Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
1471 4.3 警告
Network
xlplugins nextmove xlpluginsのWordPress用nextmoveにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2024-32104 2026-01-27 17:38 2024-04-15 Show GitHub Exploit DB Packet Storm
1472 4.3 警告
Network
xlplugins finale xlpluginsのWordPress用finaleにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2024-32107 2026-01-27 17:38 2024-04-11 Show GitHub Exploit DB Packet Storm
1473 6.1 警告
Network
Repute Infosystems arforms Repute InfosystemsのWordPress用arformsにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2024-32702 2026-01-27 17:38 2024-04-24 Show GitHub Exploit DB Packet Storm
1474 8.8 重要
Network
Repute Infosystems arforms Repute InfosystemsのWordPress用arformsにおけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2024-32706 2026-01-27 17:38 2024-04-24 Show GitHub Exploit DB Packet Storm
1475 7.1 重要
Local
Debian
Linux
Debian GNU/Linux
Linux Kernel
Debian等の複数ベンダの製品における例外的な状態のチェックに関する脆弱性 CWE-754
例外的な状態における不適切なチェック
CVE-2024-35785 2026-01-27 17:38 2024-05-17 Show GitHub Exploit DB Packet Storm
1476 7.1 重要
Local
Debian
Linux
Debian GNU/Linux
Linux Kernel
Debian等の複数ベンダの製品における不特定の脆弱性 CWE-noinfo
情報不足
CVE-2024-35871 2026-01-27 17:38 2024-05-19 Show GitHub Exploit DB Packet Storm
1477 7.1 重要
Local
Debian
Linux
Debian GNU/Linux
Linux Kernel
Debian等の複数ベンダの製品における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2024-36883 2026-01-27 17:38 2024-05-30 Show GitHub Exploit DB Packet Storm
1478 7.8 重要
Local
Debian
Linux
Debian GNU/Linux
Linux Kernel
Debian等の複数ベンダの製品における解放済みメモリの使用に関する脆弱性 CWE-416
CWE-416
CVE-2024-36886 2026-01-27 17:38 2024-05-30 Show GitHub Exploit DB Packet Storm
1479 7.8 重要
Local
Debian
Linux
Debian GNU/Linux
Linux Kernel
Debian等の複数ベンダの製品における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2024-36904 2026-01-27 17:38 2024-05-30 Show GitHub Exploit DB Packet Storm
1480 7.1 重要
Local
Debian
Linux
Debian GNU/Linux
Linux Kernel
Debian等の複数ベンダの製品における境界外読み取りに関する脆弱性 CWE-125
境界外読み取り
CVE-2024-36916 2026-01-27 17:38 2024-05-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
283111 - phpnuke web_links_module SQL injection vulnerability in modules.php in the Web_Links module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the cid parameter in a viewlink action. CWE-89
SQL Injection
CVE-2008-0879 2018-10-16 07:03 2008-02-22 Show GitHub Exploit DB Packet Storm
283112 - info-zip unzip The NEEDBITS macro in the inflate_dynamic function in inflate.c for unzip can be invoked using invalid buffers, which allows remote attackers to cause a denial of service (crash) and possibly execute… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-0888 2018-10-16 07:03 2008-03-18 Show GitHub Exploit DB Packet Storm
283113 - apple safari Apple Safari might allow remote attackers to obtain potentially sensitive memory contents or cause a denial of service (crash) via a crafted (1) bitmap (BMP) or (2) GIF file, a related issue to CVE-2… NVD-CWE-Other
CVE-2008-0894 2018-10-16 07:03 2008-02-22 Show GitHub Exploit DB Packet Storm
283114 - bea
bea_systems
weblogic_server BEA WebLogic Server and Express 7.0 through 10.0 allows remote attackers to conduct brute force password guessing attacks, even when account lockout has been activated, via crafted URLs that indicate… CWE-255
CWE-200
Credentials Management
Information Exposure
CVE-2008-0901 2018-10-16 07:03 2008-02-23 Show GitHub Exploit DB Packet Storm
283115 - sybase mobilink
sql_anywhere
Multiple heap-based buffer overflows in mlsrv10.exe in Sybase MobiLink 10.0.1.3629 and earlier, as used by SQL Anywhere Developer Edition 10.0.1.3415 and probably other products, allow remote attacke… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-0912 2018-10-16 07:03 2008-02-23 Show GitHub Exploit DB Packet Storm
283116 - ipdiva ipdiva Multiple cross-site scripting (XSS) vulnerabilities in the Mediation server in IPdiva SSL VPN Server 2.2 before 2.2.8.84 and 2.3 before 2.3.2.14 allow remote attackers to inject arbitrary web script … CWE-79
Cross-site Scripting
CVE-2008-0914 2018-10-16 07:03 2008-02-23 Show GitHub Exploit DB Packet Storm
283117 - ipdiva ipdiva The Mediation server in IPdiva SSL VPN Server 2.2 before 2.2.8.84 and 2.3 before 2.3.2.14 stores the number of remaining allowed login attempts in a cookie, which makes it easier for remote attackers… NVD-CWE-Other
CVE-2008-0915 2018-10-16 07:03 2008-02-23 Show GitHub Exploit DB Packet Storm
283118 - open_source_security_information_management os-sim Cross-site scripting (XSS) vulnerability in session/login.php in Open Source Security Information Management (OSSIM) 0.9.9 rc5 and earlier allows remote attackers to inject arbitrary web script or HT… CWE-79
Cross-site Scripting
CVE-2008-0919 2018-10-16 07:03 2008-02-23 Show GitHub Exploit DB Packet Storm
283119 - open_source_security_information_management os-sim SQL injection vulnerability in port/modifyportform.php in Open Source Security Information Management (OSSIM) 0.9.9 rc5 allows remote authenticated users to execute arbitrary SQL commands via the por… CWE-89
SQL Injection
CVE-2008-0920 2018-10-16 07:03 2008-02-23 Show GitHub Exploit DB Packet Storm
283120 - vmware ace
player
vmware_player
vmware_workstation
workstation
Directory traversal vulnerability in the Shared Folders feature for VMWare ACE 1.0.2 and 2.0.2, Player 1.0.4 and 2.0.2, and Workstation 5.5.4 and 6.0.2 allows guest OS users to read and write arbitra… CWE-22
Path Traversal
CVE-2008-0923 2018-10-16 07:03 2008-02-26 Show GitHub Exploit DB Packet Storm