Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253791 4.3 警告 Zikula Foundation - Zikula Application Framework の Theme モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-3979 2011-10-11 10:18 2011-09-9 Show GitHub Exploit DB Packet Storm
253792 3.5 注意 LightNEasy - LightNEasy の LightNEasy.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-3978 2011-10-11 10:15 2011-10-4 Show GitHub Exploit DB Packet Storm
253793 7.2 危険 NoMachine - NoMachine NX Node および NX Server の nxconfigure.sh における任意のファイルを読まれる脆弱性 CWE-noinfo
情報不足
CVE-2011-3977 2011-10-11 10:13 2011-08-5 Show GitHub Exploit DB Packet Storm
253794 5 警告 IceWarp, Inc. - IceWarp Mail Server の IceWarp WebMail における設定情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3580 2011-10-11 10:11 2011-09-30 Show GitHub Exploit DB Packet Storm
253795 6.4 警告 IceWarp, Inc. - IceWarp Mail Server の server/webmail.php における任意のファイルを読まれる脆弱性 CWE-399
リソース管理の問題
CVE-2011-3579 2011-10-11 10:10 2011-09-30 Show GitHub Exploit DB Packet Storm
253796 7.5 危険 シマンテック - Symantec IM Manager の管理コンソールにおける任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2011-0554 2011-10-11 10:10 2011-09-29 Show GitHub Exploit DB Packet Storm
253797 7.5 危険 シマンテック - Symantec IM Manager の管理コンソールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-0553 2011-10-11 10:09 2011-09-29 Show GitHub Exploit DB Packet Storm
253798 4.3 警告 シマンテック - Symantec IM Manager の管理コンソールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-0552 2011-10-11 10:09 2011-09-29 Show GitHub Exploit DB Packet Storm
253799 4 警告 株式会社アークウェブ - A-Form におけるアクセス制限不備の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-2676 2011-10-7 12:04 2011-10-7 Show GitHub Exploit DB Packet Storm
253800 5 警告 utage.org - 宴会くんにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2675 2011-10-7 12:03 2011-10-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
318011 8.1 HIGH
Network
fiware keyrock Insufficiently random values for generating password reset token in FIWARE Keyrock <= 8.4 allow attackers to take over the account of any user by predicting the token for the password reset link. CWE-326
Inadequate Encryption Strength
CVE-2024-42163 2024-08-30 00:17 2024-08-12 Show GitHub Exploit DB Packet Storm
318012 9.8 CRITICAL
Network
oretnom23 music_gallery_site A vulnerability classified as critical has been found in SourceCodester Music Gallery Site 1.0. This affects an unknown part of the file /admin/?page=musics/manage_music. The manipulation of the argu… CWE-89
SQL Injection
CVE-2024-8222 2024-08-30 00:13 2024-08-28 Show GitHub Exploit DB Packet Storm
318013 9.8 CRITICAL
Network
oretnom23 music_gallery_site A vulnerability classified as critical was found in SourceCodester Music Gallery Site 1.0. This vulnerability affects unknown code of the file /classes/Master.php?f=delete_category. The manipulation … CWE-89
SQL Injection
CVE-2024-8223 2024-08-30 00:11 2024-08-28 Show GitHub Exploit DB Packet Storm
318014 9.8 CRITICAL
Network
angeljudesuarez tailoring_management_system A vulnerability was found in itsourcecode Tailoring Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file staffedit.php. The … CWE-89
SQL Injection
CVE-2024-8220 2024-08-29 23:49 2024-08-28 Show GitHub Exploit DB Packet Storm
318015 9.0 CRITICAL
Network
microsoft edge_chromium Microsoft Edge (Chromium-based) Remote Code Execution Vulnerability CWE-843
Type Confusion
CVE-2024-38219 2024-08-29 23:45 2024-08-12 Show GitHub Exploit DB Packet Storm
318016 5.4 MEDIUM
Network
ibm aspera_shares IBM Aspera Shares 1.10.0 PL2 does not invalidate session after a password change which could allow an authenticated user to impersonate another user on the system. IBM X-Force ID: 260574. CWE-384
 Session Fixation
CVE-2023-38018 2024-08-29 23:36 2024-08-12 Show GitHub Exploit DB Packet Storm
318017 7.2 HIGH
Network
abinitio authorization_gateway
metadata_hub
An issue discovered in import host feature in Ab Initio Metadata Hub and Authorization Gateway before 4.3.1.1 allows attackers to run arbitrary code via crafted modification of server configuration. CWE-94
Code Injection
CVE-2024-37382 2024-08-29 23:29 2024-08-9 Show GitHub Exploit DB Packet Storm
318018 5.3 MEDIUM
Network
dorsettcontrols infoscan Dorsett Controls InfoScan is vulnerable due to a leak of possible sensitive information through the response headers and the rendered JavaScript prior to user login. NVD-CWE-noinfo
CVE-2024-42493 2024-08-29 23:24 2024-08-9 Show GitHub Exploit DB Packet Storm
318019 7.5 HIGH
Network
dorsettcontrols infoscan Dorsett Controls Central Server update server has potential information leaks with an unprotected file that contains passwords and API keys. NVD-CWE-noinfo
CVE-2024-39287 2024-08-29 23:23 2024-08-9 Show GitHub Exploit DB Packet Storm
318020 3.7 LOW
Network
dorsettcontrols infoscan The InfoScan client download page can be intercepted with a proxy, to expose filenames located on the system, which could lead to additional information exposure. CWE-22
Path Traversal
CVE-2024-42408 2024-08-29 23:22 2024-08-9 Show GitHub Exploit DB Packet Storm