Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216071 2.6 注意 phpMyFAQ - phpMyFAQ におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-0813 2014-02-20 13:57 2014-02-7 Show GitHub Exploit DB Packet Storm
216072 4.3 警告 デル - DELL SonicWALL GMS/Analyzer/UMA にクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0332 2014-02-20 13:55 2014-02-11 Show GitHub Exploit DB Packet Storm
216073 4.3 警告 Mozilla Foundation - Mozilla Thunderbird および SeaMonkey におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2018 2014-02-19 19:08 2014-02-6 Show GitHub Exploit DB Packet Storm
216074 6.8 警告 Mozilla Foundation - Mozilla Firefox における永続的なログアウトに関するクロスサイトリクエストフォージェリに相当する攻撃を実行される脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-6167 2014-02-19 19:08 2013-04-4 Show GitHub Exploit DB Packet Storm
216075 4.3 警告 Canonical - Ubuntu Metal as a Service の API におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1070 2014-02-19 18:55 2013-11-14 Show GitHub Exploit DB Packet Storm
216076 2.1 注意 Canonical - Ubuntu Metal as a Service における RabbitMQ 認証資格情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1069 2014-02-19 18:55 2013-11-22 Show GitHub Exploit DB Packet Storm
216077 7.5 危険 Csound - Csound におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-0270 2014-02-19 18:54 2012-04-5 Show GitHub Exploit DB Packet Storm
216078 5 警告 Litech Systems Design - router advertisement daemon の process_rs 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2011-3605 2014-02-19 18:54 2011-10-6 Show GitHub Exploit DB Packet Storm
216079 7.5 危険 Litech Systems Design - router advertisement daemon の process_ra 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2011-3604 2014-02-19 18:53 2011-10-6 Show GitHub Exploit DB Packet Storm
216080 7.5 危険 Litech Systems Design - router advertisement daemon の process_ra 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-3601 2014-02-19 18:53 2011-10-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
279731 - webcalendar webcalendar SQL injection vulnerability in WebCalendar 1.0.1 allows remote attackers to execute arbitrary SQL commands via the time_range parameter to edit_report_handler.php. NOTE: the startid/activity_log.php… CWE-89
SQL Injection
CVE-2005-3984 2018-10-20 00:39 2005-12-4 Show GitHub Exploit DB Packet Storm
279732 - phpheaven phpmychat Multiple cross-site scripting (XSS) vulnerabilities in phpMyChat 0.14.6 allow remote attackers to inject arbitrary web script or HTML via the medium parameter to (1) start_page.css.php and (2) style.… NVD-CWE-Other
CVE-2005-3991 2018-10-20 00:39 2005-12-5 Show GitHub Exploit DB Packet Storm
279733 - sobexsrv sobexsrv Format string vulnerability in the dosyslog function in the OBEX server (obexsrv.c) for Sobexsrv before 1.0.0-pre4, when the syslog (-S) function is enabled, allows remote attackers to execute arbitr… NVD-CWE-Other
CVE-2005-3995 2018-10-20 00:39 2005-12-5 Show GitHub Exploit DB Packet Storm
279734 - zen-cart zen_cart SQL injection vulnerability in admin/password_forgotten.php in Zen Cart 1.2.6d and earlier allows remote attackers to execute arbitrary SQL commands via the admin_email parameter. CWE-89
SQL Injection
CVE-2005-3996 2018-10-20 00:39 2005-12-5 Show GitHub Exploit DB Packet Storm
279735 - zen_cart zen_cart Zen Cart 1.2.6d and earlier, under certain PHP configurations, allows remote attackers to obtain sensitive information via direct requests to files in the admin/includes directory, including (1) grap… NVD-CWE-Other
CVE-2005-3997 2018-10-20 00:39 2005-12-5 Show GitHub Exploit DB Packet Storm
279736 - codewalkers ltwcalendar SQL injection vulnerability in calendar.php in Codewalkers ltwCalendar (aka PHP Event Calendar) 4.2, 4.1.3, and earlier allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2005-4011 2018-10-20 00:39 2005-12-5 Show GitHub Exploit DB Packet Storm
279737 - xpdf xpdf Buffer overflow in the JBIG2Bitmap::JBIG2Bitmap function in JBIG2Stream.cc in Xpdf, as used in products such as gpdf, kpdf, pdftohtml, poppler, teTeX, CUPS, libextractor, and others, allows attackers… NVD-CWE-Other
CVE-2005-3628 2018-10-20 00:38 2005-12-31 Show GitHub Exploit DB Packet Storm
279738 - phpmyadmin phpmyadmin Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin before 2.7.0 allow remote attackers to inject arbitrary web script or HTML via the (1) HTTP_HOST variable and (2) various scripts in … NVD-CWE-Other
CVE-2005-3665 2018-10-20 00:38 2005-12-8 Show GitHub Exploit DB Packet Storm
279739 - apple quicktime Integer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a TIFF image file with modified image height and width (ImageWidth) tags. CWE-189
Numeric Errors
CVE-2005-3710 2018-10-20 00:38 2005-12-31 Show GitHub Exploit DB Packet Storm
279740 - apple quicktime Integer overflow in Apple Quicktime before 7.0.4 allows remote attackers to execute arbitrary code via a TIFF image file with modified (1) "strips" (StripByteCounts) or (2) "bands" (StripOffsets) val… CWE-189
Numeric Errors
CVE-2005-3711 2018-10-20 00:38 2005-12-31 Show GitHub Exploit DB Packet Storm