Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
239391 6.9 警告 audiolink - audiolink の audiolink における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-4942 2012-06-26 16:03 2008-11-5 Show GitHub Exploit DB Packet Storm
239392 6.9 警告 arb project - arb-common における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-4941 2012-06-26 16:03 2008-11-5 Show GitHub Exploit DB Packet Storm
239393 6.9 警告 aptoncd - aptoncd の xmlfile.py における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-4940 2012-06-26 16:03 2008-11-5 Show GitHub Exploit DB Packet Storm
239394 6.9 警告 apertium - apertium における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-4939 2012-06-26 16:03 2008-11-5 Show GitHub Exploit DB Packet Storm
239395 6.9 警告 aegis - aegis および aegis-Web における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-4938 2012-06-26 16:03 2008-11-5 Show GitHub Exploit DB Packet Storm
239396 6.9 警告 Mgetty project - mgetty の faxspool における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-4936 2012-06-26 16:03 2008-08-26 Show GitHub Exploit DB Packet Storm
239397 6.9 警告 amiga - aview の asciiview における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-4935 2012-06-26 16:03 2008-11-5 Show GitHub Exploit DB Packet Storm
239398 9 危険 comingchina - U-Mail Webmail サーバの webmail/modules/filesystem/edit.php における任意のファイルを上書きされる脆弱性 CWE-20
不適切な入力確認
CVE-2008-4932 2012-06-26 16:03 2008-11-5 Show GitHub Exploit DB Packet Storm
239399 4.3 警告 firmchannel - firmCHANNEL Digital Signage の account モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4931 2012-06-26 16:03 2008-11-5 Show GitHub Exploit DB Packet Storm
239400 9.3 危険 マイクロソフト
djvu
- DjVu_ActiveX_MSOffice.dll の DjVu ActiveX コントロール におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-4922 2012-06-26 16:03 2008-11-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
255411 7.8 HIGH
Local
microsoft edge_chromium Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability CWE-125
Out-of-bounds Read
CVE-2024-38210 2024-09-20 07:15 2024-08-23 Show GitHub Exploit DB Packet Storm
255412 7.8 HIGH
Local
microsoft edge_chromium Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability CWE-843
Type Confusion
CVE-2024-38209 2024-09-20 07:15 2024-08-23 Show GitHub Exploit DB Packet Storm
255413 6.1 MEDIUM
Network
microsoft edge Microsoft Edge for Android Spoofing Vulnerability CWE-79
Cross-site Scripting
CVE-2024-38208 2024-09-20 07:15 2024-08-23 Show GitHub Exploit DB Packet Storm
255414 5.4 MEDIUM
Network
wpbeaveraddons powerpack_lite_for_beaver_builder The Beaver Builder – WordPress Page Builder plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘type’ parameter in all versions up to, and including, 2.8.3.5 due to insufficien… CWE-79
Cross-site Scripting
CVE-2024-7895 2024-09-20 07:13 2024-08-29 Show GitHub Exploit DB Packet Storm
255415 5.4 MEDIUM
Network
funnelkit funnel_builder The FunnelKit Funnel Builder Pro plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'allow_iframe_tag_in_post' function which uses the 'wp_kses_allowed_html' filter to globally… CWE-79
Cross-site Scripting
CVE-2024-1056 2024-09-20 07:06 2024-08-29 Show GitHub Exploit DB Packet Storm
255416 9.8 CRITICAL
Network
geeeeeeeek dingfanzu A vulnerability was found in dingfanzu CMS up to 29d67d9044f6f93378e6eb6ff92272217ff7225c. It has been rated as critical. Affected by this issue is some unknown functionality of the file /ajax/chpwd.… CWE-89
SQL Injection
CVE-2024-8302 2024-09-20 06:55 2024-08-29 Show GitHub Exploit DB Packet Storm
255417 9.8 CRITICAL
Network
stylemixthemes cost_calculator_builder Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in StylemixThemes Cost Calculator Builder allows SQL Injection.This issue affects Cost Calculator Bu… CWE-89
SQL Injection
CVE-2024-43144 2024-09-20 06:47 2024-08-30 Show GitHub Exploit DB Packet Storm
255418 9.8 CRITICAL
Network
templateinvaders ti_woocommerce_wishlist Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in TemplateInvaders TI WooCommerce Wishlist allows SQL Injection.This issue affects TI WooCommerce W… CWE-89
SQL Injection
CVE-2024-43917 2024-09-20 06:46 2024-08-30 Show GitHub Exploit DB Packet Storm
255419 9.8 CRITICAL
Network
nitropack nitropack Improper Control of Generation of Code ('Code Injection') vulnerability in NitroPack Inc. NitroPack allows Code Injection.This issue affects NitroPack: from n/a through 1.16.7. CWE-94
Code Injection
CVE-2024-43922 2024-09-20 06:44 2024-08-30 Show GitHub Exploit DB Packet Storm
255420 8.8 HIGH
Adjacent
dlink covr-x1870_firmware
dir-x4860_firmware
Certain models of D-Link wireless routers contain hidden functionality. By sending specific packets to the web service, the attacker can forcibly enable the telnet service and log in using hard-coded… CWE-912
 Hidden Functionality
CVE-2024-45696 2024-09-20 06:42 2024-09-16 Show GitHub Exploit DB Packet Storm