Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
235891 4.3 警告 マイクロソフト - Microsoft Windows XP SP3 の Windows Explorer におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2008-4323 2012-09-25 17:17 2008-09-29 Show GitHub Exploit DB Packet Storm
235892 4.3 警告 OpenNMS - OpenNMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4320 2012-09-25 17:17 2008-09-29 Show GitHub Exploit DB Packet Storm
235893 6.4 警告 libra file manager - Libra File Manager の fileadmin.php における任意のファイルを変更される脆弱性 CWE-287
不適切な認証
CVE-2008-4319 2012-09-25 17:17 2008-09-29 Show GitHub Exploit DB Packet Storm
235894 5 警告 マイクロソフト - Microsoft IIS の adsiis.dll におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-4300 2012-09-25 17:17 2008-09-29 Show GitHub Exploit DB Packet Storm
235895 5 警告 マイクロソフト - Microsoft IAS Helper COM Component におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2008-4299 2012-09-25 17:17 2008-09-29 Show GitHub Exploit DB Packet Storm
235896 5 警告 LIGHTTPD - lighttpd の request.c の http_request_parse 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-4298 2012-09-25 17:17 2008-09-27 Show GitHub Exploit DB Packet Storm
235897 5 警告 Mercurial - Mercurial における任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-4297 2012-09-25 17:17 2008-09-27 Show GitHub Exploit DB Packet Storm
235898 5.4 警告 マイクロソフト - Microsoft Windows Mobile 6.0 におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-4295 2012-09-25 17:17 2008-09-27 Show GitHub Exploit DB Packet Storm
235899 7.2 危険 IBM - IBM Tivoli Netcool/Webtop におけるセッションをハイジャックされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-4294 2012-09-25 17:17 2008-09-27 Show GitHub Exploit DB Packet Storm
235900 10 危険 osads alliance database - OSADS Alliance Database における脆弱性 CWE-noinfo
情報不足
CVE-2008-4208 2012-09-25 17:17 2008-09-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1031 8.3 HIGH
Network
- - Missing authorization in Windows Admin Center allows an authorized attacker to elevate privileges over a network. New CWE-862
 Missing Authorization
CVE-2026-35438 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1032 5.5 MEDIUM
Local
- - Files or directories accessible to external parties in Microsoft Office Word allows an unauthorized attacker to disclose information locally. New CWE-552
 Files or Directories Accessible to External Parties
CVE-2026-35440 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1033 8.4 HIGH
Local
- - Use after free in Microsoft Office allows an unauthorized attacker to execute code locally. New CWE-416
 Use After Free
CVE-2026-40358 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1034 7.8 HIGH
Local
- - Use after free in Microsoft Office Excel allows an unauthorized attacker to execute code locally. New CWE-416
 Use After Free
CVE-2026-40359 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1035 7.8 HIGH
Local
- - Out-of-bounds read in Microsoft Office Excel allows an unauthorized attacker to disclose information locally. New CWE-125
Out-of-bounds Read
CVE-2026-40360 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1036 8.4 HIGH
Local
- - Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. New CWE-416
 Use After Free
CVE-2026-40361 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1037 7.8 HIGH
Local
- - Heap-based buffer overflow in Microsoft Office Excel allows an unauthorized attacker to execute code locally. New CWE-122
Heap-based Buffer Overflow
CVE-2026-40362 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1038 8.4 HIGH
Local
- - Heap-based buffer overflow in Microsoft Office allows an unauthorized attacker to execute code locally. New CWE-122
Heap-based Buffer Overflow
CVE-2026-40363 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1039 8.4 HIGH
Local
- - Access of resource using incompatible type ('type confusion') in Microsoft Office Word allows an unauthorized attacker to execute code locally. New CWE-122
CWE-843
CWE-908
Heap-based Buffer Overflow
Type Confusion
 Use of Uninitialized Resource
CVE-2026-40364 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm
1040 8.4 HIGH
Local
- - Use after free in Microsoft Office Word allows an unauthorized attacker to execute code locally. New CWE-416
 Use After Free
CVE-2026-40366 2026-05-14 00:34 2026-05-13 Show GitHub Exploit DB Packet Storm