Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
234961 4.3 警告 マイクロソフト - Microsoft Internet Explorer 8 における XSS Filter 保護メカニズムを回避される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5555 2012-09-25 17:17 2008-12-12 Show GitHub Exploit DB Packet Storm
234962 4.3 警告 マイクロソフト - Microsoft Internet Explorer 8 の XSS Filter における XSS 攻撃を実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5554 2012-09-25 17:17 2008-12-12 Show GitHub Exploit DB Packet Storm
234963 4.3 警告 マイクロソフト - Microsoft Internet Explorer 8 の XSS Filter における XSS 攻撃を実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5553 2012-09-25 17:17 2008-12-12 Show GitHub Exploit DB Packet Storm
234964 4.3 警告 マイクロソフト - Microsoft Internet Explorer 8 の XSS Filter における XSS 攻撃を実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5552 2012-09-25 17:17 2008-12-12 Show GitHub Exploit DB Packet Storm
234965 4.3 警告 マイクロソフト - Microsoft Internet Explorer 8 の XSS Filter における XSS 攻撃を実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5551 2012-09-25 17:17 2008-12-12 Show GitHub Exploit DB Packet Storm
234966 9.3 危険 hauri - HAURI の ViRobot におけるマルウェアの検出を回避する脆弱性 CWE-20
不適切な入力確認
CVE-2008-5547 2012-09-25 17:17 2008-12-12 Show GitHub Exploit DB Packet Storm
234967 9.3 危険 hacksoft - Hacksoft の The Hacker における HTML ドキュメント内のマルウェアの検出を回避する脆弱性 CWE-20
不適切な入力確認
CVE-2008-5544 2012-09-25 17:17 2008-12-12 Show GitHub Exploit DB Packet Storm
234968 9.3 危険 PC Tools - PC Tools AntiVirus における HTML 文書内のマルウエアの検出を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5537 2012-09-25 17:17 2008-12-12 Show GitHub Exploit DB Packet Storm
234969 9.3 危険 Panda Security - Panda Antivirus におけるマルウエアの検出を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5536 2012-09-25 17:17 2008-12-12 Show GitHub Exploit DB Packet Storm
234970 9.3 危険 Norman - Norman Antivirus における HTML ドキュメント内のマルウェア検出を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5535 2012-09-25 17:17 2008-12-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1311 4.4 MEDIUM
Network
- - PlantUML Macro is a macro for rendering UML diagrams from simple textual schemes. Prior to version 2.4.1, the PlantUML Macro is vulnerable to Server-Side Request Forgery (SSRF). The macro allows user… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-42140 2026-05-8 00:43 2026-05-5 Show GitHub Exploit DB Packet Storm
1312 6.1 MEDIUM
Local
- - CImg Library is a C++ library for image processing. Prior to commit 4ca26bc, there is an integer overflow vulnerability in the W*H*D size computation inside _load_pnm() that can bypass the memory all… CWE-190
 Integer Overflow or Wraparound
CVE-2026-42144 2026-05-8 00:43 2026-05-5 Show GitHub Exploit DB Packet Storm
1313 - - - In versions 3.0.0a1 through 3.2.0 of Mistune, there is a ReDoS (Regular Expression Denial of Service) vulnerability in `LINK_TITLE_RE` that allows an attacker who can supply Markdown for parsing to c… CWE-1333
 Inefficient Regular Expression Complexity
CVE-2026-33079 2026-05-8 00:43 2026-05-7 Show GitHub Exploit DB Packet Storm
1314 8.8 HIGH
Network
- - YesWiki is a wiki system written in PHP. Prior to version 4.6.1, YesWiki bazar module contains a SQL injection vulnerability in tools/bazar/services/EntryManager.php at line 704. The $data['id_fiche'… CWE-89
SQL Injection
CVE-2026-41143 2026-05-8 00:43 2026-05-7 Show GitHub Exploit DB Packet Storm
1315 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: gpio: Fix resource leaks on errors in gpiochip_add_data_with_key() Since commit aab5c6f20023 ("gpio: set device type for GPIO chi… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2026-31732 2026-05-8 00:36 2026-05-2 Show GitHub Exploit DB Packet Storm
1316 5.4 MEDIUM
Network
google chrome Inappropriate implementation in Media in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low) CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-8015 2026-05-8 00:30 2026-05-7 Show GitHub Exploit DB Packet Storm
1317 8.8 HIGH
Network
google chrome Use after free in WebRTC in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to execute arbitrary code inside a sandbox via a crafted HTML page. (Chromium security severity: Low) CWE-416
 Use After Free
CVE-2026-8016 2026-05-8 00:29 2026-05-7 Show GitHub Exploit DB Packet Storm
1318 3.1 LOW
Network
google chrome Side-channel information leakage in Media in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to leak cross-origin data via a crafted HTML page. (Chromium security severity: Low) CWE-1300
 Improper Protection of Physical Side Channels
CVE-2026-8017 2026-05-8 00:29 2026-05-7 Show GitHub Exploit DB Packet Storm
1319 5.4 MEDIUM
Network
google chrome Insufficient policy enforcement in WebApp in Google Chrome prior to 148.0.7778.96 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Low) CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-8019 2026-05-8 00:26 2026-05-7 Show GitHub Exploit DB Packet Storm
1320 5.3 MEDIUM
Network
google chrome Uninitialized Use in GPU in Google Chrome on Android prior to 148.0.7778.96 allowed a remote attacker who had compromised the renderer process to obtain potentially sensitive information from process… CWE-457
 Use of Uninitialized Variable
CVE-2026-8020 2026-05-8 00:21 2026-05-7 Show GitHub Exploit DB Packet Storm