Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 21, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5771 7.5 重要
Network
オラクル Java VM オラクルのJava VMにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-35229 2026-05-7 10:51 2026-04-21 Show GitHub Exploit DB Packet Storm
5772 4.4 警告
Local
オラクル Oracle Linux オラクルのOracle Linuxにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-35233 2026-05-7 10:51 2026-05-1 Show GitHub Exploit DB Packet Storm
5773 5.2 警告
Network
オラクル Hyperion Infrastructure Technology オラクルのHyperion Infrastructure Technologyにおけるアクセス制御に関する脆弱性 CWE-284
不適切なアクセス制御
CVE-2026-35244 2026-05-7 10:51 2026-04-21 Show GitHub Exploit DB Packet Storm
5774 9.1 緊急
Network
Volcengine OpenViking VolcengineのOpenVikingにおける安全でない失敗処理に関する脆弱性 CWE-636
安全でない失敗処理
CVE-2026-40525 2026-05-7 10:51 2026-04-17 Show GitHub Exploit DB Packet Storm
5775 7.1 重要
Network
Apache Software Foundation Apache Atlas Apache Software FoundationのApache Atlasにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-40563 2026-05-7 10:51 2026-05-4 Show GitHub Exploit DB Packet Storm
5776 8.8 重要
Adjacent
Espressif Systems ESP32 Arduino Espressif SystemsのESP32 Arduinoにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-41429 2026-05-7 10:51 2026-04-24 Show GitHub Exploit DB Packet Storm
5777 9 緊急
Network
Jenkins プロジェクト GitHub JenkinsのGitHubにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-42523 2026-05-7 10:51 2026-04-29 Show GitHub Exploit DB Packet Storm
5778 8 重要
Network
Jenkins プロジェクト HTML Publisher Plugin JenkinsのHTML Publisher Pluginにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-42524 2026-05-7 10:51 2026-04-29 Show GitHub Exploit DB Packet Storm
5779 4.3 警告
Network
Jenkins プロジェクト Azure AD JenkinsのAzure ADにおけるオープンリダイレクトの脆弱性 CWE-601
オープンリダイレクト
CVE-2026-42525 2026-05-7 10:51 2026-04-29 Show GitHub Exploit DB Packet Storm
5780 8.8 重要
Adjacent
TP-LINK Technologies TL-WR841N ファームウェア TP-LINK TechnologiesのTL-WR841N ファームウェアにおけるデフォルトの暗号鍵の使用に関する脆弱性 CWE-1394
デフォルトの暗号鍵の使用
CVE-2026-5039 2026-05-7 10:51 2026-04-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 21, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
347121 - ritlabs the_bat Rit Research Labs The Bat! 1.51 for Windows allows a remote attacker to cause a denial of service by sending an email to a user's account containing a carriage return <CR> that is not followed by a l… NVD-CWE-Other
CVE-2001-0675 2017-10-10 10:29 2001-09-20 Show GitHub Exploit DB Packet Storm
347122 - ritlabs the_bat Directory traversal vulnerability in Rit Research Labs The Bat! 1.48f and earlier allows a remote attacker to create arbitrary files via a "dot dot" attack in the filename for an attachment. NVD-CWE-Other
CVE-2001-0676 2017-10-10 10:29 2001-09-20 Show GitHub Exploit DB Packet Storm
347123 - qualcomm eudora Eudora 5.0.2 allows a remote attacker to read arbitrary files via an email with the path of the target file in the "Attachment Converted" MIME header, which sends the file when the email is forwarded… NVD-CWE-Other
CVE-2001-0677 2017-10-10 10:29 2001-09-20 Show GitHub Exploit DB Packet Storm
347124 - qpc_software avt_term
qvt_net
Directory traversal vulnerability in ftpd in QPC QVT/Net 4.0 and AVT/Term 5.0 allows a remote attacker to traverse directories on the web server via a "dot dot" attack in a LIST (ls) command. NVD-CWE-Other
CVE-2001-0680 2017-10-10 10:29 2001-09-20 Show GitHub Exploit DB Packet Storm
347125 - thibault_godouet fcron Thibault Godouet FCron prior to 1.1.1 allows a local user to corrupt another user's crontab file via a symlink attack on the fcrontab temporary file. NVD-CWE-Other
CVE-2001-0685 2017-10-10 10:29 2001-09-20 Show GitHub Exploit DB Packet Storm
347126 - university_of_cambridge
conectiva
debian
redhat
exim
linux
debian_linux
Format string vulnerability in exim (3.22-10 in Red Hat, 3.12 in Debian and 3.16 in Conectiva) in batched SMTP mode allows a remote attacker to execute arbitrary code via format strings in SMTP mail … NVD-CWE-Other
CVE-2001-0690 2017-10-10 10:29 2001-09-20 Show GitHub Exploit DB Packet Storm
347127 - watchguard firebox_2500
firebox_4500
SMTP proxy in WatchGuard Firebox (2500 and 4500) 4.5 and 4.6 allows a remote attacker to bypass firewall filtering via a base64 MIME encoded email attachment whose boundary name ends in two dashes. NVD-CWE-Other
CVE-2001-0692 2017-10-10 10:29 2001-09-20 Show GitHub Exploit DB Packet Storm
347128 - netwin surgeftp NetWin SurgeFTP 2.0a and 1.0b allows a remote attacker to cause a denial of service (crash) via a CD command to a directory with an MS-DOS device name such as con. NVD-CWE-Other
CVE-2001-0696 2017-10-10 10:29 2001-09-20 Show GitHub Exploit DB Packet Storm
347129 - netwin surgeftp NetWin SurgeFTP prior to 1.1h allows a remote attacker to cause a denial of service (crash) via an 'ls ..' command. NVD-CWE-Other
CVE-2001-0697 2017-10-10 10:29 2001-09-20 Show GitHub Exploit DB Packet Storm
347130 - netwin surgeftp Directory traversal vulnerability in NetWin SurgeFTP 2.0a and 1.0b allows a remote attacker to list arbitrary files and directories via the 'nlist ...' command. NVD-CWE-Other
CVE-2001-0698 2017-10-10 10:29 2001-09-20 Show GitHub Exploit DB Packet Storm