Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
245401 10 危険 e107.org
123flashchat
- 123 Flash Chat の 123flashchat.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1989 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
245402 9 危険 encaps - EncapsGallery の file_upload 関数における任意の PHP ファイルを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-1988 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
245403 4.3 警告 encaps - EncapsGallery の search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1987 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
245404 4.3 警告 digitalhive - DigitalHive の base.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1985 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
245405 4.3 警告 AEF Group - AEF におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1983 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
245406 7.5 危険 cogites - E-RESERV の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1975 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
245407 9.3 危険 artur sikora - SubEdit Player におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-1973 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
245408 3.5 注意 cezannesw - Cezanne におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1969 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
245409 6 警告 cezannesw - Cezanne における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1968 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
245410 4.3 警告 cezannesw - Cezanne の CFLogon/CFLogon.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1967 2012-06-26 16:02 2008-04-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1131 8.8 HIGH
Network
mozilla firefox
thunderbird
Memory safety bugs present in Firefox ESR 140.10 and Firefox 150. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploite… Update CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2026-8974 2026-05-27 03:16 2026-05-19 Show GitHub Exploit DB Packet Storm
1132 8.8 HIGH
Network
mozilla firefox
thunderbird
Memory safety bugs present in Firefox 150. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code… Update CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2026-8973 2026-05-27 03:16 2026-05-19 Show GitHub Exploit DB Packet Storm
1133 7.7 HIGH
Local
- - IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service in configurations where an attacker has write access to parts of the server configuration. New CWE-400
 Uncontrolled Resource Consumption
CVE-2026-8856 2026-05-27 03:16 2026-05-27 Show GitHub Exploit DB Packet Storm
1134 8.1 HIGH
Network
- - IBM HTTP Server 8.5, and 9.0 is vulnerable to remote code execution and denial of service in configurations with TLS mutual authentication (client authentication). New CWE-94
Code Injection
CVE-2026-8855 2026-05-27 03:16 2026-05-27 Show GitHub Exploit DB Packet Storm
1135 7.5 HIGH
Network
- - IBM HTTP Server 8.5, and 9.0 is vulnerable to denial of service via the optional module mod_mem_cache. New CWE-825
 Expired Pointer Dereference
CVE-2026-8854 2026-05-27 03:16 2026-05-27 Show GitHub Exploit DB Packet Storm
1136 7.3 HIGH
Adjacent
- - IBM HTTP Server 8.5, and 9.0 is vulnerable to invalid pointer dereference. A privileged user, authenticated to the Administration Server, could exploit this vulnerability to expose sensitive informat… New CWE-822
 Untrusted Pointer Dereference
CVE-2026-8835 2026-05-27 03:16 2026-05-27 Show GitHub Exploit DB Packet Storm
1137 8.0 HIGH
Adjacent
- - IBM HTTP Server 8.5, and 9.0 contains a buffer overflow vulnerability. A privileged user, authenticated to the Administration Server, could exploit this vulnerability to execute remote code or cause … New CWE-122
Heap-based Buffer Overflow
CVE-2026-8834 2026-05-27 03:16 2026-05-27 Show GitHub Exploit DB Packet Storm
1138 7.5 HIGH
Network
- - IBM Web Server Plug-ins for WebSphere Application Server and WebSphere Liberty 8.5, 9.0 IBM WebSphere Application Server and WebSphere Application Server Liberty are vulnerable to HTTP request smuggl… New CWE-444
HTTP Request Smuggling
CVE-2026-8620 2026-05-27 03:16 2026-05-27 Show GitHub Exploit DB Packet Storm
1139 7.8 HIGH
Local
- - A maliciously crafted WRL file, when parsed through Autodesk 3ds Max, can force a Memory Corruption vulnerability. A malicious actor can leverage this vulnerability to execute arbitrary code in the c… New CWE-120
Classic Buffer Overflow
CVE-2026-7454 2026-05-27 03:16 2026-05-27 Show GitHub Exploit DB Packet Storm
1140 5.3 MEDIUM
Local
- - A maliciously crafted WRL file, when parsed through Autodesk 3ds Max, can cause a Stack Exhaustion vulnerability, leading to a denial-of-service condition. New CWE-674
 Uncontrolled Recursion
CVE-2026-7453 2026-05-27 03:16 2026-05-27 Show GitHub Exploit DB Packet Storm