Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 27, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5551 9.8 緊急
Network
CROSS-CRYPT.COM CROSS CROSS-CRYPT.COMのCROSSにおける複数の脆弱性 CWE-121
CWE-122
CVE-2026-41509 2026-05-14 10:12 2026-05-8 Show GitHub Exploit DB Packet Storm
5552 7.5 重要
Network
DCIT CryptX DCITのCryptXにおける複数の脆弱性 CWE-335
CWE-338
CVE-2026-41564 2026-05-14 10:12 2026-04-23 Show GitHub Exploit DB Packet Storm
5553 6.1 警告
Network
th30d4y w4nn4d13/ip th30d4yのw4nn4d13/ipにおける複数の脆弱性 CWE-79
CWE-79
CWE-80
CVE-2026-41575 2026-05-14 10:12 2026-05-8 Show GitHub Exploit DB Packet Storm
5554 7.8 重要
Local
dail8859 Notepad Next dail8859のNotepad Nextにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-42214 2026-05-14 10:12 2026-05-7 Show GitHub Exploit DB Packet Storm
5555 7.1 重要
Network
Legeling PromptHUB LegelingのPromptHUBにおける複数の脆弱性 CWE-20
CWE-693
CWE-918
CVE-2026-42261 2026-05-14 10:12 2026-05-8 Show GitHub Exploit DB Packet Storm
5556 9.9 緊急
Network
Apache Software Foundation Polaris Apache Software FoundationのPolarisにおける複数の脆弱性 CWE-20
CWE-862
CVE-2026-42809 2026-05-14 10:12 2026-05-4 Show GitHub Exploit DB Packet Storm
5557 9.9 緊急
Network
Apache Software Foundation Polaris Apache Software FoundationのPolarisにおける複数の脆弱性 CWE-116
CWE-20
CVE-2026-42810 2026-05-14 10:12 2026-05-4 Show GitHub Exploit DB Packet Storm
5558 9.9 緊急
Network
Apache Software Foundation Polaris Apache Software FoundationのPolarisにおける複数の脆弱性 CWE-20
CWE-917
CVE-2026-42811 2026-05-14 10:12 2026-05-4 Show GitHub Exploit DB Packet Storm
5559 9.9 緊急
Network
Apache Software Foundation Polaris Apache Software FoundationのPolarisにおける複数の脆弱性 CWE-20
CWE-284
CWE-732
CWE-863
CVE-2026-42812 2026-05-14 10:12 2026-05-4 Show GitHub Exploit DB Packet Storm
5560 7.5 重要
Network
Open JS Foundation fast-uri Open JS Foundationのfast-uriにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-6321 2026-05-14 10:12 2026-05-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 27, 2026, 4:35 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346031 - adventnet zoho_virtual_office Cross-site scripting (XSS) vulnerability in Zoho Virtual Office 3.2 Build 3210 allows remote attackers to execute arbitrary web script or HTML via an HTML message. NVD-CWE-Other
CVE-2006-3842 2018-10-18 06:31 2006-07-26 Show GitHub Exploit DB Packet Storm
346032 - mambo mambo_calendar PHP remote file inclusion vulnerability in com_calendar.php in Calendar Mambo Module 1.5.7 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the absolute_path parameter. NVD-CWE-Other
CVE-2006-3843 2018-10-18 06:31 2006-07-26 Show GitHub Exploit DB Packet Storm
346033 - mambo mambo_multibanners PHP remote file inclusion vulnerability in extadminmenus.class.php in the MultiBanners 1.0.1 for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_path p… CWE-94
Code Injection
CVE-2006-3846 2018-10-18 06:31 2006-07-26 Show GitHub Exploit DB Packet Storm
346034 - canebluem mospray PHP remote file inclusion vulnerability in (1) admin.php, and possibly (2) details.php, (3) modify.php, (4) newgroup.php, (5) newtask.php, and (6) rss.php, in MoSpray (aka com_mospray) 1.8 RC1 allows… CWE-94
Code Injection
CVE-2006-3847 2018-10-18 06:31 2006-07-26 Show GitHub Exploit DB Packet Storm
346035 - krischan_jodies ip_calculator Cross-site scripting (XSS) vulnerability in CGI wrapper for IP Calculator (IPCalc) 0.40 allows remote attackers to inject arbitrary web script or HTML via the URI (REQUEST_URI environment variable), … NVD-CWE-Other
CVE-2006-3848 2018-10-18 06:31 2006-07-26 Show GitHub Exploit DB Packet Storm
346036 - pumpkin_studios warzone
warzone_resurrection
Stack-based buffer overflow in Warzone 2100 and Warzone Resurrection 2.0.3 and earlier allows remote attackers to execute arbitrary code via a (1) long message handled by the recvTextMessage function… NVD-CWE-Other
CVE-2006-3849 2018-10-18 06:31 2006-07-26 Show GitHub Exploit DB Packet Storm
346037 - phptoys micro_guestbook Cross-site scripting (XSS) vulnerability in index.php in Micro GuestBook allows remote attackers to execute arbitrary SQL commands via the (1) name or (2) comment ("text") fields. NVD-CWE-Other
CVE-2006-3852 2018-10-18 06:31 2006-07-26 Show GitHub Exploit DB Packet Storm
346038 - ibm informix_dynamic_server Buffer overflow in IBM Informix Dynamic Server (IDS) before 9.40.TC7 and 10.00 before 10.00.TC3, when running on Windows, allows remote attackers to execute arbitrary code via a long username. NVD-CWE-Other
CVE-2006-3853 2018-10-18 06:31 2006-08-9 Show GitHub Exploit DB Packet Storm
346039 - ibm informix_dynamic_server This vulnerability is only present in a Windows environment. This vulnerability is addressed in the following product releases: IBM, Informix IDS, 9.40.TC7 IBM, Informix IDS, 10.00.TC3 NVD-CWE-Other
CVE-2006-3853 2018-10-18 06:31 2006-08-9 Show GitHub Exploit DB Packet Storm
346040 - ibm informix_dynamic_database_server Buffer overflow in IBM Informix Dynamic Server (IDS) 9.40.TC7, 9.40.TC8, 10.00.TC4, and 10.00.TC5, when running on Windows, allows remote attackers to execute arbitrary code via a long username, whic… NVD-CWE-Other
CVE-2006-3854 2018-10-18 06:31 2006-08-17 Show GitHub Exploit DB Packet Storm