting for the Winlogon key entry ShutdownWithoutLogon in Windows NT allows users with physical access to shut down a Windows NT system without logging in. NVD-CWE-Other
CVE-1999-0593 2017-07-11 10:29 1999-01-1 Show GitHub Exploit DB Packet Storm
348954 - - - The netstat service is running, which provides sensitive information to remote attackers. NVD-CWE-Other
CVE-1999-0650 2017-07-11 10:29 1999-01-1 Show GitHub Exploit DB Packet Storm
348955 - linux linux_kernel The ugidd RPC interface, by design, allows remote attackers to enumerate valid usernames by specifying arbitrary UIDs that ugidd maps to local user and group names. CWE-16
Configuration
CVE-1999-0656 2017-07-11 10:29 1999-01-1 Show GitHub Exploit DB Packet Storm
348956 - linux linux_kernel This Common Vulnerabilities and Exposures (CVE) entry is a configuration issue and not a software flaw. As such, it doesn’t fit in the CVE software flaw list. The Common Vulnerability Scoring System … CWE-16
Configuration
CVE-1999-0656 2017-07-11 10:29 1999-01-1 Show GitHub Exploit DB Packet Storm
348957 - hp hp-ux Buffer overflow in chfn command in HP-UX 9.X through 10.20 allows local users to gain privileges via a long command line argument. NVD-CWE-Other
CVE-1999-1089 2017-07-11 10:29 1996-12-13 Show GitHub Exploit DB Packet Storm
348958 - sco cmw
internet_faststart
open_desktop
openserver
openserver_enterprise_system
Buffer overflow in SCO mscreen allows local users to gain root privileges via a long terminal entry (TERM) in the .mscreenrc file. NVD-CWE-Other
CVE-1999-1185 2017-07-11 10:29 1998-10-6 Show GitHub Exploit DB Packet Storm
348959 - sco open_desktop
open_desktop_lite
openserver_enterprise_system
openserver_network_system
unix
Unspecified vulnerability in pt_chmod in SCO UNIX 4.2 and earlier allows local users to gain root access. NVD-CWE-noinfo
CVE-1999-1302 2017-07-11 10:29 1994-11-30 Show GitHub Exploit DB Packet Storm
348960 - ibm aix Buffer overflow in the lex routines of nslookup for AIX 4.3 may allow attackers to cause a core dump and possibly execute arbitrary code via "long input strings." NVD-CWE-Other
CVE-1999-1574 2017-07-11 10:29 1998-07-6 Show GitHub Exploit DB Packet Storm