Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228131 6.8 警告 Ubercart - Drupal 用の Ubercart モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-4773 2012-12-20 19:28 2009-11-18 Show GitHub Exploit DB Packet Storm
228132 4.3 警告 Ubercart - Drupal 用の Ubercart モジュールにおける重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2009-4772 2012-12-20 19:28 2009-11-18 Show GitHub Exploit DB Packet Storm
228133 5 警告 Ubercart - Drupal 用の Ubercart モジュールにおける不特定の "複製操作" を誘発される脆弱性 CWE-20
不適切な入力確認
CVE-2009-4771 2012-12-20 19:28 2009-11-18 Show GitHub Exploit DB Packet Storm
228134 9 危険 Codeorigin - Sysax Multi Server におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-4790 2012-12-20 19:28 2010-04-22 Show GitHub Exploit DB Packet Storm
228135 7.2 危険 tukeva - TUKEVA Password Reminder における資格情報を発見される脆弱性 CWE-255
証明書・パスワード管理
CVE-2009-4781 2012-12-20 19:28 2010-04-21 Show GitHub Exploit DB Packet Storm
228136 7.5 危険 robert garrigos - NukeHall における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-4779 2012-12-20 19:28 2010-04-21 Show GitHub Exploit DB Packet Storm
228137 4.3 警告 Plohni - Plohni Shoutbox の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4767 2012-12-20 19:28 2010-04-20 Show GitHub Exploit DB Packet Storm
228138 5 警告 yasirpro - YP Portal MS-Pro Surumu におけるデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4766 2012-12-20 19:28 2010-04-13 Show GitHub Exploit DB Packet Storm
228139 6.8 警告 phpmyvisites - phpMyVisites に使用されている ClickHeat プラグインにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-4763 2012-12-20 19:28 2010-03-30 Show GitHub Exploit DB Packet Storm
228140 5 警告 Winn GuestBook - Winn ASP Guestbook におけるデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4760 2012-12-20 19:28 2010-03-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
274871 - adobe air
air_sdk
air_sdk_\&_compiler
flash_player
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and before 11.2.202.535 on Linux, Adobe AIR before 19.0.0.213, Adobe AIR SDK before… NVD-CWE-Other
CVE-2015-7639 2024-11-21 11:37 2015-10-18 Show GitHub Exploit DB Packet Storm
274872 - adobe flash_player
air
air_sdk
air_sdk_\&_compiler
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and before 11.2.202.535 on Linux, Adobe AIR before 19.0.0.213, Adobe AIR SDK before… NVD-CWE-Other
CVE-2015-7638 2024-11-21 11:37 2015-10-18 Show GitHub Exploit DB Packet Storm
274873 - adobe flash_player
air
air_sdk
air_sdk_\&_compiler
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and before 11.2.202.535 on Linux, Adobe AIR before 19.0.0.213, Adobe AIR SDK before… NVD-CWE-Other
CVE-2015-7637 2024-11-21 11:37 2015-10-18 Show GitHub Exploit DB Packet Storm
274874 - adobe flash_player
air
air_sdk
air_sdk_\&_compiler
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and before 11.2.202.535 on Linux, Adobe AIR before 19.0.0.213, Adobe AIR SDK before… NVD-CWE-Other
CVE-2015-7636 2024-11-21 11:37 2015-10-18 Show GitHub Exploit DB Packet Storm
274875 - adobe air
air_sdk
air_sdk_\&_compiler
flash_player
Use-after-free vulnerability in Adobe Flash Player before 18.0.0.252 and 19.x before 19.0.0.207 on Windows and OS X and before 11.2.202.535 on Linux, Adobe AIR before 19.0.0.213, Adobe AIR SDK before… NVD-CWE-Other
CVE-2015-7635 2024-11-21 11:37 2015-10-18 Show GitHub Exploit DB Packet Storm
274876 - opennms opennms OpenNMS has a default password of rtc for the rtc account, which makes it easier for remote attackers to obtain access by leveraging knowledge of the credentials. CWE-255
Credentials Management
CVE-2015-7856 2024-11-21 11:37 2015-10-17 Show GitHub Exploit DB Packet Storm
274877 - font_project font Absolute path traversal vulnerability in Font.php in the Font plugin before 7.5.1 for WordPress allows remote administrators to read arbitrary files via a full pathname in the url parameter to AjaxPr… CWE-22
Path Traversal
CVE-2015-7683 2024-11-21 11:37 2015-10-17 Show GitHub Exploit DB Packet Storm
274878 - genetechsolutions pie_register Multiple SQL injection vulnerabilities in pie-register/pie-register.php in the Pie Register plugin before 2.0.19 for WordPress allow remote administrators to execute arbitrary SQL commands via the (1… CWE-89
SQL Injection
CVE-2015-7682 2024-11-21 11:37 2015-10-17 Show GitHub Exploit DB Packet Storm
274879 - solarwinds log_and_event_manager The command line management console (CMC) in SolarWinds Log and Event Manager (LEM) before 6.2.0 allows remote attackers to execute arbitrary code via unspecified vectors involving the ping feature. CWE-264
Permissions, Privileges, and Access Controls
CVE-2015-7840 2024-11-21 11:37 2015-10-16 Show GitHub Exploit DB Packet Storm
274880 - solarwinds log_and_event_manager SolarWinds Log and Event Manager (LEM) allows remote attackers to execute arbitrary commands on managed computers via a request to services/messagebroker/nonsecurestreamingamf involving the tracerout… CWE-77
Command Injection
CVE-2015-7839 2024-11-21 11:37 2015-10-16 Show GitHub Exploit DB Packet Storm