Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
311 - - Avation Avation Light Engine Pro Avation Light Engine Proにおける重要な機能に対する認証の欠如の脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2026-1341 2026-02-5 12:32 2026-02-4 Show GitHub Exploit DB Packet Storm
312 7.5 重要
Network
Shenzhen Tenda Technology Co.,Ltd. D151
D301
Shenzhen Tenda Technology Co.,Ltd.のD151等の複数製品における重要な機能に対する認証の欠如に関する脆弱性 CWE-306
重要な機能に対する認証の欠如 解説
CVE-2021-47802 2026-02-4 18:42 2026-01-21 Show GitHub Exploit DB Packet Storm
313 7.5 重要
Network
yodinfo Mini Mouse yodinfoのMini Mouseにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2021-47849 2026-02-4 18:42 2026-01-21 Show GitHub Exploit DB Packet Storm
314 7.5 重要
Network
yodinfo Mini Mouse yodinfoのMini Mouseにおけるパストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2021-47850 2026-02-4 18:42 2026-01-21 Show GitHub Exploit DB Packet Storm
315 9.8 緊急
Network
yodinfo Mini Mouse yodinfoのMini MouseにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2021-47851 2026-02-4 18:42 2026-01-21 Show GitHub Exploit DB Packet Storm
316 7.5 重要
Network
クアルコム MSM8608 ファームウェア
APQ8017 ファームウェア
qcn6224 ファームウェア
Snapdragon 210 Processor Firmware
fastconnect 7800 ファームウェア
snapdragon 425 mobile …
クアルコムのQualcomm 205 Mobile Platform ファームウェア等の複数製品におけるバッファオーバーリードの脆弱性 CWE-126
バッファオーバーリード
CVE-2024-23358 2026-02-4 18:42 2024-09-2 Show GitHub Exploit DB Packet Storm
317 9.8 緊急
Network
Honeywell International Inc. LenelS2 NetBox Honeywell International Inc.のLenelS2 NetBoxにおけるハードコードされたパスワードの使用に関する脆弱性 CWE-259
パスワードがハードコーディングされている
CVE-2024-2420 2026-02-4 18:42 2024-05-30 Show GitHub Exploit DB Packet Storm
318 9.8 緊急
Network
Honeywell International Inc. LenelS2 NetBox Honeywell International Inc.のLenelS2 NetBoxにおけるOS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2024-2421 2026-02-4 18:42 2024-05-30 Show GitHub Exploit DB Packet Storm
319 8.8 重要
Network
Honeywell International Inc. LenelS2 NetBox Honeywell International Inc.のLenelS2 NetBoxにおける引数の挿入または変更に関する脆弱性 CWE-88
引数の挿入または変更
CVE-2024-2422 2026-02-4 18:42 2024-05-30 Show GitHub Exploit DB Packet Storm
320 6.1 警告
Network
Tiptap tiptap/extension-link Tiptapのtiptap/extension-linkにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2025-14284 2026-02-4 18:42 2025-12-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
307841 - groove
hp
persits
virtual_office
loadrunner
xupload
Buffer overflow in the XUpload.ocx ActiveX control in Persits Software XUpload 2.1.0.1, and probably other versions before 3.0, as used by HP Mercury LoadRunner and Groove Virtual Office, allows remo… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2007-6530 2011-03-8 12:03 2007-12-28 Show GitHub Exploit DB Packet Storm
307842 - xfce xfce Stack-based buffer overflow in the Panel (xfce4-panel) component in Xfce before 4.4.2 might allow remote attackers to execute arbitrary code via Launcher tooltips. NOTE: a second buffer overflow (ov… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2007-6531 2011-03-8 12:03 2008-01-10 Show GitHub Exploit DB Packet Storm
307843 - xfce xfce Double free vulnerability in the Widget Library (libxfcegui4) in Xfce before 4.4.2 might allow remote attackers to execute arbitrary code via unknown vectors related to the "cliend id, program name a… NVD-CWE-noinfo
CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2007-6532 2011-03-8 12:03 2008-01-10 Show GitHub Exploit DB Packet Storm
307844 - sun java_system_web_proxy_server
java_system_web_server
Cross-site scripting (XSS) vulnerability in the View Error Log functionality in Sun Java System Web Proxy Server 4.x before 4.0.6 allows remote attackers to inject arbitrary web script or HTML via un… CWE-79
Cross-site Scripting
CVE-2007-6569 2011-03-8 12:03 2007-12-29 Show GitHub Exploit DB Packet Storm
307845 - ibm lotus_notes IBM Lotus Notes 8 for Linux before 8.0.1 uses (1) unspecified weak permissions for the installation kit obtained through a Notes 8 download and (2) 0777 permissions for the installdata file that is c… CWE-264
Permissions, Privileges, and Access Controls
CVE-2007-6594 2011-03-8 12:03 2007-12-29 Show GitHub Exploit DB Packet Storm
307846 - mongrel mongrel Directory traversal vulnerability in DirHandler (lib/mongrel/handlers.rb) in Mongrel 1.0.4 and 1.1.x before 1.1.3 allows remote attackers to read arbitrary files via an HTTP request containing double… CWE-22
Path Traversal
CVE-2007-6612 2011-03-8 12:03 2008-01-4 Show GitHub Exploit DB Packet Storm
307847 - ibm aix Trusted Execution in IBM AIX 6.1 uses an incorrect pathname argument in a call to the trustchk_block_write function, which might allow local users to modify trusted files, related to an error in the … NVD-CWE-Other
CVE-2007-6680 2011-03-8 12:03 2008-01-11 Show GitHub Exploit DB Packet Storm
307848 - ibm lotus_notes Unspecified vulnerability in nlnotes.dll in the client in IBM Lotus Notes 6.5, 7.0.x before 7.0.2 CCH or 7.0.3, and possibly 8.0 allows remote attackers to execute arbitrary code via crafted text in … CWE-94
Code Injection
CVE-2007-6706 2011-03-8 12:03 2008-03-9 Show GitHub Exploit DB Packet Storm
307849 - xunlei web_thunder Heap-based buffer overflow in the PPlayer.XPPlayer.1 ActiveX control in pplayer.dll_1_work in Xunlei Thunder 5.7.4.401 allows remote attackers to execute arbitrary code via a long string in a FlvPlay… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2007-6144 2011-03-8 12:02 2007-11-28 Show GitHub Exploit DB Packet Storm
307850 - hitachi jp1_file_transmission_server Hitachi JP1/File Transmission Server/FTP 01-00 through 08-10-02 on Windows might allow remote attackers to cause a denial of service (service stop) via a "specific file" argument to an FTP command. CWE-20
 Improper Input Validation 
CVE-2007-6146 2011-03-8 12:02 2007-11-28 Show GitHub Exploit DB Packet Storm