Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5681 6.8 警告
Physics
GL.iNet Comet (GL-RM1) Firmware GL.iNetのComet (GL-RM1) Firmwareにおける重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-32291 2026-04-28 10:11 2026-03-17 Show GitHub Exploit DB Packet Storm
5682 7.5 重要
Network
GL.iNet Comet (GL-RM1) Firmware GL.iNetのComet (GL-RM1) Firmwareにおける過度な認証試行の不適切な制限に関する脆弱性 CWE-307
過度な認証試行の不適切な制限
CVE-2026-32292 2026-04-28 10:11 2026-03-17 Show GitHub Exploit DB Packet Storm
5683 3.7
Network
GL.iNet Comet (GL-RM1) Firmware GL.iNetのComet (GL-RM1) Firmwareにおける証明書検証に関する脆弱性 CWE-295
不正な証明書検証
CVE-2026-32293 2026-04-28 10:11 2026-03-17 Show GitHub Exploit DB Packet Storm
5684 6.5 警告
Network
オラクル PeopleSoft Enterprise FIN Contracts オラクルのPeopleSoft Enterprise FIN Contractsにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-34300 2026-04-28 10:11 2026-04-21 Show GitHub Exploit DB Packet Storm
5685 3.7
Network
Smallstep Step CA SmallstepのStep CAにおける配列インデックスの検証に関する脆弱性 CWE-129
配列インデックスの不適切な検証
CVE-2026-40097 2026-04-28 10:11 2026-04-10 Show GitHub Exploit DB Packet Storm
5686 8.2 重要
Network
Saltcorn Saltcorn Saltcornにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-40163 2026-04-28 10:11 2026-04-10 Show GitHub Exploit DB Packet Storm
5687 6.1 警告
Network
AdonisJS adonisjs/http-server
AdonisJS Core
AdonisJSのAdonisJS Core等の複数製品におけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-40255 2026-04-28 10:11 2026-04-16 Show GitHub Exploit DB Packet Storm
5688 9.3 緊急
Local
MinecAnton209 NovumOS MinecAnton209のNovumOSにおける複数の脆弱性 CWE-20
CWE-269
CVE-2026-40317 2026-04-28 10:11 2026-04-18 Show GitHub Exploit DB Packet Storm
5689 9 緊急
Local
MinecAnton209 NovumOS MinecAnton209のNovumOSにおける権限管理に関する脆弱性 CWE-269
不適切な権限管理
CVE-2026-40572 2026-04-28 10:10 2026-04-18 Show GitHub Exploit DB Packet Storm
5690 - - (複数のベンダ) (複数の製品) CISA ICS Advisory / ICS Medical Advisory(2026年04月23日) - - 2026-04-27 13:37 2026-04-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
350051 - protector_system protector_system SQL injection vulnerability in index.php in Protector System 1.15b1 allows remote attackers to bypass SQL injection filters by using "/**/" sequences in the targeted fields. NVD-CWE-Other
CVE-2004-1962 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
350052 - - - nqt.php in Network Query Tool (NQT) 1.6 allows remote attackers to obtain sensitive information via a string in the portNum parameter, which reveals the full path in an error message. NVD-CWE-Other
CVE-2004-1963 2017-07-11 10:31 2004-04-23 Show GitHub Exploit DB Packet Storm
350053 - freshmeat network_query_tool Cross-site scripting (XSS) vulnerability in nqt.php in Network Query Tool (NQT) 1.6 allows remote attackers to inject arbitrary web script or HTML via the portNum parameter. NVD-CWE-Other
CVE-2004-1964 2017-07-11 10:31 2004-04-23 Show GitHub Exploit DB Packet Storm
350054 - - - Multiple cross-site scripting (XSS) vulnerabilities in Open Bulletin Board (OpenBB) 1.0.6 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) redirect parameter to … NVD-CWE-Other
CVE-2004-1965 2017-07-11 10:31 2004-04-25 Show GitHub Exploit DB Packet Storm
350055 - openbb openbb Multiple SQL injection vulnerabilities in Open Bulletin Board (OpenBB) 1.0.6 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) FID parameter in board.php, (2) sortorder… NVD-CWE-Other
CVE-2004-1966 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
350056 - openbb openbb The readmsg action in myhome.php in Open Bulletin Board (OpenBB) 1.0.6 and earlier allows remote attackers to read arbitrary messages by modifying the id parameter. NVD-CWE-Other
CVE-2004-1968 2017-07-11 10:31 2004-04-26 Show GitHub Exploit DB Packet Storm
350057 - - - The avatar upload capability in Open Bulletin Board (OpenBB) 1.0.6 and earlier allows remote attackers to execute arbitrary script by uploading files that include scripting code such as Javascript. NVD-CWE-Other
CVE-2004-1969 2017-07-11 10:31 2004-04-25 Show GitHub Exploit DB Packet Storm
350058 - securecomputing smartether_ss6215s_switch Samsung SmartEther SS6215S switch, and possibly other Samsung switches, allows remote attackers and local users to gain administrative access by providing the admin username followed by a password th… NVD-CWE-Other
CVE-2004-1970 2017-07-11 10:31 2004-04-26 Show GitHub Exploit DB Packet Storm
350059 - - - modules.php in PHP-Nuke Video Gallery Module 0.1 Beta 5 allows remote attackers to gain sensitive information via an HTTP request with an invalid (1) catid or (2) clipid parameter, which reveals the … NVD-CWE-Other
CVE-2004-1971 2017-07-11 10:31 2004-04-26 Show GitHub Exploit DB Packet Storm
350060 - francisco_burzi php-nuke SQL injection vulnerability in modules.php in PHP-Nuke Video Gallery Module 0.1 Beta 5 allows remote attackers to execute arbitrary SQL code via the (1) clipid or (2) catid parameters in a viewclip, … NVD-CWE-Other
CVE-2004-1972 2017-07-11 10:31 2004-04-26 Show GitHub Exploit DB Packet Storm