Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
5891 8.8 重要
Network
Actual Budget Actual Actual BudgetのActualにおける複数の脆弱性 CWE-284
CWE-862
CVE-2026-33318 2026-04-30 12:30 2026-04-24 Show GitHub Exploit DB Packet Storm
5892 7.5 重要
Network
FirebirdSQL Firebird FirebirdSQLのFirebirdにおける複数の脆弱性 CWE-120
CWE-502
CVE-2026-33337 2026-04-30 12:30 2026-04-17 Show GitHub Exploit DB Packet Storm
5893 4.9 警告
Network
PowerDNS PowerDNS Recursor PowerDNSのPowerDNS RecursorにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-33600 2026-04-30 12:30 2026-04-22 Show GitHub Exploit DB Packet Storm
5894 4.9 警告
Network
PowerDNS PowerDNS Recursor PowerDNSのPowerDNS RecursorにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2026-33601 2026-04-30 12:30 2026-04-22 Show GitHub Exploit DB Packet Storm
5895 9.1 緊急
Network
EspoCRM EspoCRM EspoCRMにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-33656 2026-04-30 12:30 2026-04-22 Show GitHub Exploit DB Packet Storm
5896 7.2 重要
Network
EspoCRM EspoCRM EspoCRMにおける相対パストラバーサルの脆弱性 CWE-23
相対的パストラバーサル
CVE-2026-33733 2026-04-30 12:30 2026-04-22 Show GitHub Exploit DB Packet Storm
5897 7.5 重要
Network
FirebirdSQL Firebird FirebirdSQLのFirebirdにおける不正な構文構造の不適切な処理に関する脆弱性 CWE-228
不正な構文構造の不適切な処理
CVE-2026-34232 2026-04-30 12:30 2026-04-17 Show GitHub Exploit DB Packet Storm
5898 5.3 警告
Network
オラクル Oracle GoldenGate オラクルのOracle GoldenGateにおける情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2026-34273 2026-04-30 12:30 2026-04-21 Show GitHub Exploit DB Packet Storm
5899 8.1 重要
Network
getkirby kirby getkirbyのkirbyにおけるテンプレートエンジンで使用される特殊な要素の不適切な無効化に関する脆弱性 CWE-1336
テンプレートエンジンで使用される特殊な要素の不適切な無効化
CVE-2026-34587 2026-04-30 12:30 2026-04-24 Show GitHub Exploit DB Packet Storm
5900 9 緊急
Network
Ci4-cms-erp Ci4MS Ci4-cms-erpのCi4MSにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-34989 2026-04-30 12:30 2026-04-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
352971 - rsa authentication_agent_for_web Cross-site scripting (XSS) vulnerability in RSA Authentication Agent for Web 5.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the image parameter in a GetPic operati… NVD-CWE-Other
CVE-2005-3329 2016-10-18 12:34 2005-10-27 Show GitHub Exploit DB Packet Storm
352972 - flatnuke flatnuke Cross-site scripting (XSS) vulnerability in forum/index.php in FlatNuke 2.5.6 allows remote attackers to inject arbitrary web script or HTML via the nome parameter in a login operation, a variant of … NVD-CWE-Other
CVE-2005-3361 2016-10-18 12:34 2005-10-28 Show GitHub Exploit DB Packet Storm
352973 - platinum dboardgear Multiple SQL injection vulnerabilities in DboardGear allow remote attackers to execute arbitrary SQL commands via (1) the buddy parameter in buddy.php, (2) the u2uid parameter in u2u.php, and (3) an … NVD-CWE-Other
CVE-2005-3364 2016-10-18 12:34 2005-10-30 Show GitHub Exploit DB Packet Storm
352974 - sparkleblog sparkleblog Cross-site scripting (XSS) vulnerability in journal.php in SparkleBlog 2.1 allows remote attackers to inject arbitrary web script or HTML via the name field. NVD-CWE-Other
CVE-2005-3367 2016-10-18 12:34 2005-10-30 Show GitHub Exploit DB Packet Storm
352975 - arcavir arcavir_2005 Multiple interpretation error in ArcaVir 2005 package 2005-06-21 allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an "MZ" magic byte sequence which is norma… NVD-CWE-Other
CVE-2005-3370 2016-10-18 12:34 2005-10-30 Show GitHub Exploit DB Packet Storm
352976 - grisoft avg_antivirus Multiple interpretation error in AVG 7 7.0.323 allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an "MZ" magic byte sequence which is normally associated wit… NVD-CWE-Other
CVE-2005-3371 2016-10-18 12:34 2005-10-30 Show GitHub Exploit DB Packet Storm
352977 - dr.web dr.web_antivirus Multiple interpretation error in Dr.Web 4.32b allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an "MZ" magic byte sequence which is normally associated with… NVD-CWE-Other
CVE-2005-3373 2016-10-18 12:34 2005-10-30 Show GitHub Exploit DB Packet Storm
352978 - frisk_software f-prot_antivirus Multiple interpretation error in F-Prot 3.16c allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an "MZ" magic byte sequence which is normally associated with… NVD-CWE-Other
CVE-2005-3374 2016-10-18 12:34 2005-10-30 Show GitHub Exploit DB Packet Storm
352979 - ikarus ikarus_antivirus Multiple interpretation error in Ikarus demo version allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an "MZ" magic byte sequence which is normally associat… NVD-CWE-Other
CVE-2005-3375 2016-10-18 12:34 2005-10-30 Show GitHub Exploit DB Packet Storm
352980 - kaspersky_lab kaspersky_anti-virus Multiple interpretation error in Kaspersky 5.0.372 allows remote attackers to bypass virus scanning via a file such as BAT, HTML, and EML with an "MZ" magic byte sequence which is normally associated… NVD-CWE-Other
CVE-2005-3376 2016-10-18 12:34 2005-10-30 Show GitHub Exploit DB Packet Storm