Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 24, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5281 9.8 緊急
Network
Delta Electronics, INC. AS320T Firmware Delta Electronics, INC.のAS320T Firmwareにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-1951 2026-05-13 10:27 2026-04-24 Show GitHub Exploit DB Packet Storm
5282 7.5 重要
Network
Delta Electronics, INC. AS320T Firmware Delta Electronics, INC.のAS320T Firmwareにおける非公開の機能に関する脆弱性 CWE-912
非公開の機能
CVE-2026-1952 2026-05-13 10:27 2026-04-24 Show GitHub Exploit DB Packet Storm
5283 9.1 緊急
Network
DDEV DDEV DDEVにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-32885 2026-05-13 10:27 2026-04-22 Show GitHub Exploit DB Packet Storm
5284 6.5 警告
Network
langflow Langflow Desktop langflowのLangflow Desktopにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-3340 2026-05-13 10:27 2026-04-30 Show GitHub Exploit DB Packet Storm
5285 6.5 警告
Network
langflow Langflow Desktop langflowのLangflow Desktopにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-3345 2026-05-13 10:27 2026-04-30 Show GitHub Exploit DB Packet Storm
5286 6.4 警告
Network
langflow Langflow Desktop langflowのLangflow DesktopにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-3346 2026-05-13 10:27 2026-04-30 Show GitHub Exploit DB Packet Storm
5287 4.8 警告
Network
V2Board V2Board V2Boardにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-37503 2026-05-13 10:26 2026-05-1 Show GitHub Exploit DB Packet Storm
5288 7.5 重要
Network
V2Board V2Board V2BoardにおけるGET リクエストにおけるクエリ文字列からの情報漏えいに関する脆弱性 CWE-598
GET リクエストにおけるクエリ文字列からの情報漏えい
CVE-2026-37504 2026-05-13 10:26 2026-05-1 Show GitHub Exploit DB Packet Storm
5289 4.9 警告
Network
V2Board V2Board V2BoardにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2026-37505 2026-05-13 10:26 2026-05-1 Show GitHub Exploit DB Packet Storm
5290 5.4 警告
Network
Apache Software Foundation Apache-airflow-providers-keycloak Apache Software FoundationのApache-airflow-providers-keycloakにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2026-40948 2026-05-13 10:26 2026-04-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345971 - linux linux_kernel The ipt_recent kernel module (ipt_recent.c) in Linux kernel 2.6.12 and earlier does not properly perform certain time tests when the jiffies value is greater than LONG_MAX, which can cause ipt_recent… NVD-CWE-Other
CVE-2005-2873 2017-10-11 10:30 2005-09-10 Show GitHub Exploit DB Packet Storm
345972 - easy_software_products cups The is_path_absolute function in scheduler/client.c for the daemon in CUPS before 1.1.23 allows remote attackers to cause a denial of service (CPU consumption by tight loop) via a "..\.." URL in an H… NVD-CWE-Other
CVE-2005-2874 2017-10-11 10:30 2005-09-14 Show GitHub Exploit DB Packet Storm
345973 - squid squid Squid 2.5.STABLE10 and earlier, while performing NTLM authentication, does not properly handle certain request sequences, which allows attackers to cause a denial of service (daemon restart). NVD-CWE-Other
CVE-2005-2917 2017-10-11 10:30 2005-10-1 Show GitHub Exploit DB Packet Storm
345974 - realnetworks helix_player
realone_player
realplayer
rhapsody
Heap-based buffer overflow in the embedded player in multiple RealNetworks products and versions including RealPlayer 10.x, RealOne Player, and Helix Player allows remote malicious servers to cause a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2005-2922 2017-10-11 10:30 2005-12-31 Show GitHub Exploit DB Packet Storm
345975 - mozilla firefox
mozilla
Firefox 1.0.6 and Mozilla 1.7.10 allows attackers to execute arbitrary commands via shell metacharacters in a URL that is provided to the browser on the command line, which is sent unfiltered to bash. NVD-CWE-Other
CVE-2005-2968 2017-10-11 10:30 2005-09-21 Show GitHub Exploit DB Packet Storm
345976 - pam pam The SELinux version of PAM before 0.78 r3 allows local users to perform brute force password guessing attacks via unix_chkpwd, which does not log failed guesses or delay its responses. NVD-CWE-Other
CVE-2005-2977 2017-10-11 10:30 2005-11-1 Show GitHub Exploit DB Packet Storm
345977 - mozilla firefox Firefox 1.0.6 allows attackers to cause a denial of service (crash) via a Proxy Auto-Config (PAC) script that uses an eval statement. NOTE: it is not clear whether an untrusted party has any role in … NVD-CWE-Other
CVE-2005-3089 2017-10-11 10:30 2005-09-29 Show GitHub Exploit DB Packet Storm
345978 - - - The FTP server in HP-UX 10.20, B.11.00, and B.11.11, allows remote attackers to list arbitrary directories as root by running the LIST command before logging in. NVD-CWE-Other
CVE-2005-3296 2017-10-11 10:30 2005-10-24 Show GitHub Exploit DB Packet Storm
345979 - apache spamassassin SpamAssassin 3.0.4 allows attackers to bypass spam detection via an e-mail with a large number of recipients ("To" addresses), which triggers a bus error in Perl. NVD-CWE-Other
CVE-2005-3351 2017-10-11 10:30 2005-11-21 Show GitHub Exploit DB Packet Storm
345980 - ibm aix Buffer overflow in the chcons (chcon) command in IBM AIX 5.2 and 5.3, when DEBUG MALLOC is enabled, might allow attackers to execute arbitrary code via a long command line argument. NVD-CWE-Other
CVE-2005-3396 2017-10-11 10:30 2005-11-1 Show GitHub Exploit DB Packet Storm