Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241971 7.5 危険 apache stats - Apache Stats における任意の変数を変更される脆弱性 - CVE-2007-0930 2012-06-26 15:46 2007-02-14 Show GitHub Exploit DB Packet Storm
241972 4.3 警告 communityserver.org - Community Server の search/SearchResults.aspx におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0925 2012-06-26 15:46 2007-02-14 Show GitHub Exploit DB Packet Storm
241973 4.3 警告 cPanel - cPanel WHM の scripts/passwdmysql におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0890 2012-06-26 15:46 2007-02-12 Show GitHub Exploit DB Packet Storm
241974 7.8 危険 Gecad Technologies - axigen におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0887 2012-06-26 15:46 2007-02-12 Show GitHub Exploit DB Packet Storm
241975 10 危険 Gecad Technologies - axigen におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0886 2012-06-26 15:46 2007-02-12 Show GitHub Exploit DB Packet Storm
241976 7.8 危険 capital request forms - Capital Request Forms におけるデータベースの資格情報を取得される脆弱性 - CVE-2007-0880 2012-06-26 15:46 2007-02-12 Show GitHub Exploit DB Packet Storm
241977 6.8 警告 allons voter - Allons_voter における認証または特定の管理機能のアクセスを回避される脆弱性 - CVE-2007-0874 2012-06-26 15:46 2007-02-12 Show GitHub Exploit DB Packet Storm
241978 7.5 危険 extremepow - eXtremePow eXtreme File Hosting における任意の PHP コードをアップロードされる脆弱性 - CVE-2007-0871 2012-06-26 15:46 2007-02-12 Show GitHub Exploit DB Packet Storm
241979 7.5 危険 cPanel - cPanel WHM の scripts2/objcache におけるリモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-0854 2012-06-26 15:46 2007-02-8 Show GitHub Exploit DB Packet Storm
241980 7.5 危険 advanced poll - Advanced Poll の admin/index.php における認証を回避される脆弱性 - CVE-2007-0845 2012-06-26 15:46 2007-02-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 19, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
250821 8.8 HIGH
Network
dublue table_of_contents_plus Cross-Site Request Forgery (CSRF) vulnerability in Michael Tran Table of Contents Plus allows Cross Site Request Forgery.This issue affects Table of Contents Plus: from n/a through 2408. CWE-352
 Origin Validation Error
CVE-2024-49250 2024-10-23 03:44 2024-10-20 Show GitHub Exploit DB Packet Storm
250822 8.8 HIGH
Network
wpwebinfotech social_auto_poster Cross-Site Request Forgery (CSRF) vulnerability in WPWeb Social Auto Poster allows Cross Site Request Forgery.This issue affects Social Auto Poster: from n/a through 5.3.15. CWE-352
 Origin Validation Error
CVE-2024-49272 2024-10-23 03:40 2024-10-20 Show GitHub Exploit DB Packet Storm
250823 8.8 HIGH
Network
infomaniak vod_infomaniak Cross-Site Request Forgery (CSRF) vulnerability in Infomaniak Staff VOD Infomaniak allows Cross Site Request Forgery.This issue affects VOD Infomaniak: from n/a through 1.5.7. CWE-352
 Origin Validation Error
CVE-2024-49274 2024-10-23 03:39 2024-10-20 Show GitHub Exploit DB Packet Storm
250824 8.8 HIGH
Network
northernbeacheswebsites ideapush Cross-Site Request Forgery (CSRF) vulnerability in Martin Gibson IdeaPush allows Cross Site Request Forgery.This issue affects IdeaPush: from n/a through 8.69. CWE-352
 Origin Validation Error
CVE-2024-49275 2024-10-23 03:36 2024-10-20 Show GitHub Exploit DB Packet Storm
250825 8.8 HIGH
Network
wp-buy wp_content_copy_protection_\&_no_right_click Cross-Site Request Forgery (CSRF) vulnerability in WP-buy WP Content Copy Protection & No Right Click allows Cross Site Request Forgery.This issue affects WP Content Copy Protection & No Right Click:… CWE-352
 Origin Validation Error
CVE-2024-49306 2024-10-23 03:35 2024-10-20 Show GitHub Exploit DB Packet Storm
250826 8.8 HIGH
Network
boxystudio cooked Cross-Site Request Forgery (CSRF) vulnerability in Gora Tech LLC Cooked Pro allows Cross Site Request Forgery.This issue affects Cooked Pro: from n/a before 1.8.0. CWE-352
 Origin Validation Error
CVE-2024-49290 2024-10-23 03:35 2024-10-20 Show GitHub Exploit DB Packet Storm
250827 5.4 MEDIUM
Network
phpgurukul hospital_management_system PHPGurukul Hospital Management System 4.0 is vulnerable to Cross Site Scripting (XSS) via the patname, pataddress, and medhis parameters in doctor/add-patient.php and doctor/edit-patient.php. CWE-79
Cross-site Scripting
CVE-2024-46237 2024-10-23 03:35 2024-10-9 Show GitHub Exploit DB Packet Storm
250828 8.8 HIGH
Network
noorsplugin wordpress_image_seo Cross-Site Request Forgery (CSRF) vulnerability in Noor Alam WordPress Image SEO allows Cross Site Request Forgery.This issue affects WordPress Image SEO: from n/a through 1.1.4. CWE-352
 Origin Validation Error
CVE-2024-49627 2024-10-23 03:33 2024-10-20 Show GitHub Exploit DB Packet Storm
250829 8.8 HIGH
Network
wpdiscover photo_gallery_builder Subscriber Broken Access Control in Photo Gallery Builder <= 3.0 versions. CWE-862
 Missing Authorization
CVE-2024-49325 2024-10-23 03:33 2024-10-20 Show GitHub Exploit DB Packet Storm
250830 8.8 HIGH
Network
whiletrue most_and_least_read_posts_widget Cross-Site Request Forgery (CSRF) vulnerability in WhileTrue Most And Least Read Posts Widget allows Cross Site Request Forgery.This issue affects Most And Least Read Posts Widget: from n/a through 2… CWE-352
 Origin Validation Error
CVE-2024-49628 2024-10-23 03:31 2024-10-20 Show GitHub Exploit DB Packet Storm