Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
239691 7.5 危険 ecshop - Comsenz EPShop における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3412 2012-06-26 16:02 2008-07-31 Show GitHub Exploit DB Packet Storm
239692 10 危険 Axesstel - Axesstel AXW-D800 モデムにおける設定を変更される脆弱性 CWE-287
不適切な認証
CVE-2008-3411 2012-06-26 16:02 2008-07-31 Show GitHub Exploit DB Packet Storm
239693 5 警告 epic games - Unreal Tournament 3 におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
CWE-399
CVE-2008-3410 2012-06-26 16:02 2008-07-31 Show GitHub Exploit DB Packet Storm
239694 7.5 危険 epic games - Unreal Tournament 3 におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-3409 2012-06-26 16:02 2008-07-31 Show GitHub Exploit DB Packet Storm
239695 6.8 警告 coolplayer - CoolPlayer におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-3408 2012-06-26 16:02 2008-07-31 Show GitHub Exploit DB Packet Storm
239696 5 警告 epic games - UT2004 におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-3396 2012-06-26 16:02 2008-07-31 Show GitHub Exploit DB Packet Storm
239697 5 警告 Linux
calacode
- CalaCode @Mail における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-3395 2012-06-26 16:02 2008-07-31 Show GitHub Exploit DB Packet Storm
239698 7.5 危険 easy-script - Def-Blog における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3388 2012-06-26 16:02 2008-07-30 Show GitHub Exploit DB Packet Storm
239699 7.5 危険 AlstraSoft - AlstraSoft Video Share Enterprise の album.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3386 2012-06-26 16:02 2008-07-30 Show GitHub Exploit DB Packet Storm
239700 7.5 危険 cce-interact - Interact Learning Community Environment Interact の help/help.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-3384 2012-06-26 16:02 2008-07-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1041 4.4 MEDIUM
Local
- - The printenv utility in uutils coreutils fails to display environment variables containing invalid UTF-8 byte sequences. While POSIX permits arbitrary bytes in environment strings, the uutils impleme… New CWE-754
 Improper Check for Unusual or Exceptional Conditions
CVE-2026-35366 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
1042 5.5 MEDIUM
Local
- - An argument parsing error in the kill utility of uutils coreutils incorrectly interprets kill -1 as a request to send the default signal (SIGTERM) to PID -1. Sending a signal to PID -1 causes the ker… New CWE-20
 Improper Input Validation 
CVE-2026-35369 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
1043 4.4 MEDIUM
Local
- - The id utility in uutils coreutils miscalculates the groups= section of its output. The implementation uses a user's real GID instead of their effective GID to compute the group list, leading to pote… New CWE-863
 Incorrect Authorization
CVE-2026-35370 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
1044 3.3 LOW
Local
- - The id utility in uutils coreutils exhibits incorrect behavior in its "pretty print" output when the real UID and effective UID differ. The implementation incorrectly uses the effective GID instead o… New CWE-451
 User Interface (UI) Misrepresentation of Critical Information
CVE-2026-35371 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
1045 5.0 MEDIUM
Local
- - A logic error in the ln utility of uutils coreutils allows the utility to dereference a symbolic link target even when the --no-dereference (or -n) flag is explicitly provided. The implementation pre… New CWE-61
 UNIX Symbolic Link (Symlink) Following
CVE-2026-35372 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
1046 3.3 LOW
Local
- - A logic error in the ln utility of uutils coreutils causes the program to reject source paths containing non-UTF-8 filename bytes when using target-directory forms (e.g., ln SOURCE... DIRECTORY). Whi… New CWE-176
 Improper Handling of Unicode Encoding
CVE-2026-35373 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
1047 6.3 MEDIUM
Local
- - A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in the split utility of uutils coreutils. The program attempts to prevent data loss by checking for identity between input and output file… New CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-35374 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
1048 3.3 LOW
Local
- - A logic error in the split utility of uutils coreutils causes the corruption of output filenames when provided with non-UTF-8 prefix or suffix inputs. The implementation utilizes to_string_lossy() wh… New CWE-176
 Improper Handling of Unicode Encoding
CVE-2026-35375 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
1049 4.5 MEDIUM
Local
- - A Time-of-Check to Time-of-Use (TOCTOU) vulnerability exists in the chcon utility of uutils coreutils during recursive operations. The implementation resolves recursive targets using a fresh path loo… New CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2026-35376 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm
1050 5.5 MEDIUM
Local
- - A logic error in the cut utility of uutils coreutils causes the program to incorrectly interpret the literal two-byte string '' (two single quotes) as an empty delimiter. The implementation mistakenl… New CWE-20
 Improper Input Validation 
CVE-2026-35380 2026-04-23 06:23 2026-04-23 Show GitHub Exploit DB Packet Storm