Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
210321 5.4 警告 Mail.Ru - Android 用 Mail.Ru Dating アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5804 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210322 5.4 警告 ember-entertainment - Android 用 Towers N' Trolls アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5803 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210323 5.4 警告 PlayScapeTM - Android 用 PlayScape アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5802 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210324 5.4 警告 ocshield - Android 用 DataGard VPN + AV アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5801 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210325 5.4 警告 nonghyup - Android 用 smart.nhibzbanking アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5800 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210326 5.4 警告 nonghyup - Android 用 smart.card アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5799 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210327 5.4 警告 nonghyup - Android 用 smart.calculator アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5798 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210328 5.4 警告 nonghyup - Android 用 smart アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5797 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210329 5.4 警告 passion4profession - Android 用 Chest Workout アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5796 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210330 5.4 警告 passion4profession - Android 用 8 Minutes Abs Workout アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5794 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
251261 6.9 MEDIUM
Network
openrefine openrefine OpenRefine is a free, open source tool for working with messy data. Prior to version 3.8.3, the `export-rows` command can be used in such a way that it reflects part of the request verbatim, with a C… CWE-79
Cross-site Scripting
CVE-2024-47880 2024-10-31 02:42 2024-10-25 Show GitHub Exploit DB Packet Storm
251262 - - - File Upload vulnerability in Prison Management System v.1.0 allows a remote attacker to execute arbitrary code via the file upload component. - CVE-2024-48594 2024-10-31 02:35 2024-10-29 Show GitHub Exploit DB Packet Storm
251263 - - - LyLme Spage <=1.6.0 is vulnerable to SQL Injection via /admin/group.php. - CVE-2024-48356 2024-10-31 02:35 2024-10-29 Show GitHub Exploit DB Packet Storm
251264 - - - MRCMS 3.1.2 contains a SQL injection vulnerability via the RID parameter in /admin/article/delete.do. - CVE-2024-48177 2024-10-31 02:35 2024-10-29 Show GitHub Exploit DB Packet Storm
251265 - - - SparkShop <=1.1.7 is vulnerable to server-side request forgery (SSRF). This vulnerability allows attacks to scan ports on the Intranet or local network where the server resides, attack applications r… - CVE-2024-48107 2024-10-31 02:35 2024-10-29 Show GitHub Exploit DB Packet Storm
251266 - - - LyLme Spage 1.2.0 through 1.6.0 is vulnerable to SQL Injection via /admin/apply.php. - CVE-2024-48357 2024-10-31 02:35 2024-10-29 Show GitHub Exploit DB Packet Storm
251267 - - - An issue was discovered in Samsung eMMC with KLMAG2GE4A and KLM8G1WEMB firmware. Code bypass through Electromagnetic Fault Injection allows an attacker to successfully authenticate and write to the R… - CVE-2024-31955 2024-10-31 02:35 2024-10-16 Show GitHub Exploit DB Packet Storm
251268 5.3 MEDIUM
Network
djangoproject django An issue was discovered in Django v5.1.1, v5.0.9, and v4.2.16. The django.contrib.auth.forms.PasswordResetForm class, when used in a view implementing password reset flows, allows remote attackers to… NVD-CWE-noinfo
CVE-2024-45231 2024-10-31 02:35 2024-10-9 Show GitHub Exploit DB Packet Storm
251269 7.5 HIGH
Network
djangoproject django An issue was discovered in Django 5.1 before 5.1.1, 5.0 before 5.0.9, and 4.2 before 4.2.16. The urlize() and urlizetrunc() template filters are subject to a potential denial-of-service attack via ve… NVD-CWE-noinfo
CVE-2024-45230 2024-10-31 02:35 2024-10-9 Show GitHub Exploit DB Packet Storm
251270 7.5 HIGH
Network
mozilla firefox
thunderbird
firefox_esr
An attacker could, via a specially crafted multipart response, execute arbitrary JavaScript under the `resource://pdf.js` origin. This could allow them to access cross-origin PDF content. This acces… NVD-CWE-Other
CVE-2024-9393 2024-10-31 02:35 2024-10-2 Show GitHub Exploit DB Packet Storm