Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228981 7.5 危険 web-app.org - web-app.org WebAPP の cgi-bin/cgi-lib/instantmessage.pl における脆弱性 - CVE-2007-3423 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
228982 7.5 危険 web-app.org - web-app.org WebAPP の cgi-bin/cgi-lib/subs.pl における脆弱性 - CVE-2007-3422 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
228983 7.5 危険 web-app.org - web-app.org WebAPP のログイン機能などにおける脆弱性 - CVE-2007-3421 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
228984 7.5 危険 web-app.org - web-app.org WebAPP の cgi-bin/cgi-lib/subs.pl における脆弱性 - CVE-2007-3420 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
228985 7.5 危険 web-app.org - web-app.org WebAPP の cgi-bin/cgi-lib/user.pl における脆弱性 - CVE-2007-3419 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
228986 6.5 警告 web-app.org - web-app.org WebAPP の cgi-bin/cgi-lib/forum_display.pl における他のユーザになりすまされる脆弱性 - CVE-2007-3418 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
228987 4.3 警告 web-app.org - web-app.org WebAPP の cgi-bin/cgi-lib/search.pl におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3417 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
228988 5 警告 web-app.org
web-app.net
- web-app.org WebAPP などのプロフィールなどの管理におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2007-3416 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
228989 7.5 危険 phpraider - phpRaider の index.php における SQL インジェクションの脆弱性 - CVE-2007-3415 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
228990 5 警告 sergey lyubka - Sergey Lyubka Simple HTTPD における重要な情報を取得される脆弱性 - CVE-2007-3407 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196461 9.8 CRITICAL
Network
install-package_project
umount_project
install-package
umount
umount through 1.1.6 is vulnerable to Command Injection. The argument device can be controlled by users without any sanitization. CWE-78
OS Command 
CVE-2020-7628 2024-11-21 14:37 2020-04-3 Show GitHub Exploit DB Packet Storm
196462 9.8 CRITICAL
Network
node-key-sender_project node-key-sender node-key-sender through 1.0.11 is vulnerable to Command Injection. It allows execution of arbitrary commands via the 'arrParams' argument in the 'execute()' function. CWE-78
OS Command 
CVE-2020-7627 2024-11-21 14:37 2020-04-3 Show GitHub Exploit DB Packet Storm
196463 9.8 CRITICAL
Network
karma-mojo_project karma-mojo karma-mojo through 1.0.1 is vulnerable to Command Injection. It allows execution of arbitrary commands via the config argument. CWE-78
OS Command 
CVE-2020-7626 2024-11-21 14:37 2020-04-3 Show GitHub Exploit DB Packet Storm
196464 9.8 CRITICAL
Network
op-browser_project op-browser op-browser through 1.0.6 is vulnerable to Command Injection. It allows execution of arbitrary commands via the url function. CWE-78
OS Command 
CVE-2020-7625 2024-11-21 14:37 2020-04-3 Show GitHub Exploit DB Packet Storm
196465 9.8 CRITICAL
Network
effect_project effect effect through 1.0.4 is vulnerable to Command Injection. It allows execution of arbitrary command via the options argument. CWE-78
OS Command 
CVE-2020-7624 2024-11-21 14:37 2020-04-3 Show GitHub Exploit DB Packet Storm
196466 9.8 CRITICAL
Network
jscover_project jscover jscover through 1.0.0 is vulnerable to Command Injection. It allows execution of arbitrary command via the source argument. CWE-78
OS Command 
CVE-2020-7623 2024-11-21 14:37 2020-04-3 Show GitHub Exploit DB Packet Storm
196467 9.8 CRITICAL
Network
ibm strongloop_nginx_controller strong-nginx-controller through 1.0.2 is vulnerable to Command Injection. It allows execution of arbitrary command as part of the '_nginxCmd()' function. CWE-78
OS Command 
CVE-2020-7621 2024-11-21 14:37 2020-04-3 Show GitHub Exploit DB Packet Storm
196468 9.8 CRITICAL
Network
netease pomelo-monitor pomelo-monitor through 0.3.7 is vulnerable to Command Injection.It allows injection of arbitrary commands as part of 'pomelo-monitor' params. CWE-78
OS Command 
CVE-2020-7620 2024-11-21 14:37 2020-04-3 Show GitHub Exploit DB Packet Storm
196469 9.8 CRITICAL
Network
get-git-data_project get-git-data get-git-data through 1.3.1 is vulnerable to Command Injection. It is possible to inject arbitrary commands as part of the arguments provided to get-git-data. CWE-78
OS Command 
CVE-2020-7619 2024-11-21 14:37 2020-04-3 Show GitHub Exploit DB Packet Storm
196470 9.8 CRITICAL
Network
ini-parser_project ini-parser ini-parser through 0.0.2 is vulnerable to Prototype Pollution.The library could be tricked into adding or modifying properties of Object.prototype using a '__proto__' payload. CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2020-7617 2024-11-21 14:37 2020-04-3 Show GitHub Exploit DB Packet Storm