Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
210291 5.4 警告 clubpersonal - Android 用 Club Personal アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5835 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210292 5.4 警告 mobiledeluxe - Android 用 Solitaire Deluxe アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5834 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210293 5.4 警告 onelouder - Android 用 FriendCaster Chat アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5833 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210294 5.4 警告 hanabank - Android 用 hananbank アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5832 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210295 5.4 警告 happylabs - Android 用 Hotel Story: Resort Simulation アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5831 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210296 5.4 警告 farm frenzy gold project - Android 用 Farm Frenzy Gold アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5830 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210297 5.4 警告 hobbylobby - Android 用 Hobby Lobby Stores アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5829 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210298 5.4 警告 drei - Android 用 3Kundenzone アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5828 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210299 5.4 警告 ibotta - Android 用 Ibotta - Better than Coupons. アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5827 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210300 5.4 警告 rix go locker theme project - Android 用 Rix GO Locker Theme アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5826 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
251931 7.5 HIGH
Network
sparkshop sparkshop A loop hole in the payment logic of Sparkshop v1.16 allows attackers to arbitrarily modify the number of products. NVD-CWE-noinfo
CVE-2024-46307 2024-10-15 23:57 2024-10-10 Show GitHub Exploit DB Packet Storm
251932 7.8 HIGH
Local
progress telerik_reporting In Progress Telerik Reporting versions prior to 2024 Q3 (18.2.24.924), a code execution attack is possible using object injection via insecure expression evaluation. CWE-470
Unsafe Reflection
CVE-2024-8048 2024-10-15 23:56 2024-10-10 Show GitHub Exploit DB Packet Storm
251933 7.2 HIGH
Network
progress telerik_report_server In Progress Telerik Report Server versions prior to 2024 Q3 (10.2.24.924), a remote code execution attack is possible through object injection via an insecure type resolution vulnerability. CWE-470
Unsafe Reflection
CVE-2024-8015 2024-10-15 23:55 2024-10-10 Show GitHub Exploit DB Packet Storm
251934 8.8 HIGH
Network
progress telerik_reporting In Progress Telerik Reporting versions prior to 2024 Q3 (18.2.24.924), a code execution attack is possible through object injection via an insecure type resolution vulnerability. CWE-470
Unsafe Reflection
CVE-2024-8014 2024-10-15 23:54 2024-10-10 Show GitHub Exploit DB Packet Storm
251935 7.8 HIGH
Local
progress telerik_reporting In Progress Telerik Reporting versions prior to 2024 Q3 (18.2.24.924), a command injection attack is possible through improper neutralization of hyperlink elements. CWE-77
Command Injection
CVE-2024-7840 2024-10-15 23:52 2024-10-10 Show GitHub Exploit DB Packet Storm
251936 6.5 MEDIUM
Network
progress telerik_reporting In Progress® Telerik® Report Server versions prior to 2024 Q3 (10.2.24.806), an HTTP DoS attack is possible on anonymous endpoints without rate limiting. NVD-CWE-noinfo
CVE-2024-7294 2024-10-15 23:51 2024-10-10 Show GitHub Exploit DB Packet Storm
251937 8.8 HIGH
Network
progress telerik_reporting In Progress® Telerik® Report Server versions prior to 2024 Q3 (10.2.24.806), a password brute forcing attack is possible through weak password requirements. CWE-521
Weak Password Requirements 
CVE-2024-7293 2024-10-15 23:51 2024-10-10 Show GitHub Exploit DB Packet Storm
251938 8.8 HIGH
Network
progress telerik_report_server In Progress® Telerik® Report Server versions prior to 2024 Q3 (10.2.24.806), a credential stuffing attack is possible through improper restriction of excessive login attempts. CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2024-7292 2024-10-15 23:50 2024-10-10 Show GitHub Exploit DB Packet Storm
251939 7.5 HIGH
Network
templateinvaders ti_woocommerce_wishlist The TI WooCommerce Wishlist WordPress plugin through 2.8.2 is vulnerable to SQL Injection due to insufficient escaping on the user supplied parameter and lack of sufficient preparation on the existin… CWE-89
SQL Injection
CVE-2024-9156 2024-10-15 23:40 2024-10-10 Show GitHub Exploit DB Packet Storm
251940 5.4 MEDIUM
Network
essamamdani advanced_blocks_pro The Advanced Blocks Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.0.0 due to insufficient input sanitization and o… CWE-79
Cross-site Scripting
CVE-2024-9074 2024-10-15 23:37 2024-10-10 Show GitHub Exploit DB Packet Storm