Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5681 5.3 警告
Network
Apache Software Foundation Apache HTTP Server Apache Software FoundationのApache HTTP ServerにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-33007 2026-05-7 11:27 2026-05-4 Show GitHub Exploit DB Packet Storm
5682 4.3 警告
Network
- KeystoneJSのKeystoneにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2026-33326 2026-05-7 11:27 2026-03-24 Show GitHub Exploit DB Packet Storm
5683 9.8 緊急
Network
Absolute Software secure access Absolute Softwareのsecure accessにおける古典的バッファオーバーフローの脆弱性 CWE-120
古典的バッファオーバーフロー
CVE-2026-33446 2026-05-7 11:27 2026-04-30 Show GitHub Exploit DB Packet Storm
5684 9.8 緊急
Network
Absolute Software secure access Absolute Softwareのsecure accessにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-33447 2026-05-7 11:27 2026-04-30 Show GitHub Exploit DB Packet Storm
5685 3.3
Local
Absolute Software secure access Absolute Softwareのsecure accessにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-33448 2026-05-7 11:27 2026-04-30 Show GitHub Exploit DB Packet Storm
5686 7.5 重要
Network
Absolute Software secure access Absolute Softwareのsecure accessにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-33449 2026-05-7 11:27 2026-04-30 Show GitHub Exploit DB Packet Storm
5687 5.5 警告
Local
Absolute Software secure access Absolute Softwareのsecure accessにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-33450 2026-05-7 11:27 2026-04-30 Show GitHub Exploit DB Packet Storm
5688 7.8 重要
Local
Absolute Software secure access Absolute Softwareのsecure accessにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-33451 2026-05-7 11:27 2026-04-30 Show GitHub Exploit DB Packet Storm
5689 5.5 警告
Local
Absolute Software secure access Absolute Softwareのsecure accessにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-33452 2026-05-7 11:27 2026-04-30 Show GitHub Exploit DB Packet Storm
5690 9.1 緊急
Network
レッドハット
GNU Project
GnuTLS
Red Hat Enterprise Linux
Red Hat OpenShift Container Platform
GNU Project等の複数ベンダの製品における整数アンダーフローの脆弱性 CWE-191
整数アンダーフロー
CVE-2026-33845 2026-05-7 11:27 2026-04-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
350741 - bakbone netvault nvstatsmngr.exe process in BakBone NetVault 7.1 does not properly drop privileges before opening files, which allows local users to gain privileges via the Help menu. NVD-CWE-Other
CVE-2005-1372 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
350742 - dream4 koobi_cms Multiple SQL injection vulnerabilities in index.php in Dream4 Koobi CMS 4.2.3 allow remote attackers to execute arbitrary SQL commands via the (1) q or (2) p parameters. NVD-CWE-Other
CVE-2005-1373 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
350743 - claroline claroline Multiple cross-site scripting (XSS) vulnerabilities in Claroline 1.5.3 through 1.6 Release Candidate 1, and possibly Dokeos, allow remote attackers to inject arbitrary web script or HTML via (1) exer… NVD-CWE-Other
CVE-2005-1374 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
350744 - claroline claroline Multiple SQL injection vulnerabilities in Claroline 1.5.3 through 1.6 Release Candidate 1, and possibly Dokeos, allow remote attackers to execute arbitrary SQL commands via (1) learningPath.php, (2) … NVD-CWE-Other
CVE-2005-1375 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
350745 - claroline claroline Multiple directory traversal vulnerabilities in (1) document.php or (2) insertMyDoc.php in Claroline 1.5.3 through 1.6 Release Candidate 1, and possibly Dokeos, allow remote project administrators to… NVD-CWE-Other
CVE-2005-1376 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
350746 - claroline claroline Multiple PHP remote file inclusion vulnerabilities in Claroline 1.5.3 through 1.6 Release Candidate 1, and possibly Dokeos, allow remote attackers to execute arbitrary PHP code via unknown vectors. NVD-CWE-Other
CVE-2005-1377 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
350747 - oxpus phpbb_personal_notes_module SQL injection vulnerability in posting_notes.php in the notes module for phpBB allows remote attackers to execute arbitrary SQL commands via the p parameter, which is used in the $post_id variable, a… NVD-CWE-Other
CVE-2005-1378 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
350748 - bea weblogic_server Cross-site scripting (XSS) vulnerability in BEA Admin Console 8.1 allows remote attackers to execute arbitrary web script or HTML via the server parameter to a JndiFramesetAction action. NVD-CWE-Other
CVE-2005-1380 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
350749 - oracle application_server_web_cache Multiple cross-site scripting (XSS) vulnerabilities in Oracle Webcache 9i allow remote attackers to inject arbitrary web script or HTML via the (1) cache_dump_file or (2) PartialPageErrorPage paramet… NVD-CWE-Other
CVE-2005-1381 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm
350750 - oracle application_server_web_cache The webcacheadmin module in Oracle Webcache 9i allows remote attackers to corrupt arbitrary files via a full pathname in the cache_dump_file parameter. NVD-CWE-Other
CVE-2005-1382 2017-07-11 10:32 2005-05-3 Show GitHub Exploit DB Packet Storm