Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224231 7.5 危険 w1n78 - e107 用の Lyrics プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4906 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
224232 5 警告 typosphere - Typo におけるパスワードを推測される脆弱性 CWE-310
暗号の問題
CVE-2008-4905 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
224233 6 警告 typosphere - Typo の "ページを管理する" 機能における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4904 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
224234 4.3 警告 typosphere - Typo のコメントを残す機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4903 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
224235 7.5 危険 scripts frenzy - Article Publisher Pro の contact_author.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4902 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
224236 7.5 危険 scripts frenzy - Article Publisher Pro の admin/admin.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4901 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
224237 9.3 危険 SAP - SAP GUI の KWEdit ActiveX コントロールにおける任意のファイルを上書きされる脆弱性 CWE-Other
その他
CVE-2008-4830 2012-12-20 18:52 2009-04-16 Show GitHub Exploit DB Packet Storm
224238 7.5 危険 YourFreeWorld.com - YourFreeWorld Classifieds Blaster Script の tr.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4900 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
224239 6.8 警告 planetluc - Planetluc RateMe におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-4899 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
224240 4.3 警告 planetluc - planetluc RateMe におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4898 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1371 7.5 HIGH
Network
xmlsoft
redhat
libxslt
openshift_container_platform
enterprise_linux
Se encontró una falla en la librería libxslt. El mismo campo de memoria, psvi, se utiliza tanto para la hoja de estilo como para los datos de entrada, lo que puede provocar confusión de tipos durante… CWE-843
Type Confusion
CVE-2025-7424 2026-04-15 07:16 2025-07-10 Show GitHub Exploit DB Packet Storm
1372 5.3 MEDIUM
Network
- - The Nexi XPay plugin for WordPress is vulnerable to unauthorized modification of data due to missing authorization checks on the redirect function in all versions up to, and including, 8.3.0. This ma… CWE-862
 Missing Authorization
CVE-2025-15565 2026-04-15 07:16 2026-04-15 Show GitHub Exploit DB Packet Storm
1373 5.6 MEDIUM
Local
- - A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an … CWE-362
Race Condition
CVE-2024-12747 2026-04-15 07:16 2025-01-15 Show GitHub Exploit DB Packet Storm
1374 5.6 MEDIUM
Local
- - Se encontró un fallo en rsync. Esta vulnerabilidad surge de una condición de ejecución durante la gestión de enlaces simbólicos por parte de rsync. El comportamiento predeterminado de rsync cuando en… CWE-362
Race Condition
CVE-2024-12747 2026-04-15 07:16 2025-01-15 Show GitHub Exploit DB Packet Storm
1375 7.5 HIGH
Network
samba
redhat
archlinux
gentoo
nixos
novell
tritondatacenter
almalinux
rsync
discovery
openshift_container_platform
enterprise_linux
enterprise_linux_eus
enterprise_linux_for_arm_64
enterprise_linux_for_arm_64_eus
enterprise_linux_for_ibm_z_systems<…
A flaw was found in rsync. When using the `--safe-links` option, the rsync client fails to properly verify if a symbolic link destination sent from the server contains another symbolic link within it… CWE-22
Path Traversal
CVE-2024-12088 2026-04-15 07:16 2025-01-15 Show GitHub Exploit DB Packet Storm
1376 7.5 HIGH
Network
samba
redhat
archlinux
gentoo
nixos
novell
tritondatacenter
almalinux
rsync
discovery
openshift_container_platform
enterprise_linux
enterprise_linux_eus
enterprise_linux_for_arm_64
enterprise_linux_for_arm_64_eus
enterprise_linux_for_ibm_z_systems<…
Se encontró un fallo en rsync. Al usar la opción `--safe-links`, rsync no verifica correctamente si un destino de enlace simbólico contiene otro enlace simbólico dentro de él. Esto genera una vulnera… CWE-22
Path Traversal
CVE-2024-12088 2026-04-15 07:16 2025-01-15 Show GitHub Exploit DB Packet Storm
1377 7.5 HIGH
Network
samba
almalinux
archlinux
gentoo
nixos
suse
tritondatacenter
redhat
rsync
almalinux
arch_linux
linux
nixos
suse_linux
smartos
enterprise_linux
enterprise_linux_eus
enterprise_linux_for_arm_64
enterprise_linux_for_arm_64_eus
enterprise…
A path traversal vulnerability exists in rsync. It stems from behavior enabled by the `--inc-recursive` option, a default-enabled option for many client options and can be enabled by the server even … CWE-22
Path Traversal
CVE-2024-12087 2026-04-15 07:16 2025-01-15 Show GitHub Exploit DB Packet Storm
1378 7.5 HIGH
Network
samba
almalinux
archlinux
gentoo
nixos
suse
tritondatacenter
redhat
rsync
almalinux
arch_linux
linux
nixos
suse_linux
smartos
enterprise_linux
enterprise_linux_eus
enterprise_linux_for_arm_64
enterprise_linux_for_arm_64_eus
enterprise…
Existe una vulnerabilidad Path Traversal en rsync. Se origina en un comportamiento habilitado por la opción `--inc-recursive`, una opción habilitada de manera predeterminada para muchas opciones de c… CWE-22
Path Traversal
CVE-2024-12087 2026-04-15 07:16 2025-01-15 Show GitHub Exploit DB Packet Storm
1379 6.8 MEDIUM
Network
samba
redhat
almalinux
archlinux
gentoo
nixos
suse
tritondatacenter
rsync
openshift_container_platform
enterprise_linux
almalinux
arch_linux
linux
nixos
suse_linux
smartos
A flaw was found in rsync. It could allow a server to enumerate the contents of an arbitrary file from the client's machine. This issue occurs when files are being copied from a client to a server. D… CWE-390
 Detection of Error Condition Without Action
CVE-2024-12086 2026-04-15 07:16 2025-01-15 Show GitHub Exploit DB Packet Storm
1380 6.8 MEDIUM
Network
samba
redhat
almalinux
archlinux
gentoo
nixos
suse
tritondatacenter
rsync
openshift_container_platform
enterprise_linux
almalinux
arch_linux
linux
nixos
suse_linux
smartos
Se encontró un fallo en rsync que podría permitir que un servidor enumere el contenido de un archivo arbitrario de la máquina del cliente. Este problema ocurre cuando se copian archivos de un cliente… CWE-390
 Detection of Error Condition Without Action
CVE-2024-12086 2026-04-15 07:16 2025-01-15 Show GitHub Exploit DB Packet Storm