Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240021 7.5 危険 classifieds caffe - Classifieds Caffe の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1936 2012-06-26 16:02 2008-04-25 Show GitHub Exploit DB Packet Storm
240022 7.5 危険 crazy goomba - Crazy Goomba の commentaires.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1934 2012-06-26 16:02 2008-04-25 Show GitHub Exploit DB Packet Storm
240023 7.1 危険 Digium - Asterisk の IAX2 チャネルドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-16
環境設定
CVE-2008-1923 2012-06-26 16:02 2008-04-22 Show GitHub Exploit DB Packet Storm
240024 7.5 危険 5th avenue software - 5th Avenue Shopping Cart の store_pages/category_list.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1921 2012-06-26 16:02 2008-04-23 Show GitHub Exploit DB Packet Storm
240025 4.3 警告 amfphp - AMFPHP におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1917 2012-06-26 16:02 2008-04-23 Show GitHub Exploit DB Packet Storm
240026 7.5 危険 devworx - DevWorx BlogWorx の view.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1915 2012-06-26 16:02 2008-04-23 Show GitHub Exploit DB Packet Storm
240027 10 危険 BigAntSoft - BigAnt Messenger の AntServer モジュールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-1914 2012-06-26 16:02 2008-04-22 Show GitHub Exploit DB Packet Storm
240028 9.3 危険 DivX - DivX Player におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-1912 2012-06-26 16:02 2008-04-22 Show GitHub Exploit DB Packet Storm
240029 6.8 警告 1024cms - 1024 CMS の includes/system.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1911 2012-06-26 16:02 2008-04-22 Show GitHub Exploit DB Packet Storm
240030 10 危険 Borland Software Corporation - Borland InterBase のibserver.exe におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-1910 2012-06-26 16:02 2008-04-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
255921 7.8 HIGH
Local
intel nuc_x15_laptop_kit_lapac71h
nuc_x15_laptop_kit_lapac71g
nuc_x15_laptop_kit_lapkc71f
nuc_x15_laptop_kit_lapkc71e
nuc_x15_laptop_kit_lapkc51e
nuc_m15_laptop_kit_lapbc710
nuc_m15_lapto…
Insecure inherited permissions in some Intel(R) HID Event Filter software installers before version 2.2.2.1 may allow an authenticated user to potentially enable escalation of privilege via local acc… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2024-25561 2024-09-13 03:50 2024-08-14 Show GitHub Exploit DB Packet Storm
255922 7.8 HIGH
Local
intel license_manager_for_flexim Uncontrolled search path for some Intel(R) License Manager for FLEXlm product software before version 11.19.5.0 may allow an authenticated user to potentially enable escalation of privilege via local… CWE-427
 Uncontrolled Search Path Element
CVE-2024-24977 2024-09-13 03:45 2024-08-14 Show GitHub Exploit DB Packet Storm
255923 7.8 HIGH
Local
intel flexlm_license_daemons_for_intel_fpga Insecure inherited permissions in some Flexlm License Daemons for Intel(R) FPGA software before version v11.19.5.0 may allow an authenticated user to potentially enable escalation of privilege via lo… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2024-23908 2024-09-13 03:43 2024-08-14 Show GitHub Exploit DB Packet Storm
255924 9.8 CRITICAL
Network
openedx openedx This openedx-translations repository contains translation files from Open edX repositories to be kept in sync with Transifex. Before moving to pulling translations from the openedx-translations repos… CWE-74
Injection
CVE-2024-43782 2024-09-13 03:29 2024-08-24 Show GitHub Exploit DB Packet Storm
255925 7.8 HIGH
Local
steveklabnik request_store RequestStore provides per-request global storage for Rack. The files published as part of request_store 1.3.2 have 0666 permissions, meaning that they are world-writable, which allows local users to … CWE-276
Incorrect Default Permissions 
CVE-2024-43791 2024-09-13 03:26 2024-08-24 Show GitHub Exploit DB Packet Storm
255926 8.8 HIGH
Local
intel ethernet_800_series_controllers_driver Out-of-bounds write in Linux kernel mode driver for some Intel(R) Ethernet Network Controllers and Adapters before version 28.3 may allow an authenticated user to potentially enable escalation of pri… CWE-787
 Out-of-bounds Write
CVE-2024-23497 2024-09-13 03:26 2024-08-14 Show GitHub Exploit DB Packet Storm
255927 6.1 MEDIUM
Network
jeesite jeesite A vulnerability was found in thinkgem JeeSite 5.3. It has been rated as problematic. This issue affects some unknown processing of the file /js/a/login of the component Cookie Handler. The manipulati… CWE-79
Cross-site Scripting
CVE-2024-8112 2024-09-13 03:23 2024-08-24 Show GitHub Exploit DB Packet Storm
255928 5.4 MEDIUM
Network
pretix pretix Stored XSS in organizer and event settings of pretix up to 2024.7.0 allows malicious event organizers to inject HTML tags into e-mail previews on settings page. The default Content Security Policy of… CWE-79
Cross-site Scripting
CVE-2024-8113 2024-09-13 03:21 2024-08-24 Show GitHub Exploit DB Packet Storm
255929 6.5 MEDIUM
Network
gethomepage homepage Homepage is a highly customizable homepage with Docker and service API integrations. The default setup of homepage 0.9.1 is vulnerable to DNS rebinding. Homepage is setup without certificate and auth… CWE-290
 Authentication Bypass by Spoofing
CVE-2024-42364 2024-09-13 03:20 2024-08-24 Show GitHub Exploit DB Packet Storm
255930 - - - In the Linux kernel, the following vulnerability has been resolved: nfs: pass explicit offset/count to trace events nfs_folio_length is unsafe to use without having the folio locked and a check for… - CVE-2024-43826 2024-09-13 03:15 2024-08-17 Show GitHub Exploit DB Packet Storm