Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5741 8.8 重要
Network
FreePBX API Module FreePBXのAPI ModuleにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2026-40520 2026-04-27 11:26 2026-04-21 Show GitHub Exploit DB Packet Storm
5742 6.1 警告
Network
Yusuke Inuzuka (yuin) goldmark Yusuke Inuzuka (yuin)のgoldmarkにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-5160 2026-04-27 11:26 2026-04-15 Show GitHub Exploit DB Packet Storm
5743 6.5 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2025-0186 2026-04-27 11:26 2026-04-22 Show GitHub Exploit DB Packet Storm
5744 6.5 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2025-3922 2026-04-27 11:26 2026-04-22 Show GitHub Exploit DB Packet Storm
5745 6.5 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2025-6016 2026-04-27 11:26 2026-04-22 Show GitHub Exploit DB Packet Storm
5746 7.5 重要
Network
Nitro Software Inc. Nitro PDF Pro Nitro Software Inc.のNitro PDF ProにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2025-66769 2026-04-27 11:26 2026-04-13 Show GitHub Exploit DB Packet Storm
5747 7.5 重要
Network
Nitro Software Inc. Nitro PDF Pro Nitro Software Inc.のNitro PDF ProにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2025-69624 2026-04-27 11:26 2026-04-13 Show GitHub Exploit DB Packet Storm
5748 2.7
Network
GitLab.org GitLab GitLab.orgのGitLabにおける不正な認証に関する脆弱性 CWE-863
不正な認証
CVE-2025-9957 2026-04-27 11:26 2026-04-22 Show GitHub Exploit DB Packet Storm
5749 4.8 警告
Network
pega pega platform pegaのpega platformにおけるクロスサイトスクリプティングの脆弱性 CWE-80
クロスサイトスクリプティング (Basic XSS)
CVE-2026-1564 2026-04-27 11:26 2026-04-15 Show GitHub Exploit DB Packet Storm
5750 6.5 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-1660 2026-04-27 11:26 2026-04-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
356451 - bea weblogic_server BEA WebLogic Server and WebLogic Express 8.1 SP5 and earlier, and 7.0 SP6 and earlier, when using username/password authentication, does not lock out a username after the maximum number of invalid lo… NVD-CWE-Other
CVE-2005-4767 2008-09-6 05:57 2005-12-31 Show GitHub Exploit DB Packet Storm
356452 - tux_racer tuxbank SQL injection vulnerability in manage_account.php in Tux Racer TuxBank 0.7x and 0.8 allows remote attackers to execute arbitrary SQL commands via the id parameter in a manageaccount action to index.p… NVD-CWE-Other
CVE-2005-4768 2008-09-6 05:57 2005-12-31 Show GitHub Exploit DB Packet Storm
356453 - - - SQL injection vulnerability in addrbook.php in Belchior Foundry vCard PRO 3.1 allows remote attackers to execute arbitrary SQL commands via the addr_id parameter. NOTE: the provenance of this inform… NVD-CWE-Other
CVE-2005-4769 2008-09-6 05:57 2005-12-31 Show GitHub Exploit DB Packet Storm
356454 - accelerated_enterprise_solutions accelerated_e_solutions SQL injection vulnerability in an unspecified Accelerated Enterprise Solutions product, possibly Accelerated E Solutions, allows remote attackers to execute arbitrary SQL commands via the password pa… NVD-CWE-Other
CVE-2005-4770 2008-09-6 05:57 2005-12-31 Show GitHub Exploit DB Packet Storm
356455 - - - Trusted Mobility Agent PC Policy in Trust Digital Trusted Mobility Suite provides a cancel button that bypasses the domain-authentication prompt, which allows local users to sync a handheld (PDA) dev… NVD-CWE-Other
CVE-2005-4771 2008-09-6 05:57 2005-12-31 Show GitHub Exploit DB Packet Storm
356456 - suse suse_linux_openexchange_server
suse_linux_school_server
suse_linux_standard_server
suse_sled_beagle
suse_linux
liby2util in Yet another Setup Tool (YaST) in SUSE Linux before 20051007 preserves permissions and ownerships when copying a remote repository, which might allow local users to read or modify sensiti… NVD-CWE-Other
CVE-2005-4772 2008-09-6 05:57 2005-12-31 Show GitHub Exploit DB Packet Storm
356457 - michael_scholz contineo Michael Scholz and Sebastian Stein Contineo 2.0, when the admin account lacks an e-mail address attribute, displays the password hash in a warning upon page reload, which might allow remote attackers… NVD-CWE-Other
CVE-2005-4775 2008-09-6 05:57 2005-12-31 Show GitHub Exploit DB Packet Storm
356458 - michael_scholz contineo This vulnerability is addressed in the following product release: Michael Scholz, Contineo, 2.1 Beta 1 NVD-CWE-Other
CVE-2005-4775 2008-09-6 05:57 2005-12-31 Show GitHub Exploit DB Packet Storm
356459 - netbsd netbsd Integer overflow in the FreeBSD compatibility code (freebsd_misc.c) in NetBSD-current, NetBSD-3, NetBSD-2.0, and NetBSD-2 before 20050913; and NetBSD-1.6 before 20050914; allows local users to cause … NVD-CWE-Other
CVE-2005-4776 2008-09-6 05:57 2005-12-31 Show GitHub Exploit DB Packet Storm
356460 - netbsd netbsd this vulnerbaility is addressed in the following product versions: NetBSD, NetBSD, 2.0.3, and higher NVD-CWE-Other
CVE-2005-4776 2008-09-6 05:57 2005-12-31 Show GitHub Exploit DB Packet Storm