Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232501 9.3 危険 マイクロソフト - Microsoft Works 7 などに実装される WkImgSrv.dll におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-1898 2012-09-25 17:16 2008-04-21 Show GitHub Exploit DB Packet Storm
232502 4.3 警告 マイクロソフト - Microsoft Windows SharePoint Services 2.0 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1888 2012-09-25 17:16 2008-04-18 Show GitHub Exploit DB Packet Storm
232503 1.9 注意 openmosix project - openMosix の openmosix-tools におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-1865 2012-09-25 17:16 2008-04-17 Show GitHub Exploit DB Packet Storm
232504 9.3 危険 lokicms - LokiCMS の admin.php における任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2008-1860 2012-09-25 17:16 2008-04-17 Show GitHub Exploit DB Packet Storm
232505 7.5 危険 iScripts - iScripts SocialWare の events.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1859 2012-09-25 17:16 2008-04-16 Show GitHub Exploit DB Packet Storm
232506 6.8 警告 mole - Mole の viewsource.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-1857 2012-09-25 17:16 2008-04-16 Show GitHub Exploit DB Packet Storm
232507 5.1 警告 LinPHA - LinPHA の plugins/maps/db_handler.php におけるディレクトリトラバーサル攻撃を実行される脆弱性 CWE-20
CWE-22
CVE-2008-1856 2012-09-25 17:16 2008-04-16 Show GitHub Exploit DB Packet Storm
232508 5 警告 マカフィー - ePO などの製品で使用される McAfee CMA の FrameworkService.exe におけるメモリ破損の脆弱性 CWE-399
リソース管理の問題
CVE-2008-1855 2012-09-25 17:16 2008-04-16 Show GitHub Exploit DB Packet Storm
232509 4.3 警告 ヒューレット・パッカード - HP OV NNM の ovtopmd service におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-1853 2012-09-25 17:16 2008-04-16 Show GitHub Exploit DB Packet Storm
232510 7.8 危険 ヒューレット・パッカード - HP OV NNM の ovalarmsrv におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-1852 2012-09-25 17:16 2008-04-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
951 6.6 MEDIUM
Local
- - The mv utility in uutils coreutils improperly handles directory trees containing symbolic links during moves across filesystem boundaries. Instead of preserving symlinks, the implementation expands t… New CWE-59
Link Following
CVE-2026-35365 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
952 4.4 MEDIUM
Local
- - The printenv utility in uutils coreutils fails to display environment variables containing invalid UTF-8 byte sequences. While POSIX permits arbitrary bytes in environment strings, the uutils impleme… New CWE-754
 Improper Check for Unusual or Exceptional Conditions
CVE-2026-35366 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
953 3.3 LOW
Local
- - The nohup utility in uutils coreutils creates its default output file, nohup.out, without specifying explicit restricted permissions. This causes the file to inherit umask-based permissions, typicall… New CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2026-35367 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
954 7.8 HIGH
Local
- - A vulnerability exists in the chroot utility of uutils coreutils when using the --userspec option. The utility resolves the user specification via getpwnam() after entering the chroot but before drop… New CWE-426
 Untrusted Search Path
CVE-2026-35368 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
955 5.5 MEDIUM
Local
- - An argument parsing error in the kill utility of uutils coreutils incorrectly interprets kill -1 as a request to send the default signal (SIGTERM) to PID -1. Sending a signal to PID -1 causes the ker… New CWE-20
 Improper Input Validation 
CVE-2026-35369 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
956 4.4 MEDIUM
Local
- - The id utility in uutils coreutils miscalculates the groups= section of its output. The implementation uses a user's real GID instead of their effective GID to compute the group list, leading to pote… New CWE-863
 Incorrect Authorization
CVE-2026-35370 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
957 3.3 LOW
Local
- - The id utility in uutils coreutils exhibits incorrect behavior in its "pretty print" output when the real UID and effective UID differ. The implementation incorrectly uses the effective GID instead o… New CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-35371 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
958 5.5 MEDIUM
Local
- - A logic error in the cut utility of uutils coreutils causes the program to incorrectly interpret the literal two-byte string '' (two single quotes) as an empty delimiter. The implementation mistakenl… New CWE-20
 Improper Input Validation 
CVE-2026-35380 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
959 3.3 LOW
Local
- - A logic error in the cut utility of uutils coreutils causes the utility to ignore the -s (only-delimited) flag when using the -z (null-terminated) and -d '' (empty delimiter) options together. The im… New CWE-684
 Incorrect Provision of Specified Functionality
CVE-2026-35381 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
960 5.0 MEDIUM
Local
- - A logic error in the ln utility of uutils coreutils allows the utility to dereference a symbolic link target even when the --no-dereference (or -n) flag is explicitly provided. The implementation pre… New CWE-61
 UNIX Symbolic Link (Symlink) Following
CVE-2026-35372 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm