Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 21, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
6261 9.8 緊急
Network
Steven Fackler rust-openssl rust-OpenSSL Projectのrust-OpenSSLにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-121
スタックオーバーフロー
CVE-2026-41681 2026-04-30 12:17 2026-04-24 Show GitHub Exploit DB Packet Storm
6262 9.8 緊急
Network
Steven Fackler rust-openssl rust-OpenSSL Projectのrust-OpenSSLにおける複数の脆弱性 CWE-126
CWE-130
CVE-2026-41898 2026-04-30 12:17 2026-04-24 Show GitHub Exploit DB Packet Storm
6263 7 重要
Local
レッドハット
libssh
libssh
Red Hat Hardened Images
libssh等の複数ベンダの製品における制御されていない検索パスの要素に関する脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2025-14821 2026-04-30 12:17 2026-04-7 Show GitHub Exploit DB Packet Storm
6264 10 緊急
Network
lfprojects mlflow lfprojectsのmlflowにおけるパストラバーサルの脆弱性 CWE-29
パストラバーサル (/../filename)
CVE-2025-15036 2026-04-30 12:17 2026-03-30 Show GitHub Exploit DB Packet Storm
6265 9.8 緊急
Network
lfprojects mlflow lfprojectsのmlflowにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2025-15379 2026-04-30 12:17 2026-03-30 Show GitHub Exploit DB Packet Storm
6266 7.1 重要
Network
lfprojects mlflow lfprojectsのmlflowにおける情報漏えいに関する脆弱性 CWE-200
CWE-noinfo
CVE-2025-15381 2026-04-30 12:17 2026-03-27 Show GitHub Exploit DB Packet Storm
6267 7.5 重要
Network
Apache Software Foundation Apache Thrift Apache Software FoundationのApache Thriftにおけるメモリ管理ルーチンの不一致に関する脆弱性 CWE-762
メモリ管理ルーチンの不一致
CVE-2025-48431 2026-04-30 12:17 2026-04-28 Show GitHub Exploit DB Packet Storm
6268 6.5 警告
Adjacent
ジュニパーネットワークス Junos OS Evolved ジュニパーネットワークスのJunos OS Evolvedにおける古典的バッファオーバーフローの脆弱性 CWE-120
古典的バッファオーバーフロー
CVE-2025-59969 2026-04-30 12:17 2026-04-9 Show GitHub Exploit DB Packet Storm
6269 7.8 重要
Local
huggingface transformers huggingfaceのtransformersにおける信頼できないデータのデシリアライゼーションに関する脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2026-1839 2026-04-30 12:17 2026-04-7 Show GitHub Exploit DB Packet Storm
6270 6.1 警告
Network
シスコシステムズ Cisco Unity Connection シスコシステムズのCisco Unity Connectionにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2026-20059 2026-04-30 12:17 2026-04-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 21, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
351881 - kerio kerio_mailserver Unspecified vulnerability in Kerio MailServer before 6.0.3 has unknown impact and unknown remote attack vectors, related to a "potential security issue." NVD-CWE-Other
CVE-2004-2441 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
351882 - f-secure f-secure_anti-virus
f-secure_for_firewalls
f-secure_internet_security
f-secure_personal_express
internet_gatekeeper
Multiple interpretation error in various F-Secure Anti-Virus products, including Workstation 5.43 and earlier, Windows Servers 5.50 and earlier, MIMEsweeper 5.50 and earlier, Anti-Virus for Linux Ser… NVD-CWE-Other
CVE-2004-2442 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
351883 - jaws jaws Jaws 0.3 allows remote attackers to bypass authentication and via an HTTP request to admin.php with the logged cookie set to the MD5 hash of a null password, which is compared against the logged sess… NVD-CWE-Other
CVE-2004-2443 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
351884 - jaws jaws Cross-site scripting (XSS) vulnerability in index.php in Jaws 0.3 allows remote attackers to inject arbitrary web script or HTML via the action parameter. NVD-CWE-Other
CVE-2004-2444 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
351885 - jaws jaws Directory traversal vulnerability in index.php in Jaws 0.3 BETA allows remote attackers to view arbitrary files via a .. (dot dot) in the gadget parameter. NVD-CWE-Other
CVE-2004-2445 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
351886 - 1st_class_internet_solutions 1st_class_mail_server Directory traversal vulnerability in 1st Class Mail Server 4.01 allows remote attackers to read arbitrary files via a ".." (dot dot) sequences in unknown vectors. NVD-CWE-Other
CVE-2004-2446 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
351887 - 1st_class_internet_solutions 1st_class_mail_server Cross-site scripting (XSS) vulnerability in 1st Class Mail Server 4.01 allows remote attackers to inject arbitrary web script or HTML via the Mailbox parameter to (1) viewmail.tagz, (2) the index scr… NVD-CWE-Other
CVE-2004-2447 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
351888 - cassiopeia
itransact
s-mart_shopping_cart
redicart
S-Mart Shopping Cart or RediCart 3.9.5b stores smart.cfg under the web document root with insufficient access control, which allows remote attackers to obtain sensitive information such as the databa… NVD-CWE-Other
CVE-2004-2448 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
351889 - gamespy roger_wilco_dedicated_server
roger_wilco_graphical_server
Roger Wilco 1.4.1.6 and earlier or Roger Wilco Base Station 0.30a and earlier allows remote attackers to cause a denial of service (application crash) via a long, malformed UDP datagram. NVD-CWE-Other
CVE-2004-2449 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm
351890 - gamespy roger_wilco
roger_wilco_dedicated_server
roger_wilco_graphical_server
roger_wilco_mark
The client and server for Roger Wilco 1.4.1.6 and earlier or Roger Wilco Base Station 0.30a and earlier report sensitive information such as IDs and source IP addresses, which allows remote attackers… NVD-CWE-Other
CVE-2004-2450 2017-07-11 10:31 2004-12-31 Show GitHub Exploit DB Packet Storm