Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224051 4.3 警告 WordPress.org - WordPress 用の Page Flip Image Gallery プラグインにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-5752 2012-12-20 19:10 2008-12-30 Show GitHub Exploit DB Packet Storm
224052 7.5 危険 Pligg - Pligg CMS の evb/check_url.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5739 2012-12-20 19:10 2008-12-26 Show GitHub Exploit DB Packet Storm
224053 7.5 危険 PHP-Fusion - PHP-Fusion 用の Team Impact TI Blog System モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5733 2012-12-20 19:10 2008-12-26 Show GitHub Exploit DB Packet Storm
224054 7.5 危険 stormboards aaronnemisis - stormBoards の thread.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5726 2012-12-20 19:10 2008-12-26 Show GitHub Exploit DB Packet Storm
224055 10 危険 sawstudio - SAWStudio におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-5722 2012-12-20 19:10 2008-12-26 Show GitHub Exploit DB Packet Storm
224056 7.8 危険 Fabrice Bellard - Qemu の monitor.c における VNC パスワードを推測される脆弱性 CWE-189
数値処理の問題
CVE-2008-5714 2012-12-20 19:10 2008-12-24 Show GitHub Exploit DB Packet Storm
224057 7.5 危険 slimcms - SlimCMS の redirect.php における管理ユーザを作成される脆弱性 CWE-287
不適切な認証
CVE-2008-5708 2012-12-20 19:10 2008-12-24 Show GitHub Exploit DB Packet Storm
224058 6.9 警告 verlihub-project - Verlihub のデーモンにおける任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-5706 2012-12-20 19:10 2008-12-22 Show GitHub Exploit DB Packet Storm
224059 9.3 危険 verlihub-project - Verlihub のデーモンにおける任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5705 2012-12-20 19:10 2008-12-22 Show GitHub Exploit DB Packet Storm
224060 4.3 警告 Skype Technologies S.A. - Firefox 用の Skype エクステンションにおける任意のデータをクリップボードに上書きされる脆弱性 CWE-DesignError
CVE-2008-5697 2012-12-20 19:10 2008-12-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 18, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1551 7.8 HIGH
Local
google web_designer Arbitrary file write & potential privilege escalation exploiting zip slip vulnerability in Google Web Designer. CWE-22
Path Traversal
CVE-2026-3223 2026-04-14 09:33 2026-02-27 Show GitHub Exploit DB Packet Storm
1552 7.8 HIGH
Local
google web_designer Escritura arbitraria de archivos y potencial escalada de privilegios explotando la vulnerabilidad zip slip en Google Web Designer. CWE-22
Path Traversal
CVE-2026-3223 2026-04-14 09:33 2026-02-27 Show GitHub Exploit DB Packet Storm
1553 9.8 CRITICAL
Network
nestjs nest A NestJS application using @nestjs/platform-fastify can allow bypass of authentication/authorization middleware when Fastify path-normalization options are enabled. This issue affects nest.Js: 11.… CWE-863
 Incorrect Authorization
CVE-2026-2293 2026-04-14 09:30 2026-02-28 Show GitHub Exploit DB Packet Storm
1554 9.8 CRITICAL
Network
nestjs nest Una aplicación NestJS que utiliza @nestjs/platform-fastify puede permitir la omisión del middleware de autenticación/autorización cuando las opciones de normalización de rutas de Fastify están habili… CWE-863
 Incorrect Authorization
CVE-2026-2293 2026-04-14 09:30 2026-02-28 Show GitHub Exploit DB Packet Storm
1555 9.8 CRITICAL
Network
- - Hyland OnBase contains an unauthenticated .NET Remoting exposure in the OnBase Workflow Timer Service (Hyland.Core.Workflow.NTService.exe). An attacker who can reach the service can send crafted .NET… CWE-502
 Deserialization of Untrusted Data
CVE-2026-26221 2026-04-14 09:16 2026-02-14 Show GitHub Exploit DB Packet Storm
1556 9.8 CRITICAL
Network
- - Hyland OnBase contiene una exposición de .NET Remoting sin autenticación en el Servicio de Temporizador de Flujo de Trabajo de OnBase (Hyland.Core.Workflow.NTService.exe). Un atacante que puede alcan… CWE-502
 Deserialization of Untrusted Data
CVE-2026-26221 2026-04-14 09:16 2026-02-14 Show GitHub Exploit DB Packet Storm
1557 6.1 MEDIUM
Network
- - The User Registration & Membership plugin for WordPress is vulnerable to Open Redirect in versions up to and including 5.1.4. This is due to insufficient validation of user-supplied URLs passed via t… CWE-601
Open Redirect
CVE-2026-6203 2026-04-14 08:16 2026-04-14 Show GitHub Exploit DB Packet Storm
1558 6.5 MEDIUM
Local
- - Execution with Unnecessary Privileges vulnerability in multiple services of Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS Suite versions 10.97.3 and prior, Mit… CWE-250
 Execution with Unnecessary Privileges
CVE-2025-0921 2026-04-14 08:16 2025-05-16 Show GitHub Exploit DB Packet Storm
1559 6.5 MEDIUM
Local
- - La vulnerabilidad de ejecución con privilegios innecesarios en el agente Pager de la función de notificación multiagente de Mitsubishi Electric Iconics Digital Solutions GENESIS64 anterior a la versi… CWE-250
 Execution with Unnecessary Privileges
CVE-2025-0921 2026-04-14 08:16 2025-05-16 Show GitHub Exploit DB Packet Storm
1560 5.9 MEDIUM
Network
- - Missing Authentication for Critical Function vulnerability in the mobile monitoring feature of Mitsubishi Electric GENESIS64 versions 10.97.2 and prior, Mitsubishi Electric ICONICS Suite versions 10.… CWE-306
Missing Authentication for Critical Function
CVE-2024-1573 2026-04-14 08:16 2024-07-4 Show GitHub Exploit DB Packet Storm