Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230061 6.9 警告 ヒューレット・パッカード - Linux の HP Insight Control における権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2010-1031 2012-09-25 17:38 2010-03-29 Show GitHub Exploit DB Packet Storm
230062 7.5 危険 mathon nicolas - TYPO3 用の CleanDB - DBAL エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1026 2012-09-25 17:38 2010-03-19 Show GitHub Exploit DB Packet Storm
230063 7.5 危険 marcus krause - TYPO3 用の t3sec_saltedpw エクステンションにおける認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2010-1022 2012-09-25 17:38 2010-03-19 Show GitHub Exploit DB Packet Storm
230064 4.3 警告 Mads Brunn - TYPO3 用の t3quixplorer エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1021 2012-09-25 17:38 2010-03-19 Show GitHub Exploit DB Packet Storm
230065 7.5 危険 jochen rau - TYPO3 用の sk_bookreview 拡張における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1018 2012-09-25 17:38 2010-03-19 Show GitHub Exploit DB Packet Storm
230066 7.5 危険 laurent foulloy - TYPO3 の sav_filter_months エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1017 2012-09-25 17:38 2010-03-19 Show GitHub Exploit DB Packet Storm
230067 7.5 危険 laurent foulloy - TYPO3 の sav_filter_selectors エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1016 2012-09-25 17:38 2010-03-19 Show GitHub Exploit DB Packet Storm
230068 7.5 危険 laurent foulloy - TYPO3 の sav_filter_abc エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1015 2012-09-25 17:38 2010-03-19 Show GitHub Exploit DB Packet Storm
230069 7.5 危険 mathias schreiber - TYPO3 用の CleanDB エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1012 2012-09-25 17:38 2010-03-19 Show GitHub Exploit DB Packet Storm
230070 7.5 危険 matthias kall - MK Wastebasket エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1010 2012-09-25 17:38 2010-03-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 18, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
284911 - roundcube webmail html2text.php in Chuggnutt HTML to Text Converter, as used in PHPMailer before 5.2.10, RoundCube Webmail (roundcubemail) 0.2-1.alpha and 0.2-3.beta, Mahara, and AtMail Open 1.03, allows remote attack… CWE-94
Code Injection
CVE-2008-5619 2018-10-12 05:56 2008-12-17 Show GitHub Exploit DB Packet Storm
284912 - php php PHP 5 before 5.2.7 does not properly initialize the page_uid and page_gid global variables for use by the SAPI php_getuid function, which allows context-dependent attackers to bypass safe_mode restri… CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-5624 2018-10-12 05:56 2008-12-18 Show GitHub Exploit DB Packet Storm
284913 - php php PHP 5 before 5.2.7 does not enforce the error_log safe_mode restrictions when safe_mode is enabled through a php_admin_flag setting in httpd.conf, which allows context-dependent attackers to write to… CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-5625 2018-10-12 05:56 2008-12-18 Show GitHub Exploit DB Packet Storm
284914 - php php Directory traversal vulnerability in the ZipArchive::extractTo function in PHP 5.2.6 and earlier allows context-dependent attackers to write arbitrary files via a ZIP file with a file whose name cont… CWE-22
Path Traversal
CVE-2008-5658 2018-10-12 05:56 2008-12-18 Show GitHub Exploit DB Packet Storm
284915 - gnome vinagre Format string vulnerability in the vinagre_utils_show_error function (src/vinagre-utils.c) in Vinagre 0.5.x before 0.5.2 and 2.x before 2.24.2 might allow remote attackers to execute arbitrary code v… CWE-134
Use of Externally-Controlled Format String
CVE-2008-5660 2018-10-12 05:56 2008-12-18 Show GitHub Exploit DB Packet Storm
284916 - textpattern textpattern Multiple cross-site scripting (XSS) vulnerabilities in Textpattern (aka Txp CMS) 4.0.5 allow remote attackers to inject arbitrary web script or HTML via (1) the PATH_INFO to setup/index.php or (2) th… CWE-79
Cross-site Scripting
CVE-2008-5668 2018-10-12 05:56 2008-12-19 Show GitHub Exploit DB Packet Storm
284917 - textpattern textpattern index.php in the comments preview section in Textpattern (aka Txp CMS) 4.0.5 allows remote attackers to cause a denial of service via a long message parameter. CWE-20
 Improper Input Validation 
CVE-2008-5669 2018-10-12 05:56 2008-12-19 Show GitHub Exploit DB Packet Storm
284918 - textpattern textpattern Textpattern (aka Txp CMS) 4.0.5 does not ask for the old password during a password reset, which makes it easier for remote attackers to change a password after hijacking a session. CWE-255
Credentials Management
CVE-2008-5670 2018-10-12 05:56 2008-12-19 Show GitHub Exploit DB Packet Storm
284919 - joomla joomla PHP remote file inclusion vulnerability in index.php in Joomla! 1.0.11 through 1.0.14, when RG_EMULATION is enabled in configuration.php, allows remote attackers to execute arbitrary PHP code via a U… CWE-94
Code Injection
CVE-2008-5671 2018-10-12 05:56 2008-12-19 Show GitHub Exploit DB Packet Storm
284920 - darkwet webcam_xp Multiple array index errors in the HTTP server in Darkwet Network webcamXP 3.72.440.0 and earlier and beta 4.05.280 and earlier allow remote attackers to cause a denial of service (device crash) and … CWE-20
 Improper Input Validation 
CVE-2008-5674 2018-10-12 05:56 2008-12-19 Show GitHub Exploit DB Packet Storm