Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 3, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226351 7.5 危険 YourFreeWorld.com - YourFreeWorld Scrolling Text Ads Script の tr1.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4885 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
226352 7.5 危険 YourFreeWorld.com - YourFreeWorld Classifieds Hosting Script の tr.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4884 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
226353 7.5 危険 YourFreeWorld.com - YourFreeWorld Blog Blaster Script の tr.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4883 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
226354 7.5 危険 YourFreeWorld.com - YourFreeWorld Autoresponder Hosting Script の tr.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4882 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
226355 7.5 危険 YourFreeWorld.com - YourFreeWorld Reminder Service Script の tr.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4881 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
226356 10 危険 sepal - Sepal SPBOARD の board.cgi における任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2008-4873 2012-12-20 18:52 2008-10-31 Show GitHub Exploit DB Packet Storm
226357 7.2 危険 valgrind - valgrind における任意のプログラムを実行される脆弱性 CWE-Other
その他
CVE-2008-4865 2012-12-20 18:52 2008-10-31 Show GitHub Exploit DB Packet Storm
226358 6.9 警告 rPath, Inc - rPath 上で稼動している initscripts における任意のファイルを削除される脆弱性 CWE-59
リンク解釈の問題
CVE-2008-4832 2012-12-20 18:52 2008-11-12 Show GitHub Exploit DB Packet Storm
226359 9.3 危険 streamripper - Streamripper の lib/http.c におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-4829 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
226360 7.5 危険 Smarty - Smarty の libs/Smarty_Compiler.class.php における任意の PHP コードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-4811 2012-12-20 18:52 2008-10-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 4, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
199231 5.3 MEDIUM
Network
frappe frappe Frappe Framework 12 and 13 does not properly validate the HTTP method for the frappe.client API. NVD-CWE-noinfo
CVE-2020-35175 2024-11-21 14:26 2020-12-12 Show GitHub Exploit DB Packet Storm
199232 5.3 MEDIUM
Network
mquery_project mquery lib/utils.js in mquery before 3.2.3 allows a pollution attack because a special property (e.g., __proto__) can be copied during a merge or clone operation. NVD-CWE-noinfo
CVE-2020-35149 2024-11-21 14:26 2020-12-12 Show GitHub Exploit DB Packet Storm
199233 8.8 HIGH
Network
infolific ultimate_category_excluder The ultimate-category-excluder plugin before 1.2 for WordPress allows ultimate-category-excluder.php CSRF. CWE-352
 Origin Validation Error
CVE-2020-35135 2024-11-21 14:26 2020-12-11 Show GitHub Exploit DB Packet Storm
199234 5.4 MEDIUM
Network
phpldapadmin_project
fedoraproject
phpldapadmin
fedora
An XSS issue has been discovered in phpLDAPadmin before 1.2.6.2 that allows users to store malicious values that may be executed by other users at a later time via get_request in lib/function.php. CWE-79
Cross-site Scripting
CVE-2020-35132 2024-11-21 14:26 2020-12-11 Show GitHub Exploit DB Packet Storm
199235 5.4 MEDIUM
Network
igniterealtime openfire Ignite Realtime Openfire 4.6.0 has plugins/bookmarks/create-bookmark.jsp Stored XSS. CWE-79
Cross-site Scripting
CVE-2020-35127 2024-11-21 14:26 2020-12-11 Show GitHub Exploit DB Packet Storm
199236 4.8 MEDIUM
Network
typesettercms typesetter Typesetter CMS 5.x through 5.1 allows admins to conduct Site Title persistent XSS attacks via an Admin/Configuration URI. NOTE: the significance of this report is disputed because "admins are conside… CWE-79
Cross-site Scripting
CVE-2020-35126 2024-11-21 14:26 2020-12-11 Show GitHub Exploit DB Packet Storm
199237 7.1 HIGH
Network
oracle configuration_manager Vulnerability in the Oracle Configuration Manager product of Oracle Enterprise Manager (component: Discovery and collection script). The supported version that is affected is 12.1.2.0.6. Easily explo… NVD-CWE-noinfo
CVE-2020-2984 2024-11-21 14:26 2020-07-16 Show GitHub Exploit DB Packet Storm
199238 7.1 HIGH
Network
oracle data_masking_and_subsetting Vulnerability in the Oracle Data Masking and Subsetting product of Oracle Enterprise Manager (component: Data Masking). Supported versions that are affected are 13.3.0.0 and 13.4.0.0. Easily exploita… NVD-CWE-noinfo
CVE-2020-2983 2024-11-21 14:26 2020-07-16 Show GitHub Exploit DB Packet Storm
199239 7.1 HIGH
Network
oracle enterprise_manager_base_platform Vulnerability in the Enterprise Manager Base Platform product of Oracle Enterprise Manager (component: Enterprise Config Management). Supported versions that are affected are 13.3.0.0 and 13.4.0.0. E… NVD-CWE-noinfo
CVE-2020-2982 2024-11-21 14:26 2020-07-16 Show GitHub Exploit DB Packet Storm
199240 7.0 HIGH
Local
oracle berkeley_db Vulnerability in the Data Store component of Oracle Berkeley DB. The supported version that is affected is Prior to 18.1.40. Difficult to exploit vulnerability allows unauthenticated attacker with lo… NVD-CWE-noinfo
CVE-2020-2981 2024-11-21 14:26 2020-07-16 Show GitHub Exploit DB Packet Storm