Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254441 10 危険 アップル
VMware
サン・マイクロシステムズ
- Sun Java SE の Provider クラスにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2009-2722 2010-01-4 14:56 2009-08-10 Show GitHub Exploit DB Packet Storm
254442 10 危険 アップル
VMware
サン・マイクロシステムズ
- Sun Java SE の Provider クラスにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2009-2723 2010-01-4 14:55 2009-08-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306531 5.5 MEDIUM
Local
apple macos The issue was addressed with improved checks. This issue is fixed in macOS Ventura 13.7.1, macOS Sonoma 14.7.1. A malicious application may be able to modify protected parts of the file system. NVD-CWE-noinfo
CVE-2024-44247 2024-10-31 02:49 2024-10-29 Show GitHub Exploit DB Packet Storm
306532 8.8 HIGH
Network
pickplugins post_grid The Post Grid plugin for WordPress is vulnerable to blind SQL Injection via post metadata in versions up to, and including, 2.1.12 due to insufficient escaping on the user supplied parameter and lack… CWE-89
SQL Injection
CVE-2021-4450 2024-10-31 02:47 2024-10-16 Show GitHub Exploit DB Packet Storm
306533 7.2 HIGH
Network
nintechnet ninjafirewall The NinjaFirewall plugin for WordPress is vulnerable to Authenticated PHAR Deserialization in versions up to, and including, 4.3.3. This allows authenticated attackers to perform phar deserialization… CWE-502
 Deserialization of Untrusted Data
CVE-2021-4451 2024-10-31 02:44 2024-10-16 Show GitHub Exploit DB Packet Storm
306534 6.9 MEDIUM
Network
openrefine openrefine OpenRefine is a free, open source tool for working with messy data. Prior to version 3.8.3, the `export-rows` command can be used in such a way that it reflects part of the request verbatim, with a C… CWE-79
Cross-site Scripting
CVE-2024-47880 2024-10-31 02:42 2024-10-25 Show GitHub Exploit DB Packet Storm
306535 - - - File Upload vulnerability in Prison Management System v.1.0 allows a remote attacker to execute arbitrary code via the file upload component. - CVE-2024-48594 2024-10-31 02:35 2024-10-29 Show GitHub Exploit DB Packet Storm
306536 - - - LyLme Spage <=1.6.0 is vulnerable to SQL Injection via /admin/group.php. - CVE-2024-48356 2024-10-31 02:35 2024-10-29 Show GitHub Exploit DB Packet Storm
306537 - - - MRCMS 3.1.2 contains a SQL injection vulnerability via the RID parameter in /admin/article/delete.do. - CVE-2024-48177 2024-10-31 02:35 2024-10-29 Show GitHub Exploit DB Packet Storm
306538 - - - SparkShop <=1.1.7 is vulnerable to server-side request forgery (SSRF). This vulnerability allows attacks to scan ports on the Intranet or local network where the server resides, attack applications r… - CVE-2024-48107 2024-10-31 02:35 2024-10-29 Show GitHub Exploit DB Packet Storm
306539 - - - LyLme Spage 1.2.0 through 1.6.0 is vulnerable to SQL Injection via /admin/apply.php. - CVE-2024-48357 2024-10-31 02:35 2024-10-29 Show GitHub Exploit DB Packet Storm
306540 - - - An issue was discovered in Samsung eMMC with KLMAG2GE4A and KLM8G1WEMB firmware. Code bypass through Electromagnetic Fault Injection allows an attacker to successfully authenticate and write to the R… - CVE-2024-31955 2024-10-31 02:35 2024-10-16 Show GitHub Exploit DB Packet Storm