Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
821 2.7
Network
GitLab.org GitLab GitLab.orgのGitLabにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-2900 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
822 4.3 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-3073 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
823 4.3 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるユーザ制御の鍵による認証回避に関する脆弱性 CWE-639
ユーザ制御の鍵による認証回避
CVE-2026-3074 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
824 5.8 警告
Network
GitLab.org GitLab GitLab.orgのGitLabにおけるフィルタリングの回避に関する脆弱性 CWE-441
フィルタリング回避
CVE-2026-3160 2026-05-18 12:07 2026-05-14 Show GitHub Exploit DB Packet Storm
825 9.1 緊急
Network
マイクロソフト Azure SDK for Java Azure SDK for Java のセキュリティ機能のバイパスの脆弱性 CWE-287
CWE-347
CVE-2026-33117 2026-05-18 12:07 2026-05-12 Show GitHub Exploit DB Packet Storm
826 9.9 緊急
Network
マイクロソフト Microsoft Dynamics 365 Customer Insights Microsoft Dynamics 365 Customer Insights の特権昇格の脆弱性 CWE-269
不適切な権限管理
CVE-2026-33821 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
827 6.5 警告
Adjacent
Pengutronix e.K. barebox Pengutronix e.K.のbareboxにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2026-34960 2026-05-18 12:06 2026-05-11 Show GitHub Exploit DB Packet Storm
828 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows テレフォニー サービスの特権昇格の脆弱性 CWE-416
解放済みメモリの使用
CVE-2026-40382 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
829 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows 共通ログ ファイル システム ドライバーの特権の昇格の脆弱性 CWE-191
整数アンダーフロー
CVE-2026-40397 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
830 7.8 重要
Local
マイクロソフト Microsoft Windows 11 25h2
Microsoft Windows Server 2016
Microsoft Windows 10 1809
Microsoft Windows 11 23h2
Microsoft Wind…
Windows リモート デスクトップ サービスの特権昇格の脆弱性 CWE-122
ヒープオーバーフロー
CVE-2026-40398 2026-05-18 12:06 2026-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345941 - inter7 sqwebmail This vulnerability is addressed in the following product release: Inter7, SqWebMail, 4.0.5 NVD-CWE-Other
CVE-2004-0591 2017-07-11 10:30 2004-08-6 Show GitHub Exploit DB Packet Storm
345942 - suse suse_linux The tcp_find_option function of the netfilter subsystem for IPv6 in the SUSE Linux 2.6.5 kernel with USAGI patches, when using iptables and TCP options rules, allows remote attackers to cause a denia… NVD-CWE-Other
CVE-2004-0592 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm
345943 - sygate_technologies enforcer
secure_enterprise
Sygate Enforcer 3.5MR1 and earlier passes broadcast traffic before authentication, which could allow remote attackers to bypass filtering rules. NVD-CWE-Other
CVE-2004-0593 2017-07-11 10:30 2004-09-28 Show GitHub Exploit DB Packet Storm
345944 - distcc distcc distcc before 2.16, when running on 64-bit platforms, does not interpret IP-based access control rules correctly, which could allow remote attackers to bypass intended restrictions. NVD-CWE-Other
CVE-2004-0601 2017-07-11 10:30 2004-12-23 Show GitHub Exploit DB Packet Storm
345945 - freebsd freebsd The binary compatibility mode for FreeBSD 4.x and 5.x does not properly handle certain Linux system calls, which could allow local users to access kernel memory to gain privileges or cause a system p… NVD-CWE-Other
CVE-2004-0602 2017-07-11 10:30 2004-12-6 Show GitHub Exploit DB Packet Storm
345946 - gnu gzip gzexe in gzip 1.3.3 and earlier will execute an argument when the creation of a temp file fails instead of exiting the program, which could allow remote attackers or local users to execute arbitrary … NVD-CWE-Other
CVE-2004-0603 2017-07-11 10:30 2004-12-6 Show GitHub Exploit DB Packet Storm
345947 - gift-fasttrack
gentoo
gift-fasttrack
linux
The HTTP client and server in giFT-FastTrack 0.8.6 and earlier allows remote attackers to cause a denial of service (crash), possibly via an empty search query, which triggers a NULL dereference. NVD-CWE-Other
CVE-2004-0604 2017-07-11 10:30 2004-12-6 Show GitHub Exploit DB Packet Storm
345948 - ircd-hybrid
ircd-ratbox
ircd-hybrid
ircd-ratbox
Non-registered IRC users using (1) ircd-hybrid 7.0.1 and earlier, (2) ircd-ratbox 1.5.1 and earlier, or (3) ircd-ratbox 2.0rc6 and earlier do not have a rate-limit imposed, which could allow remote a… CWE-16
Configuration
CVE-2004-0605 2017-07-11 10:30 2004-12-6 Show GitHub Exploit DB Packet Storm
345949 - infoblox dns_one_appliance Cross-site scripting (XSS) vulnerability in Infoblox DNS One running firmware 2.4.0-8 and earlier allows remote attackers to execute arbitrary scripts as other users via the (1) CLIENTID or (2) HOSTN… NVD-CWE-Other
CVE-2004-0606 2017-07-11 10:30 2004-12-6 Show GitHub Exploit DB Packet Storm
345950 - arush
dreamforge
epic_games
infogrames
ion_storm
nerf_arena_blast
rage_software
robert_jordan
running_with_scissors
gentoo
devastation
tnn_outdoors_pro_hunter
unreal_engine
unreal_tournament
unreal_tournament_2003
unreal_tournament_2004
tacticalops
x-com_enforcer
deusex
nerf_arena_blast
mobi…
The Unreal Engine, as used in DeusEx 1.112fm and earlier, Devastation 390 and earlier, Mobile Forces 20000 and earlier, Nerf Arena Blast 1.2 and earlier, Postal 2 1337 and earlier, Rune 107 and earli… NVD-CWE-Other
CVE-2004-0608 2017-07-11 10:30 2004-12-6 Show GitHub Exploit DB Packet Storm