Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229191 6.8 警告 シマンテック - Norton 360 などの Symantec Norton 製品の ActiveDataInfo.LaunchProcess メソッドにおける任意のコードを実行される脆弱性 CWE-DesignError
CVE-2008-0313 2012-12-20 18:34 2008-04-2 Show GitHub Exploit DB Packet Storm
229192 9.3 危険 シマンテック - Norton 360 などの Symantec Norton 製品の AutoFix Support Tool ActiveX コントロールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0312 2012-12-20 18:34 2008-04-2 Show GitHub Exploit DB Packet Storm
229193 6.9 警告 SCO - SCO UnixWare の pkgadd におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-0310 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
229194 6.8 警告 シマンテック - Symantec Scan Engine を含む特定の Symantec アンチウイルス製品で使用される Symantec Decomposer におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0309 2012-12-20 18:34 2008-02-26 Show GitHub Exploit DB Packet Storm
229195 7.1 危険 シマンテック - Symantec Scan Engine を含む特定の Symantec アンチウイルス製品で使用される Symantec Decomposer におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-0308 2012-12-20 18:34 2008-02-26 Show GitHub Exploit DB Packet Storm
229196 9.3 危険 SAP - SAP MaxDB の vserver における整数符号エラーの脆弱性 CWE-189
数値処理の問題
CVE-2008-0307 2012-12-20 18:34 2008-03-11 Show GitHub Exploit DB Packet Storm
229197 6.9 警告 SAP - SAP MaxDB の sdbstarter における任意のコマンドを実行される脆弱性 CWE-DesignError
CVE-2008-0306 2012-12-20 18:34 2008-03-11 Show GitHub Exploit DB Packet Storm
229198 4.3 警告 Python Software Foundation - Paramiko の common.py における重要な情報を取得される脆弱性 CWE-DesignError
CVE-2008-0299 2012-12-20 18:34 2008-01-16 Show GitHub Exploit DB Packet Storm
229199 10 危険 VideoLAN - Windows 上で稼動する VideoLAN VLC Media Player の libaccess_realrtsp プラグインにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0296 2012-12-20 18:34 2008-01-16 Show GitHub Exploit DB Packet Storm
229200 8.5 危険 VideoLAN - VideoLAN VLC Media Player で使用される Xine ライブラリにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0295 2012-12-20 18:34 2008-01-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2611 - - - xmldom is a pure JavaScript W3C standard-based (XML DOM Level 2 Core) `DOMParser` and `XMLSerializer` module. In @xmldom/xmldom prior to versions 0.9.10 and 0.8.13 and xmldom version 0.6.0 and prior,… CWE-91
Blind XPath Injection
CVE-2026-41675 2026-05-8 00:16 2026-05-7 Show GitHub Exploit DB Packet Storm
2612 - - - xmldom is a pure JavaScript W3C standard-based (XML DOM Level 2 Core) `DOMParser` and `XMLSerializer` module. In @xmldom/xmldom prior to versions 0.9.10 and 0.8.13 and xmldom version 0.6.0 and prior,… CWE-674
 Uncontrolled Recursion
CVE-2026-41673 2026-05-8 00:16 2026-05-7 Show GitHub Exploit DB Packet Storm
2613 8.2 HIGH
Network
- - Admidio is an open-source user management solution. Prior to version 5.0.9, the SAML IdP implementation in Admidio's SSO module uses the AssertionConsumerServiceURL value directly from incoming SAML … CWE-20
CWE-601
 Improper Input Validation 
Open Redirect
CVE-2026-41670 2026-05-8 00:16 2026-05-7 Show GitHub Exploit DB Packet Storm
2614 8.2 HIGH
Network
- - Admidio is an open-source user management solution. Prior to version 5.0.9, the Admidio SAML Identity Provider implementation discards the return value of its validateSignature() method at both call … CWE-347
 Improper Verification of Cryptographic Signature
CVE-2026-41669 2026-05-8 00:16 2026-05-7 Show GitHub Exploit DB Packet Storm
2615 5.2 MEDIUM
Network
- - Admidio is an open-source user management solution. Prior to version 5.0.9, Role::stopMembership() does not verify whether removing a user from the administrator role leaves zero administrators. The … CWE-754
 Improper Check for Unusual or Exceptional Conditions
CVE-2026-41662 2026-05-8 00:16 2026-05-7 Show GitHub Exploit DB Packet Storm
2616 2.7 LOW
Network
- - Admidio is an open-source user management solution. Prior to version 5.0.9, the member assignment DataTables endpoint (members_assignment_data.php) includes hidden profile fields (BIRTHDAY, STREET, C… CWE-200
Information Exposure
CVE-2026-41659 2026-05-8 00:16 2026-05-7 Show GitHub Exploit DB Packet Storm
2617 6.5 MEDIUM
Network
- - Admidio is an open-source user management solution. Prior to version 5.0.9, the Admidio inventory module enforces authorization for destructive operations (delete, retire, reinstate) only in the UI l… CWE-862
 Missing Authorization
CVE-2026-41658 2026-05-8 00:16 2026-05-7 Show GitHub Exploit DB Packet Storm
2618 4.5 MEDIUM
Network
- - Admidio is an open-source user management solution. Prior to version 5.0.9, the add mode in modules/documents-files.php accepts a name parameter validated only as 'string' type (HTML encoding), allow… CWE-22
Path Traversal
CVE-2026-41656 2026-05-8 00:16 2026-05-7 Show GitHub Exploit DB Packet Storm
2619 7.5 HIGH
Network
- - GoBGP is an open source Border Gateway Protocol (BGP) implementation in the Go Programming Language. Prior to version 4.3.0, a remote Denial of Service (DoS) vulnerability exists in GoBGP where a mal… CWE-129
 Improper Validation of Array Index
CVE-2026-41643 2026-05-8 00:16 2026-05-7 Show GitHub Exploit DB Packet Storm
2620 7.2 HIGH
Network
- - NocoBase is an AI-powered no-code/low-code platform for building business applications and enterprise solutions. Prior to version 2.0.39, the checkSQL() validation function that blocks dangerous SQL … CWE-89
CWE-284
SQL Injection
Improper Access Control
CVE-2026-41641 2026-05-8 00:16 2026-05-7 Show GitHub Exploit DB Packet Storm