Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5181 7.4 重要
Network
Eclipse Foundation Jetty Eclipse FoundationのJettyにおける複数の脆弱性 CWE-226
CWE-287
CVE-2026-5795 2026-04-24 11:40 2026-04-8 Show GitHub Exploit DB Packet Storm
5182 7.5 重要
Network
GNU Project GNU C Library GNU ProjectのGNU C Libraryにおけるバッファアンダーリードの脆弱性 CWE-127
バッファアンダーリード
CVE-2026-5928 2026-04-24 11:40 2026-04-20 Show GitHub Exploit DB Packet Storm
5183 7.1 重要
Network
ConnectWise, Inc. automate ConnectWise, Inc.のautomateにおける重要な情報の平文での送信に関する脆弱性 CWE-319
重要な情報の平文での送信
CVE-2026-6066 2026-04-24 11:40 2026-04-20 Show GitHub Exploit DB Packet Storm
5184 9.1 緊急
Network
Open JS Foundation fastify/middie Open JS Foundationの@fastify/middieにおける解釈の競合に関する脆弱性 CWE-436
解釈の競合
CVE-2026-6270 2026-04-24 11:40 2026-04-16 Show GitHub Exploit DB Packet Storm
5185 9.9 緊急
Network
ASUSTOR Inc. data master ASUSTOR Inc.のdata masterにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-6643 2026-04-24 11:40 2026-04-20 Show GitHub Exploit DB Packet Storm
5186 9.1 緊急
Network
ASUSTOR Inc. data master ASUSTOR Inc.のdata masterにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-6644 2026-04-24 11:40 2026-04-20 Show GitHub Exploit DB Packet Storm
5187 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-6746 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
5188 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-6747 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
5189 9.8 緊急
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における初期化されていない変数の使用に関する脆弱性 CWE-457
初期化されていない変数の使用
CVE-2026-6748 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
5190 7.5 重要
Network
Mozilla Foundation Mozilla Firefox
Mozilla Thunderbird
Mozilla FoundationのMozilla Firefox等の複数製品における初期化されていないリソースの使用に関する脆弱性 CWE-908
初期化されていないリソースの使用
CVE-2026-6749 2026-04-24 11:40 2026-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
353631 - francisco_burzi php-nuke Cross-site scripting (XSS) vulnerability in PHP-Nuke 5.3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) uname parameter in user.php, (2) ttitle, letter and f… NVD-CWE-Other
CVE-2001-1524 2008-09-11 04:10 2001-12-31 Show GitHub Exploit DB Packet Storm
353632 - microsoft windows_me ssdpsrv.exe in Windows ME allows remote attackers to cause a denial of service by sending multiple newlines in a Simple Service Discovery Protocol (SSDP) message. NOTE: multiple replies to the origi… NVD-CWE-Other
CVE-2001-1552 2008-09-11 04:10 2001-12-31 Show GitHub Exploit DB Packet Storm
353633 - ibm websphere_application_server Cross-site scripting vulnerability in IBM WebSphere 3.02 and 3.5 FP2 allows remote attackers to execute Javascript by inserting the Javascript into (1) a request for a .JSP file, or (2) a request to … NVD-CWE-Other
CVE-2001-0824 2008-09-11 04:09 2001-12-6 Show GitHub Exploit DB Packet Storm
353634 - grant_averett ceberus_ftp_server Cerberus FTP server 1.0 - 1.5 allows remote attackers to cause a denial of service (crash) via a large number of "PASV" requests. NVD-CWE-Other
CVE-2001-0827 2008-09-11 04:09 2001-12-6 Show GitHub Exploit DB Packet Storm
353635 - apache tomcat A cross-site scripting vulnerability in Apache Tomcat 3.2.1 allows a malicious webmaster to embed Javascript in a request for a .JSP file, which causes the Javascript to be inserted into an error mes… NVD-CWE-Other
CVE-2001-0829 2008-09-11 04:09 2001-12-6 Show GitHub Exploit DB Packet Storm
353636 - sane sane Certain backend drivers in the SANE library 1.0.3 and earlier, as used in frontend software such as XSane, allows local users to modify files via a symlink attack on temporary files. NVD-CWE-Other
CVE-2001-0890 2008-09-11 04:09 2001-12-11 Show GitHub Exploit DB Packet Storm
353637 - washington_university wu-ftpd Vulnerability in wu-ftpd 2.6.0, and possibly earlier versions, which is unrelated to the ftpglob bug described in CVE-2001-0550. NVD-CWE-Other
CVE-2001-0935 2008-09-11 04:09 2001-11-28 Show GitHub Exploit DB Packet Storm
353638 - paul_m._jones phorecast Phorecast PHP script before 0.40 allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable. NVD-CWE-Other
CVE-2001-1049 2008-09-11 04:09 2001-10-2 Show GitHub Exploit DB Packet Storm
353639 - phpadsnew phpadsnew PHPAdsNew PHP script allows remote attackers to include arbitrary files from remote web sites via an HTTP request that sets the includedir variable. NVD-CWE-Other
CVE-2001-1054 2008-09-11 04:09 2001-10-2 Show GitHub Exploit DB Packet Storm
353640 - caldera openserver Buffer overflow in mana in OpenServer 5.0.6a and earlier allows local users to execute arbitrary code. NVD-CWE-Other
CVE-2001-1062 2008-09-11 04:09 2001-08-31 Show GitHub Exploit DB Packet Storm