Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229601 9 危険 IBM - Windows 上の IBM DB2 および DB2 Connect の UTL_FILE モジュールにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-3324 2012-09-27 16:11 2012-07-25 Show GitHub Exploit DB Packet Storm
229602 3.3 注意 IBM - z/OS 上で稼働する IBM WebSphere Application Server におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3311 2012-09-27 16:05 2012-09-24 Show GitHub Exploit DB Packet Storm
229603 6.8 警告 IBM - IBM WebSphere Application Server における脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-3306 2012-09-27 15:48 2012-09-24 Show GitHub Exploit DB Packet Storm
229604 6.4 警告 IBM - IBM WebSphere Application Server におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-3305 2012-09-27 15:37 2012-09-24 Show GitHub Exploit DB Packet Storm
229605 6.8 警告 IBM - IBM WebSphere Application Server の管理コンソールにおけるセッションをハイジャックされる脆弱性 CWE-Other
その他
CVE-2012-3304 2012-09-27 15:31 2012-09-24 Show GitHub Exploit DB Packet Storm
229606 10 危険 IBM - IBM WebSphere Commerce における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-3298 2012-09-27 15:10 2012-09-20 Show GitHub Exploit DB Packet Storm
229607 5 警告 IBM - Solaris 上で稼働する IBM WebSphere MQ におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-2199 2012-09-27 14:57 2012-09-20 Show GitHub Exploit DB Packet Storm
229608 5 警告 IBM - 複数の IBM 製品用 IBM リモート管理アダプター II ファームウェアにおける暗号保護メカニズムを破られる脆弱性 CWE-310
暗号の問題
CVE-2012-2187 2012-09-27 14:36 2012-09-20 Show GitHub Exploit DB Packet Storm
229609 6.5 警告 トレンドマイクロ - Trend Micro Control Manager における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-2998 2012-09-27 12:00 2012-09-27 Show GitHub Exploit DB Packet Storm
229610 4.3 警告 SQLiteManager - SQLiteManager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5105 2012-09-26 16:45 2012-09-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
951 6.6 MEDIUM
Local
- - The mv utility in uutils coreutils improperly handles directory trees containing symbolic links during moves across filesystem boundaries. Instead of preserving symlinks, the implementation expands t… New CWE-59
Link Following
CVE-2026-35365 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
952 4.4 MEDIUM
Local
- - The printenv utility in uutils coreutils fails to display environment variables containing invalid UTF-8 byte sequences. While POSIX permits arbitrary bytes in environment strings, the uutils impleme… New CWE-754
 Improper Check for Unusual or Exceptional Conditions
CVE-2026-35366 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
953 3.3 LOW
Local
- - The nohup utility in uutils coreutils creates its default output file, nohup.out, without specifying explicit restricted permissions. This causes the file to inherit umask-based permissions, typicall… New CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2026-35367 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
954 7.8 HIGH
Local
- - A vulnerability exists in the chroot utility of uutils coreutils when using the --userspec option. The utility resolves the user specification via getpwnam() after entering the chroot but before drop… New CWE-426
 Untrusted Search Path
CVE-2026-35368 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
955 5.5 MEDIUM
Local
- - An argument parsing error in the kill utility of uutils coreutils incorrectly interprets kill -1 as a request to send the default signal (SIGTERM) to PID -1. Sending a signal to PID -1 causes the ker… New CWE-20
 Improper Input Validation 
CVE-2026-35369 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
956 4.4 MEDIUM
Local
- - The id utility in uutils coreutils miscalculates the groups= section of its output. The implementation uses a user's real GID instead of their effective GID to compute the group list, leading to pote… New CWE-863
 Incorrect Authorization
CVE-2026-35370 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
957 3.3 LOW
Local
- - The id utility in uutils coreutils exhibits incorrect behavior in its "pretty print" output when the real UID and effective UID differ. The implementation incorrectly uses the effective GID instead o… New CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-35371 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
958 5.5 MEDIUM
Local
- - A logic error in the cut utility of uutils coreutils causes the program to incorrectly interpret the literal two-byte string '' (two single quotes) as an empty delimiter. The implementation mistakenl… New CWE-20
 Improper Input Validation 
CVE-2026-35380 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
959 3.3 LOW
Local
- - A logic error in the cut utility of uutils coreutils causes the utility to ignore the -s (only-delimited) flag when using the -z (null-terminated) and -d '' (empty delimiter) options together. The im… New CWE-684
 Incorrect Provision of Specified Functionality
CVE-2026-35381 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
960 5.0 MEDIUM
Local
- - A logic error in the ln utility of uutils coreutils allows the utility to dereference a symbolic link target even when the --no-dereference (or -n) flag is explicitly provided. The implementation pre… New CWE-61
 UNIX Symbolic Link (Symlink) Following
CVE-2026-35372 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm