Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
961 9.8 緊急
Network
Nugine wgp Nugineのwgpにおける競合状態に関する脆弱性 CWE-362
競合状態
CVE-2025-47735 2026-02-2 19:19 2025-05-9 Show GitHub Exploit DB Packet Storm
962 9.8 緊急
Network
Geoffroy Couprie trailer Geoffroy Couprieのtrailerにおけるメモリ管理ルーチンの不一致に関する脆弱性 CWE-762
メモリ管理ルーチンの不一致
CVE-2025-47737 2026-02-2 19:19 2025-05-9 Show GitHub Exploit DB Packet Storm
963 9.8 緊急
Network
tickbh Process Lock tickbhのProcess Lockにおける競合状態に関する脆弱性 CWE-362
競合状態
CVE-2025-48751 2026-02-2 19:19 2025-05-24 Show GitHub Exploit DB Packet Storm
964 9.8 緊急
Network
Andrei Odintsov Process Sync Andrei OdintsovのProcess Syncにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2025-48752 2026-02-2 19:19 2025-05-24 Show GitHub Exploit DB Packet Storm
965 9.8 緊急
Network
Obsidian Dynamics Anode Obsidian DynamicsのAnodeにおける競合状態に関する脆弱性 CWE-362
競合状態
CVE-2025-48753 2026-02-2 19:19 2025-05-24 Show GitHub Exploit DB Packet Storm
966 7.5 重要
Network
Fractal Fir(Micha? Kostrubiec) memory_pages Fractal Fir(Micha? Kostrubiec)のmemory_pagesにおけるゼロ除算に関する脆弱性 CWE-369
ゼロ除算
CVE-2025-48754 2026-02-2 19:19 2025-05-24 Show GitHub Exploit DB Packet Storm
967 9.8 緊急
Network
Blyss spiral-rs Blyssのspiral-rsにおけるメモリ管理ルーチンの不一致に関する脆弱性 CWE-762
メモリ管理ルーチンの不一致
CVE-2025-48755 2026-02-2 19:19 2025-05-24 Show GitHub Exploit DB Packet Storm
968 9.8 緊急
Network
crates scsir cratesのscsirにおける型の取り違えに関する脆弱性 CWE-843
型の取り違え
CVE-2025-48756 2026-02-2 19:19 2025-05-24 Show GitHub Exploit DB Packet Storm
969 9.8 緊急
Network
Qode Interactive MediClinic Qode InteractiveのWordPress用MediClinicにおけるパストラバーサルの脆弱性 CWE-35
パストラバーサル
CVE-2025-49295 2026-02-2 19:19 2025-06-9 Show GitHub Exploit DB Packet Storm
970 9.8 緊急
Network
Qode Interactive GrandPrix Qode InteractiveのWordPress用GrandPrixにおけるパストラバーサルの脆弱性 CWE-35
パストラバーサル
CVE-2025-49296 2026-02-2 19:19 2025-06-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
304591 - phpgroupware phpgroupware phpGroupWare 0.9.16.003 and earlier allows remote attackers to gain sensitive information via (1) unexpected characters in the session ID such as shell metacharacters, (2) an invalid appname paramete… NVD-CWE-Other
CVE-2004-1385 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm
304592 - tiki tikiwiki_cms\/groupware TikiWiki before 1.8.4.1 does not properly verify uploaded images, which could allow remote attackers to upload and execute arbitrary PHP scripts, a different vulnerability than CVE-2005-0200. CWE-20
 Improper Input Validation 
CVE-2004-1386 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm
304593 - veritas netbackup Unknown vulnerability in the Veritas NetBackup Administrative Assistant interface for NetBackup BusinesServer 3.4, 3.4.1, and 4.5, DataCenter 3.4, 3.4.1, and 4.5, Enterprise Server 5.1, and NetBackup… NVD-CWE-Other
CVE-2004-1389 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm
304594 - qnx rtos
rtp
Multiple buffer overflows in the PPPoE daemon (PPPoEd) in QNX RTP 6.1 allow remote attackers to execute arbitrary code via a long argument to the (1) -F, (2) name, (3) en, (4) upscript, (5) downscrip… NVD-CWE-Other
CVE-2004-1390 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm
304595 - qnx rtos
rtp
Untrusted execution path vulnerability in the PPPoE daemon (PPPoEd) in QNX RTP 6.1 allows local users to execute arbitrary programs by modifying the PATH environment variable to point to a malicious … NVD-CWE-Other
CVE-2004-1391 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm
304596 - monolith_productions contract_jack
no_one_lives_forever_2
tron
The Lithtech engine, as used in (1) Contract Jack 1.1 and earlier, (2) No one lives forever 2 1.3 and earlier, (3) Tron 2.0 1.042 and earlier, (4) F.E.A.R. (First Encounter Assault and Recon), and po… NVD-CWE-Other
CVE-2004-1395 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm
304597 - nullsoft winamp Winamp 5.07 and possibly other versions, allows remote attackers to cause a denial of service (application crash or CPU consumption) via (1) an mp4 or m4a playlist file that contains invalid tag data… NVD-CWE-Other
CVE-2004-1396 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm
304598 - - - Cross-site scripting (XSS) vulnerability in UseModWiki 1.0 allows remote attackers to inject arbitrary web script or HTML via an argument to wiki.pl. NVD-CWE-Other
CVE-2004-1397 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm
304599 - roxio toast Format string vulnerability in prelink.c in kextload in Apple OS X, as used by TDIXSupport in Roxio Toast Titanium and possibly other products, allows local users to execute arbitrary code via format… NVD-CWE-Other
CVE-2004-1398 2017-07-11 10:30 2004-12-31 Show GitHub Exploit DB Packet Storm
304600 - nd nd Multiple buffer overflows in the nd WebDAV interface 0.8.2 and earlier allows remote web servers to execute arbitrary code via certain long strings. NVD-CWE-Other
CVE-2004-0014 2017-07-11 10:29 2004-01-20 Show GitHub Exploit DB Packet Storm