Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
239591 7.5 危険 editeurscripts - EsFaq の questions.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3952 2012-06-26 16:02 2008-09-10 Show GitHub Exploit DB Packet Storm
239592 5 警告 アップル - Apple iPhone の _web_drawInRect:withFont:ellipsis:alignment:measureOnly 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2008-3950 2012-06-26 16:02 2008-09-16 Show GitHub Exploit DB Packet Storm
239593 7.5 危険 discountedscripts - ACG-PTP の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3944 2012-06-26 16:02 2008-09-5 Show GitHub Exploit DB Packet Storm
239594 7.5 危険 ezonescripts - eZoneScripts Living Local の listtest.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3943 2012-06-26 16:02 2008-09-5 Show GitHub Exploit DB Packet Storm
239595 4.3 警告 bizdirectory - BizDirectory におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3941 2012-06-26 16:02 2008-09-5 Show GitHub Exploit DB Packet Storm
239596 5 警告 AVTECH - AVTECH PageR Enterprise の Web インターフェースにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-3939 2012-06-26 16:02 2008-09-5 Show GitHub Exploit DB Packet Storm
239597 7.8 危険 DreamBox - Dreambox DM500C の Web インターフェースにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-3936 2012-06-26 16:02 2008-09-5 Show GitHub Exploit DB Packet Storm
239598 9.3 危険 EZB Systems - UltraISO におけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2008-3871 2012-06-26 16:02 2009-04-1 Show GitHub Exploit DB Packet Storm
239599 6.9 警告 Debian - Citadel Server の migrate_aliases.sh における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-3930 2012-06-26 16:02 2008-08-24 Show GitHub Exploit DB Packet Storm
239600 7.2 危険 Ampache.org - Ampache の gather-messages.sh における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-3929 2012-06-26 16:02 2008-09-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
255541 9.6 CRITICAL
Network
joplin_project joplin Joplin is a free, open source note taking and to-do application. Joplin fails to take into account that "<" followed by a non letter character will not be considered html. As such it is possible to d… CWE-79
Cross-site Scripting
CVE-2024-40643 2024-09-18 03:03 2024-09-10 Show GitHub Exploit DB Packet Storm
255542 6.5 MEDIUM
Network
techexcel back_office_software This vulnerability exists in TechExcel Back Office Software versions prior to 1.0.0 due to improper access controls on certain API endpoints. An authenticated remote attacker could exploit this vulne… CWE-863
 Incorrect Authorization
CVE-2024-8601 2024-09-18 02:54 2024-09-9 Show GitHub Exploit DB Packet Storm
255543 7.1 HIGH
Local
microsoft azure_network_watcher_agent Azure Network Watcher VM Agent Elevation of Privilege Vulnerability NVD-CWE-noinfo
CVE-2024-38188 2024-09-18 02:49 2024-09-11 Show GitHub Exploit DB Packet Storm
255544 7.3 HIGH
Local
microsoft azure_network_watcher_agent Azure Network Watcher VM Agent Elevation of Privilege Vulnerability NVD-CWE-noinfo
CVE-2024-43470 2024-09-18 02:35 2024-09-11 Show GitHub Exploit DB Packet Storm
255545 3.1 LOW
Adjacent
rapid7 insight_platform Rapid7 Insight Platform versions between November 2019 and August 14, 2024 suffer from missing authorization issues whereby an attacker can intercept local requests to set the name and description of… CWE-862
 Missing Authorization
CVE-2024-8042 2024-09-18 02:25 2024-09-10 Show GitHub Exploit DB Packet Storm
255546 7.5 HIGH
Adjacent
microsoft windows_10_1507
windows_server_2019
windows_server_2022
windows_server_2022_23h2
windows_11_24h2
windows_10_1607
windows_server_2016
windows_10_22h2
windows_11_23h2
windows…
Windows Network Address Translation (NAT) Remote Code Execution Vulnerability NVD-CWE-noinfo
CVE-2024-38119 2024-09-18 02:23 2024-09-11 Show GitHub Exploit DB Packet Storm
255547 9.9 CRITICAL
Network
microsoft azure_web_apps An authenticated attacker can exploit an improper authorization vulnerability in Azure Web Apps to elevate privileges over a network. NVD-CWE-noinfo
CVE-2024-38194 2024-09-18 02:02 2024-09-11 Show GitHub Exploit DB Packet Storm
255548 9.0 CRITICAL
Network
microsoft azure_stack_hub Azure Stack Hub Elevation of Privilege Vulnerability NVD-CWE-noinfo
CVE-2024-38216 2024-09-18 02:00 2024-09-11 Show GitHub Exploit DB Packet Storm
255549 7.5 HIGH
Network
dlink di-8100_firmware D-Link DI-8100 v16.07.26A1 has a stack overflow vulnerability in the dbsrv_asp function. CWE-787
 Out-of-bounds Write
CVE-2024-44375 2024-09-18 02:00 2024-09-9 Show GitHub Exploit DB Packet Storm
255550 9.0 CRITICAL
Network
microsoft azure_stack_hub Azure Stack Hub Elevation of Privilege Vulnerability NVD-CWE-noinfo
CVE-2024-38220 2024-09-18 01:59 2024-09-11 Show GitHub Exploit DB Packet Storm