Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241231 6.8 警告 ollydbg
mackt
- OllyDBG および ImpREC におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-3148 2012-09-25 17:17 2008-07-11 Show GitHub Exploit DB Packet Storm
241232 6.8 警告 hiox india - HBR の hioxBannerRotate.php における PHP リモートファイルインクルージョンの脆弱性 CWE-20
不適切な入力確認
CVE-2008-3127 2012-09-25 17:17 2008-07-10 Show GitHub Exploit DB Packet Storm
241233 7.5 危険 mole-group - Mole Group Lastminute Script の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3125 2012-09-25 17:17 2008-07-10 Show GitHub Exploit DB Packet Storm
241234 7.5 危険 mole-group - Mole Group Hotel Script の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3124 2012-09-25 17:17 2008-07-10 Show GitHub Exploit DB Packet Storm
241235 7.5 危険 mole-group - Mole Group Real Estate Script の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3123 2012-09-25 17:17 2008-07-10 Show GitHub Exploit DB Packet Storm
241236 10 危険 hanghai - Snail Game 5th street の dx8render.dll におけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2008-3116 2012-09-25 17:17 2008-07-10 Show GitHub Exploit DB Packet Storm
241237 5 警告 MantisBT Group - Mantis におけるセッションクッキーをキャプチャされる脆弱性 CWE-310
暗号の問題
CVE-2008-3102 2012-09-25 17:17 2008-09-24 Show GitHub Exploit DB Packet Storm
241238 4.3 警告 Owl Intranet Engine - Steve Bourgeois and Chris Vincent Owl Intranet Knowledgebase におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3100 2012-09-25 17:17 2008-07-29 Show GitHub Exploit DB Packet Storm
241239 4.3 警告 KASSELER CMS - Kasseler CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3088 2012-09-25 17:17 2008-07-9 Show GitHub Exploit DB Packet Storm
241240 5 警告 KASSELER CMS - Kasseler CMS におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-3087 2012-09-25 17:17 2008-07-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 27, 2026, 4:35 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3841 9.1 CRITICAL
Network
freeswitch freeswitch FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to a software implementation that runs on any commodity hardware. Prior to version… CWE-20
CWE-122
CWE-195
CWE-787
 Improper Input Validation 
Heap-based Buffer Overflow
 Signed to Unsigned Conversion Error
 Out-of-bounds Write
CVE-2026-49840 2026-06-11 00:06 2026-06-10 Show GitHub Exploit DB Packet Storm
3842 7.5 HIGH
Network
freeswitch freeswitch FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to a software implementation that runs on any commodity hardware. Prior to version… CWE-20
CWE-125
CWE-787
 Improper Input Validation 
Out-of-bounds Read
 Out-of-bounds Write
CVE-2026-49475 2026-06-11 00:06 2026-06-10 Show GitHub Exploit DB Packet Storm
3843 5.3 MEDIUM
Network
freeswitch freeswitch FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to a software implementation that runs on any commodity hardware. Prior to version… CWE-116
 Improper Encoding or Escaping of Output
CVE-2026-49472 2026-06-11 00:06 2026-06-10 Show GitHub Exploit DB Packet Storm
3844 5.4 MEDIUM
Network
adobe experience_manager Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject ma… CWE-79
Cross-site Scripting
CVE-2026-47939 2026-06-11 00:05 2026-06-10 Show GitHub Exploit DB Packet Storm
3845 7.5 HIGH
Network
freeswitch freeswitch FreeSWITCH is a Software Defined Telecom Stack enabling the digital transformation from proprietary telecom switches to a software implementation that runs on any commodity hardware. Prior to version… CWE-776
XML Entity Expansion
CVE-2026-45771 2026-06-11 00:04 2026-06-10 Show GitHub Exploit DB Packet Storm
3846 5.4 MEDIUM
Network
adobe experience_manager Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by a DOM-based Cross-Site Scripting (XSS) vulnerability. An attacker could exploit this issue by manipulating the D… CWE-79
Cross-site Scripting
CVE-2026-47946 2026-06-11 00:03 2026-06-10 Show GitHub Exploit DB Packet Storm
3847 5.4 MEDIUM
Network
adobe experience_manager Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject ma… CWE-79
Cross-site Scripting
CVE-2026-47945 2026-06-11 00:03 2026-06-10 Show GitHub Exploit DB Packet Storm
3848 5.4 MEDIUM
Network
adobe experience_manager Adobe Experience Manager versions 6.5.24, LTS SP1, 2026.04 and earlier are affected by a stored Cross-Site Scripting (XSS) vulnerability that could be abused by a low-privileged attacker to inject ma… CWE-79
Cross-site Scripting
CVE-2026-47944 2026-06-11 00:03 2026-06-10 Show GitHub Exploit DB Packet Storm
3849 9.8 CRITICAL
Network
perl dbi DBI versions before 1.648 for Perl have a heap overflow when preparsing SQL statements with more than 9 binders. The preparse method expands SQL placeholder characters to numbered binders of the for… CWE-787
 Out-of-bounds Write
CVE-2026-10879 2026-06-11 00:02 2026-06-6 Show GitHub Exploit DB Packet Storm
3850 9.8 CRITICAL
Network
binary datadog\ DataDog::DogStatsd versions through 0.07 for Perl allow metric injections from event tags. DataDog::DogStatsd does not properly sanitise input, allowing metric injections of data from untrusted sour… CWE-93
CWE-150
CRLF Injection
 Improper Neutralization of Escape, Meta, or Control Sequences
CVE-2026-11362 2026-06-11 00:01 2026-06-6 Show GitHub Exploit DB Packet Storm