Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
215841 7.5 危険 アドビシステムズ
Apache Software Foundation
- Apache Cordova および Adobe PhoneGap におけるホワイトリスト保護メカニズムを回避される脆弱性 CWE-20
不適切な入力確認
CVE-2012-6637 2014-03-4 19:07 2012-04-30 Show GitHub Exploit DB Packet Storm
215842 5 警告 PNG Development Group - libpng におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
CWE-Other
CVE-2014-0333 2014-03-4 18:16 2014-02-25 Show GitHub Exploit DB Packet Storm
215843 6.8 警告 Google - Android API における Java オブジェクトの任意のメソッドを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6636 2014-03-4 17:49 2014-02-7 Show GitHub Exploit DB Packet Storm
215844 4.3 警告 MediaWiki - MediaWiki の includes/api/ApiFormatBase.php の formatHTML 関数におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2244 2014-03-4 17:06 2014-02-28 Show GitHub Exploit DB Packet Storm
215845 5.8 警告 MediaWiki - MediaWiki の includes/User.php におけるアクセス権を取得される脆弱性 CWE-362
競合状態
CVE-2014-2243 2014-03-4 17:06 2014-02-28 Show GitHub Exploit DB Packet Storm
215846 4.3 警告 MediaWiki - MediaWiki の includes/upload/UploadBase.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2242 2014-03-4 17:06 2014-02-28 Show GitHub Exploit DB Packet Storm
215847 4.3 警告 シスコシステムズ - Cisco Unified Communications Domain Manager の Business Voice Services Manager のページにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2104 2014-03-4 17:00 2014-02-28 Show GitHub Exploit DB Packet Storm
215848 7.9 危険 ブルーコートシステムズ - Blue Coat ProxySG に脆弱性 CWE-264
CWE-Other
CVE-2014-2033 2014-03-4 16:58 2014-02-28 Show GitHub Exploit DB Packet Storm
215849 9.3 危険 SAS - Base SAS のクライアントアプリケーションにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-2262 2014-03-4 16:38 2014-01-17 Show GitHub Exploit DB Packet Storm
215850 2.6 注意 Debian
Canonical
- apt の methods/https.cc におけるリポジトリの認証情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3634 2014-03-4 16:18 2011-02-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
298781 - phpmyadmin phpmyadmin Cross-site request forgery (CSRF) vulnerability in phpMyAdmin before 2.11.7.1 allows remote attackers to perform unauthorized actions via a link or IMG tag to (1) the db parameter in the "Creating a … CWE-352
 Origin Validation Error
CVE-2008-3197 2017-08-8 10:31 2008-07-17 Show GitHub Exploit DB Packet Storm
298782 - mozilla firefox Mozilla Firefox 3.x before 3.0.1 allows remote attackers to inject arbitrary web script into a chrome document via unspecified vectors, as demonstrated by injection into a XUL error page. NOTE: this… CWE-94
Code Injection
CVE-2008-3198 2017-08-8 10:31 2008-07-17 Show GitHub Exploit DB Packet Storm
298783 - resiprocate resiprocate Multiple unspecified vulnerabilities in ReSIProcate before 1.3.4 allow remote attackers to cause a denial of service (stack consumption) via unknown network traffic with a large "bytes-in-memory/byte… CWE-20
 Improper Input Validation 
CVE-2008-3199 2017-08-8 10:31 2008-07-17 Show GitHub Exploit DB Packet Storm
298784 - pagefusion pagefusion Multiple cross-site scripting (XSS) vulnerabilities in index.php in Pagefusion 1.5 allow remote attackers to inject arbitrary web script or HTML via the (1) acct_fname and (2) acct_lname parameters i… CWE-79
Cross-site Scripting
CVE-2008-3201 2017-08-8 10:31 2008-07-17 Show GitHub Exploit DB Packet Storm
298785 - xomol xomol_cms Cross-site scripting (XSS) vulnerability in index.php in Xomol CMS 1.2 allows remote attackers to inject arbitrary web script or HTML via the current_url parameter in a tellafriend action. NOTE: the… CWE-79
Cross-site Scripting
CVE-2008-3202 2017-08-8 10:31 2008-07-17 Show GitHub Exploit DB Packet Storm
298786 - scripteen free_image_hosting_script Multiple SQL injection vulnerabilities in Scripteen Free Image Hosting Script 1.2.1 allow remote attackers to execute arbitrary SQL commands via the (1) username or (2) password parameter to admin/lo… CWE-89
SQL Injection
CVE-2008-3212 2017-08-8 10:31 2008-07-19 Show GitHub Exploit DB Packet Storm
298787 - thekelleys dnsmasq dnsmasq 2.25 allows remote attackers to cause a denial of service (daemon crash) by (1) renewing a nonexistent lease or (2) sending a DHCPREQUEST for an IP address that is not in the same network, re… CWE-20
 Improper Input Validation 
CVE-2008-3214 2017-08-8 10:31 2008-07-19 Show GitHub Exploit DB Packet Storm
298788 - clam_anti-virus clamav libclamav/petite.c in ClamAV before 0.93.3 allows remote attackers to cause a denial of service via a malformed Petite file that triggers an out-of-bounds memory access. NOTE: this issue exists beca… CWE-399
 Resource Management Errors
CVE-2008-3215 2017-08-8 10:31 2008-07-19 Show GitHub Exploit DB Packet Storm
298789 - debian projectl The save function in br/prefmanager.d in projectl 1.001 creates a projectL.prf file in the current working directory, which allows local users to overwrite arbitrary files via a symlink attack. CWE-59
Link Following
CVE-2008-3216 2017-08-8 10:31 2008-07-19 Show GitHub Exploit DB Packet Storm
298790 - powerdns recursor PowerDNS Recursor before 3.1.6 does not always use the strongest random number generator for source port selection, which makes it easier for remote attack vectors to conduct DNS cache poisoning. NO… CWE-189
Numeric Errors
CVE-2008-3217 2017-08-8 10:31 2008-07-19 Show GitHub Exploit DB Packet Storm