Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242471 4.3 警告 John Godley
WordPress.org
- WordPress 用の John Godley Search Unleashed プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0837 2012-09-25 16:59 2008-02-20 Show GitHub Exploit DB Packet Storm
242472 4.3 警告 IBM - i5/OS の Lotus Quickr におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0834 2012-09-25 16:59 2008-02-20 Show GitHub Exploit DB Packet Storm
242473 7.5 危険 Joomla! - Joomla! 用の com_galeria コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0833 2012-09-25 16:59 2008-02-20 Show GitHub Exploit DB Packet Storm
242474 7.5 危険 Mambo Foundation
Joomla!
- Mambo および Joomla! 用の Kemas Antonius com_quran における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0832 2012-09-25 16:59 2008-02-20 Show GitHub Exploit DB Packet Storm
242475 7.5 危険 Mambo Foundation
joomlapixel
- Joomla! および Mambo 用の com_jooget コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0829 2012-09-25 16:59 2008-02-19 Show GitHub Exploit DB Packet Storm
242476 7.5 危険 osi codes inc. - OSI Codes Inc. PHP Live! の admin/traffic/knowledge_searchm.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0821 2012-09-25 16:59 2008-02-19 Show GitHub Exploit DB Packet Storm
242477 7.5 危険 Mambo Foundation
Joomla!
- Joomla! および Mambo 用の com_filebase コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0817 2012-09-25 16:59 2008-02-18 Show GitHub Exploit DB Packet Storm
242478 7.5 危険 Mambo Foundation
Joomla!
- Joomla! および Mambo 用の com_scheduling モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0810 2012-09-25 16:59 2008-02-18 Show GitHub Exploit DB Packet Storm
242479 4.3 警告 ikiwiki - Ikiwiki の htmlscrubber におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0809 2012-09-25 16:59 2008-02-18 Show GitHub Exploit DB Packet Storm
242480 4.3 警告 ikiwiki - Ikiwiki の meta プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0808 2012-09-25 16:59 2008-02-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
359041 - babe_logger babe_logger SQL injection vulnerability in Babe Logger 2 allows remote attackers to execute arbitrary SQL commands via the (1) gal parameter to index.php or (2) id parameter to comments.php. NVD-CWE-Other
CVE-2005-3920 2009-10-9 13:33 2005-11-30 Show GitHub Exploit DB Packet Storm
359042 - socketkb socketkb PHP file include vulnerability in SocketKB 1.1.0 and earlier allows remote attackers to include arbitrary local files via the __f parameter. NVD-CWE-Other
CVE-2005-3936 2009-10-9 13:33 2005-12-1 Show GitHub Exploit DB Packet Storm
359043 - softbiz b2b_trading_marketplace_script SQL injection vulnerability in Softbiz B2B Trading Marketplace Script 1.1 and earler allows remote attackers to execute arbitrary SQL commands via the cid parameter in (1) selloffers.php, (2) buyoffe… NVD-CWE-Other
CVE-2005-3937 2009-10-9 13:33 2005-12-1 Show GitHub Exploit DB Packet Storm
359044 - sun java_plug-in The Java Plug-in 1.4.2_03 and 1.4.2_04 controls, and the 1.4.2_03 and 1.4.2_04 <applet> redirector controls, allow remote attackers to cause a denial of service (Internet Explorer crash) by creating … CWE-16
Configuration
CVE-2005-4845 2009-08-28 13:00 2005-12-31 Show GitHub Exploit DB Packet Storm
359045 - gnu mailman Cross-site scripting vulnerabilities in Mailman before 2.0.11 allow remote attackers to execute script via (1) the admin login page, or (2) the Pipermail index summaries. NVD-CWE-Other
CVE-2002-0388 2009-07-22 06:00 2002-06-18 Show GitHub Exploit DB Packet Storm
359046 - wowbb wowbb_web_forum Multiple SQL injection vulnerabilities in WowBB Forum 1.61 allow remote attackers to execute arbitrary SQL commands via the (1) sort_by or (2) page parameters to view_user.php, or the (3) forum_id pa… NVD-CWE-Other
CVE-2004-2181 2009-06-25 13:25 2004-12-31 Show GitHub Exploit DB Packet Storm
359047 - abe_timmerman zml.cgi Directory traversal vulnerability in zml.cgi allows remote attackers to read arbitrary files via a .. (dot dot) in the file parameter. NVD-CWE-Other
CVE-2001-1209 2009-04-30 13:08 2001-12-31 Show GitHub Exploit DB Packet Storm
359048 - virtual_programming vp-asp SQL injection vulnerability in shopadmin.asp in VP-ASP 4.0 allows remote attackers to execute arbitrary SQL commands and bypass authentication via the (1) username or (2) password fields. NVD-CWE-Other
CVE-2002-1919 2009-04-11 13:14 2002-12-31 Show GitHub Exploit DB Packet Storm
359049 - easyscripts easynews easyNews 1.5 and earlier stores administration passwords in cleartext in settings.php, which allows local users to obtain the passwords and gain access. NVD-CWE-Other
CVE-2001-1527 2009-04-3 13:11 2001-12-31 Show GitHub Exploit DB Packet Storm
359050 - newsscript.co.uk newsscript newsscript.pl for NewsScript allows remote attackers to gain privileges by setting the mode parameter to admin. CWE-264
Permissions, Privileges, and Access Controls
CVE-2005-0735 2009-04-3 13:00 2005-05-2 Show GitHub Exploit DB Packet Storm