Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230561 4.3 警告 Liferay - Liferay Portal におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3742 2012-09-25 17:38 2009-11-18 Show GitHub Exploit DB Packet Storm
230562 4.3 警告 IBM - IBM Rational RequisitePro の ReqWeb Help 機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3730 2012-09-25 17:38 2009-10-15 Show GitHub Exploit DB Packet Storm
230563 7.2 危険 Linux - Linux kernel の connector layer における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3725 2012-09-25 17:38 2009-10-2 Show GitHub Exploit DB Packet Storm
230564 9.3 危険 lucvil - LucVil PatPlayer におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3717 2012-09-25 17:38 2009-10-16 Show GitHub Exploit DB Packet Storm
230565 6.5 警告 maniacomputer - MCshoutbox の admin.php における任意のファイルを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3716 2012-09-25 17:38 2009-10-16 Show GitHub Exploit DB Packet Storm
230566 6.8 警告 maniacomputer - MCshoutbox の scr_login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3715 2012-09-25 17:38 2009-10-16 Show GitHub Exploit DB Packet Storm
230567 4.3 警告 maniacomputer - MCshoutbox の admin_login.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3714 2012-09-25 17:38 2009-10-16 Show GitHub Exploit DB Packet Storm
230568 7.5 危険 morcego - MorcegoCMS の fichero.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3713 2012-09-25 17:38 2009-10-16 Show GitHub Exploit DB Packet Storm
230569 10 危険 JasPer Project - httpdx の http.cpp におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3711 2012-09-25 17:38 2009-10-16 Show GitHub Exploit DB Packet Storm
230570 9.3 危険 konae - Konae Technologies Alleycode HTML Editor におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3709 2012-09-25 17:38 2009-10-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
285501 - areca cli Buffer overflow in cli32 in Areca CLI 1.72.250 and earlier might allow local users to gain privileges via a long argument. NOTE: this program is not setuid by default, but there are some usage scena… NVD-CWE-Other
CVE-2007-4027 2018-10-16 06:32 2007-07-27 Show GitHub Exploit DB Packet Storm
285502 - webspell webspell Absolute path traversal vulnerability in index.php in Webspell 4.01.02 allows remote attackers to include and execute arbitrary local files via a full pathname in the site parameter. NOTE: some of t… NVD-CWE-Other
CVE-2007-4028 2018-10-16 06:32 2007-07-27 Show GitHub Exploit DB Packet Storm
285503 - webspell webspell Vendor has supplied a patch for this vulnerability: http://cms.webspell.org/index.php?site=files&cat=10 NVD-CWE-Other
CVE-2007-4028 2018-10-16 06:32 2007-07-27 Show GitHub Exploit DB Packet Storm
285504 - libvorbis libvorbis libvorbis 1.1.2, and possibly other versions before 1.2.0, allows context-dependent attackers to cause a denial of service via (1) an invalid mapping type, which triggers an out-of-bounds read in the… NVD-CWE-Other
CVE-2007-4029 2018-10-16 06:32 2007-07-27 Show GitHub Exploit DB Packet Storm
285505 - libvorbis libvorbis Vendor has issued upgrade for this vulnerability: https://issues.rpath.com/browse/RPL-1590 NVD-CWE-Other
CVE-2007-4029 2018-10-16 06:32 2007-07-27 Show GitHub Exploit DB Packet Storm
285506 - php
t1lib
php
t1lib
Buffer overflow in the intT1_EnvGetCompletePath function in lib/t1lib/t1env.c in t1lib 5.1.1 allows context-dependent attackers to execute arbitrary code via a long FileName parameter. NOTE: this is… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2007-4033 2018-10-16 06:32 2007-07-28 Show GitHub Exploit DB Packet Storm
285507 - sitescape sitescape_forum Multiple cross-site scripting (XSS) vulnerabilities in SiteScape Forum before 7.3 allow remote attackers to inject arbitrary web script or HTML via the user name field in the login procedure, and oth… NVD-CWE-Other
CVE-2007-3807 2018-10-16 06:31 2007-07-17 Show GitHub Exploit DB Packet Storm
285508 - mkportal mkportal Multiple SQL injection vulnerabilities in MKPortal 1.1.1 allow remote attackers to execute arbitrary SQL commands via (1) the idurlo field in the delete_urlo function in (a) index.php in the urlobox … NVD-CWE-Other
CVE-2007-3814 2018-10-16 06:31 2007-07-17 Show GitHub Exploit DB Packet Storm
285509 - opera opera_browser Opera 9.21 allows remote attackers to spoof the data: URI scheme in the address bar via a long URI with trailing whitespace, which prevents the beginning of the URI from being displayed. NVD-CWE-Other
CVE-2007-3819 2018-10-16 06:31 2007-07-17 Show GitHub Exploit DB Packet Storm
285510 - kde konqueror konqueror/konq_combo.cc in Konqueror 3.5.7 allows remote attackers to spoof the data: URI scheme in the address bar via a long URI with trailing whitespace, which prevents the beginning of the URI fr… NVD-CWE-Other
CVE-2007-3820 2018-10-16 06:31 2007-07-17 Show GitHub Exploit DB Packet Storm