Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
681 6.5 警告
Network
FasterXML, LLC Jackson-databind FasterXML, LLCのJackson-databindにおける不正な認証に関する脆弱性 New CWE-863
不正な認証
CVE-2026-54518 2026-06-29 11:06 2026-06-23 Show GitHub Exploit DB Packet Storm
682 7.5 重要
Network
Aqua Security Trivy Aqua SecurityのTrivyにおけるパストラバーサルの脆弱性 New CWE-22
パス・トラバーサル
CVE-2026-55092 2026-06-29 11:06 2026-06-25 Show GitHub Exploit DB Packet Storm
683 6.5 警告
Adjacent
dhcpcd project dhcpcd dhcpcd projectのdhcpcdにおける解放済みメモリの使用に関する脆弱性 New CWE-416
解放済みメモリの使用
CVE-2026-56113 2026-06-29 11:06 2026-06-23 Show GitHub Exploit DB Packet Storm
684 6.5 警告
Adjacent
dhcpcd project dhcpcd dhcpcd projectのdhcpcdにおける境界外書き込みに関する脆弱性 New CWE-787
境界外書き込み
CVE-2026-56114 2026-06-29 11:06 2026-06-23 Show GitHub Exploit DB Packet Storm
685 6.5 警告
Adjacent
dhcpcd project dhcpcd dhcpcd projectのdhcpcdにおける有効期限後のメモリの解放の欠如に関する脆弱性 New CWE-401
有効期限後のメモリの解放の欠如
CVE-2026-56116 2026-06-29 11:06 2026-06-23 Show GitHub Exploit DB Packet Storm
686 5.5 警告
Local
dhcpcd project dhcpcd dhcpcd projectのdhcpcdにおける解放済みメモリの使用に関する脆弱性 New CWE-416
解放済みメモリの使用
CVE-2026-56117 2026-06-29 11:06 2026-06-23 Show GitHub Exploit DB Packet Storm
687 7.5 重要
Network
Jenkins プロジェクト Script Security JenkinsのScript Securityにおける複数の脆弱性 New CWE-693
CWE-93
CVE-2026-57281 2026-06-29 11:05 2026-06-24 Show GitHub Exploit DB Packet Storm
688 7.1 重要
Network
Bitwarden Server BitwardenのServerにおける認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2026-57520 2026-06-29 11:05 2026-06-25 Show GitHub Exploit DB Packet Storm
689 4.3 警告
Network
Bitwarden Server BitwardenのServerにおける認証の欠如に関する脆弱性 New CWE-862
認証の欠如
CVE-2026-57521 2026-06-29 11:05 2026-06-25 Show GitHub Exploit DB Packet Storm
690 5 警告
Network
Bitwarden Server BitwardenのServerにおけるインジェクションに関する脆弱性 New CWE-74
インジェクション
CVE-2026-57522 2026-06-29 11:05 2026-06-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
355901 - zonelabs zonealarm ZoneAlarm Pro 3.0 MailSafe allows remote attackers to bypass filtering and possibly execute arbitrary code via email attachments containing a trailing dot after the file extension. NVD-CWE-Other
CVE-2002-1997 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
355902 - xqus x-stat x_stat_admin.php in x-stat 2.3 and earlier allows remote attackers to (1) execute PHP commands such as phpinfo or (2) obtain the full path of the web server via an invalid action parameter, which lea… NVD-CWE-Other
CVE-2002-2045 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
355903 - squirrelmail squirrelmail Multiple cross-site scripting (XSS) vulnerabilities in magicHTML of SquirrelMail before 1.2.6 allow remote attackers to inject arbitrary web script or HTML via (1) "<<script" in unspecified input fie… NVD-CWE-Other
CVE-2002-2086 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
355904 - gianni_tedesco fwmon Fwmon before 1.0.10 allows remote attackers to cause a denial of service (crash) by causing the kernel to return a large packet. NVD-CWE-Other
CVE-2002-2111 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
355905 - netjuke netjuke Artekopia Netjuke before 1.0 b7 allows remote attackers to execute arbitrary code on the web server, possibly via the section parameter, which is passed to an eval call. NVD-CWE-Other
CVE-2002-2114 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
355906 - gallery_project gallery PHP remote file inclusion vulnerability in publish_xp_docs.php for Gallery 1.3.2 allows remote attackers to inject arbitrary PHP code by specifying a URL to an init.php file in the GALLERY_BASEDIR pa… NVD-CWE-Other
CVE-2002-2123 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
355907 - nylon nylon The recvn and sendn functions in nylon 0.2 do not check when the recv function call returns 0, which allows remote attackers to cause a denial of service (infinite loop and CPU consumption) by closin… NVD-CWE-Other
CVE-2002-2124 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
355908 - pedestal_software integrity_protection_driver Integrity Protection Driver (IPD) 1.2 and earlier blocks access to \Device\PhysicalMemory by its name, which could allow local privileged processes to overwrite kernel memory by accessing the device … NVD-CWE-Other
CVE-2002-2127 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
355909 - w-agora w-agora Cross-site scripting vulnerability (XSS) in editform.php for w-Agora 4.1.5 allows remote attackers to execute arbitrary web script via an arbitrary form field name containing the script, which is ech… NVD-CWE-Other
CVE-2002-2129 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm
355910 - oracle application_server Format string vulnerability in the administrative pages of the PL/SQL module for Oracle Application Server 4.0.8 and 4.0.8 2 allows remote attackers to execute arbitrary code. NVD-CWE-Other
CVE-2002-2153 2017-07-11 10:29 2002-12-31 Show GitHub Exploit DB Packet Storm