Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5391 8.2 重要
Network
Apache Software Foundation Apache Thrift Apache Software FoundationのApache Thriftにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-41604 2026-04-30 10:59 2026-04-28 Show GitHub Exploit DB Packet Storm
5392 7.3 重要
Network
Apache Software Foundation Apache Thrift Apache Software FoundationのApache Thriftにおける整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-41605 2026-04-30 10:59 2026-04-28 Show GitHub Exploit DB Packet Storm
5393 5.3 警告
Network
Apache Software Foundation Apache Thrift Apache Software FoundationのApache Thriftにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2026-41606 2026-04-30 10:59 2026-04-28 Show GitHub Exploit DB Packet Storm
5394 6.5 警告
Network
Apache Software Foundation Apache Thrift Apache Software FoundationのApache Thriftにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-41607 2026-04-30 10:59 2026-04-28 Show GitHub Exploit DB Packet Storm
5395 7.5 重要
Network
Apache Software Foundation Apache Thrift Apache Software FoundationのApache Thriftにおける再帰制御に関する脆弱性 CWE-674
不適切な再帰制御
CVE-2026-41636 2026-04-30 10:59 2026-04-28 Show GitHub Exploit DB Packet Storm
5396 7.5 重要
Network
Marked project Marked Marked projectのMarkedにおける複数の脆弱性 CWE-400
CWE-674
CWE-835
CVE-2026-41680 2026-04-30 10:59 2026-04-24 Show GitHub Exploit DB Packet Storm
5397 9.8 緊急
Network
Apache Software Foundation Apache Pony Mail Apache Software FoundationのApache Pony MailにおけるHTTP リクエストスマグリングに関する脆弱性 CWE-444
HTTP リクエストスマグリング
CVE-2026-41873 2026-04-30 10:59 2026-04-28 Show GitHub Exploit DB Packet Storm
5398 6.5 警告
Network
OpenClaw OpenClaw OpenClawにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-41908 2026-04-30 10:58 2026-04-23 Show GitHub Exploit DB Packet Storm
5399 5.4 警告
Network
OpenClaw OpenClaw OpenClawにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-41909 2026-04-30 10:58 2026-04-23 Show GitHub Exploit DB Packet Storm
5400 8.8 重要
Network
GitHub Enterprise Server GitHubのEnterprise Serverにおける不正な正規表現に関する脆弱性 CWE-185
不正な正規表現
CVE-2026-4296 2026-04-30 10:58 2026-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
352791 - curtis_specialty_consulting iispop Buffer overflow in IISPop email server 1.161 and 1.181 allows remote attackers to cause a denial of service (crash) via a long request to the POP3 port (TCP port 110). CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2002-2404 2016-10-18 11:28 2002-12-31 Show GitHub Exploit DB Packet Storm
352792 - opera_software
squid
opera
squid
Opera 6.0.3, when using Squid 2.4 for HTTPS proxying, does not properly handle when accepting a non-global certificate authority (CA) certificate from a site and establishing a subsequent HTTPS conne… NVD-CWE-Other
CVE-2002-2414 2016-10-18 11:28 2002-12-31 Show GitHub Exploit DB Packet Storm
352793 - openbsd openbsd Integer signedness error in select() on OpenBSD 3.1 and earlier allows local users to overwrite arbitrary kernel memory via a negative value for the size parameter, which satisfies the boundary check… NVD-CWE-Other
CVE-2002-1420 2016-10-18 11:27 2003-04-11 Show GitHub Exploit DB Packet Storm
352794 - mywebserver mywebserver Buffer overflow in the search capability for MyWebServer 1.0.2 allows remote attackers to execute arbitrary code via a long searchTarget parameter. NVD-CWE-Other
CVE-2002-1452 2016-10-18 11:27 2002-08-14 Show GitHub Exploit DB Packet Storm
352795 - mywebserver mywebserver Cross-site scripting (XSS) vulnerability in MyWebServer 1.0.2 allows remote attackers to insert script and HTML via a long request followed by the malicious script, which is echoed back to the user i… NVD-CWE-Other
CVE-2002-1453 2016-10-18 11:27 2002-08-14 Show GitHub Exploit DB Packet Storm
352796 - mywebserver mywebserver MyWebServer 1.0.2 allows remote attackers to determine the absolute path of the web document root via a request for a directory that does not exist, which leaks the pathname in an error message. NVD-CWE-Other
CVE-2002-1454 2016-10-18 11:27 2003-06-9 Show GitHub Exploit DB Packet Storm
352797 - stunnel stunnel stunnel 4.0.3 and earlier allows attackers to cause a denial of service (crash) via SIGCHLD signal handler race conditions that cause an inconsistency in the child counter. NVD-CWE-Other
CVE-2002-1563 2016-10-18 11:27 2003-05-12 Show GitHub Exploit DB Packet Storm
352798 - openssl openssl OpenSSL 0.9.6e uses assertions when detecting buffer overflow attacks instead of less severe mechanisms, which allows remote attackers to cause a denial of service (crash) via certain messages that c… NVD-CWE-Other
CVE-2002-1568 2016-10-18 11:27 2003-11-17 Show GitHub Exploit DB Packet Storm
352799 - slashcode.com slash The quick login feature in Slash Slashcode does not redirect the user to an alternate URL when the wrong password is provided, which makes it easier for remote web sites to guess the proper passwords… NVD-CWE-Other
CVE-2002-1647 2016-10-18 11:27 2002-12-31 Show GitHub Exploit DB Packet Storm
352800 - yahoo messenger Yahoo! Messenger before February 2002 allows remote attackers to add arbitrary users to another user's buddy list and possibly obtain sensitive information. NVD-CWE-Other
CVE-2002-1664 2016-10-18 11:27 2002-12-31 Show GitHub Exploit DB Packet Storm