Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216041 1.9 注意 IBM
オラクル
- Oracle Fusion Middleware の Oracle Outside In Technology コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-3597 2014-02-21 18:06 2011-01-18 Show GitHub Exploit DB Packet Storm
216042 6.8 警告 Ruby on Rails project - Ruby on Rails の Active Record における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-0080 2014-02-21 16:25 2014-02-18 Show GitHub Exploit DB Packet Storm
216043 4.4 警告 IBM
オラクル
- Oracle Application Server の Outside In Technology コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-1011 2014-02-21 16:15 2009-04-15 Show GitHub Exploit DB Packet Storm
216044 4.4 警告 IBM
オラクル
- Oracle Application Server の Outside In Technology コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-1010 2014-02-21 16:13 2009-04-15 Show GitHub Exploit DB Packet Storm
216045 4.4 警告 IBM
オラクル
- Oracle Application Server の Outside In Technology コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-1009 2014-02-21 16:13 2009-04-15 Show GitHub Exploit DB Packet Storm
216046 4.4 警告 IBM
オラクル
- Oracle Application Server の Outside In Technology コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-1008 2014-02-21 16:12 2009-04-15 Show GitHub Exploit DB Packet Storm
216047 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR における ASLR 保護メカニズムを破られる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0492 2014-02-21 13:40 2014-01-14 Show GitHub Exploit DB Packet Storm
216048 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR における不特定の保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0491 2014-02-21 13:40 2014-01-14 Show GitHub Exploit DB Packet Storm
216049 3.5 注意 The phpMyAdmin Project - phpMyAdmin の import.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1879 2014-02-21 12:26 2014-02-15 Show GitHub Exploit DB Packet Storm
216050 5.8 警告 feep.net - libtar の tar_extract_glob および tar_extract_all 関数におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-4420 2014-02-21 12:25 2013-12-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290281 - american_financing link_request_contact_form Unrestricted file upload vulnerability in Link Request Contact Form 3.4 allows remote attackers to execute arbitrary PHP code by uploading a file with a .php extension and an image content type, as d… NVD-CWE-Other
CVE-2007-3199 2017-10-11 10:32 2007-06-13 Show GitHub Exploit DB Packet Storm
290282 - xoops cjay_content_module PHP remote file inclusion vulnerability in admin/editor2/spaw_control.class.php in the Cjay Content 3 module for XOOPS allows remote attackers to execute arbitrary PHP code via a URL in the spaw_root… NVD-CWE-Other
CVE-2007-3220 2017-10-11 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm
290283 - xoops xt-conteudo_module PHP remote file inclusion vulnerability in admin/spaw/spaw_control.class.php in the XT-Conteudo module for XOOPS allows remote attackers to execute arbitrary PHP code via a URL in the spaw_root param… NVD-CWE-Other
CVE-2007-3221 2017-10-11 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm
290284 - xoops xfsection_module PHP remote file inclusion vulnerability in modify.php in the XFsection 1.07 module for XOOPS allows remote attackers to execute arbitrary PHP code via a URL in the dir_module parameter. NVD-CWE-Other
CVE-2007-3222 2017-10-11 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm
290285 - simian_systems_inc sitellite PHP remote file inclusion vulnerability in phphtml.php in Idan Sofer PHP::HTML 0.6.4 allows remote attackers to execute arbitrary PHP code via a URL in the htmlclass_path parameter. NVD-CWE-Other
CVE-2007-3230 2017-10-11 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm
290286 - tec-it tbarcode_ocx The TEC-IT TBarCode OCX ActiveX control (TBarCode7.ocx) 7.0.2.3524 allows remote attackers to overwrite arbitrary files via the SaveImage method. NVD-CWE-Other
CVE-2007-3233 2017-10-11 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm
290287 - fuzzylime_forum fuzzylime_forum SQL injection vulnerability in low.php in Fuzzylime Forum 1.0 allows remote attackers to execute arbitrary SQL commands via the topic parameter. NVD-CWE-Other
CVE-2007-3234 2017-10-11 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm
290288 - fuzzylime_forum fuzzylime_forum Cross-site scripting (XSS) vulnerability in low.php in Fuzzylime Forum 1.0 allows remote attackers to inject arbitrary web script or HTML via the topic parameter. NOTE: this might be resultant from … NVD-CWE-Other
CVE-2007-3235 2017-10-11 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm
290289 - xoops horoscope_module PHP remote file inclusion vulnerability in footer.php in the Horoscope 1.0 module for XOOPS allows remote attackers to execute arbitrary PHP code via a URL in the xoopsConfig[root_path] parameter. NVD-CWE-Other
CVE-2007-3236 2017-10-11 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm
290290 - xoops tinycontent_module PHP remote file inclusion vulnerability in admin/spaw/spaw_control.class.php in the TinyContent 1.5 module for XOOPS allows remote attackers to execute arbitrary PHP code via a URL in the spaw_root p… NVD-CWE-Other
CVE-2007-3237 2017-10-11 10:32 2007-06-15 Show GitHub Exploit DB Packet Storm