Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
951 7.8 重要
Local
dail8859 Notepad Next dail8859のNotepad Nextにおけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2026-42214 2026-05-14 10:12 2026-05-7 Show GitHub Exploit DB Packet Storm
952 7.1 重要
Network
Legeling PromptHUB LegelingのPromptHUBにおける複数の脆弱性 CWE-20
CWE-693
CWE-918
CVE-2026-42261 2026-05-14 10:12 2026-05-8 Show GitHub Exploit DB Packet Storm
953 9.9 緊急
Network
Apache Software Foundation Polaris Apache Software FoundationのPolarisにおける複数の脆弱性 CWE-20
CWE-862
CVE-2026-42809 2026-05-14 10:12 2026-05-4 Show GitHub Exploit DB Packet Storm
954 9.9 緊急
Network
Apache Software Foundation Polaris Apache Software FoundationのPolarisにおける複数の脆弱性 CWE-116
CWE-20
CVE-2026-42810 2026-05-14 10:12 2026-05-4 Show GitHub Exploit DB Packet Storm
955 9.9 緊急
Network
Apache Software Foundation Polaris Apache Software FoundationのPolarisにおける複数の脆弱性 CWE-20
CWE-917
CVE-2026-42811 2026-05-14 10:12 2026-05-4 Show GitHub Exploit DB Packet Storm
956 9.9 緊急
Network
Apache Software Foundation Polaris Apache Software FoundationのPolarisにおける複数の脆弱性 CWE-20
CWE-284
CWE-732
CWE-863
CVE-2026-42812 2026-05-14 10:12 2026-05-4 Show GitHub Exploit DB Packet Storm
957 7.5 重要
Network
Open JS Foundation fast-uri Open JS Foundationのfast-uriにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2026-6321 2026-05-14 10:12 2026-05-4 Show GitHub Exploit DB Packet Storm
958 7.5 重要
Network
Open JS Foundation fast-uri Open JS Foundationのfast-uriにおける解釈の競合に関する脆弱性 CWE-436
解釈の競合
CVE-2026-6322 2026-05-14 10:12 2026-05-5 Show GitHub Exploit DB Packet Storm
959 4.8 警告
Network
KDDI Androidアプリ「あんしんフィルター for au」 Androidアプリ「あんしんフィルター for au」における重要情報の平文送信の脆弱性 CWE-Other
その他
CVE-2026-41281 2026-05-13 12:14 2026-05-13 Show GitHub Exploit DB Packet Storm
960 7.8 重要
Local
Bytello Ltd. Bytello Share(Windows版) Bytello Share(Windows版)のEXE形式インストーラにおけるDLL読み込みに関する脆弱性 CWE-Other
その他
CVE-2026-44612 2026-05-13 12:05 2026-05-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
352151 - sybase easerver Sybase Enterprise Application Server 4.0, when running on Windows, allows remote attackers to retrieve files in the WEB-INF directory, which contains Java class files and configuration information, v… NVD-CWE-Other
CVE-2002-1861 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm
352152 - virtualzone smartmail_server SmartMail Server 2.0 allows remote attackers to cause a denial of service (crash) by sending data and closing the connection before all the data has been sent. NVD-CWE-Other
CVE-2002-1862 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm
352153 - iomega network_attached_storage Iomega Network Attached Storage (NAS) A300U, and possibly other models, does not allow the FTP service to be disabled, which allows local users to access home directories via FTP even when access to … NVD-CWE-Other
CVE-2002-1863 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm
352154 - sws sws_simple_web_server Directory traversal vulnerability in Simple Web Server (SWS) 0.0.4 through 0.1.0 allows remote attackers to read arbitrary files via a ".." (dot dot) in an HTTP request. NVD-CWE-Other
CVE-2002-1864 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm
352155 - d-link
linksys
di-804
dl-704
befw11s4
wap11
Buffer overflow in the Embedded HTTP server, as used in (1) D-Link DI-804 4.68, Dl-704 V2.56b6, and Dl-704 V2.56b5 and (2) Linksys Etherfast BEFW11S4 Wireless AP + Cable/DSL Router 1.37.2 through 1.4… NVD-CWE-Other
CVE-2002-1865 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm
352156 - sws sws_simple_web_server Simple Web Server (SWS) 0.0.4 through 0.1.0 does not close file descriptors for 404 error messages, which could allow remote attackers to cause a denial of service (file descriptor exhaustion) via mu… NVD-CWE-Other
CVE-2002-1866 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm
352157 - daniel_stenberg dispair Dispair 0.1 and 0.2 allows remote attackers to execute arbitrary shell commands via certain form fields. NVD-CWE-Other
CVE-2002-1868 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm
352158 - sws sws_simple_web_server Simple Web Server (SWS) 0.0.4 through 0.1.0 does not properly handle when the recv function call fails, which may allow remote attackers to overwrite program data or perform actions on an uninitializ… NVD-CWE-Other
CVE-2002-1870 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm
352159 - astrocam astrocam astrocam.cgi in AstroCam 0.9-1-1 through 1.4.0 allows remote attackers to execute arbitrary commands via shell metacharacters in an HTTP request. NOTE: earlier disclosures stated that the affected v… CWE-20
 Improper Input Validation 
CVE-2002-1874 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm
352160 - mcafee entercept_agent Entercept Agent 2.5 agent for Windows, released before May 21, 2002, allows local administrative users to obtain the entercept agent password, which could allow the administrators to log on as the en… NVD-CWE-Other
CVE-2002-1875 2008-09-6 05:31 2002-12-31 Show GitHub Exploit DB Packet Storm