Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227981 5 警告 マカフィー - McAfee ePolicy Orchestrator agent の Framework Service コンポーネントにおけるディレクトリトラバーサルの脆弱性 - CVE-2006-3623 2012-12-20 18:02 2006-07-18 Show GitHub Exploit DB Packet Storm
227982 5 警告 dream4 - Koobi Pro CMS の showtopic モジュールにおける重要な情報を取得される脆弱性 - CVE-2006-3622 2012-12-20 18:02 2006-07-18 Show GitHub Exploit DB Packet Storm
227983 7.5 危険 dream4 - Koobi Pro CMS の showtopic モジュール内における SQL インジェクションの脆弱性 - CVE-2006-3621 2012-12-20 18:02 2006-07-18 Show GitHub Exploit DB Packet Storm
227984 2.6 注意 dream4 - Koobi Pro CMS の showtopic モジュール内におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3620 2012-12-20 18:02 2006-07-18 Show GitHub Exploit DB Packet Storm
227985 7.5 危険 pixelated by lev - PBL Guestbook の pblguestbook.php における SQL インジェクションの脆弱性 - CVE-2006-3618 2012-12-20 18:02 2006-07-18 Show GitHub Exploit DB Packet Storm
227986 2.6 注意 Laurent Destailleur - AWStats の awstats.pl におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3681 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
227987 2.6 注意 photocycle - Photocycle の photocycle におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3680 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
227988 7.5 危険 fatwire - FatWire Content Server におけるアクセス制限を回避される脆弱性 - CVE-2006-3679 2012-12-20 18:02 2006-07-21 Show GitHub Exploit DB Packet Storm
227989 5 警告 3com - TOS 上で稼動する TippingPoint IPS におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-3678 2012-12-20 18:02 2006-07-26 Show GitHub Exploit DB Packet Storm
227990 5.1 警告 planet concept - planetGallery の admin/gallery_admin.php における任意の PHP コードを実行される脆弱性 - CVE-2006-3676 2012-12-20 18:02 2006-07-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
248171 - - - Cachi2 is a command-line interface tool that pre-fetches a project's dependencies to aid in making the project's build process network-isolated. Prior to version 0.14.0, secrets may be shown in logs … CWE-497
 Exposure of Sensitive System Information to an Unauthorized Control Sphere
CVE-2024-52582 2024-11-20 01:15 2024-11-20 Show GitHub Exploit DB Packet Storm
248172 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: nilfs2: propagate directory read errors from nilfs_find_entry() Syzbot reported that a task hang occurs in vcs_open() during a fu… CWE-755
 Improper Handling of Exceptional Conditions
CVE-2024-50202 2024-11-20 01:12 2024-11-8 Show GitHub Exploit DB Packet Storm
248173 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: drm/radeon: Fix encoder->possible_clones Include the encoder itself in its possible_clones bitmask. In the past nothing validated… NVD-CWE-noinfo
CVE-2024-50201 2024-11-20 01:08 2024-11-8 Show GitHub Exploit DB Packet Storm
248174 4.8 MEDIUM
Network
open-emr openemr A stored cross-site scripting (XSS) vulnerability exists in openemr/openemr version 7.0.1. An attacker can inject malicious payloads into the 'inputBody' field in the Secure Messaging feature, which … CWE-79
Cross-site Scripting
CVE-2024-0875 2024-11-20 01:03 2024-11-15 Show GitHub Exploit DB Packet Storm
248175 7.5 HIGH
Network
schneider-electric powerlogic_pm5341_firmware
powerlogic_pm5340_firmware
powerlogic_pm5320_firmware
CWE-400: An Uncontrolled Resource Consumption vulnerability exists that could cause the device to become unresponsive resulting in communication loss when a large amount of IGMP packets is present in… CWE-400
 Uncontrolled Resource Consumption
CVE-2024-9409 2024-11-20 00:59 2024-11-13 Show GitHub Exploit DB Packet Storm
248176 4.8 MEDIUM
Network
vektor-inc vk_all_in_one_expansion_unit Cross-site scripting vulnerability exists in VK All in One Expansion Unit versions prior to 9.100.1.0. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of th… CWE-79
Cross-site Scripting
CVE-2024-52268 2024-11-20 00:57 2024-11-13 Show GitHub Exploit DB Packet Storm
248177 4.8 MEDIUM
Network
pimcore pimcore A stored Cross-site Scripting (XSS) vulnerability exists in the Conditions tab of Pricing Rules in pimcore/pimcore versions 10.5.19. The vulnerability is present in the From and To fields of the Date… CWE-79
Cross-site Scripting
CVE-2023-2332 2024-11-20 00:55 2024-11-15 Show GitHub Exploit DB Packet Storm
248178 5.4 MEDIUM
Network
royal-elementor-addons royal_elementor_addons The Royal Elementor Addons and Templates plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's Countdown widget in all versions up to, and including, 1.7.1001 due to insu… CWE-79
Cross-site Scripting
CVE-2024-9668 2024-11-20 00:55 2024-11-13 Show GitHub Exploit DB Packet Storm
248179 5.5 MEDIUM
Local
gpac gpac A use after free vulnerability exists in GPAC version 2.3-DEV-revrelease, specifically in the gf_filterpacket_del function in filter_core/filter.c at line 38. This vulnerability can lead to a double-… CWE-416
 Use After Free
CVE-2023-4679 2024-11-20 00:54 2024-11-15 Show GitHub Exploit DB Packet Storm
248180 5.9 MEDIUM
Network
phpipam phpipam phpIPAM version 1.5.1 contains a vulnerability where an attacker can bypass the IP block mechanism to brute force passwords for users by using the 'X-Forwarded-For' header. The issue lies in the 'get… CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2024-0787 2024-11-20 00:53 2024-11-15 Show GitHub Exploit DB Packet Storm