Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201691 9.8 緊急
Network
uglify-js project - Node.js 用 uglify-js パッケージにおけるセキュリティメカニズムを回避される脆弱性 CWE-254
セキュリティ機能
CVE-2015-8857 2017-02-7 11:48 2015-08-25 Show GitHub Exploit DB Packet Storm
201692 6.1 警告
Network
serve-index project - Node.js 用 serve-index パッケージにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-8856 2017-02-7 11:48 2015-03-14 Show GitHub Exploit DB Packet Storm
201693 7.5 重要
Network
semver project - Node.js 用 semver パッケージにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-8855 2017-02-7 11:48 2015-04-4 Show GitHub Exploit DB Packet Storm
201694 7.5 重要
Network
Marked project - Node.js 用 marked パッケージにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-8854 2017-02-7 11:48 2015-01-23 Show GitHub Exploit DB Packet Storm
201695 7.5 重要
Network
ms project - Node.js 用 ms パッケージにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-8315 2017-02-7 11:48 2015-10-25 Show GitHub Exploit DB Packet Storm
201696 6.1 警告
Network
validator project - Node.js 用 validator パッケージにおける XSS フィルタを回避される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-9772 2017-02-7 11:48 2014-10-28 Show GitHub Exploit DB Packet Storm
201697 6.1 警告
Network
validator project - Node.js 用 validator モジュールにおける XSS フィルタを回避される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7454 2017-02-7 11:48 2013-07-6 Show GitHub Exploit DB Packet Storm
201698 6.1 警告
Network
validator project - Node.js 用 validator モジュールにおける XSS フィルタを回避される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7453 2017-02-7 11:48 2013-07-6 Show GitHub Exploit DB Packet Storm
201699 6.1 警告
Network
validator project - Node.js 用 validator モジュールにおける XSS フィルタを回避される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7452 2017-02-7 11:48 2013-07-6 Show GitHub Exploit DB Packet Storm
201700 6.1 警告
Network
validator project - Node.js 用 validator モジュールにおける XSS フィルタを回避される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7451 2017-02-7 11:48 2013-07-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345211 - r._corson php_forge PHP remote file inclusion vulnerability in inc/gabarits.php in R. Corson PHP Forge 3 beta 2 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the cfg_racine parameter. NVD-CWE-Other
CVE-2006-3917 2017-10-19 10:29 2006-07-28 Show GitHub Exploit DB Packet Storm
345212 - portailphp portailphp PHP remote file inclusion vulnerability in mod_membre/inscription.php in PortailPHP 1.7 allows remote attackers to execute arbitrary PHP code via a URL in the chemin parameter. NVD-CWE-Other
CVE-2006-3922 2017-10-19 10:29 2006-07-29 Show GitHub Exploit DB Packet Storm
345213 - mikael_software wmnews PHP remote file inclusion vulnerability in index.php in WMNews 0.2a and earlier allows remote attackers to execute arbitrary PHP code via a URL in the base_datapath parameter. NVD-CWE-Other
CVE-2006-3928 2017-10-19 10:29 2006-08-1 Show GitHub Exploit DB Packet Storm
345214 - mam-moodle_alpha_component mam-moodle_alpha_component PHP remote file inclusion vulnerability in moodle.php in Mam-moodle alpha component (com_moodle) for Mambo allows remote attackers to execute arbitrary PHP code via a URL in the mosConfig_absolute_pa… NVD-CWE-Other
CVE-2006-3951 2017-10-19 10:29 2006-08-2 Show GitHub Exploit DB Packet Storm
345215 - mambo bayesiannaivefilter PHP remote file inclusion vulnerability in administrator/components/com_bayesiannaivefilter/lang.php in the bayesiannaivefilter component (com_bayesiannaivefilter) 1.1 for Mambo allows remote attacke… NVD-CWE-Other
CVE-2006-3962 2017-10-19 10:29 2006-08-2 Show GitHub Exploit DB Packet Storm
345216 - joomla colophon PHP remote file inclusion vulnerability in administrator/components/com_colophon/admin.colophon.php in Colophon 1.2 and earlier for Joomla! allows remote attackers to execute arbitrary PHP code via a… NVD-CWE-Other
CVE-2006-3969 2017-10-19 10:29 2006-08-2 Show GitHub Exploit DB Packet Storm
345217 - ekilat_llc php\(reactor\) PHP remote file inclusion vulnerability in editprofile.php in php(Reactor) 1.27pl1 allows remote attackers to execute arbitrary PHP code via a URL in the pathtohomedir parameter. NVD-CWE-Other
CVE-2006-3983 2017-10-19 10:29 2006-08-5 Show GitHub Exploit DB Packet Storm
345218 - voc-project voodoo_chat PHP remote file inclusion vulnerability in index.php in Vlad Vostrykh Voodoo chat 1.0RC1b and earlier allows remote attackers to execute arbitrary PHP code via a URL in the file_path parameter. NVD-CWE-Other
CVE-2006-3991 2017-10-19 10:29 2006-08-5 Show GitHub Exploit DB Packet Storm
345219 - user_home_pages user_home_pages Multiple PHP remote file inclusion vulnerabilities in (1) uhp_config.php, and possibly (2) footer.php, (3) functions.php, (4) install.uhp.php, (5) toolbar.uhp.html.php, (6) uhp.class.php, and (7) uni… CWE-94
Code Injection
CVE-2006-3995 2017-10-19 10:29 2006-08-5 Show GitHub Exploit DB Packet Storm
345220 - wowroster wowroster PHP remote file inclusion vulnerability in conf.php in WoWRoster (aka World of Warcraft Roster) 1.5.1 and earlier allows remote attackers to execute arbitrary PHP code via a URL in the subdir paramet… NVD-CWE-Other
CVE-2006-3998 2017-10-19 10:29 2006-08-5 Show GitHub Exploit DB Packet Storm