Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228851 10 危険 ソフォス - Linux 用の Sophos SAVScan におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2008-6904 2012-12-20 19:10 2009-08-5 Show GitHub Exploit DB Packet Storm
228852 4.3 警告 ソフォス - Sophos Anti-Virus などにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-6903 2012-12-20 19:10 2009-08-5 Show GitHub Exploit DB Packet Storm
228853 9.3 危険 SaschArt - SaschArt SasCam Webcam Server 用の ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-6898 2012-12-20 19:10 2009-08-5 Show GitHub Exploit DB Packet Storm
228854 4.3 警告 PreProject.com - Pre Classified Listings の signup.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6888 2012-12-20 19:10 2009-08-3 Show GitHub Exploit DB Packet Storm
228855 7.5 危険 PreProject.com - Pre Classified Listings の detailad.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6887 2012-12-20 19:10 2009-08-3 Show GitHub Exploit DB Packet Storm
228856 5 警告 RSAセキュリティ - RSA EnVision における管理者のパスワードハッシュを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6886 2012-12-20 19:10 2009-08-3 Show GitHub Exploit DB Packet Storm
228857 7.5 危険 scripts-for-sites - SFS EZ Career の content.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6867 2012-12-20 19:10 2009-07-14 Show GitHub Exploit DB Packet Storm
228858 7.5 危険 PHPNUKE - PHP-Nuke 用の Current_Issue モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6866 2012-12-20 19:10 2009-07-14 Show GitHub Exploit DB Packet Storm
228859 7.5 危険 PHPNUKE - PHP-Nuke 用の Sectionsnew モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6865 2012-12-20 19:10 2009-07-14 Show GitHub Exploit DB Packet Storm
228860 7.5 危険 xigla - Xigla Software Absolute Live Support .NET における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-6864 2012-12-20 19:10 2009-07-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311331 9.1 CRITICAL
Network
langchain langchain A path traversal vulnerability exists in the `getFullPath` method of langchain-ai/langchainjs version 0.2.5. This vulnerability allows attackers to save files anywhere in the filesystem, overwrite ex… CWE-22
Path Traversal
CVE-2024-7774 2024-11-1 00:39 2024-10-29 Show GitHub Exploit DB Packet Storm
311332 7.2 HIGH
Network
funadmin funadmin Funadmin 5.0.2 is vulnerable to SQL Injection in curd/table/savefield. CWE-89
SQL Injection
CVE-2024-48226 2024-11-1 00:38 2024-10-26 Show GitHub Exploit DB Packet Storm
311333 6.5 MEDIUM
Network
funadmin funadmin Funadmin v5.0.2 has an arbitrary file deletion vulnerability in /curd/index/delfile. NVD-CWE-noinfo
CVE-2024-48225 2024-11-1 00:35 2024-10-26 Show GitHub Exploit DB Packet Storm
311334 - - - A vulnerability in the backup feature of Cisco UCS Central Software could allow an attacker with access to a backup file to learn sensitive information that is stored in the full state and configurat… - CVE-2024-20280 2024-11-1 00:35 2024-10-17 Show GitHub Exploit DB Packet Storm
311335 - - - Improper input validation in Power Management Firmware (PMFW) may allow an attacker with privileges to send a malformed input for the "set temperature input selection" command, potentially resulting … - CVE-2023-31310 2024-11-1 00:35 2024-08-14 Show GitHub Exploit DB Packet Storm
311336 4.9 MEDIUM
Network
funadmin funadmin Funadmin v5.0.2 has an arbitrary file read vulnerability in /curd/index/editfile. CWE-22
Path Traversal
CVE-2024-48224 2024-11-1 00:32 2024-10-26 Show GitHub Exploit DB Packet Storm
311337 5.3 MEDIUM
Network
hcltech sametime HCL Sametime is impacted by the error messages containing sensitive information. An attacker can use this information to launch another, more focused attack. CWE-209
Information Exposure Through an Error Message
CVE-2023-50355 2024-11-1 00:18 2024-10-24 Show GitHub Exploit DB Packet Storm
311338 7.5 HIGH
Network
mozilla thunderbird
firefox
An attacker could have caused a use-after-free when accessibility was enabled, leading to a potentially exploitable crash. This vulnerability affects Firefox < 132, Firefox ESR < 128.4, Firefox ESR <… CWE-416
 Use After Free
CVE-2024-10459 2024-11-1 00:16 2024-10-29 Show GitHub Exploit DB Packet Storm
311339 4.3 MEDIUM
Network
rockoa xinhu RockOA v2.6.5 is vulnerable to Directory Traversal in webmain/system/beifen/beifenAction.php. CWE-22
Path Traversal
CVE-2024-48213 2024-11-1 00:09 2024-10-24 Show GitHub Exploit DB Packet Storm
311340 7.5 HIGH
Network
mozilla thunderbird
firefox
A permission leak could have occurred from a trusted site to an untrusted site via `embed` or `object` elements. This vulnerability affects Firefox < 132, Firefox ESR < 128.4, Firefox ESR < 115.17, T… NVD-CWE-noinfo
CVE-2024-10458 2024-11-1 00:03 2024-10-29 Show GitHub Exploit DB Packet Storm