Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228821 5.8 警告 PayPal - PayPal Payments Standard PHP ライブラリにおける SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-5789 2012-11-7 14:44 2012-11-4 Show GitHub Exploit DB Packet Storm
228822 5.8 警告 PayPal - PayPal IPN ユーティリティにおける SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-5788 2012-11-7 14:30 2012-11-4 Show GitHub Exploit DB Packet Storm
228823 5.8 警告 PayPal - PayPal merchant SDK における SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-5787 2012-11-7 14:29 2012-11-4 Show GitHub Exploit DB Packet Storm
228824 5.8 警告 Apache Software Foundation - Apache CXF における SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-5786 2012-11-7 14:28 2012-11-4 Show GitHub Exploit DB Packet Storm
228825 5.8 警告 Apache Software Foundation - Apache Axis2/Java における SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-5785 2012-11-7 14:28 2012-11-4 Show GitHub Exploit DB Packet Storm
228826 5.8 警告 Amazon.com, Inc. - Amazon Flexible Payments Service PHP ライブラリにおける SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-5782 2012-11-7 14:25 2012-11-4 Show GitHub Exploit DB Packet Storm
228827 5.8 警告 Amazon.com, Inc. - Amazon Elastic Load Balancing API Tools における SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-5781 2012-11-7 14:24 2012-11-4 Show GitHub Exploit DB Packet Storm
228828 5.8 警告 Amazon.com, Inc. - Amazon merchant SDK における SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-5780 2012-11-7 14:22 2012-11-4 Show GitHub Exploit DB Packet Storm
228829 5.8 警告 Apache Software Foundation - Apache Libcloud における SSL サーバを偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-3446 2012-11-7 14:21 2012-11-4 Show GitHub Exploit DB Packet Storm
228830 4.3 警告 有限会社ビーグラフ - BeZIP 日本語対応版におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-5171 2012-11-7 14:00 2012-11-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
298811 - typo3 codeon_petition_extension SQL injection vulnerability in the Codeon Petition (cd_petition) extension 0.0.2 and earlier for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. CWE-89
SQL Injection
CVE-2008-3056 2017-08-8 10:31 2008-07-8 Show GitHub Exploit DB Packet Storm
298812 - octeth oempro Octeth Oempro 3.5.5.1, and possibly other versions before 4, does not set the secure flag for the PHPSESSID cookie in an https session, which makes it easier for remote attackers to capture this cook… CWE-310
Cryptographic Issues
CVE-2008-3057 2017-08-8 10:31 2008-12-4 Show GitHub Exploit DB Packet Storm
298813 - octeth oempro Multiple SQL injection vulnerabilities in Octeth Oempro 3.5.5.1, and possibly other versions before 4, allow remote attackers to execute arbitrary SQL commands via the FormValue_Email parameter (aka … CWE-89
SQL Injection
CVE-2008-3058 2017-08-8 10:31 2008-12-4 Show GitHub Exploit DB Packet Storm
298814 - octeth oempro member/settings_account.php in Octeth Oempro 3.5.5.1, and possibly other versions before 4, uses cleartext to transmit a password entered in the FormValue_Password field, which makes it easier for re… CWE-255
Credentials Management
CVE-2008-3059 2017-08-8 10:31 2008-12-4 Show GitHub Exploit DB Packet Storm
298815 - v-webmail v-webmail V-webmail 1.5.0 allows remote attackers to obtain sensitive information via (1) malformed input in the login page (includes/local.hooks.php) and (2) an invalid session ID, which reveals the installat… CWE-200
Information Exposure
CVE-2008-3060 2017-08-8 10:31 2008-10-8 Show GitHub Exploit DB Packet Storm
298816 - v-webmail v-webmail Open redirect vulnerability in redirect.php in V-webmail 1.5.0 allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the to parameter. NVD-CWE-Other
CVE-2008-3061 2017-08-8 10:31 2008-10-8 Show GitHub Exploit DB Packet Storm
298817 - v-webmail v-webmail SQL injection vulnerability in login.php in V-webmail 1.5.0 might allow remote attackers to execute arbitrary SQL commands via the username parameter. CWE-89
SQL Injection
CVE-2008-3063 2017-08-8 10:31 2008-10-8 Show GitHub Exploit DB Packet Storm
298818 - suse opensuse sudo in SUSE openSUSE 10.3 does not clear the stdin buffer when password entry times out, which might allow local users to obtain a password by reading stdin from the parent process after a sudo chil… CWE-255
Credentials Management
CVE-2008-3067 2017-08-8 10:31 2008-07-8 Show GitHub Exploit DB Packet Storm
298819 - vim vim The Netrw plugin 125 in netrw.vim in Vim 7.2a.10 allows user-assisted attackers to execute arbitrary code via shell metacharacters in filenames used by the execute and system functions within the (1)… CWE-78
OS Command 
CVE-2008-3076 2017-08-8 10:31 2009-02-22 Show GitHub Exploit DB Packet Storm
298820 - opera opera_browser Opera before 9.51 does not properly manage memory within functions supporting the CANVAS element, which allows remote attackers to read uninitialized memory contents by using JavaScript to read a can… CWE-200
Information Exposure
CVE-2008-3078 2017-08-8 10:31 2008-07-9 Show GitHub Exploit DB Packet Storm