Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 2:09 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
681 6.2 警告
Local
アドビシステムズ C2PA (Coalition for Content Provenance and Authenticity)
(Content Authenticity Initiative) c2pa-web
アドビの(Content Authenticity Initiative) c2pa-web等の複数製品におけるリソースの枯渇に関する脆弱性 New CWE-400
リソースの枯渇
CVE-2026-34673 2026-05-18 11:23 2026-05-12 Show GitHub Exploit DB Packet Storm
682 6.2 警告
Local
アドビシステムズ C2PA (Coalition for Content Provenance and Authenticity)
(Content Authenticity Initiative) c2pa-web
アドビの(Content Authenticity Initiative) c2pa-web等の複数製品におけるリソースの枯渇に関する脆弱性 New CWE-400
リソースの枯渇
CVE-2026-34677 2026-05-18 11:23 2026-05-12 Show GitHub Exploit DB Packet Storm
683 6.2 警告
Local
アドビシステムズ C2PA (Coalition for Content Provenance and Authenticity)
(Content Authenticity Initiative) c2pa-web
アドビの(Content Authenticity Initiative) c2pa-web等の複数製品におけるリソースの枯渇に関する脆弱性 New CWE-400
リソースの枯渇
CVE-2026-34678 2026-05-18 11:23 2026-05-12 Show GitHub Exploit DB Packet Storm
684 6.2 警告
Local
アドビシステムズ C2PA (Coalition for Content Provenance and Authenticity)
(Content Authenticity Initiative) c2pa-web
アドビの(Content Authenticity Initiative) c2pa-web等の複数製品における入力確認に関する脆弱性 New CWE-20
不適切な入力確認
CVE-2026-34679 2026-05-18 11:23 2026-05-12 Show GitHub Exploit DB Packet Storm
685 6.2 警告
Local
アドビシステムズ C2PA (Coalition for Content Provenance and Authenticity)
(Content Authenticity Initiative) c2pa-web
アドビの(Content Authenticity Initiative) c2pa-web等の複数製品における整数オーバーフローの脆弱性 New CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2026-34680 2026-05-18 11:23 2026-05-12 Show GitHub Exploit DB Packet Storm
686 6.2 警告
Local
アドビシステムズ C2PA (Coalition for Content Provenance and Authenticity)
(Content Authenticity Initiative) c2pa-web
アドビの(Content Authenticity Initiative) c2pa-web等の複数製品における入力確認に関する脆弱性 New CWE-20
不適切な入力確認
CVE-2026-34688 2026-05-18 11:23 2026-05-12 Show GitHub Exploit DB Packet Storm
687 7.1 重要
Adjacent
Linux Foundation automotive grade linux Linux FoundationのAutomotive Grade Linuxにおけるバッファオーバーリードの脆弱性 New CWE-126
バッファオーバーリード
CVE-2026-37532 2026-05-18 11:23 2026-05-1 Show GitHub Exploit DB Packet Storm
688 8.8 重要
Network
マイクロソフト Microsoft Data Formulator Microsoft Data Formulator のリモートでコードが実行される脆弱性 New CWE-94
コード・インジェクション
CVE-2026-41094 2026-05-18 11:22 2026-05-12 Show GitHub Exploit DB Packet Storm
689 9.1 緊急
Network
マイクロソフト Microsoft Confluence SAML SSO plugin
Microsoft JIRA SAML SSO plugin
Jira と Confluence 用の Microsoft SSO プラグインの特権昇格の脆弱性 New CWE-303
CWE-Other
CVE-2026-41103 2026-05-18 11:22 2026-05-12 Show GitHub Exploit DB Packet Storm
690 5.9 警告
Network
opentelemetry OpenTelemetry.Resources.Azure opentelemetryのOpenTelemetry.Resources.Azureにおける制限またはスロットリング無しのリソースの割り当てに関する脆弱性 New CWE-770
制限またはスロットリング無しのリソースの割り当て
CVE-2026-41483 2026-05-18 11:22 2026-05-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346181 - telcondex simplewebserver Buffer overflow in TelCondex SimpleWebServer 2.12.30210 Build3285 allows remote attackers to execute arbitrary code via a long HTTP Referer header. NVD-CWE-Other
CVE-2003-1186 2017-07-11 10:29 2003-10-29 Show GitHub Exploit DB Packet Storm
346182 - telcondex simplewebserver This was fixed in version 2.13. NVD-CWE-Other
CVE-2003-1186 2017-07-11 10:29 2003-10-29 Show GitHub Exploit DB Packet Storm
346183 - unichat unichat Unichat allows remote attackers to cause a denial of service (crash) by adding extra chat characters (avatars) and logging in to a chat room, as demonstrated using duplicate ACTOR entries in u2res000… NVD-CWE-Other
CVE-2003-1188 2017-07-11 10:29 2003-11-2 Show GitHub Exploit DB Packet Storm
346184 - nokia ipso Unknown vulnerability in Nokia IPSO 3.7, configured as IP Clusters, allows remote attackers to cause a denial of service via unknown attack vectors. NVD-CWE-Other
CVE-2003-1189 2017-07-11 10:29 2003-10-29 Show GitHub Exploit DB Packet Storm
346185 - phprecipebook phprecipebook Cross-site scripting (XSS) vulnerability in PHPRecipeBook 1.24 through 2.17 allows remote attackers to inject arbitrary web script or HTML via a recipe. NVD-CWE-Other
CVE-2003-1190 2017-07-11 10:29 2003-11-3 Show GitHub Exploit DB Packet Storm
346186 - phprecipebook phprecipebook This was fixed in PHPRecipeBook 2.18. NVD-CWE-Other
CVE-2003-1190 2017-07-11 10:29 2003-11-3 Show GitHub Exploit DB Packet Storm
346187 - e107 e107 chatbox.php in e107 0.554 and 0.603 allows remote attackers to cause a denial of service (pages fail to load) via HTML in the Name field, which prevents the main.php form from being loaded. NVD-CWE-Other
CVE-2003-1191 2017-07-11 10:29 2003-10-29 Show GitHub Exploit DB Packet Storm
346188 - truenorth_software ia_webmail_server Stack-based buffer overflow in IA WebMail Server 3.1.0 allows remote attackers to execute arbitrary code via a long GET request. NVD-CWE-Other
CVE-2003-1192 2017-07-11 10:29 2003-11-3 Show GitHub Exploit DB Packet Storm
346189 - oracle application_server_portal
oracle9i
Multiple SQL injection vulnerabilities in the Portal DB (1) List of Values (LOVs), (2) Forms, (3) Hierarchy, and (4) XML components packages in Oracle Oracle9i Application Server 9.0.2.00 through 3.0… NVD-CWE-Other
CVE-2003-1193 2017-07-11 10:29 2003-11-3 Show GitHub Exploit DB Packet Storm
346190 - booby booby Cross-site scripting (XSS) vulnerability in Booby .1 through 0.2.3 allows remote attackers to inject arbitrary web script or HTML via the error message. NVD-CWE-Other
CVE-2003-1194 2017-07-11 10:29 2003-10-30 Show GitHub Exploit DB Packet Storm