Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240221 7.5 危険 Joomla! - Joomla! 用の Car Manager コンポーネントの index.php における SQL インジェクションの脆弱性 - CVE-2007-1704 2012-09-25 16:47 2007-03-26 Show GitHub Exploit DB Packet Storm
240222 7.5 危険 Joomla! - Joomla! 用の RWCards の index.php における SQL インジェクションの脆弱性 - CVE-2007-1703 2012-09-25 16:47 2007-03-26 Show GitHub Exploit DB Packet Storm
240223 6.8 警告 Mambo Foundation - Flatmenu Mambo モジュールにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1702 2012-09-25 16:47 2007-03-26 Show GitHub Exploit DB Packet Storm
240224 7.5 危険 The PHP Group - PHP のセッションエクステンションにおける任意のコードを実行される脆弱性 - CVE-2007-1700 2012-09-25 16:47 2007-03-24 Show GitHub Exploit DB Packet Storm
240225 10 危険 Mambo Foundation
Joomla!
- Mambo および Joomla! 用の SWmenu コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1699 2012-09-25 16:47 2007-03-26 Show GitHub Exploit DB Packet Storm
240226 5 警告 philex - Philex の download.php における重要な情報を取得される脆弱性 - CVE-2007-1698 2012-09-25 16:47 2007-03-26 Show GitHub Exploit DB Packet Storm
240227 10 危険 philex - Philex の header.inc.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1697 2012-09-25 16:47 2007-03-26 Show GitHub Exploit DB Packet Storm
240228 7.5 危険 マイクロソフト - Microsoft Windows 2000 および 2003 Server のデフォルト設定における Web トラフィックを傍受される脆弱性 CWE-16
環境設定
CVE-2007-1692 2012-09-25 16:47 2007-03-26 Show GitHub Exploit DB Packet Storm
240229 10 危険 internet pictures corporation - iPIX-ImageWell-ipix.dll におけるバッファオーバーフローの脆弱性 - CVE-2007-1687 2012-09-25 16:47 2007-04-10 Show GitHub Exploit DB Packet Storm
240230 6.8 警告 Perion Network - ImShExt.dll の DoWebMenuAction 関数におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-1683 2012-09-25 16:47 2007-04-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268341 8.8 HIGH
Network
ibm kenexa_lcms_premier IBM Kenexa LCMS Premier on Cloud is vulnerable to cross-site request forgery which could allow an attacker to execute malicious and unauthorized actions transmitted from a user that the website trust… CWE-352
 Origin Validation Error
CVE-2016-5937 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268342 5.4 MEDIUM
Network
ibm jazz_reporting_service IBM Jazz Reporting Service (JRS) is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality poten… CWE-79
Cross-site Scripting
CVE-2016-5899 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268343 4.3 MEDIUM
Network
ibm jazz_reporting_service IBM Jazz Reporting Service (JRS) could allow a remote attacker to obtain sensitive information, caused by not restricting JSON serialization. By sending a direct request, an attacker could exploit th… CWE-254
 7PK - Security Features
CVE-2016-5898 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268344 5.4 MEDIUM
Network
ibm jazz_reporting_service IBM Jazz Reporting Service (JRS) is vulnerable to HTML injection. A remote attacker could inject malicious HTML code, which when viewed, would be executed in the victim's Web browser within the secur… CWE-79
Cross-site Scripting
CVE-2016-5897 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268345 5.3 MEDIUM
Network
ibm maximo_for_transportation
maximo_for_life_sciences
maximo_for_oil_and_gas
maximo_for_aviation
maximo_asset_management
maximo_for_nuclear_power
IBM Maximo Asset Management could disclose sensitive information from a stack trace after submitting incorrect login onto Cognos browser. CWE-200
Information Exposure
CVE-2016-5896 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268346 6.1 MEDIUM
Network
ibm inotes
domino
IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to cred… CWE-79
Cross-site Scripting
CVE-2016-5884 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268347 6.1 MEDIUM
Network
ibm inotes
domino
IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to cred… CWE-79
Cross-site Scripting
CVE-2016-5882 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268348 5.4 MEDIUM
Network
ibm inotes
domino
IBM iNotes is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to cred… CWE-79
Cross-site Scripting
CVE-2016-5880 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268349 5.9 MEDIUM
Network
openvpn openvpn OpenVPN, when using a 64-bit block cipher, makes it easier for remote attackers to obtain cleartext data via a birthday attack against a long-duration encrypted session, as demonstrated by an HTTP-ov… CWE-310
CWE-200
Cryptographic Issues
Information Exposure
CVE-2016-6329 2024-11-21 11:55 2017-02-1 Show GitHub Exploit DB Packet Storm
268350 6.1 MEDIUM
Network
atlassian jira Cross-site scripting (XSS) vulnerability in includes/decorators/global-translations.jsp in Atlassian JIRA before 7.2.2 allows remote attackers to inject arbitrary web script or HTML via the HTTP Host… CWE-79
Cross-site Scripting
CVE-2016-6285 2024-11-21 11:55 2017-02-1 Show GitHub Exploit DB Packet Storm