Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
239581 9.3 危険 friendly technologies - Friendly Technologies FriendlyPPPoE Client における任意のファイルを読まれる脆弱性 CWE-20
不適切な入力確認
CVE-2008-4050 2012-06-26 16:02 2008-09-11 Show GitHub Exploit DB Packet Storm
239582 6.8 警告 friendly technologies - Friendly Technologies FriendlyPPPoE Client の fwRemoteCfg.dll における任意のプログラムを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-4049 2012-06-26 16:02 2008-09-11 Show GitHub Exploit DB Packet Storm
239583 6.8 警告 friendly technologies - Friendly Technologies FriendlyPPPoE Client の fwRemoteCfg.dll におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-4048 2012-06-26 16:02 2008-09-11 Show GitHub Exploit DB Packet Storm
239584 7.5 危険 elitecms - eliteCMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4046 2012-06-26 16:02 2008-09-11 Show GitHub Exploit DB Packet Storm
239585 4.3 警告 @mail - @Mail におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4045 2012-06-26 16:02 2008-09-11 Show GitHub Exploit DB Packet Storm
239586 7.5 危険 aj square - AJ Square aj-hyip の article/readarticle.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4044 2012-06-26 16:02 2008-09-11 Show GitHub Exploit DB Packet Storm
239587 7.5 危険 aj square - AJ Square AJ HYIP Acme における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4043 2012-06-26 16:02 2008-09-11 Show GitHub Exploit DB Packet Storm
239588 9.3 危険 gmanedit2 - gmanedit の open_man_file 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-3971 2012-06-26 16:02 2008-09-10 Show GitHub Exploit DB Packet Storm
239589 7.5 危険 bitlbee - BitlBee における既存のアカウントを "上書き" される脆弱性 CWE-264
CWE-399
CVE-2008-3969 2012-06-26 16:02 2008-09-10 Show GitHub Exploit DB Packet Storm
239590 7.5 危険 AlstraSoft - AlstraSoft Forum Pay Per Post Exchange の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3954 2012-06-26 16:02 2008-09-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
255541 9.6 CRITICAL
Network
joplin_project joplin Joplin is a free, open source note taking and to-do application. Joplin fails to take into account that "<" followed by a non letter character will not be considered html. As such it is possible to d… CWE-79
Cross-site Scripting
CVE-2024-40643 2024-09-18 03:03 2024-09-10 Show GitHub Exploit DB Packet Storm
255542 6.5 MEDIUM
Network
techexcel back_office_software This vulnerability exists in TechExcel Back Office Software versions prior to 1.0.0 due to improper access controls on certain API endpoints. An authenticated remote attacker could exploit this vulne… CWE-863
 Incorrect Authorization
CVE-2024-8601 2024-09-18 02:54 2024-09-9 Show GitHub Exploit DB Packet Storm
255543 7.1 HIGH
Local
microsoft azure_network_watcher_agent Azure Network Watcher VM Agent Elevation of Privilege Vulnerability NVD-CWE-noinfo
CVE-2024-38188 2024-09-18 02:49 2024-09-11 Show GitHub Exploit DB Packet Storm
255544 7.3 HIGH
Local
microsoft azure_network_watcher_agent Azure Network Watcher VM Agent Elevation of Privilege Vulnerability NVD-CWE-noinfo
CVE-2024-43470 2024-09-18 02:35 2024-09-11 Show GitHub Exploit DB Packet Storm
255545 3.1 LOW
Adjacent
rapid7 insight_platform Rapid7 Insight Platform versions between November 2019 and August 14, 2024 suffer from missing authorization issues whereby an attacker can intercept local requests to set the name and description of… CWE-862
 Missing Authorization
CVE-2024-8042 2024-09-18 02:25 2024-09-10 Show GitHub Exploit DB Packet Storm
255546 7.5 HIGH
Adjacent
microsoft windows_10_1507
windows_server_2019
windows_server_2022
windows_server_2022_23h2
windows_11_24h2
windows_10_1607
windows_server_2016
windows_10_22h2
windows_11_23h2
windows…
Windows Network Address Translation (NAT) Remote Code Execution Vulnerability NVD-CWE-noinfo
CVE-2024-38119 2024-09-18 02:23 2024-09-11 Show GitHub Exploit DB Packet Storm
255547 9.9 CRITICAL
Network
microsoft azure_web_apps An authenticated attacker can exploit an improper authorization vulnerability in Azure Web Apps to elevate privileges over a network. NVD-CWE-noinfo
CVE-2024-38194 2024-09-18 02:02 2024-09-11 Show GitHub Exploit DB Packet Storm
255548 9.0 CRITICAL
Network
microsoft azure_stack_hub Azure Stack Hub Elevation of Privilege Vulnerability NVD-CWE-noinfo
CVE-2024-38216 2024-09-18 02:00 2024-09-11 Show GitHub Exploit DB Packet Storm
255549 7.5 HIGH
Network
dlink di-8100_firmware D-Link DI-8100 v16.07.26A1 has a stack overflow vulnerability in the dbsrv_asp function. CWE-787
 Out-of-bounds Write
CVE-2024-44375 2024-09-18 02:00 2024-09-9 Show GitHub Exploit DB Packet Storm
255550 9.0 CRITICAL
Network
microsoft azure_stack_hub Azure Stack Hub Elevation of Privilege Vulnerability NVD-CWE-noinfo
CVE-2024-38220 2024-09-18 01:59 2024-09-11 Show GitHub Exploit DB Packet Storm