Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240781 7.5 危険 kai content management system - K-CMS の index.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2106 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
240782 7.5 危険 monkey cms - Monkey CMS の admin/index.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2105 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
240783 6.8 警告 my little homepage - my little weblog の weblog.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2102 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
240784 6.8 警告 openconcept - OpenConcept Back-End CMS の htdocs/php.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2099 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
240785 7.5 危険 hinton design - Hinton Design における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2096 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
240786 7.5 危険 myspeach - MySpeach の chat.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2095 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
240787 7.5 危険 limesoft - LS Simple Guestbook の index.php における任意の PHP コードを挿入される脆弱性 - CVE-2007-2093 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
240788 7.5 危険 limesoft - LS Simple Guestbook の index.php における任意の PHP コードを挿入される脆弱性 - CVE-2007-2092 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
240789 6.8 警告 jx development - Mambo および Joomla! における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2089 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
240790 6.8 警告 oe2edit - oe2edit CMS の oe2edit.cgi におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2085 2012-09-25 16:47 2007-04-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
265951 6.5 MEDIUM
Network
mediawiki
debian
mediawiki
debian_linux
Mediawiki before 1.28.1 / 1.27.2 / 1.23.16 contains a flaw, allowing a sysops to undelete pages, although the page is protected against it. CWE-276
Incorrect Default Permissions 
CVE-2017-0369 2024-11-21 12:02 2018-04-14 Show GitHub Exploit DB Packet Storm
265952 5.3 MEDIUM
Network
mediawiki
debian
mediawiki
debian_linux
Mediawiki before 1.28.1 / 1.27.2 / 1.23.16 contains a flaw making rawHTML mode apply to system messages. CWE-20
 Improper Input Validation 
CVE-2017-0368 2024-11-21 12:02 2018-04-14 Show GitHub Exploit DB Packet Storm
265953 8.8 HIGH
Network
mediawiki
debian
mediawiki
debian_linux
Mediawiki before 1.28.1 / 1.27.2 contains an unsafe use of temporary directory, where having LocalisationCache directory default to system tmp directory is insecure. CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2017-0367 2024-11-21 12:02 2018-04-14 Show GitHub Exploit DB Packet Storm
265954 5.4 MEDIUM
Network
mediawiki
debian
mediawiki
debian_linux
Mediawiki before 1.28.1 / 1.27.2 / 1.23.16 contains a flaw allowing to evade SVG filter using default attribute values in DTD declaration. CWE-20
 Improper Input Validation 
CVE-2017-0366 2024-11-21 12:02 2018-04-14 Show GitHub Exploit DB Packet Storm
265955 4.7 MEDIUM
Network
mediawiki
debian
mediawiki
debian_linux
Mediawiki before 1.28.1 / 1.27.2 / 1.23.16 contains a XSS vulnerability in SearchHighlighter::highlightText() with non-default configurations. CWE-79
Cross-site Scripting
CVE-2017-0365 2024-11-21 12:02 2018-04-14 Show GitHub Exploit DB Packet Storm
265956 6.1 MEDIUM
Network
mediawiki
debian
mediawiki
debian_linux
Mediawiki before 1.28.1 / 1.27.2 / 1.23.16 contains a flaw where Special:Search allows redirects to any interwiki link. CWE-601
Open Redirect
CVE-2017-0364 2024-11-21 12:02 2018-04-14 Show GitHub Exploit DB Packet Storm
265957 6.1 MEDIUM
Network
mediawiki
debian
mediawiki
debian_linux
Mediawiki before 1.28.1 / 1.27.2 / 1.23.16 has a flaw where Special:UserLogin?returnto=interwiki:foo will redirect to external sites. CWE-601
Open Redirect
CVE-2017-0363 2024-11-21 12:02 2018-04-14 Show GitHub Exploit DB Packet Storm
265958 8.8 HIGH
Network
mediawiki
debian
mediawiki
debian_linux
Mediawiki before 1.28.1 / 1.27.2 / 1.23.16 contains a flaw where the "Mark all pages visited" on the watchlist does not require a CSRF token. CWE-352
 Origin Validation Error
CVE-2017-0362 2024-11-21 12:02 2018-04-14 Show GitHub Exploit DB Packet Storm
265959 7.8 HIGH
Local
mediawiki
debian
mediawiki
debian_linux
Mediawiki before 1.28.1 / 1.27.2 / 1.23.16 contains an information disclosure flaw, where the api.log might contain passwords in plaintext. CWE-200
Information Exposure
CVE-2017-0361 2024-11-21 12:02 2018-04-14 Show GitHub Exploit DB Packet Storm
265960 9.8 CRITICAL
Network
reproducible_builds
debian
diffoscope
debian_linux
diffoscope before 77 writes to arbitrary locations on disk based on the contents of an untrusted archive. NVD-CWE-noinfo
CVE-2017-0359 2024-11-21 12:02 2018-04-14 Show GitHub Exploit DB Packet Storm