Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
Urgent
Important
Warning
Warning
CVE
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
脅威度ソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 3, 2025, 1:14 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
190961 5 警告 news manager - News Manager の attachments.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-2342 2012-09-25 17:17 2008-05-19 Show GitHub Exploit DB Packet Storm
190962 7.5 危険 news manager - News Manager における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2340 2012-09-25 17:17 2008-05-19 Show GitHub Exploit DB Packet Storm
190963 7.5 危険 interspire - Interspire ActiveKB における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-2338 2012-09-25 17:17 2008-05-19 Show GitHub Exploit DB Packet Storm
190964 7.5 危険 imgallery - IMGallery における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2337 2012-09-25 17:17 2008-05-19 Show GitHub Exploit DB Packet Storm
190965 7.5 危険 mreaves - Pet Grooming Management System における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-2294 2012-09-25 17:17 2008-05-18 Show GitHub Exploit DB Packet Storm
190966 9.3 危険 idautomation - IDAutomation における任意のファイルを上書きされる脆弱性 CWE-20
不適切な入力確認
CVE-2008-2283 2012-09-25 17:17 2008-05-18 Show GitHub Exploit DB Packet Storm
190967 9.3 危険 マイクロソフト - Internet Explorer の Links 機能の Print Table におけるクロスゾーンスクリプティングの脆弱性 CWE-Other
その他
CVE-2008-2281 2012-09-25 17:17 2008-05-18 Show GitHub Exploit DB Packet Storm
190968 6.8 警告 matisbt - Mantis の manage_user_create.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-2276 2012-09-25 17:17 2008-05-16 Show GitHub Exploit DB Packet Storm
190969 7.5 危険 kevin ludlow - AS-GasTracker における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-2269 2012-09-25 17:17 2008-05-16 Show GitHub Exploit DB Packet Storm
190970 4.3 警告 mdsjack - Mjguest の interface/redirect.htm.php におけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2008-2268 2012-09-25 17:17 2008-05-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:Feb. 24, 2025, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1851 - - - Cross-Site Request Forgery (CSRF) vulnerability in FancyWP Starter Templates by FancyWP allows Cross Site Request Forgery. This issue affects Starter Templates by FancyWP: from n/a through 2.0.0. CWE-352
 Origin Validation Error
CVE-2025-25106 2025-02-7 19:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1852 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in coffeestudios Pop Up allows Stored XSS. This issue affects Pop Up: from n/a through 0.1. CWE-79
Cross-site Scripting
CVE-2025-25105 2025-02-7 19:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1853 - - - Cross-Site Request Forgery (CSRF) vulnerability in mraliende URL-Preview-Box allows Cross Site Request Forgery. This issue affects URL-Preview-Box: from n/a through 1.20. CWE-352
 Origin Validation Error
CVE-2025-25104 2025-02-7 19:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1854 - - - Cross-Site Request Forgery (CSRF) vulnerability in bnielsen Indeed API allows Cross Site Request Forgery. This issue affects Indeed API: from n/a through 0.5. CWE-352
 Origin Validation Error
CVE-2025-25103 2025-02-7 19:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1855 - - - Cross-Site Request Forgery (CSRF) vulnerability in MetricThemes Munk Sites allows Cross Site Request Forgery. This issue affects Munk Sites: from n/a through 1.0.7. CWE-352
 Origin Validation Error
CVE-2025-25101 2025-02-7 19:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1856 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Zack Katz Links in Captions allows Stored XSS. This issue affects Links in Captions: from n/a thr… CWE-79
Cross-site Scripting
CVE-2025-25098 2025-02-7 19:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1857 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in kwiliarty External Video For Everybody allows Stored XSS. This issue affects External Video For E… CWE-79
Cross-site Scripting
CVE-2025-25097 2025-02-7 19:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1858 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in titusbicknell RSS in Page allows Stored XSS. This issue affects RSS in Page: from n/a through 2.9… CWE-79
Cross-site Scripting
CVE-2025-25096 2025-02-7 19:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1859 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in reverbnationdev ReverbNation Widgets allows Stored XSS. This issue affects ReverbNation Widgets: … CWE-79
Cross-site Scripting
CVE-2025-25095 2025-02-7 19:15 2025-02-7 Show GitHub Exploit DB Packet Storm
1860 - - - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in Amitythemes.com Breaking News Ticker allows Stored XSS. This issue affects Breaking News Ticker: … CWE-79
Cross-site Scripting
CVE-2025-25094 2025-02-7 19:15 2025-02-7 Show GitHub Exploit DB Packet Storm