Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223661 6.5 警告 ScriptsFeed.com - ScriptsFeed Auto Classifieds における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-6944 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
223662 6.5 警告 ScriptsFeed.com - ScriptsFeed Recipes Listing Portal における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-6943 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
223663 6.5 警告 ScriptsFeed.com - ScriptsFeed Realtor Classifieds System における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-6942 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
223664 7.5 危険 turnkeyforms - TurnkeyForms Web Hosting Directory のログイン機能における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6941 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
223665 7.5 危険 turnkeyforms - TurnkeyForms Web Hosting Directory におけるデータベースのバックアップを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6940 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
223666 7.5 危険 turnkeyforms - TurnkeyForms Web Hosting Directory における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-6939 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
223667 7.5 危険 sansuart - Sanus|artificium Free simple guestbook PHP における messages.txt へ任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2008-6934 2012-12-20 19:10 2009-08-11 Show GitHub Exploit DB Packet Storm
223668 6.5 警告 phpstore - PHPStore Job Search における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6931 2012-12-20 19:10 2009-08-11 Show GitHub Exploit DB Packet Storm
223669 6.5 警告 phpstore - PHPStore Real Estate における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6930 2012-12-20 19:10 2009-08-11 Show GitHub Exploit DB Packet Storm
223670 6.5 警告 phpstore - PHPStore Auto Classifieds における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6929 2012-12-20 19:10 2009-08-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
278061 - linux
canonical
linux_kernel
ubuntu_linux
The connector layer in the Linux kernel before 2.6.31.5 does not require the CAP_SYS_ADMIN capability for certain interaction with the (1) uvesafb, (2) pohmelfs, (3) dst, or (4) dm subsystem, which a… CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-3725 2018-11-17 00:46 2009-11-7 Show GitHub Exploit DB Packet Storm
278062 - apple iphone_os Heap-based buffer overflow in the Recovery Mode component in Apple iPhone OS before 3.1, and iPhone OS before 3.1.1 for iPod touch, allows local users to bypass the passcode requirement and access ar… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2009-2795 2018-11-17 00:38 2009-09-11 Show GitHub Exploit DB Packet Storm
278063 - apple
canonical
iphone_os
ubuntu_linux
The WebKit component in Safari in Apple iPhone OS before 3.1, and iPhone OS before 3.1.1 for iPod touch, does not remove usernames and passwords from URLs sent in Referer headers, which allows remote… CWE-200
Information Exposure
CVE-2009-2797 2018-11-17 00:38 2009-09-11 Show GitHub Exploit DB Packet Storm
278064 - linux linux_kernel Off-by-one error in the options_write function in drivers/misc/sgi-gru/gruprocfs.c in the SGI GRU driver in the Linux kernel 2.6.30.2 and earlier on ia64 and x86 platforms might allow local users to … CWE-189
Numeric Errors
CVE-2009-2584 2018-11-17 00:35 2009-07-24 Show GitHub Exploit DB Packet Storm
278065 - canon-its accessguardian Cross-site scripting (XSS) vulnerability in Canon IT Solutions Inc. ACCESSGUARDIAN 3.0.14 and earlier, and 3.5.6 and earlier, allows remote attackers to inject arbitrary web script or HTML via unspec… CWE-79
Cross-site Scripting
CVE-2009-4608 2018-11-16 03:13 2010-01-13 Show GitHub Exploit DB Packet Storm
278066 - wordpress wordpress
wordpress_mu
The forgotten mail interface in WordPress and WordPress MU before 2.8.1 exhibits different behavior for a password request depending on whether the user account exists, which allows remote attackers … CWE-16
Configuration
CVE-2009-2336 2018-11-9 05:39 2009-07-11 Show GitHub Exploit DB Packet Storm
278067 - wordpress wordpress
wordpress_mu
WordPress and WordPress MU before 2.8.1 exhibit different behavior for a failed login attempt depending on whether the user account exists, which allows remote attackers to enumerate valid usernames.… CWE-16
Configuration
CVE-2009-2335 2018-11-9 05:38 2009-07-11 Show GitHub Exploit DB Packet Storm
278068 - ibm integrated_solutions_console
websphere_application_server
websphere_portal
IBM WebSphere Application Server (WAS) 6.1 through 6.1.0.24 and 7.0 through 7.0.0.4, IBM WebSphere Portal Server 5.1 through 6.0, and IBM Integrated Solutions Console (ISC) 6.0.1 do not properly set … CWE-264
Permissions, Privileges, and Access Controls
CVE-2009-0899 2018-11-9 05:37 2009-06-4 Show GitHub Exploit DB Packet Storm
278069 - adobe acrobat_reader Unspecified vulnerability in Adobe Acrobat Reader 9 before 9.1, 8 before 8.1.4, and 7 before 7.1.1 might allow remote attackers to execute arbitrary code via unknown attack vectors related to JBIG2 a… CWE-20
 Improper Input Validation 
CVE-2009-1061 2018-11-9 05:28 2009-03-25 Show GitHub Exploit DB Packet Storm
278070 - adobe acrobat
acrobat_reader
The getAnnots Doc method in the JavaScript API in Adobe Reader and Acrobat 9.1, 8.1.4, 7.1.1, and earlier allows remote attackers to cause a denial of service (memory corruption) or execute arbitrary… CWE-399
 Resource Management Errors
CVE-2009-1492 2018-11-9 05:28 2009-05-1 Show GitHub Exploit DB Packet Storm