Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5241 8.8 重要
Network
flowiseai flowise flowiseaiのflowiseにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-41138 2026-04-27 10:47 2026-04-23 Show GitHub Exploit DB Packet Storm
5242 7 重要
Network
openremote openremote openremoteにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-41166 2026-04-27 10:47 2026-04-22 Show GitHub Exploit DB Packet Storm
5243 5.3 警告
Network
pypdf project pypdf pypdf projectのpypdfにおける過度な反復の脆弱性 CWE-834
過度なイテレーション
CVE-2026-41168 2026-04-27 10:46 2026-04-22 Show GitHub Exploit DB Packet Storm
5244 9.8 緊急
Network
flowiseai flowise flowiseaiのflowiseにおける不完全なブラックリストに関する脆弱性 CWE-184
不完全なブラックリスト
CVE-2026-41264 2026-04-27 10:46 2026-04-23 Show GitHub Exploit DB Packet Storm
5245 9.8 緊急
Network
flowiseai flowise flowiseaiのflowiseにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2026-41265 2026-04-27 10:46 2026-04-23 Show GitHub Exploit DB Packet Storm
5246 7.5 重要
Network
flowiseai flowise flowiseaiのflowiseにおける複数の脆弱性 CWE-200
CWE-522
CWE-862
CVE-2026-41266 2026-04-27 10:46 2026-04-23 Show GitHub Exploit DB Packet Storm
5247 9.8 緊急
Network
flowiseai flowise flowiseaiのflowiseにおける複数の脆弱性 CWE-639
CWE-915
CVE-2026-41267 2026-04-27 10:46 2026-04-23 Show GitHub Exploit DB Packet Storm
5248 9.8 緊急
Network
flowiseai flowise flowiseaiのflowiseにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-41268 2026-04-27 10:46 2026-04-23 Show GitHub Exploit DB Packet Storm
5249 8.8 重要
Network
flowiseai flowise flowiseaiのflowiseにおける危険なタイプのファイルの無制限アップロードに関する脆弱性 CWE-434
危険なタイプのファイルの無制限アップロード
CVE-2026-41269 2026-04-27 10:46 2026-04-23 Show GitHub Exploit DB Packet Storm
5250 8.3 重要
Network
flowiseai flowise flowiseaiのflowiseにおける複数の脆弱性 CWE-284
CWE-918
CVE-2026-41270 2026-04-27 10:46 2026-04-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348821 - jabberstudio jabber_gadu-gadu_transport Unknown vulnerability in Jabber Gadu-Gadu Transport (a.k.a. jabber-gg-transport) 2.0.x before 2.0.8 allows remote attackers to cause a denial of service (infinite loop) via user re-registration. NVD-CWE-Other
CVE-2004-2389 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
348822 - jabberstudio jabber_gadu-gadu_transport The roster import functionality in Jabber Gadu-Gadu Transport (a.k.a. jabber-gg-transport) 2.0.x before 2.0.8, when using libgadu 1.0 and later, allows attackers to cause a denial of service via unkn… NVD-CWE-Other
CVE-2004-2390 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
348823 - jabberstudio jabber_gadu-gadu_transport Jabber Gadu-Gadu Transport (a.k.a. jabber-gg-transport) 2.0.x before 2.0.8 allows remote attackers to cause a denial of service a message with an empty <priority/> tag. NVD-CWE-Other
CVE-2004-2391 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
348824 - mandrakesoft mandrake_linux
mandrake_linux_corporate_server
libuser 0.51.7 allows attackers to cause a denial of service (crash or disk consumption) via unknown attack vectors, related to read failures and other bugs. NVD-CWE-Other
CVE-2004-2392 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
348825 - sun jsse Java Secure Socket Extension (JSSE) 1.0.3 through 1.0.3_2 does not properly validate the certificate chain of a client or server, which allows remote attackers to falsely authenticate peers for SSL/T… NVD-CWE-Other
CVE-2004-2393 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
348826 - mandrakesoft mandrake_multi_network_firewall
mandrake_linux
mandrake_linux_corporate_server
Off-by-one error in passwd 0.68 and earlier, when using the --stdin option, causes passwd to use the first 78 characters of a password instead of the first 79, which results in a small reduction of t… NVD-CWE-Other
CVE-2004-2394 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
348827 - mandrakesoft mandrake_multi_network_firewall
mandrake_linux
mandrake_linux_corporate_server
Memory leak in passwd 0.68 allows local users to cause a denial of service (memory consumption) via a large number of failed read attempts from the password buffer. NVD-CWE-Other
CVE-2004-2395 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
348828 - - - passwd 0.68 does not check the return code for the pam_start function, which has unknown impact and attack vectors that may prevent "safe and proper operation" of PAM. NVD-CWE-Other
CVE-2004-2396 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
348829 - netenberg fantastico_de_luxe Netenberg Fantastico De Luxe 2.8 uses database file names that contain the associated usernames, which allows local users to determine valid usernames and conduct brute force attacks by reading the f… NVD-CWE-Other
CVE-2004-2398 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
348830 - winftp_server winftp_server WinFTP Server 1.6 stores username and password credentials in plaintext in the data\user.wfd file, which allows local users to gain access to the credentials. NVD-CWE-Other
CVE-2004-2400 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm