Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241871 5 警告 アップル - Apple Safari における異なる https Web サイトに https URL を含む Referer ヘッダを送信される脆弱性 CWE-200
情報漏えい
CVE-2008-3171 2012-06-26 16:02 2008-07-14 Show GitHub Exploit DB Packet Storm
241872 10 危険 empire server - Empire Server におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-3169 2012-06-26 16:02 2008-07-14 Show GitHub Exploit DB Packet Storm
241873 5 警告 empire server - Empire Server における PRNG シードを設定される脆弱性 CWE-200
情報漏えい
CVE-2008-3168 2012-06-26 16:02 2008-07-14 Show GitHub Exploit DB Packet Storm
241874 9.3 危険 BoonEx - BoonEx Dolphin における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-3167 2012-06-26 16:02 2008-07-14 Show GitHub Exploit DB Packet Storm
241875 6.5 警告 富士通 - Fujitsu Siemens Computer Server View におけるスタックベースのバッファーオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-3126 2012-06-26 16:02 2008-07-10 Show GitHub Exploit DB Packet Storm
241876 7.5 危険 dreamlevels - DreamPics Builder の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3119 2012-06-26 16:02 2008-07-10 Show GitHub Exploit DB Packet Storm
241877 4.3 警告 fuzzylime - fuzzylime (cms) の admin/usercheck.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3098 2012-06-26 16:02 2008-09-24 Show GitHub Exploit DB Packet Storm
241878 7.5 危険 brightcode
Joomla!
- Joomla! の brightweblinks コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3083 2012-06-26 16:02 2008-07-8 Show GitHub Exploit DB Packet Storm
241879 4.3 警告 commtouch - Commtouch Enterprise Anti-Spam Gateway の UPM/English/login/login.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3082 2012-06-26 16:02 2008-07-8 Show GitHub Exploit DB Packet Storm
241880 6.5 警告 アバイア - Avaya MSS の Web 管理インターフェースにおける任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-3081 2012-06-26 16:02 2008-06-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267881 9.8 CRITICAL
Network
novell
linux
canonical
suse_linux_enterprise_real_time_extension
linux_kernel
ubuntu_linux
drivers/infiniband/hw/cxgb3/iwch_cm.c in the Linux kernel before 4.5 does not properly identify error conditions, which allows remote attackers to execute arbitrary code or cause a denial of service … NVD-CWE-Other
CVE-2015-8812 2024-11-21 11:39 2016-04-28 Show GitHub Exploit DB Packet Storm
267882 6.8 MEDIUM
Physics
novell
linux
suse
suse_linux_enterprise_server
suse_linux_enterprise_debuginfo
suse_linux_enterprise_live_patching
suse_linux_enterprise_real_time_extension
suse_linux_enterprise_desktop
suse_linux_ente…
The hub_activate function in drivers/usb/core/hub.c in the Linux kernel before 4.3.5 does not properly maintain a hub-interface data structure, which allows physically proximate attackers to cause a … NVD-CWE-Other
CVE-2015-8816 2024-11-21 11:39 2016-04-28 Show GitHub Exploit DB Packet Storm
267883 7.5 HIGH
Network
varnish_cache_project
debian
varnish_cache
debian_linux
Varnish 3.x before 3.0.7, when used in certain stacked installations, allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via a header line terminated… NVD-CWE-Other
CVE-2015-8852 2024-11-21 11:39 2016-04-25 Show GitHub Exploit DB Packet Storm
267884 8.8 HIGH
Network
adobe flash_player
air
air_sdk
air_sdk_\&_compiler
flash_player_desktop_runtime
Use-after-free vulnerability in the TextField object implementation in Adobe Flash Player before 18.0.0.268 and 19.x and 20.x before 20.0.0.228 on Windows and OS X and before 11.2.202.554 on Linux, A… CWE-416
 Use After Free
CVE-2015-8823 2024-11-21 11:39 2016-04-23 Show GitHub Exploit DB Packet Storm
267885 3.3 LOW
Local
opensuse opensuse tmpfiles.d/systemd.conf in systemd before 229 uses weak permissions for /var/log/journal/%m/system.journal, which allows local users to obtain sensitive information by reading the file. CWE-264
Permissions, Privileges, and Access Controls
CVE-2015-8842 2024-11-21 11:39 2016-04-21 Show GitHub Exploit DB Packet Storm
267886 9.8 CRITICAL
Network
suse
opensuse
canonical
debian
gnu
fedoraproject
linux_enterprise_server
linux_enterprise_desktop
linux_enterprise_debuginfo
linux_enterprise_software_development_kit
opensuse
suse_linux_enterprise_server
ubuntu_linux
debian_li…
Stack-based buffer overflow in the catopen function in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application crash) or possib… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2015-8779 2024-11-21 11:39 2016-04-20 Show GitHub Exploit DB Packet Storm
267887 9.8 CRITICAL
Network
fedoraproject
debian
canonical
gnu
suse
opensuse
fedora
debian_linux
ubuntu_linux
glibc
linux_enterprise_server
linux_enterprise_desktop
linux_enterprise_debuginfo
linux_enterprise_software_development_kit
opensuse
suse_l…
Integer overflow in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via the s… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2015-8778 2024-11-21 11:39 2016-04-20 Show GitHub Exploit DB Packet Storm
267888 9.1 CRITICAL
Network
suse
opensuse
canonical
debian
fedoraproject
gnu
linux_enterprise_server
linux_enterprise_desktop
linux_enterprise_debuginfo
linux_enterprise_software_development_kit
opensuse
suse_linux_enterprise_server
ubuntu_linux
debian_li…
The strftime function in the GNU C Library (aka glibc or libc6) before 2.23 allows context-dependent attackers to cause a denial of service (application crash) or possibly obtain sensitive informatio… CWE-189
Numeric Errors
CVE-2015-8776 2024-11-21 11:39 2016-04-20 Show GitHub Exploit DB Packet Storm
267889 7.5 HIGH
Network
xmlsoft
canonical
debian
libxml2
ubuntu_linux
debian_linux
dict.c in libxml2 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via an unexpected character immediately after the "<!DOCTYPE html" substring… NVD-CWE-noinfo
CVE-2015-8806 2024-11-21 11:39 2016-04-14 Show GitHub Exploit DB Packet Storm
267890 6.5 MEDIUM
Network
libtiff
debian
libtiff
debian_linux
The NeXTDecode function in tif_next.c in LibTIFF allows remote attackers to cause a denial of service (out-of-bounds write) via a crafted TIFF image, as demonstrated by libtiff5.tif. CWE-787
 Out-of-bounds Write
CVE-2015-8784 2024-11-21 11:39 2016-04-14 Show GitHub Exploit DB Packet Storm