Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
194351 5.3 警告
Network
Moodle - Moodle におけるフォーラムの属性が不正にサニタイズされる脆弱性 CWE-20
不適切な入力確認
CVE-2017-2576 2017-01-31 14:29 2017-01-17 Show GitHub Exploit DB Packet Storm
194352 5.3 警告
Network
Moodle - Moodle におけるコースのノートを閲覧される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-8644 2017-01-31 14:28 2016-11-21 Show GitHub Exploit DB Packet Storm
194353 4.3 警告
Network
Moodle - Moodle における管理者情報を編集される脆弱性 CWE-284
不適切なアクセス制御
CVE-2016-8643 2017-01-31 14:28 2016-11-21 Show GitHub Exploit DB Packet Storm
194354 5.3 警告
Network
Moodle - Moodle の question エンジンにおけるファイルにアクセスされる脆弱性 CWE-284
不適切なアクセス制御
CVE-2016-8642 2017-01-31 14:28 2016-11-21 Show GitHub Exploit DB Packet Storm
194355 7.3 重要
Network
Moodle - Moodle のウェブサービストークンにおける脆弱性 CWE-640
パスワードを忘れた場合の脆弱なパスワードリカバリの仕組み
CVE-2016-7038 2017-01-31 14:27 2016-09-12 Show GitHub Exploit DB Packet Storm
194356 5.4 警告
Network
Moodle - Moodle の event monitor における未登録のユーザに通知が送信される脆弱性 CWE-200
情報漏えい
CVE-2016-5014 2017-01-31 14:27 2016-07-19 Show GitHub Exploit DB Packet Storm
194357 5.4 警告
Network
Moodle - Moodle における電子メールのヘッダにテキストを挿入される脆弱性 CWE-74
インジェクション
CVE-2016-5013 2017-01-31 14:27 2016-07-19 Show GitHub Exploit DB Packet Storm
194358 5.3 警告
Network
Moodle - Moodle の用語集の検索におけるエントリを表示される脆弱性 CWE-200
情報漏えい
CVE-2016-5012 2017-01-31 14:27 2016-07-19 Show GitHub Exploit DB Packet Storm
194359 7.5 重要
Network
HexChat - HexChat の common/inbound.c の inbound_cap_ls 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-2233 2017-01-31 14:18 2016-02-7 Show GitHub Exploit DB Packet Storm
194360 7.4 重要
Network
HexChat - HexChat のクライアントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-2087 2017-01-31 14:18 2016-01-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293431 - astats
joomla
astatspro
com_astatspro
SQL injection vulnerability in refer.php in the astatsPRO (com_astatspro) 1.0 component for Joomla! allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2008-0839 2017-09-29 10:30 2008-02-21 Show GitHub Exploit DB Packet Storm
293432 - joomla
mambo
com_ricette_component SQL injection vulnerability in index.php in the Giorgio Nordo Ricette (com_ricette) 1.0 component for Joomla! and Mambo allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2008-0841 2017-09-29 10:30 2008-02-21 Show GitHub Exploit DB Packet Storm
293433 - joomla com_clasifier SQL injection vulnerability in index.php in the Classifier (com_clasifier) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the cat_id parameter. CWE-89
SQL Injection
CVE-2008-0842 2017-09-29 10:30 2008-02-21 Show GitHub Exploit DB Packet Storm
293434 - joomla com_pccookbook SQL injection vulnerability in index.php in the PccookBook (com_pccookbook) component for Joomla! allows remote attackers to execute arbitrary SQL commands via the user_id parameter. CWE-89
SQL Injection
CVE-2008-0844 2017-09-29 10:30 2008-02-21 Show GitHub Exploit DB Packet Storm
293435 - runcms myannonces SQL injection vulnerability in index.php in the MyAnnonces 1.7 and earlier module for RunCMS allows remote attackers to execute arbitrary SQL commands via the cid parameter in a view action. CWE-89
SQL Injection
CVE-2008-0878 2017-09-29 10:30 2008-02-22 Show GitHub Exploit DB Packet Storm
293436 - runcms myannonces Additional information is available at the following securityfocus bid link: http://www.securityfocus.com/bid/27902/info CWE-89
SQL Injection
CVE-2008-0878 2017-09-29 10:30 2008-02-22 Show GitHub Exploit DB Packet Storm
293437 - phpnuke easycontent_module SQL injection vulnerability in modules.php in the EasyContent module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the page_id parameter. CWE-89
SQL Injection
CVE-2008-0880 2017-09-29 10:30 2008-02-22 Show GitHub Exploit DB Packet Storm
293438 - phpnuke okul_module SQL injection vulnerability in modules.php in the Okul 1.0 module for PHP-Nuke allows remote attackers to execute arbitrary SQL commands via the okulid parameter in an okullar action. CWE-89
SQL Injection
CVE-2008-0881 2017-09-29 10:30 2008-02-22 Show GitHub Exploit DB Packet Storm
293439 - phpnuke okul_module More information is available at the following securityfocus bid link: http://www.securityfocus.com/bid/27909/info CWE-89
SQL Injection
CVE-2008-0881 2017-09-29 10:30 2008-02-22 Show GitHub Exploit DB Packet Storm
293440 - cups cups Double free vulnerability in the process_browse_data function in CUPS 1.3.5 allows remote attackers to cause a denial of service (daemon crash) and possibly execute arbitrary code via crafted UDP Bro… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-0882 2017-09-29 10:30 2008-02-22 Show GitHub Exploit DB Packet Storm