Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
701 4.8 警告
Network
Hotwire Turbo HotwireのTurboにおける競合状態に関する脆弱性 CWE-362
競合状態
CVE-2025-66803 2026-02-2 19:30 2026-01-20 Show GitHub Exploit DB Packet Storm
702 7.5 重要
Network
Manos Websocket Server ManosのWebsocket Serverにおける入力確認に関する脆弱性 CWE-20
不適切な入力確認
CVE-2025-66902 2026-02-2 19:30 2026-01-20 Show GitHub Exploit DB Packet Storm
703 6.1 警告
Network
AnyComment AnyComment.io AnyCommentのAnyComment.ioにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-67025 2026-02-2 19:30 2026-01-15 Show GitHub Exploit DB Packet Storm
704 7.5 重要
Network
Revotech I6032W-FHW Firmware RevotechのI6032W-FHW Firmwareにおける認証に関する脆弱性 CWE-287
不適切な認証
CVE-2025-67158 2026-02-2 19:30 2026-01-2 Show GitHub Exploit DB Packet Storm
705 7.5 重要
Network
Vatilon PA4 Firmware VatilonのPA4 Firmwareにおける重要な情報の平文での送信に関する脆弱性 CWE-319
重要な情報の平文での送信
CVE-2025-67159 2026-02-2 19:30 2026-01-2 Show GitHub Exploit DB Packet Storm
706 7.5 重要
Network
Vatilon PA4 Firmware VatilonのPA4 Firmwareにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2025-67160 2026-02-2 19:30 2026-01-2 Show GitHub Exploit DB Packet Storm
707 6.5 警告
Network
Abacre Limited Abacre Retail Point of Sale (POS) Abacre LimitedのAbacre Retail Point of Sale (POS)におけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2025-67261 2026-02-2 19:30 2026-01-20 Show GitHub Exploit DB Packet Storm
708 6.1 警告
Network
Abacre Limited Abacre Retail Point of Sale (POS) Abacre LimitedのAbacre Retail Point of Sale (POS)におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-67263 2026-02-2 19:30 2026-01-20 Show GitHub Exploit DB Packet Storm
709 7.5 重要
Network
comfy ComfyUI Manager comfyのComfyUI Managerにおける保護されていない代替チャネルに関する脆弱性 CWE-420
保護されていない代替チャネル
CVE-2025-67303 2026-02-2 19:30 2026-01-5 Show GitHub Exploit DB Packet Storm
710 9.8 緊急
Network
Qode Interactive Wilmer Qode InteractiveのWordPress用WilmerにおけるPHP リモートファイルインクルージョンの脆弱性 CWE-98
PHP リモートファイルインクルージョン
CVE-2025-67515 2026-02-2 19:30 2025-12-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
307671 - sco openserver Format string vulnerability in crontab for SCO OpenServer 5.0.5 and 5.0.6 allows local users to gain privileges via format string specifiers in the file name argument. NVD-CWE-Other
CVE-2002-0716 2016-10-18 11:21 2002-07-26 Show GitHub Exploit DB Packet Storm
307672 - php php PHP 4.2.0 and 4.2.1 allows remote attackers to cause a denial of service and possibly execute arbitrary code via an HTTP POST request with certain arguments in a multipart/form-data form, which gener… NVD-CWE-Other
CVE-2002-0717 2016-10-18 11:21 2002-07-26 Show GitHub Exploit DB Packet Storm
307673 - microsoft sql_server Microsoft SQL Server 2000 allows remote attackers to cause a denial of service via a malformed 0x08 packet that is missing a colon separator. NVD-CWE-Other
CVE-2002-0729 2016-10-18 11:21 2002-08-12 Show GitHub Exploit DB Packet Storm
307674 - c-note
padl_software
squid_auth_ldap
nss_ldap
pam_ldap
Format string vulnerability in the logging() function in C-Note Squid LDAP authentication module (squid_auth_LDAP) 2.0.2 and earlier allows remote attackers to cause a denial of service and possibly … NVD-CWE-Other
CVE-2002-0735 2016-10-18 11:21 2002-08-12 Show GitHub Exploit DB Packet Storm
307675 - postgresql postgresql The multibyte support in PostgreSQL 6.5.x with SQL_ASCII encoding consumes an extra character when processing a character that cannot be converted, which could remove an escape character from the que… NVD-CWE-Other
CVE-2002-0802 2016-10-18 11:21 2002-08-12 Show GitHub Exploit DB Packet Storm
307676 - lotus domino htcgibin.exe in Lotus Domino server 5.0.9a and earlier allows remote attackers to determine the physical pathname for the server via requests that contain certain MS-DOS device names such as com5, su… NVD-CWE-Other
CVE-2002-0407 2016-10-18 11:20 2002-07-26 Show GitHub Exploit DB Packet Storm
307677 - lotus domino htcgibin.exe in Lotus Domino server 5.0.9a and earlier, when configured with the NoBanner setting, allows remote attackers to determine the version number of the server via a request that generates a… NVD-CWE-Other
CVE-2002-0408 2016-10-18 11:20 2002-07-26 Show GitHub Exploit DB Packet Storm
307678 - microsoft .net_framework orderdetails.aspx, as made available to Microsoft .NET developers as example code and demonstrated on www.ibuyspystore.com, allows remote attackers to view the orders of other users by modifying the … NVD-CWE-Other
CVE-2002-0409 2016-10-18 11:20 2002-07-26 Show GitHub Exploit DB Packet Storm
307679 - luca_deri ntop Format string vulnerability in TraceEvent function for ntop before 2.1 allows remote attackers to execute arbitrary code by causing format strings to be injected into calls to the syslog function, vi… NVD-CWE-Other
CVE-2002-0412 2016-10-18 11:20 2002-08-12 Show GitHub Exploit DB Packet Storm
307680 - linux linux_kernel The iBCS routines in arch/i386/kernel/traps.c for Linux kernels 2.4.18 and earlier on x86 systems allow local users to kill arbitrary processes via a a binary compatibility interface (lcall). NVD-CWE-Other
CVE-2002-0429 2016-10-18 11:20 2002-08-12 Show GitHub Exploit DB Packet Storm