Nintendo

    Dashboard / Vendors

    Products: 18
    Vulnerabilities: 11
    Known Exploited: 0
    4
    Critical Level Threats
    4
    High Level Threats
    3
    Medium Level Threats
    0
    Low Level Threats

    Vulnerabilities

    100806040200
    JanFebMarAprMayJunJulAugSepOctNovDec
    Critical Level Threats
    High Level Threats
    Medium Level Threats
    Low Level Threats

    Products Security index

    Actions
    Items Per Page

    Vulnerabilities

    CVE-2026-82079

    Potential Leakage of Nintendo Switch System Information Through a Proximity-Based Remote Attack

    Last Modified: Sep 11, 2026
    Published: Sep 10, 2026

    CVE-2018-25109

    Nintendo Animal Crossing Letter Trigram ac-exploit-gc memory corruption

    Last Modified: Apr 15, 2026
    Published: Mar 23, 2025

    CVE-2024-45200

    In Nintendo Mario Kart 8 Deluxe before 3.0.3, the LAN/LDN local multiplayer implementation allows a remote attacker to exploit a stack-based buffer overflow upon deserialization of session information via a malformed browse-reply packet, aka KartLANPwn. The victim is not required to join a game session with an attacker. The victim must open the "Wireless Play" (or "LAN Play") menu from the game's title screen, and an attacker nearby (LDN) or on the same LAN network as the victim can send a crafted reply packet to the victim's console. This enables a remote attacker to obtain complete denial-of-service on the game's process, or potentially, remote code execution on the victim's console. The issue is caused by incorrect use of the Nintendo Pia library,

    Last Modified: Apr 15, 2026
    Published: Sep 30, 2024

    CVE-2024-34454

    Nintendo Wii U OS 5.5.5 allows man-in-the-middle attackers to forge SSL certificates as though they came from a Root CA, because there is a secondary verification mechanism that only checks whether a CA is known and ignores the CA details and signature (and because * is accepted as a Common Name).

    Last Modified: Apr 15, 2026
    Published: May 26, 2024

    CVE-2023-45887

    DS Wireless Communication (DWC) with DWC_VERSION_3 and DWC_VERSION_11 allows remote attackers to execute arbitrary code on a game-playing client's machine via a modified GPCM message.

    Last Modified: Nov 21, 2024
    Published: Dec 19, 2023
    Items Per Page