Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5051 7.5 重要
Network
マイクロソフト Microsoft .NET Framework
.NET
.NET、.NET Framework、Visual Studio のサービス拒否の脆弱性 CWE-20
CWE-400
CWE-835
CVE-2026-33116 2026-05-8 12:23 2026-04-14 Show GitHub Exploit DB Packet Storm
5052 8.8 重要
Network
マイクロソフト SQL Server 2016
SQL Server 2017
SQL Server 2022
SQL Server 2019
SQL Server 2025
Microsoft SQL Server のリモート コードが実行される脆弱性 CWE-822
信頼性のないポインタデリファレンス
CVE-2026-33120 2026-05-8 12:23 2026-04-14 Show GitHub Exploit DB Packet Storm
5053 5.9 警告
Network
Apache Software Foundation Apache Log4j Apache Software FoundationのApache Log4jにおける複数の脆弱性 CWE-295
CWE-297
CVE-2026-34477 2026-05-8 12:23 2026-04-10 Show GitHub Exploit DB Packet Storm
5054 7.5 重要
Network
Apache Software Foundation Apache Log4j Apache Software FoundationのApache Log4jにおけるエンコードおよびエスケープに関する脆弱性 CWE-116
不適切なエンコード、または出力のエスケープ
CVE-2026-34479 2026-05-8 12:23 2026-04-10 Show GitHub Exploit DB Packet Storm
5055 7.4 重要
Network
GNU Project
レッドハット
Red Hat Hardened Images
Red Hat Enterprise Linux
Red Hat OpenShift Container Platform
GnuTLS
GNU Project等の複数ベンダの製品における大文字と小文字の区別の不適切な処理に関する脆弱性 CWE-178
大文字と小文字の区別の不適切な処理
CVE-2026-3833 2026-05-8 12:23 2026-04-30 Show GitHub Exploit DB Packet Storm
5056 9.1 緊急
Network
Apache Software Foundation Apache Wicket Apache Software FoundationのApache Wicketにおけるセッションの固定化の脆弱性 CWE-384
CWE-384
CVE-2026-40010 2026-05-8 12:23 2026-05-6 Show GitHub Exploit DB Packet Storm
5057 9.1 緊急
Network
Apache Software Foundation Apache OpenNLP Apache Software FoundationのApache OpenNLPにおけるXML 外部エンティティの脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2026-40682 2026-05-8 12:23 2026-05-4 Show GitHub Exploit DB Packet Storm
5058 9.8 緊急
Network
Apache Software Foundation Apache OpenNLP Apache Software FoundationのApache OpenNLPにおけるクラスまたはコードを選択する外部から制御された入力の使用に関する脆弱性 CWE-470
クラスまたはコードを選択する外部から制御された入力の使用
CVE-2026-42027 2026-05-8 12:23 2026-05-4 Show GitHub Exploit DB Packet Storm
5059 6.5 警告
Network
nginxui Nginx UI Nginx UI TeamのNginx UIにおける複数の脆弱性 CWE-200
CWE-863
CVE-2026-42220 2026-05-8 12:23 2026-05-4 Show GitHub Exploit DB Packet Storm
5060 9.8 緊急
Network
nginxui Nginx UI Nginx UI TeamのNginx UIにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-42221 2026-05-8 12:23 2026-05-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346391 - symantec firewall_vpn_appliance_100
firewall_vpn_appliance_200
firewall_vpn_appliance_200r
Symantec FireWall/VPN Appliance model 200 records a cleartext password for the password administration page, which may be cached on the administrator's local system or in a proxy, which allows attack… NVD-CWE-Other
CVE-2004-0190 2017-10-10 10:30 2004-03-15 Show GitHub Exploit DB Packet Storm
346392 - mozilla mozilla Mozilla before 1.4.2 executes Javascript events in the context of a new page while it is being loaded, allowing it to interact with the previous page (zombie document) and enable cross-domain and cro… NVD-CWE-Other
CVE-2004-0191 2017-10-10 10:30 2004-03-15 Show GitHub Exploit DB Packet Storm
346393 - iss blackice_agent_server
blackice_pc_protection
blackice_server_protection
realsecure_desktop
realsecure_guard
realsecure_network
realsecure_sentry
realsecure_server_sensor
prove…
Heap-based buffer overflow in the ISS Protocol Analysis Module (PAM), as used in certain versions of RealSecure Network 7.0 and Server Sensor 7.0, Proventia A, G, and M Series, RealSecure Desktop 7.0… NVD-CWE-Other
CVE-2004-0193 2017-10-10 10:30 2004-03-15 Show GitHub Exploit DB Packet Storm
346394 - adobe acrobat_reader Stack-based buffer overflow in the OutputDebugString function for Adobe Acrobat Reader 5.1 allows remote attackers to execute arbitrary code via a PDF document with XML Forms Data Format (XFDF) data. NVD-CWE-Other
CVE-2004-0194 2017-10-10 10:30 2004-03-29 Show GitHub Exploit DB Packet Storm
346395 - netbsd
openbsd
netbsd
openbsd
OpenBSD 3.4 and NetBSD 1.6 and 1.6.1 allow remote attackers to cause a denial of service (crash) by sending an IPv6 packet with a small MTU to a listening port and then issuing a TCP connect to that … NVD-CWE-Other
CVE-2004-0257 2017-10-10 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
346396 - apache
ibm
http_server PHP 4.3.4 and earlier in Apache 1.x and 2.x (mod_php) can leak global variables between virtual hosts that are handled by the same Apache child process but have different settings, which could allow … NVD-CWE-Other
CVE-2004-0263 2017-10-10 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
346397 - clam_anti-virus clamav libclamav in Clam AntiVirus 0.65 allows remote attackers to cause a denial of service (crash) via a uuencoded e-mail message with an invalid line length (e.g., a lowercase character), which causes an… NVD-CWE-Other
CVE-2004-0270 2017-10-10 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
346398 - realnetworks realone_desktop_manager
realone_enterprise_desktop
realone_player
Directory traversal vulnerability in RealOne Player, RealOne Player 2.0, and RealOne Enterprise Desktop allows remote attackers to upload arbitrary files via an RMP file that contains .. (dot dot) se… CWE-22
Path Traversal
CVE-2004-0273 2017-10-10 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
346399 - eggheads eggdrop_irc_bot Share.mod in Eggheads Eggdrop IRC bot 1.6.10 through 1.6.15 can mistakenly assign STAT_OFFERED status to a bot that is not a sharebot, which allows remote attackers to use STAT_OFFERED to promote a b… NVD-CWE-Other
CVE-2004-0274 2017-10-10 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
346400 - ipswitch imail Buffer overflow in the Lightweight Directory Access Protocol (LDAP) daemon (iLDAP.exe 3.9.15.10) in Ipswitch IMail Server 8.03 allows remote attackers to cause a denial of service (crash) and execute… NVD-CWE-Other
CVE-2004-0297 2017-10-10 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm