Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1121 7.8 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2025-39939 2026-01-29 16:00 2025-10-4 Show GitHub Exploit DB Packet Storm
1122 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2025-39942 2026-01-29 16:00 2025-10-4 Show GitHub Exploit DB Packet Storm
1123 7.1 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2025-39943 2026-01-29 16:00 2025-10-4 Show GitHub Exploit DB Packet Storm
1124 7.8 重要
Local
Linux Linux Kernel LinuxのLinux Kernelにおける解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2025-39944 2026-01-29 16:00 2025-10-4 Show GitHub Exploit DB Packet Storm
1125 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける不特定の脆弱性 CWE-noinfo
情報不足
CVE-2025-39946 2026-01-29 16:00 2025-10-4 Show GitHub Exploit DB Packet Storm
1126 5.5 警告
Local
Linux Linux Kernel LinuxのLinux KernelにおけるNULL ポインタデリファレンスに関する脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2025-39947 2026-01-29 16:00 2025-10-4 Show GitHub Exploit DB Packet Storm
1127 5.5 警告
Local
Linux Linux Kernel LinuxのLinux Kernelにおける有効期限後のメモリの解放の欠如に関する脆弱性 CWE-401
有効期限後のメモリの解放の欠如
CVE-2025-39948 2026-01-29 16:00 2025-10-4 Show GitHub Exploit DB Packet Storm
1128 5.5 警告
Local
- アップルのmacOSにおけるログファイルからの情報漏えいに関する脆弱性 CWE-532
ログファイルからの情報漏えい
CVE-2025-43508 2026-01-29 16:00 2026-01-16 Show GitHub Exploit DB Packet Storm
1129 6.7 警告
Local
クアルコム fastconnect 6700 ファームウェア
wcn6755 ファームウェア
SM8735 ファームウェア
QCS6490 ファームウェア
WCD9380 ファームウェア
video collaboration vc3 platform ファームウェア
wc…
クアルコムのfastconnect 6700 ファームウェア等の複数製品における古典的バッファオーバーフローの脆弱性 CWE-120
古典的バッファオーバーフロー
CVE-2025-47335 2026-01-29 16:00 2026-01-7 Show GitHub Exploit DB Packet Storm
1130 6.7 警告
Local
クアルコム sm8750 ファームウェア
WCN7750 ファームウェア
wsa8845h ファームウェア
wcn7880 ファームウェア
wcn7861 ファームウェア
SM8735 ファームウェア
wcd9378 ファームウェア
wcd9395 ファームウェア
wcn7881&…
クアルコムのfastconnect 7800 ファームウェア等の複数製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2025-47336 2026-01-29 16:00 2026-01-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
283191 - fortinet forticlient_host_security The fortimon.sys device driver in Fortinet FortiClient Host Security 3.0 MR5 Patch 3 and earlier does not properly initialize its DeviceExtension, which allows local users to access kernel memory and… CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-0779 2018-10-16 07:02 2008-02-14 Show GitHub Exploit DB Packet Storm
283192 - cacti cacti Multiple cross-site scripting (XSS) vulnerabilities in Cacti 0.8.7 before 0.8.7b and 0.8.6 before 0.8.6k allow remote attackers to inject arbitrary web script or HTML via (1) the view_type parameter … CWE-79
Cross-site Scripting
CVE-2008-0783 2018-10-16 07:02 2008-02-15 Show GitHub Exploit DB Packet Storm
283193 - cisco acs_for_windows
acs_solution_engine
user_changeable_password
Multiple buffer overflows in securecgi-bin/CSuserCGI.exe in User-Changeable Password (UCP) before 4.2 in Cisco Secure Access Control Server (ACS) for Windows and ACS Solution Engine allow remote atta… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-0532 2018-10-16 07:01 2008-03-15 Show GitHub Exploit DB Packet Storm
283194 - cisco acs_for_windows
acs_solution_engine
user_changeable_password
Multiple cross-site scripting (XSS) vulnerabilities in securecgi-bin/CSuserCGI.exe in User-Changeable Password (UCP) before 4.2 in Cisco Secure Access Control Server (ACS) for Windows and ACS Solutio… CWE-79
Cross-site Scripting
CVE-2008-0533 2018-10-16 07:01 2008-03-15 Show GitHub Exploit DB Packet Storm
283195 - phpip phpip_management Multiple SQL injection vulnerabilities in phpIP Management 4.3.2 allow remote attackers to execute arbitrary SQL commands via the (1) password parameter to login.php, the (2) id parameter to display.… CWE-89
SQL Injection
CVE-2008-0538 2018-10-16 07:01 2008-02-2 Show GitHub Exploit DB Packet Storm
283196 - pre_projects pre_dynamic_institution Multiple SQL injection vulnerabilities in Pre Dynamic Institution allow remote attackers to execute arbitrary SQL commands via the (1) sloginid and (2) spass parameters to (a) login.asp and (b) sitea… CWE-89
SQL Injection
CVE-2008-0543 2018-10-16 07:01 2008-02-2 Show GitHub Exploit DB Packet Storm
283197 - sdl sdl_image Heap-based buffer overflow in the IMG_LoadLBM_RW function in IMG_lbm.c in SDL_image before 1.2.7 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-0544 2018-10-16 07:01 2008-02-2 Show GitHub Exploit DB Packet Storm
283198 - shoppingtree candypress_store Multiple SQL injection vulnerabilities in CandyPress (CP) 4.1.1.26, and earlier 4.1.x versions, allow remote attackers to execute arbitrary SQL commands via the (1) idProduct and (2) options paramete… CWE-89
SQL Injection
CVE-2008-0546 2018-10-16 07:01 2008-02-2 Show GitHub Exploit DB Packet Storm
283199 - shoppingtree candypress_store Cross-site scripting (XSS) vulnerability in admin/utilities_ConfigHelp.asp in CandyPress (CP) 4.1.1.26, and probably earlier 4.x and 3.x versions, allows remote attackers to inject arbitrary web scri… CWE-79
Cross-site Scripting
CVE-2008-0547 2018-10-16 07:01 2008-02-2 Show GitHub Exploit DB Packet Storm
283200 - eticket eticket Cross-site scripting (XSS) vulnerability in index.php in eTicket 1.5.6-RC4 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO. CWE-79
Cross-site Scripting
CVE-2008-0552 2018-10-16 07:01 2008-02-2 Show GitHub Exploit DB Packet Storm