Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224481 7.5 危険 smartisoft - phpBazar の classified.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3767 2012-12-20 18:52 2008-08-22 Show GitHub Exploit DB Packet Storm
224482 5 警告 realtime internet band rehearsal - Realtime Internet llcon におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-3766 2012-12-20 18:52 2008-08-22 Show GitHub Exploit DB Packet Storm
224483 7.5 危険 turnkey web tools - Turnkey PHP Live Helper の globalsoff.php における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-3764 2012-12-20 18:52 2008-08-21 Show GitHub Exploit DB Packet Storm
224484 6.8 警告 turnkey web tools - Turnkey PHP Live Helper の libsecure.php における db config ファイルに関連する任意の変数を上書きされる脆弱性 CWE-20
不適切な入力確認
CVE-2008-3763 2012-12-20 18:52 2008-08-21 Show GitHub Exploit DB Packet Storm
224485 7.5 危険 turnkey web tools - Turnkey PHP Live Helper の onlinestatus_html.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3762 2012-12-20 18:52 2008-08-21 Show GitHub Exploit DB Packet Storm
224486 7.5 危険 YourFreeWorld.com - YourFreeWorld Forced Matrix Script の tr1.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3757 2012-12-20 18:52 2008-08-21 Show GitHub Exploit DB Packet Storm
224487 7.5 危険 YourFreeWorld.com - YourFreeWorld Viral Marketing Script の tr.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3756 2012-12-20 18:52 2008-08-21 Show GitHub Exploit DB Packet Storm
224488 7.5 危険 YourFreeWorld.com - YourFreeWorld Classifieds Script の view.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3755 2012-12-20 18:52 2008-08-21 Show GitHub Exploit DB Packet Storm
224489 7.5 危険 YourFreeWorld.com - YourFreeWorld Stylish Text Ads Script の trl.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3754 2012-12-20 18:52 2008-08-21 Show GitHub Exploit DB Packet Storm
224490 7.5 危険 YourFreeWorld.com - YourFreeWorld Programs Rating Script の details.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3753 2012-12-20 18:52 2008-08-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1371 7.5 HIGH
Network
xmlsoft
redhat
libxslt
openshift_container_platform
enterprise_linux
Se encontró una falla en la librería libxslt. El mismo campo de memoria, psvi, se utiliza tanto para la hoja de estilo como para los datos de entrada, lo que puede provocar confusión de tipos durante… CWE-843
Type Confusion
CVE-2025-7424 2026-04-15 07:16 2025-07-10 Show GitHub Exploit DB Packet Storm
1372 5.3 MEDIUM
Network
- - The Nexi XPay plugin for WordPress is vulnerable to unauthorized modification of data due to missing authorization checks on the redirect function in all versions up to, and including, 8.3.0. This ma… CWE-862
 Missing Authorization
CVE-2025-15565 2026-04-15 07:16 2026-04-15 Show GitHub Exploit DB Packet Storm
1373 5.6 MEDIUM
Local
- - A flaw was found in rsync. This vulnerability arises from a race condition during rsync's handling of symbolic links. Rsync's default behavior when encountering symbolic links is to skip them. If an … CWE-362
Race Condition
CVE-2024-12747 2026-04-15 07:16 2025-01-15 Show GitHub Exploit DB Packet Storm
1374 5.6 MEDIUM
Local
- - Se encontró un fallo en rsync. Esta vulnerabilidad surge de una condición de ejecución durante la gestión de enlaces simbólicos por parte de rsync. El comportamiento predeterminado de rsync cuando en… CWE-362
Race Condition
CVE-2024-12747 2026-04-15 07:16 2025-01-15 Show GitHub Exploit DB Packet Storm
1375 7.5 HIGH
Network
samba
redhat
archlinux
gentoo
nixos
novell
tritondatacenter
almalinux
rsync
discovery
openshift_container_platform
enterprise_linux
enterprise_linux_eus
enterprise_linux_for_arm_64
enterprise_linux_for_arm_64_eus
enterprise_linux_for_ibm_z_systems<…
A flaw was found in rsync. When using the `--safe-links` option, the rsync client fails to properly verify if a symbolic link destination sent from the server contains another symbolic link within it… CWE-22
Path Traversal
CVE-2024-12088 2026-04-15 07:16 2025-01-15 Show GitHub Exploit DB Packet Storm
1376 7.5 HIGH
Network
samba
redhat
archlinux
gentoo
nixos
novell
tritondatacenter
almalinux
rsync
discovery
openshift_container_platform
enterprise_linux
enterprise_linux_eus
enterprise_linux_for_arm_64
enterprise_linux_for_arm_64_eus
enterprise_linux_for_ibm_z_systems<…
Se encontró un fallo en rsync. Al usar la opción `--safe-links`, rsync no verifica correctamente si un destino de enlace simbólico contiene otro enlace simbólico dentro de él. Esto genera una vulnera… CWE-22
Path Traversal
CVE-2024-12088 2026-04-15 07:16 2025-01-15 Show GitHub Exploit DB Packet Storm
1377 7.5 HIGH
Network
samba
almalinux
archlinux
gentoo
nixos
suse
tritondatacenter
redhat
rsync
almalinux
arch_linux
linux
nixos
suse_linux
smartos
enterprise_linux
enterprise_linux_eus
enterprise_linux_for_arm_64
enterprise_linux_for_arm_64_eus
enterprise…
A path traversal vulnerability exists in rsync. It stems from behavior enabled by the `--inc-recursive` option, a default-enabled option for many client options and can be enabled by the server even … CWE-22
Path Traversal
CVE-2024-12087 2026-04-15 07:16 2025-01-15 Show GitHub Exploit DB Packet Storm
1378 7.5 HIGH
Network
samba
almalinux
archlinux
gentoo
nixos
suse
tritondatacenter
redhat
rsync
almalinux
arch_linux
linux
nixos
suse_linux
smartos
enterprise_linux
enterprise_linux_eus
enterprise_linux_for_arm_64
enterprise_linux_for_arm_64_eus
enterprise…
Existe una vulnerabilidad Path Traversal en rsync. Se origina en un comportamiento habilitado por la opción `--inc-recursive`, una opción habilitada de manera predeterminada para muchas opciones de c… CWE-22
Path Traversal
CVE-2024-12087 2026-04-15 07:16 2025-01-15 Show GitHub Exploit DB Packet Storm
1379 6.8 MEDIUM
Network
samba
redhat
almalinux
archlinux
gentoo
nixos
suse
tritondatacenter
rsync
openshift_container_platform
enterprise_linux
almalinux
arch_linux
linux
nixos
suse_linux
smartos
A flaw was found in rsync. It could allow a server to enumerate the contents of an arbitrary file from the client's machine. This issue occurs when files are being copied from a client to a server. D… CWE-390
 Detection of Error Condition Without Action
CVE-2024-12086 2026-04-15 07:16 2025-01-15 Show GitHub Exploit DB Packet Storm
1380 6.8 MEDIUM
Network
samba
redhat
almalinux
archlinux
gentoo
nixos
suse
tritondatacenter
rsync
openshift_container_platform
enterprise_linux
almalinux
arch_linux
linux
nixos
suse_linux
smartos
Se encontró un fallo en rsync que podría permitir que un servidor enumere el contenido de un archivo arbitrario de la máquina del cliente. Este problema ocurre cuando se copian archivos de un cliente… CWE-390
 Detection of Error Condition Without Action
CVE-2024-12086 2026-04-15 07:16 2025-01-15 Show GitHub Exploit DB Packet Storm