Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
238901 7.8 危険 ea - Crysis における重要なプレイヤー情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2008-6737 2012-06-26 16:10 2009-04-21 Show GitHub Exploit DB Packet Storm
238902 6.4 警告 circulargenius - Flat Calendar におけるイベントを削除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6736 2012-06-26 16:10 2009-04-21 Show GitHub Exploit DB Packet Storm
238903 9.3 危険 china-on-site - FlexPHPLink Pro の submitlink.php における実行可能な拡張子を含むファイルをアップロードされる脆弱性 CWE-20
不適切な入力確認
CVE-2008-6731 2012-06-26 16:10 2009-04-20 Show GitHub Exploit DB Packet Storm
238904 6.8 警告 china-on-site - FlexPHPLink Pro の admin/usercheck.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6730 2012-06-26 16:10 2009-04-20 Show GitHub Exploit DB Packet Storm
238905 6 警告 CMScout - CMScout におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-6726 2012-06-26 16:10 2009-04-17 Show GitHub Exploit DB Packet Storm
238906 6 警告 CMScout - CMScout における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6725 2012-06-26 16:10 2009-04-17 Show GitHub Exploit DB Packet Storm
238907 7.5 危険 aj square - AJ Square AJ Article の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6721 2012-06-26 16:10 2009-04-14 Show GitHub Exploit DB Packet Storm
238908 7.5 危険 DeltaScripts - DeltaScripts PHP Links の admin/adm_login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6720 2012-06-26 16:10 2009-04-13 Show GitHub Exploit DB Packet Storm
238909 5 警告 ea - Crysis の HTTP/XML-RPC サービスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2008-6712 2012-06-26 16:10 2009-04-10 Show GitHub Exploit DB Packet Storm
238910 4.3 警告 DNN - DotNetNuke のエラーハンドリングページにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6733 2012-06-26 16:10 2008-06-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
256161 - - - The WP Table Builder WordPress plugin through 1.5.0 does not sanitise and escape some of its Table data, which could allow high privilege users such as admin to perform Stored Cross-Site Scripting a… - CVE-2024-3282 2024-08-24 01:18 2024-08-23 Show GitHub Exploit DB Packet Storm
256162 - - - A Stored Cross Site Scripting (XSS) vulnerability was found in "/history.php" in Kashipara Bus Ticket Reservation System v1.0, which allows remote attackers to execute arbitrary code via the Name, Ph… - CVE-2024-42762 2024-08-24 01:18 2024-08-23 Show GitHub Exploit DB Packet Storm
256163 - - - A Stored Cross Site Scripting (XSS) vulnerability was found in "/admin_schedule.php" in Kashipara Bus Ticket Reservation System v1.0, which allows remote attackers to execute arbitrary code via sched… - CVE-2024-42761 2024-08-24 01:18 2024-08-23 Show GitHub Exploit DB Packet Storm
256164 - - - An issue was discovered in llama_index before 0.10.38. download/integration.py includes an exec call for import {cls_name}. - CVE-2024-45201 2024-08-24 01:18 2024-08-23 Show GitHub Exploit DB Packet Storm
256165 - - - NGINX Agent's "config_dirs" restriction feature allows a highly privileged attacker to gain the ability to write/overwrite files outside of the designated secure directory. - CVE-2024-7634 2024-08-24 01:18 2024-08-23 Show GitHub Exploit DB Packet Storm
256166 - - - Kashipara Hotel Management System v1.0 is vulnerable to Unrestricted File Upload RCE via /admin/add_room_controller.php. - CVE-2024-42767 2024-08-24 01:18 2024-08-23 Show GitHub Exploit DB Packet Storm
256167 - - - Kashipara Hotel Management System v1.0 is vulnerable to Incorrect Access Control via /admin/users.php. - CVE-2024-42776 2024-08-24 01:18 2024-08-23 Show GitHub Exploit DB Packet Storm
256168 - - - An Incorrect Access Control vulnerability was found in /admin/add_room_controller.php in Kashipara Hotel Management System v1.0, which allows an unauthenticated attacker to add the valid hotel room e… - CVE-2024-42775 2024-08-24 01:18 2024-08-23 Show GitHub Exploit DB Packet Storm
256169 - - - An Incorrect Access Control vulnerability was found in /admin/delete_room.php in Kashipara Hotel Management System v1.0, which allows an unauthenticated attacker to delete valid hotel room entries in… - CVE-2024-42774 2024-08-24 01:18 2024-08-23 Show GitHub Exploit DB Packet Storm
256170 - - - An Incorrect Access Control vulnerability was found in /admin/rooms.php in Kashipara Hotel Management System v1.0, which allows an unauthenticated attacker to view valid hotel room entries in adminis… - CVE-2024-42772 2024-08-24 01:18 2024-08-23 Show GitHub Exploit DB Packet Storm