Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228861 7.5 危険 popscript.com - Expert Advisor の index.php における SQL インジェクションの脆弱性 - CVE-2007-3882 2012-12-20 18:33 2007-07-18 Show GitHub Exploit DB Packet Storm
228862 7.5 危険 pictures rating - Picture Rating の index.php における SQL インジェクションの脆弱性 - CVE-2007-3881 2012-12-20 18:33 2007-07-18 Show GitHub Exploit DB Packet Storm
228863 7.2 危険 サン・マイクロシステムズ - SUNWsrspx パッケージで同梱されている SRS Net Connect の srsexec におけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2007-3880 2012-12-20 18:33 2007-11-2 Show GitHub Exploit DB Packet Storm
228864 6.9 警告 トレンドマイクロ - Trend Micro AntiSpyware および PC-Cillin Internet Security 2007 の SSAPI Engine におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-3873 2012-12-20 18:33 2007-08-22 Show GitHub Exploit DB Packet Storm
228865 6 警告 TortoiseSVN
CollabNet, Inc.
- TortoiseSVN で使用されている Subversion におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-3846 2012-12-20 18:33 2007-08-27 Show GitHub Exploit DB Packet Storm
228866 9 危険 Pidgin - Linux 用の Pidgin における特定のコマンドを実行される脆弱性 - CVE-2007-3841 2012-12-20 18:33 2007-07-17 Show GitHub Exploit DB Packet Storm
228867 7.5 危険 sitetrafficstats - Traffic Stats の referralUrl.php における SQL インジェクションの脆弱性 - CVE-2007-3840 2012-12-20 18:33 2007-07-17 Show GitHub Exploit DB Packet Storm
228868 4 警告 tbdev.net - TBDev.NET の takeprofedit.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3839 2012-12-20 18:33 2007-07-17 Show GitHub Exploit DB Packet Storm
228869 2.6 注意 tbdev.net - takeprofedit.php の takeprofedit.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3838 2012-12-20 18:33 2007-07-17 Show GitHub Exploit DB Packet Storm
228870 4.9 警告 republike slovenije - PIRS の pirs32.exe におけるバッファオーバーフローの脆弱性 - CVE-2007-3815 2012-12-20 18:33 2007-07-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312361 9.8 CRITICAL
Network
organizr organizr Organizr v1.90 was discovered to contain a SQL injection vulnerability via chat/setlike.php. CWE-89
SQL Injection
CVE-2024-41370 2024-09-5 01:08 2024-08-30 Show GitHub Exploit DB Packet Storm
312362 6.1 MEDIUM
Network
phpipam phpipam phpipam 1.6 is vulnerable to Cross Site Scripting (XSS) via app\admin\import-export\import-load-data.php. CWE-79
Cross-site Scripting
CVE-2024-41358 2024-09-5 01:07 2024-08-30 Show GitHub Exploit DB Packet Storm
312363 6.1 MEDIUM
Network
baijunyao bjyadmin bjyadmin commit a560fd5 is vulnerable to Cross Site Scripting (XSS) via Public/statics/umeditor1_2_3/php/getContent.php CWE-79
Cross-site Scripting
CVE-2024-41351 2024-09-5 01:07 2024-08-30 Show GitHub Exploit DB Packet Storm
312364 6.1 MEDIUM
Network
baijunyao bjyadmin bjyadmin commit a560fd5 is vulnerable to Cross Site Scripting (XSS) via Public/statics/umeditor1_2_3/php/imageUp.php CWE-79
Cross-site Scripting
CVE-2024-41350 2024-09-5 01:07 2024-08-30 Show GitHub Exploit DB Packet Storm
312365 6.1 MEDIUM
Network
jpatokal openflights openflights commit 5234b5b is vulnerable to Cross-Site Scripting (XSS) via php/alsearch.php CWE-79
Cross-site Scripting
CVE-2024-41348 2024-09-5 01:06 2024-08-30 Show GitHub Exploit DB Packet Storm
312366 6.1 MEDIUM
Network
jpatokal openflights openflights commit 5234b5b is vulnerable to Cross-Site Scripting (XSS) via php/settings.php CWE-79
Cross-site Scripting
CVE-2024-41347 2024-09-5 01:05 2024-08-30 Show GitHub Exploit DB Packet Storm
312367 5.4 MEDIUM
Network
jpatokal openflights openflights commit 5234b5b is vulnerable to Cross-Site Scripting (XSS) via php/submit.php CWE-79
Cross-site Scripting
CVE-2024-41346 2024-09-5 01:05 2024-08-30 Show GitHub Exploit DB Packet Storm
312368 9.8 CRITICAL
Network
smackcoders sendgrid Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Smackcoders SendGrid for WordPress allows SQL Injection.This issue affects SendGrid for WordPress… CWE-89
SQL Injection
CVE-2024-43965 2024-09-5 01:02 2024-08-30 Show GitHub Exploit DB Packet Storm
312369 9.8 CRITICAL
Network
progress whatsup_gold In WhatsUp Gold versions released before 2024.0.0, if the application is configured with only a single user, a SQL Injection vulnerability allows an unauthenticated attacker to retrieve the users enc… CWE-89
SQL Injection
CVE-2024-6671 2024-09-5 00:53 2024-08-30 Show GitHub Exploit DB Packet Storm
312370 9.8 CRITICAL
Network
mozilla firefox Memory safety bugs present in Firefox 129. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code… CWE-787
 Out-of-bounds Write
CVE-2024-8389 2024-09-5 00:50 2024-09-3 Show GitHub Exploit DB Packet Storm