Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
239071 6.8 警告 cyberfolio - Cyberfolio の portfolio/css.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-6265 2012-06-26 16:10 2009-02-24 Show GitHub Exploit DB Packet Storm
239072 7.5 危険 e-topbiz - E-topbiz Slide Popups の admin/admin.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6264 2012-06-26 16:10 2009-02-24 Show GitHub Exploit DB Packet Storm
239073 7.5 危険 e-topbiz - E-topbiz AdManager の view.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6261 2012-06-26 16:10 2009-02-24 Show GitHub Exploit DB Packet Storm
239074 6.8 警告 comdev - Comdev Web Blogger における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6250 2012-06-26 16:10 2009-02-23 Show GitHub Exploit DB Packet Storm
239075 4.3 警告 galatolo - Galatolo WebManager の all.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6248 2012-06-26 16:10 2009-02-23 Show GitHub Exploit DB Packet Storm
239076 6.8 警告 china-on-site - FlexPHPSite の admin/usercheck.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6241 2012-06-26 16:10 2009-02-23 Show GitHub Exploit DB Packet Storm
239077 7.5 危険 Cafuego - SDMS の login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6236 2012-06-26 16:10 2009-02-21 Show GitHub Exploit DB Packet Storm
239078 7.5 危険 fivedollarscripts - Five Dollar Scripts Drinks スクリプトの index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6233 2012-06-26 16:10 2009-02-20 Show GitHub Exploit DB Packet Storm
239079 7.5 危険 dadamailproject
Joomla!
- Joomla! 用の Dada Mail Manager コンポーネントの config.dadamail.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-6221 2012-06-26 16:10 2009-02-20 Show GitHub Exploit DB Packet Storm
239080 4.3 警告 extrakt - Extrakt Framework の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6217 2012-06-26 16:10 2009-02-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 20, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
256641 9.8 CRITICAL
Network
tenda i22_firmware A vulnerability classified as critical was found in Tenda i22 1.0.0.3(4687). This vulnerability affects the function formApPortalAccessCodeAuth of the file /goform/apPortalAccessCodeAuth. The manipul… CWE-787
 Out-of-bounds Write
CVE-2024-7582 2024-08-9 05:55 2024-08-8 Show GitHub Exploit DB Packet Storm
256642 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: cachefiles: add missing lock protection when polling Add missing lock protection in poll routine when iterating xarray, otherwise… CWE-667
 Improper Locking
CVE-2024-42250 2024-08-9 05:55 2024-08-8 Show GitHub Exploit DB Packet Storm
256643 3.3 LOW
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: spi: don't unoptimize message in spi_async() Calling spi_maybe_unoptimize_message() in spi_async() is wrong because the message i… NVD-CWE-noinfo
CVE-2024-42249 2024-08-9 05:55 2024-08-8 Show GitHub Exploit DB Packet Storm
256644 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: tty: serial: ma35d1: Add a NULL check for of_node The pdev->dev.of_node can be NULL if the "serial" node is absent. Add a NULL ch… CWE-476
 NULL Pointer Dereference
CVE-2024-42248 2024-08-9 05:55 2024-08-8 Show GitHub Exploit DB Packet Storm
256645 9.8 CRITICAL
Network
tenda i22_firmware A vulnerability, which was classified as critical, has been found in Tenda i22 1.0.0.3(4687). This issue affects the function formApPortalOneKeyAuth of the file /goform/apPortalOneKeyAuth. The manipu… CWE-787
 Out-of-bounds Write
CVE-2024-7583 2024-08-9 05:54 2024-08-8 Show GitHub Exploit DB Packet Storm
256646 7.5 HIGH
Network
djangoproject django An issue was discovered in Django 5.0 before 5.0.8 and 4.2 before 4.2.15. The floatformat template filter is subject to significant memory consumption when given a string representation of a number i… NVD-CWE-noinfo
CVE-2024-41989 2024-08-9 05:35 2024-08-8 Show GitHub Exploit DB Packet Storm
256647 - - - Incorrect garbage collection interaction could have led to a use-after-free. This vulnerability affects Firefox < 129. - CVE-2024-7530 2024-08-9 03:35 2024-08-6 Show GitHub Exploit DB Packet Storm
256648 - - - A vulnerability was discovered in the firmware builds up to 10.10.2.2 in Poly Clariti Manager devices. The firmware contained multiple XSS vulnerabilities in the version of JavaScript used. - CVE-2024-41910 2024-08-9 03:15 2024-08-6 Show GitHub Exploit DB Packet Storm
256649 - - - A SQL injection vulnerability in /smsa/student_login.php in Kashipara Responsive School Management System v1.0 allows an attacker to execute arbitrary SQL commands via the "username" parameter. - CVE-2024-41238 2024-08-9 02:35 2024-08-9 Show GitHub Exploit DB Packet Storm
256650 - - - Rejected reason: ** REJECT ** DO NOT USE THIS CANDIDATE NUMBER. Reason: This candidate was issued in error. Notes: All references and descriptions in this candidate have been removed to prevent accid… - CVE-2024-7123 2024-08-9 02:15 2024-08-9 Show GitHub Exploit DB Packet Storm