Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228551 9.3 危険 アクシスコミュニケーションズ - AXIX 2100 Network Camera におけるクロスサイトスクリプティングの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2007-5213 2012-12-20 18:33 2007-10-4 Show GitHub Exploit DB Packet Storm
228552 4.3 警告 アクシスコミュニケーションズ - AXIX 2100 Network Camera におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5212 2012-12-20 18:33 2007-10-4 Show GitHub Exploit DB Packet Storm
228553 7.5 危険 SUSE - SUSE Linux Enterprise Desktop の novell-groupwise-client パッケージにおける資格情報を取得される脆弱性 CWE-200
CWE-310
CVE-2007-5196 2012-12-20 18:33 2007-10-12 Show GitHub Exploit DB Packet Storm
228554 6.8 警告 SUSE - SUSE Linux Enterprise Desktop の novell-groupwise-client パッケージにおける資格情報を取得される脆弱性 CWE-200
CWE-310
CVE-2007-5195 2012-12-20 18:33 2007-10-12 Show GitHub Exploit DB Packet Storm
228555 6.9 警告 rPath, Inc - rMake の Chroot サーバにおけるルート権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5194 2012-12-20 18:33 2007-10-2 Show GitHub Exploit DB Packet Storm
228556 5 警告 TWiki - Debian GNU/Linux などの OS 上で稼動する twiki 用の初期設定における重要な情報を取得される脆弱性 CWE-DesignError
CVE-2007-5193 2012-12-20 18:33 2007-10-2 Show GitHub Exploit DB Packet Storm
228557 7.5 危険 x-script - x-script GuestBook の mes_add.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5189 2012-12-20 18:33 2007-10-3 Show GitHub Exploit DB Packet Storm
228558 7.5 危険 XOOPS - Xoops の XOOPS アップローダークラスにおける任意のファイルをアップロードされる脆弱性 CWE-noinfo
情報不足
CVE-2007-5188 2012-12-20 18:33 2007-10-1 Show GitHub Exploit DB Packet Storm
228559 7.5 危険 PHP-Fusion - PHP-Fusion 用の Expanded Calendar モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5187 2012-12-20 18:33 2007-10-3 Show GitHub Exploit DB Packet Storm
228560 6.8 警告 segue cms - Segue CMS の index.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5186 2012-12-20 18:33 2007-10-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312051 4.3 MEDIUM
Network
simplemachines simple_machines_forum A vulnerability, which was classified as critical, was found in SimpleMachines SMF 2.1.4. Affected is an unknown function of the file /index.php?action=profile;u=2;area=showalerts;do=remove of the co… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2024-7437 2024-09-11 23:39 2024-08-4 Show GitHub Exploit DB Packet Storm
312052 9.1 CRITICAL
Network
ibm planning_analytics_workspace
planning_analytics_local
IBM Planning Analytics Local 2.0 and 2.1 connects to a MongoDB server. MongoDB, a document-oriented database system, is listening on the remote port, and it is configured to allow connections without… CWE-306
Missing Authentication for Critical Function
CVE-2024-35143 2024-09-11 23:34 2024-08-4 Show GitHub Exploit DB Packet Storm
312053 6.1 MEDIUM
Network
ai3 qbibot Ai3 QbiBot does not properly filter user input, allowing unauthenticated remote attackers to insert JavaScript code into the chat box. Once the recipient views the message, they will be subject to a … CWE-79
Cross-site Scripting
CVE-2024-7204 2024-09-11 23:23 2024-08-2 Show GitHub Exploit DB Packet Storm
312054 6.5 MEDIUM
Network
digiwin easyflow_.net Digiwin EasyFlow .NET lacks proper access control for specific functionality, and the functionality do not adequately filter user input. A remote attacker with regular privilege can exploit this vuln… CWE-22
Path Traversal
CVE-2024-7323 2024-09-11 23:22 2024-08-2 Show GitHub Exploit DB Packet Storm
312055 9.8 CRITICAL
Network
forip administracao_pabx A vulnerability was found in ForIP Tecnologia Administração PABX 1.x. It has been rated as critical. Affected by this issue is some unknown functionality of the file /authMonitCallcenter of the compo… CWE-89
SQL Injection
CVE-2024-7461 2024-09-11 23:16 2024-08-5 Show GitHub Exploit DB Packet Storm
312056 - - - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. - CVE-2024-7805 2024-09-11 23:15 2024-09-11 Show GitHub Exploit DB Packet Storm
312057 6.1 MEDIUM
Network
lang-learn-guy learning_with_texts Learning with Texts (LWT) 2.0.3 is vulnerable to Cross Site Scripting (XSS). The application has a specific function that does not filter special characters in URL parameters. Remote attackers can in… CWE-79
Cross-site Scripting
CVE-2024-41572 2024-09-11 23:15 2024-08-22 Show GitHub Exploit DB Packet Storm
312058 5.9 MEDIUM
Network
ibm java_sdk The Object Request Broker (ORB) in IBM SDK, Java Technology Edition 7.1.0.0 through 7.1.5.18 and 8.0.0.0 through 8.0.8.26 is vulnerable to remote denial of service, caused by a race condition in the … NVD-CWE-noinfo
CVE-2024-27267 2024-09-11 22:48 2024-08-15 Show GitHub Exploit DB Packet Storm
312059 6.5 MEDIUM
Network
qnap qts
quts_hero
A path traversal vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to read the contents of unexpected files and expos… CWE-22
Path Traversal
CVE-2024-21904 2024-09-11 22:40 2024-09-7 Show GitHub Exploit DB Packet Storm
312060 5.9 MEDIUM
Network
ibm websphere_application_server IBM WebSphere Application Server 8.5 and 9.0 could allow an attacker with access to the network to conduct spoofing attacks. An attacker could exploit this vulnerability using a certificate issued b… NVD-CWE-Other
CVE-2023-50315 2024-09-11 22:38 2024-08-15 Show GitHub Exploit DB Packet Storm