Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230071 7.5 危険 Joachim Ruhs - TYPO3 の Educator 拡張における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1009 2012-09-25 17:38 2010-03-19 Show GitHub Exploit DB Packet Storm
230072 4.3 警告 mischa heimann - TYPO3 用の YATSE エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1005 2012-09-25 17:38 2010-03-19 Show GitHub Exploit DB Packet Storm
230073 7.5 危険 mischa heimann - TYPO3 用の YATSE エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1004 2012-09-25 17:38 2010-03-19 Show GitHub Exploit DB Packet Storm
230074 5.8 警告 KDE project - KDE SC の KGet におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1000 2012-09-25 17:38 2010-05-13 Show GitHub Exploit DB Packet Storm
230075 4.3 警告 Joomla Mo - Joomla! 用の CARTwebERP コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0982 2012-09-25 17:38 2010-03-16 Show GitHub Exploit DB Packet Storm
230076 7.5 危険 mitchell sleeper - L4D Stats の player.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0980 2012-09-25 17:38 2010-03-16 Show GitHub Exploit DB Packet Storm
230077 4.3 警告 obsession-design - ODIG の display.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0979 2012-09-25 17:38 2010-03-16 Show GitHub Exploit DB Packet Storm
230078 5 警告 KMSoft - KMSoft Guestbook におけるデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0978 2012-09-25 17:38 2010-03-16 Show GitHub Exploit DB Packet Storm
230079 7.5 危険 jorik berkepas - PhpMyLogon の phpmylogon.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0970 2012-09-25 17:38 2010-03-16 Show GitHub Exploit DB Packet Storm
230080 5 警告 Stichting NLnet Labs - Unbound におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-0969 2012-09-25 17:38 2010-03-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
285481 - apple iphone
ipod_touch
safari
Off-by-one error in the _web_drawInRect:withFont:ellipsis:alignment:measureOnly function in WebKit in Safari in Apple iPhone 1.1.4 and 2.0 and iPod touch 1.1.4 and 2.0 allows remote attackers to caus… CWE-189
Numeric Errors
CVE-2008-3950 2018-10-12 05:50 2008-09-17 Show GitHub Exploit DB Packet Storm
285482 - oracle database_10g Unspecified vulnerability in the Oracle Spatial component in Oracle Database 10.1.0.5 and 10.2.0.2 allows remote authenticated users to affect confidentiality and integrity via unknown vectors. NOTE… NVD-CWE-noinfo
CVE-2008-3979 2018-10-12 05:50 2009-01-14 Show GitHub Exploit DB Packet Storm
285483 - jdedwards
oracle
enterpriseone
jd_edwards_enterpriseone
peoplesoft_enterprise
peoplesoft_peopletools
Unspecified vulnerability in the PeopleTools component in Oracle PeopleSoft Enterprise and JD Edwards EnterpriseOne 8.48.18 and 8.49.14 allows remote attackers to affect confidentiality and integrity… NVD-CWE-noinfo
CVE-2008-4000 2018-10-12 05:50 2008-10-15 Show GitHub Exploit DB Packet Storm
285484 - softalk_mail_server softalk_mail_server The IMAP server in Softalk Mail Server (formerly WorkgroupMail) 8.5.1.431 allows remote authenticated users to cause a denial of service (resource consumption and daemon crash) via a long IMAP APPEND… CWE-20
 Improper Input Validation 
CVE-2008-4041 2018-10-12 05:50 2008-09-12 Show GitHub Exploit DB Packet Storm
285485 - phsdev phsblog Multiple SQL injection vulnerabilities in index.php in phsBlog 0.2 allow remote attackers to execute arbitrary SQL commands via (1) the sid parameter in a pickup action or (2) the sql_cid parameter, … CWE-89
SQL Injection
CVE-2008-4072 2018-10-12 05:50 2008-09-16 Show GitHub Exploit DB Packet Storm
285486 - vim vim Vim 3.0 through 7.x before 7.2.010 does not properly escape characters, which allows user-assisted attackers to (1) execute arbitrary shell commands by entering a K keystroke on a line that contains … CWE-20
 Improper Input Validation 
CVE-2008-4101 2018-10-12 05:50 2008-09-19 Show GitHub Exploit DB Packet Storm
285487 - vim vim Must have a valid e-mail address to access the patch on the "google groups" link. CWE-20
 Improper Input Validation 
CVE-2008-4101 2018-10-12 05:50 2008-09-19 Show GitHub Exploit DB Packet Storm
285488 - joomla joomla Joomla! 1.5 before 1.5.7 initializes PHP's PRNG with a weak seed, which makes it easier for attackers to guess the pseudo-random values produced by PHP's mt_rand function, as demonstrated by guessing… CWE-189
Numeric Errors
CVE-2008-4102 2018-10-12 05:50 2008-09-19 Show GitHub Exploit DB Packet Storm
285489 - wordpress wordpress WordPress before 2.6.2 does not properly handle MySQL warnings about insertion of username strings that exceed the maximum column width of the user_login column, and does not properly handle space ch… CWE-20
 Improper Input Validation 
CVE-2008-4106 2018-10-12 05:50 2008-09-19 Show GitHub Exploit DB Packet Storm
285490 - microsoft sql_server Buffer overflow in the SQLVDIRLib.SQLVDirControl ActiveX control in Tools\Binn\sqlvdir.dll in Microsoft SQL Server 2000 (aka SQL Server 8.0) allows remote attackers to cause a denial of service (brow… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2008-4110 2018-10-12 05:50 2008-09-17 Show GitHub Exploit DB Packet Storm