Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230201 4.3 警告 julian kleinhans - TYPO3 用の KJ: Imagelightbox 拡張におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0327 2012-09-25 17:38 2010-01-15 Show GitHub Exploit DB Packet Storm
230202 7.5 危険 patrick bauerochse - TYPO3 用の Customer Reference List エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0324 2012-09-25 17:38 2010-01-15 Show GitHub Exploit DB Packet Storm
230203 7.5 危険 matthias karr - MK-AnydropdownMenu エクステンションの init 関数における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0322 2012-09-25 17:38 2010-01-15 Show GitHub Exploit DB Packet Storm
230204 4.3 警告 jamit - Jamit Job Board の jobs/index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0321 2012-09-25 17:38 2010-01-15 Show GitHub Exploit DB Packet Storm
230205 7.8 危険 Novell - Novell Netware におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-0317 2012-09-25 17:38 2010-01-15 Show GitHub Exploit DB Packet Storm
230206 5 警告 IBM - Linux 用の IBM TDS におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-0312 2012-09-25 17:38 2010-01-14 Show GitHub Exploit DB Packet Storm
230207 6.9 警告 maildrop - maildrop の main.C における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0301 2012-09-25 17:38 2010-02-4 Show GitHub Exploit DB Packet Storm
230208 5 警告 ircd-ratbox - ircd-ratbox の cache.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2010-0300 2012-09-25 17:38 2010-01-25 Show GitHub Exploit DB Packet Storm
230209 4.6 警告 Novell - openSUSE における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0299 2012-09-25 17:38 2010-02-8 Show GitHub Exploit DB Packet Storm
230210 10 危険 Novell - Novell Access Manager の getEntry メソッドにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0284 2012-09-25 17:38 2010-06-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 19, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
284971 - circulargenius flat_calendar Flat Calendar 1.1 does not properly restrict access to administrative functions, which allows remote attackers to (1) add new events via calAdd.php, as reachable from admin/add.php, or (2) delete eve… CWE-264
Permissions, Privileges, and Access Controls
CVE-2008-6736 2018-10-12 05:57 2009-04-22 Show GitHub Exploit DB Packet Storm
284972 - megacubo megacubo Eval injection vulnerability in Megacubo 5.0.7 allows remote attackers to inject and execute arbitrary PHP code via the play action in a mega:// URI. CWE-94
Code Injection
CVE-2008-6748 2018-10-12 05:57 2009-04-24 Show GitHub Exploit DB Packet Storm
284973 - mephisteus the_personal_sticky_threads The Personal Sticky Threads addon 1.0.3c for vBulletin allows remote authenticated users to read the title, author, and pages of an arbitrary thread by toggling a personal sticky. CWE-200
Information Exposure
CVE-2008-6754 2018-10-12 05:57 2009-04-28 Show GitHub Exploit DB Packet Storm
284974 - viart viart_shop Cross-site scripting (XSS) vulnerability in manuals_search.php in ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to inject arbitrary web script or HTML via the manuals_search parameter. CWE-79
Cross-site Scripting
CVE-2008-6757 2018-10-12 05:57 2009-04-29 Show GitHub Exploit DB Packet Storm
284975 - viart viart_shop Cross-site request forgery (CSRF) vulnerability in cart_save.php in ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to hijack the authentication of arbitrary users for requests that conduc… CWE-352
 Origin Validation Error
CVE-2008-6758 2018-10-12 05:57 2009-04-29 Show GitHub Exploit DB Packet Storm
284976 - viart viart_shop ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to obtain sensitive information via a URL in the POST_DATA parameter to manuals_search.php, which reveals the installation path in an error … CWE-59
Link Following
CVE-2008-6759 2018-10-12 05:57 2009-04-29 Show GitHub Exploit DB Packet Storm
284977 - viart viart_shop ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to obtain sensitive information via an unauthenticated add and save action for a shopping cart in cart_save.php, which reveals the SQL table… CWE-59
Link Following
CVE-2008-6760 2018-10-12 05:57 2009-04-29 Show GitHub Exploit DB Packet Storm
284978 - viart viart_shop ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to access the contents of an arbitrary shopping cart via a modified cart_name parameter. NVD-CWE-noinfo
CVE-2008-6765 2018-10-12 05:57 2009-04-29 Show GitHub Exploit DB Packet Storm
284979 - viart viart_shop cart_save.php in ViArt Shop (aka Shopping Cart) 3.5 allows remote attackers to cause a denial of service (excessive shopping carts) via a flood of requests. NVD-CWE-noinfo
CVE-2008-6766 2018-10-12 05:57 2009-04-29 Show GitHub Exploit DB Packet Storm
284980 - htc touch_cruise
touch_pro
HTC Touch Pro and HTC Touch Cruise vCard allows remote attackers to cause denial of service (CPU consumption, SMS consumption, and connectivity loss) via a flood of vCards to UDP port 9204. NVD-CWE-Other
CVE-2008-6775 2018-10-12 05:57 2009-05-2 Show GitHub Exploit DB Packet Storm