Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5391 6.5 警告
Network
jellyfin jellyfin jellyfinにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-35034 2026-04-27 11:22 2026-04-14 Show GitHub Exploit DB Packet Storm
5392 8.8 重要
Network
Glances project Glances Nicolas Hennion (nicolargo)のGlancesにおけるサーバサイドのリクエストフォージェリの脆弱性 CWE-918
サーバサイドリクエストフォージェリ
CVE-2026-35587 2026-04-27 11:21 2026-04-21 Show GitHub Exploit DB Packet Storm
5393 9.3 緊急
Network
nanobot nanobot nanobotにおける WebSocket でのオリジン検証の欠如に関する脆弱性 CWE-1385
WebSocket でのオリジン検証の欠如
CVE-2026-35589 2026-04-27 11:21 2026-04-14 Show GitHub Exploit DB Packet Storm
5394 8.8 重要
Network
webkul krayin crm webkulのkrayin crmにおける複数の脆弱性 CWE-269
CWE-639
CVE-2026-38529 2026-04-27 11:21 2026-04-14 Show GitHub Exploit DB Packet Storm
5395 8.1 重要
Network
webkul krayin crm webkulのkrayin crmにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-38530 2026-04-27 11:21 2026-04-14 Show GitHub Exploit DB Packet Storm
5396 8.1 重要
Network
webkul krayin crm webkulのkrayin crmにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-38532 2026-04-27 11:21 2026-04-14 Show GitHub Exploit DB Packet Storm
5397 5.4 警告
Network
Istio Istio Istioにおける複数の脆弱性 CWE-185
CWE-863
CVE-2026-39350 2026-04-27 11:21 2026-04-15 Show GitHub Exploit DB Packet Storm
5398 6.5 警告
Network
Project Jupyter nbconvert Project Jupyterのnbconvertにおける複数の脆弱性 CWE-22
CWE-73
CVE-2026-39377 2026-04-27 11:21 2026-04-21 Show GitHub Exploit DB Packet Storm
5399 6.5 警告
Network
Project Jupyter nbconvert Project Jupyterのnbconvertにおける複数の脆弱性 CWE-22
CWE-73
CVE-2026-39378 2026-04-27 11:21 2026-04-21 Show GitHub Exploit DB Packet Storm
5400 7.2 重要
Network
boidcms boidcms boidcmsにおけるPHP リモートファイルインクルージョンの脆弱性 CWE-98
PHP リモートファイルインクルージョン
CVE-2026-39387 2026-04-27 11:21 2026-04-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
349001 - leadmind popmessenger The Base64 function in PopMessenger 1.60 (before 20 Sep 2004) and earlier allows remote attackers to cause a denial of service (application crash) via invalid characters in a message, which causes se… NVD-CWE-Other
CVE-2004-1698 2017-07-11 10:31 2004-09-24 Show GitHub Exploit DB Packet Storm
349002 - pinnacle_systems showcenter SettingsBase.php in Pinnacle ShowCenter 1.51 allows remote attackers to cause a denial of service (web interface errors) via an invalid Skin parameter. NVD-CWE-Other
CVE-2004-1699 2017-07-11 10:31 2004-09-21 Show GitHub Exploit DB Packet Storm
349003 - pinnacle_systems showcenter Cross-site scripting (XSS) vulnerability in SettingsBase.php in Pinnacle ShowCenter 1.51 build 121 allows remote attackers to inject arbitrary HTML or web script via the Skin parameter, which is echo… NVD-CWE-Other
CVE-2004-1700 2017-07-11 10:31 2004-10-14 Show GitHub Exploit DB Packet Storm
349004 - gnu cfengine Heap-based buffer overflow in the AuthenticationDialogue function in cfservd for Cfengine 2.0.0 to 2.1.7p1 allows remote attackers to execute arbitrary code via a long SAUTH command during RSA authen… NVD-CWE-Other
CVE-2004-1701 2017-07-11 10:31 2004-08-9 Show GitHub Exploit DB Packet Storm
349005 - gnu cfengine The AuthenticationDialogue function in cfservd for Cfengine 2.0.0 to 2.1.7p1 does not properly check the return value of the ReceiveTransaction function, which leads to a failed malloc call and trigg… NVD-CWE-Other
CVE-2004-1702 2017-07-11 10:31 2004-08-9 Show GitHub Exploit DB Packet Storm
349006 - wire_plastic_design wpquiz WpQuiz 2.60b1 through 2.60b8 allows remote attackers to gain privileges via a direct request to adminrestore.php in the extras directory. NVD-CWE-Other
CVE-2004-1704 2017-07-11 10:31 2004-07-30 Show GitHub Exploit DB Packet Storm
349007 - citadel ux Buffer overflow in Citadel/UX 6.23 and earlier allows remote attackers to cause a denial of service via a long username. NVD-CWE-Other
CVE-2004-1705 2017-07-11 10:31 2004-07-30 Show GitHub Exploit DB Packet Storm
349008 - u.s.robotics usr808054 The U.S. Robotics USR808054 wireless access point allows remote attackers to cause a denial of service (device crash) and possibly execute arbitrary code via an HTTP GET request with a long version s… NVD-CWE-Other
CVE-2004-1706 2017-07-11 10:31 2004-08-2 Show GitHub Exploit DB Packet Storm
349009 - oracle application_server
application_server_portal
database_server_lite
oracle8i
oracle9i
The (1) dbsnmp and (2) nmo programs in Oracle 8i, Oracle 9i, and Oracle IAS 9.0.2.0.1, on Unix systems, use a default path to find and execute library files while operating at raised privileges, whic… NVD-CWE-Other
CVE-2004-1707 2017-07-11 10:31 2004-07-30 Show GitHub Exploit DB Packet Storm
349010 - shawn_webb webbsyte_chat Webbsyte Chat 0.9.0 allows remote attackers to cause a denial of service (crash) via a large number of connections. NVD-CWE-Other
CVE-2004-1708 2017-07-11 10:31 2004-08-2 Show GitHub Exploit DB Packet Storm