Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228881 4.3 警告 Joomla! - Joomla! 用 Language Switcher モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4532 2012-11-2 14:01 2012-09-13 Show GitHub Exploit DB Packet Storm
228882 4.3 警告 Joomla! - Joomla! におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4531 2012-11-2 14:00 2012-09-13 Show GitHub Exploit DB Packet Storm
228883 10 危険 General Electric Company - GE Intelligent Platforms Proficy Real-Time Information Portal におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-3026 2012-11-2 13:59 2012-08-14 Show GitHub Exploit DB Packet Storm
228884 10 危険 General Electric Company - GE Intelligent Platforms Proficy Real-Time Information Portal におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-3021 2012-11-2 13:57 2012-08-14 Show GitHub Exploit DB Packet Storm
228885 10 危険 General Electric Company - GE Intelligent Platforms Proficy Real-Time Information Portal におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-3010 2012-11-2 13:57 2012-08-14 Show GitHub Exploit DB Packet Storm
228886 2.1 注意 シトリックス・システムズ - Xen の PV ドメインビルダーにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-4544 2012-11-2 13:52 2012-10-31 Show GitHub Exploit DB Packet Storm
228887 4.3 警告 Pebble - Pebble におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2012-5170 2012-11-2 12:02 2012-11-2 Show GitHub Exploit DB Packet Storm
228888 4.3 警告 Pebble - Pebble における HTTP ヘッダインジェクションの脆弱性 CWE-Other
その他
CVE-2012-4023 2012-11-2 12:02 2012-11-2 Show GitHub Exploit DB Packet Storm
228889 5 警告 Pebble - Pebble において記事が閲覧不能になる脆弱性 CWE-Other
その他
CVE-2012-4022 2012-11-2 12:01 2012-11-2 Show GitHub Exploit DB Packet Storm
228890 6.5 警告 株式会社マインド - MosP勤怠管理システムにおける認証不備の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4021 2012-11-2 12:01 2012-11-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
284861 - f5 firepass_4100 Cross-site scripting (XSS) vulnerability in download_plugin.php3 in F5 Firepass 4100 SSL VPN 5.4 through 5.5.2 and 6.0 through 6.0.1 allows remote attackers to inject arbitrary web script or HTML via… CWE-79
Cross-site Scripting
CVE-2007-5979 2018-10-16 06:48 2007-11-15 Show GitHub Exploit DB Packet Storm
284862 - eggblog eggblog Cross-site scripting (XSS) vulnerability in home/rss.php in eggblog before 3.1.1 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO (PHP_SELF). CWE-79
Cross-site Scripting
CVE-2007-5980 2018-10-16 06:48 2007-11-15 Show GitHub Exploit DB Packet Storm
284863 - justin_hagstrom autoindex_php_script Cross-site scripting (XSS) vulnerability in index.php in Justin Hagstrom AutoIndex PHP Script before 2.2.3 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO (PHP_SELF). CWE-79
Cross-site Scripting
CVE-2007-5983 2018-10-16 06:48 2007-11-15 Show GitHub Exploit DB Packet Storm
284864 - justin_hagstrom autoindex_php_script classes/Url.php in Justin Hagstrom AutoIndex PHP Script before 2.2.4 allows remote attackers to cause a denial of service (CPU and memory consumption) via a %00 sequence in the dir parameter to index… CWE-20
 Improper Input Validation 
CVE-2007-5984 2018-10-16 06:48 2007-11-15 Show GitHub Exploit DB Packet Storm
284865 - skype_technologies skype Unspecified vulnerability in the skype4com URI handler in Skype before 3.6 GOLD allows remote attackers to execute arbitrary code via "short string values" that result in heap corruption. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2007-5989 2018-10-16 06:48 2007-12-14 Show GitHub Exploit DB Packet Storm
284866 - exo exophpdesk Cross-site scripting (XSS) vulnerability in ExoPHPdesk allows remote attackers to inject arbitrary web script or HTML via unspecified vectors in a user profile, possibly the (1) name and (2) website … CWE-79
Cross-site Scripting
CVE-2007-5990 2018-10-16 06:48 2007-11-16 Show GitHub Exploit DB Packet Storm
284867 - exo exophpdesk SQL injection vulnerability in index.php in ExoPHPdesk allows remote attackers to execute arbitrary SQL commands via the user parameter in a profile fn action. CWE-89
SQL Injection
CVE-2007-5991 2018-10-16 06:48 2007-11-16 Show GitHub Exploit DB Packet Storm
284868 - vtls vtls.web.gateway Cross-site scripting (XSS) vulnerability in Visionary Technology in Library Solutions (VTLS) vtls.web.gateway before 48.1.1 allows remote attackers to inject arbitrary web script or HTML via the sear… CWE-79
Cross-site Scripting
CVE-2007-5993 2018-10-16 06:48 2007-11-16 Show GitHub Exploit DB Packet Storm
284869 - kde konqueror KDE Konqueror 3.5.6 and earlier allows remote attackers to cause a denial of service (crash) via large HTTP cookie parameters. CWE-399
 Resource Management Errors
CVE-2007-6000 2018-10-16 06:48 2007-11-16 Show GitHub Exploit DB Packet Storm
284870 - acdsee photo_editor
photo_manager
pro_photo_manager
Integer overflow in the ID_PSP.apl plug-in for ACD ACDSee Photo Manager 9.0 build 108, Pro Photo Manager 8.1 build 99, and Photo Editor 4.0 build 195 allows user-assisted remote attackers to execute … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2007-6007 2018-10-16 06:48 2007-11-16 Show GitHub Exploit DB Packet Storm