Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
236151 7.5 危険 Mambo Communities Pty - Mambo 用の restaurant コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0562 2012-09-25 16:59 2008-02-4 Show GitHub Exploit DB Packet Storm
236152 5 警告 nilsons blogger - Nilson's Blogger におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-0559 2012-09-25 16:59 2008-02-4 Show GitHub Exploit DB Packet Storm
236153 7.5 危険 Mambo Foundation
Joomla!
- Mambo および Joomla! 用の MaMML コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0511 2012-09-25 16:59 2008-01-31 Show GitHub Exploit DB Packet Storm
236154 7.5 危険 Mambo Foundation
Joomla!
- Mambo および Joomla! 用の Newsletter における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0510 2012-09-25 16:59 2008-01-31 Show GitHub Exploit DB Packet Storm
236155 4.4 警告 IBM - IBM AIX におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0509 2012-09-25 16:59 2008-01-31 Show GitHub Exploit DB Packet Storm
236156 6.8 警告 netwerk - Netwerk Smart Publisher の admin/op/disp.php における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-0503 2012-09-25 16:59 2008-01-31 Show GitHub Exploit DB Packet Storm
236157 10 危険 mamboxchange - Mambo LaiThai における脆弱性 CWE-noinfo
情報不足
CVE-2008-0500 2012-09-25 16:59 2008-01-30 Show GitHub Exploit DB Packet Storm
236158 7.5 危険 mamboxchange - Mambo LaiThai における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0499 2012-09-25 16:59 2008-01-30 Show GitHub Exploit DB Packet Storm
236159 4.3 警告 Nucleus - Nucleus CMS の action.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0497 2012-09-25 16:59 2008-01-30 Show GitHub Exploit DB Packet Storm
236160 9.3 危険 Irfan Skiljan - IrfanView の FlashPix プラグインの fpx.dll における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2008-0493 2012-09-25 16:59 2008-01-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
241 7.5 HIGH
Network
- - A buffer overflow was addressed with improved bounds checking. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Sequoia 15.7.7, macOS Sonoma 14.8.7, macOS Tahoe 26… New CWE-121
Stack-based Buffer Overflow
CVE-2026-28846 2026-05-13 03:16 2026-05-12 Show GitHub Exploit DB Packet Storm
242 5.4 MEDIUM
Network
- - An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, macOS Sequoia 15.7.7, macOS Sonoma 14.8.7, macOS Tahoe 26.5. An app may … New CWE-787
 Out-of-bounds Write
CVE-2026-28819 2026-05-13 03:16 2026-05-12 Show GitHub Exploit DB Packet Storm
243 6.7 MEDIUM
Local
- - Double free in Windows Rich Text Edit allows an authorized attacker to elevate privileges locally. New CWE-415
 Double Free
CVE-2026-21530 2026-05-13 03:16 2026-05-13 Show GitHub Exploit DB Packet Storm
244 - - - Improper input validation for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications may allow an escalation of privilege. Unprivileged software adversary… New CWE-20
 Improper Input Validation 
CVE-2026-20767 2026-05-13 03:16 2026-05-13 Show GitHub Exploit DB Packet Storm
245 - - - Out-of-bounds write for some Intel(R) QAT software drivers for Windows before version 1.13 within Ring 3: User Applications may allow a escalation of privilege. Unprivileged software adversary with a… New CWE-787
 Out-of-bounds Write
CVE-2026-20714 2026-05-13 03:16 2026-05-13 Show GitHub Exploit DB Packet Storm
246 7.5 HIGH
Network
- - docuFORM Managed Print Service Client 11.11c is vulnerable to a directory traversal allowing attackers to read arbitrary files via crafted url. New CWE-22
Path Traversal
CVE-2025-65418 2026-05-13 03:16 2026-05-12 Show GitHub Exploit DB Packet Storm
247 5.5 MEDIUM
Local
python pillow Pillow is a Python imaging library. From version 11.2.1 to before version 12.2.0, passing nested lists as coordinates to APIs that accept coordinates such as ImagePath.Path, ImageDraw.ImageDraw.polyg… Update CWE-122
Heap-based Buffer Overflow
CVE-2026-42309 2026-05-13 02:57 2026-05-9 Show GitHub Exploit DB Packet Storm
248 5.5 MEDIUM
Local
python pillow Pillow is a Python imaging library. Prior to version 12.2.0, if a font advances for each glyph by an exceeding large amount, when Pillow keeps track of the current position, it may lead to an integer… Update CWE-190
 Integer Overflow or Wraparound
CVE-2026-42308 2026-05-13 02:57 2026-05-9 Show GitHub Exploit DB Packet Storm
249 5.5 MEDIUM
Local
python pillow Pillow is a Python imaging library. From version 4.2.0 to before version 12.2.0, an attacker can supply a malicious PDF that causes the process to hang indefinitely, consuming 100% CPU and making the… Update CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2026-42310 2026-05-13 02:55 2026-05-9 Show GitHub Exploit DB Packet Storm
250 4.7 MEDIUM
Local
apple ipados
iphone_os
macos
visionos
A race condition was addressed with additional validation. This issue is fixed in iOS 18.7.9 and iPadOS 18.7.9, iOS 26.5 and iPadOS 26.5, macOS Sequoia 15.7.7, macOS Sonoma 14.8.7, macOS Tahoe 26.5, … New CWE-362
Race Condition
CVE-2026-43659 2026-05-13 02:51 2026-05-12 Show GitHub Exploit DB Packet Storm