Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 4:11 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5511 6 警告
Local
オラクル JDK
JRE
Oracle GraalVM
オラクルのOracle GraalVM等の複数製品におけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2026-22003 2026-04-27 11:28 2026-04-21 Show GitHub Exploit DB Packet Storm
5512 3.7
Network
Pivotal Software, Inc. Spring Security VMwareのSpring Securityにおけるタイミングの違いに起因する情報漏えいに関する脆弱性 CWE-208
タイミングの違いに起因する情報漏えい
CVE-2026-22746 2026-04-27 11:28 2026-04-22 Show GitHub Exploit DB Packet Storm
5513 8.1 重要
Network
Pivotal Software, Inc. Spring Security VMwareのSpring Securityにおけるホストの不一致による証明書の検証に関する脆弱性 CWE-297
ホストの不一致による証明書の不適切な検証
CVE-2026-22747 2026-04-27 11:28 2026-04-22 Show GitHub Exploit DB Packet Storm
5514 6.5 警告
Network
Pivotal Software, Inc. Spring Security VMwareのSpring Securityにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2026-22748 2026-04-27 11:28 2026-04-22 Show GitHub Exploit DB Packet Storm
5515 7.5 重要
Network
Pivotal Software, Inc. Spring Security VMwareのSpring Securityにおける保護メカニズムの不具合に関する脆弱性 CWE-693
保護メカニズムの不具合
CVE-2026-22753 2026-04-27 11:28 2026-04-22 Show GitHub Exploit DB Packet Storm
5516 7.5 重要
Network
Pivotal Software, Inc. Spring Security VMwareのSpring Securityにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-22754 2026-04-27 11:28 2026-04-22 Show GitHub Exploit DB Packet Storm
5517 7.8 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-23344 2026-04-27 11:28 2026-03-25 Show GitHub Exploit DB Packet Storm
5518 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-23345 2026-04-27 11:28 2026-03-25 Show GitHub Exploit DB Packet Storm
5519 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-23346 2026-04-27 11:28 2026-03-25 Show GitHub Exploit DB Packet Storm
5520 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2026-23347 2026-04-27 11:28 2026-03-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
349851 - netwin surgemail
webmail
NetWin (1) SurgeMail before 2.0c and (2) WebMail allow remote attackers to obtain sensitive information via HTTP requests that (a) specify the / URI, (b) specify the /scripts/ URI, or (c) specify a n… NVD-CWE-Other
CVE-2004-2547 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
349852 - photopost photopost_php_pro SQL injection vulnerability in showphoto.php in PhotoPost PHP Pro 4.6 and earlier allows remote attackers to gain unauthorized access via the photo variable. NVD-CWE-Other
CVE-2004-0239 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
349853 - qualiteam x-cart Directory traversal vulnerability in X-Cart 3.4.3 allows remote attackers to view arbitrary files via a .. (dot dot) in the shop_closed_file argument to auth.php. NVD-CWE-Other
CVE-2004-0240 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
349854 - qualiteam x-cart X-Cart 3.4.3 allows remote attackers to execute arbitrary commands via the perl_binary argument in (1) upgrade.php or (2) general.php. NVD-CWE-Other
CVE-2004-0241 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
349855 - qualiteam x-cart X-Cart 3.4.3 allows remote attackers to gain sensitive information via a mode parameter with (1) phpinfo command or (2) perlinfo command. NVD-CWE-Other
CVE-2004-0242 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
349856 - web_crossing_inc web_crossing Web Crossing 4.x and 5.x allows remote attackers to cause a denial of service (crash) by sending a HTTP POST request with a large or negative Content-Length, which causes an integer divide-by-zero. NVD-CWE-Other
CVE-2004-0245 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
349857 - laurent_adda les_commentaires Multiple PHP remote file inclusion vulnerabilities in (1) fonctions.lib.php, (2) derniers_commentaires.php, and (3) admin.php in Les Commentaires 2.0 allow remote attackers to execute arbitrary PHP c… NVD-CWE-Other
CVE-2004-0246 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
349858 - cauldron chaser_client
chaser_server
The client and server of Chaser 1.50 and earlier allow remote attackers to cause a denial of service (crash via exception) via a UDP packet with a length field that is greater than the actual data le… NVD-CWE-Other
CVE-2004-0247 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
349859 - phpx phpx Cross-site scripting vulnerability (XSS) in PHPX 3.2.3 allows remote attackers to execute arbitrary script as other users by injecting arbitrary HTML or script into (1) keywords argument of main.inc.… NVD-CWE-Other
CVE-2004-0248 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm
349860 - phpx phpx This vulnerability is addressed in the following product release: PHPX, PHPX, 3.2.4 NVD-CWE-Other
CVE-2004-0248 2017-07-11 10:30 2004-11-23 Show GitHub Exploit DB Packet Storm