Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228981 6.8 警告 phpxmldom - phpXD における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0511 2012-12-20 18:19 2007-01-25 Show GitHub Exploit DB Packet Storm
228982 10 危険 vote pro - Vote! Pro の poll_frame.php における任意の PHP コードを実行される脆弱性 - CVE-2007-0504 2012-12-20 18:19 2007-01-25 Show GitHub Exploit DB Packet Storm
228983 7.5 危険 webSPELL - webSPELL の gallery.php における SQL インジェクションの脆弱性 - CVE-2007-0502 2012-12-20 18:19 2007-01-25 Show GitHub Exploit DB Packet Storm
228984 6.8 警告 sangwan kim - Sangwan Kim phpIndexPage の config.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-0499 2012-12-20 18:19 2007-01-25 Show GitHub Exploit DB Packet Storm
228985 7.5 危険 sky gunning - MySpeach の up.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0498 2012-12-20 18:19 2007-01-25 Show GitHub Exploit DB Packet Storm
228986 6.8 警告 upload-service - Upload-Service の upload/top.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0497 2012-12-20 18:19 2007-01-25 Show GitHub Exploit DB Packet Storm
228987 10 危険 phpsherpa - PhpSherpa の include/config.inc.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0495 2012-12-20 18:19 2007-01-25 Show GitHub Exploit DB Packet Storm
228988 7.5 危険 webSPELL - webSPELL の gallery.php における SQL インジェクションの脆弱性 - CVE-2007-0492 2012-12-20 18:19 2007-01-24 Show GitHub Exploit DB Packet Storm
228989 6.8 警告 sky gunning - Sky GUNNING MySpeach の up.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0491 2012-12-20 18:19 2007-01-24 Show GitHub Exploit DB Packet Storm
228990 6.8 警告 visohotlink - VisoHotlink の includes/functions.visohotlink.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0489 2012-12-20 18:19 2007-01-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312631 8.8 HIGH
Network
xuxueli xxl-job Insecure Permissions vulnerability in xxl-job v.2.4.1 allows a remote attacker to execute arbitrary code via the Sub-Task ID component. CWE-276
Incorrect Default Permissions 
CVE-2024-42681 2024-08-20 04:35 2024-08-16 Show GitHub Exploit DB Packet Storm
312632 6.8 MEDIUM
Physics
dieboldnixdorf vynamic_security_suite Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR12, 4.0.0 SR04, 4.1.0 SR02, and 4.2.0 SR01 fails to validate the directory structure of the root file system during the Pre-Boot Authorizat… NVD-CWE-noinfo
CVE-2023-24062 2024-08-20 04:05 2024-08-9 Show GitHub Exploit DB Packet Storm
312633 6.8 MEDIUM
Physics
dieboldnixdorf vynamic_security_suite Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR16, 4.0.0 SR06, 4.1.0 SR04, 4.2.0 SR03, and 4.3.0 SR01 fails to validate symlinks during the Pre-Boot Authorization (PBA) process. This can… CWE-354
 Improper Validation of Integrity Check Value
CVE-2023-33206 2024-08-20 04:04 2024-08-9 Show GitHub Exploit DB Packet Storm
312634 6.6 MEDIUM
Physics
dieboldnixdorf vynamic_security_suite Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR15, 4.0.0 SR05, 4.1.0 SR03, and 4.2.0 SR02 fails to validate the directory contents of certain directories (e.g., ensuring the expected has… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2023-28865 2024-08-20 04:04 2024-08-9 Show GitHub Exploit DB Packet Storm
312635 6.8 MEDIUM
Physics
dieboldnixdorf vynamic_security_suite Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR4 fails to validate /etc/initab during the Pre-Boot Authorization (PBA) process. This can be exploited by a physical attacker who is able t… NVD-CWE-noinfo
CVE-2023-24064 2024-08-20 04:04 2024-08-9 Show GitHub Exploit DB Packet Storm
312636 6.8 MEDIUM
Physics
dieboldnixdorf vynamic_security_suite Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR10 fails to validate /etc/mtab during the Pre-Boot Authorization (PBA) process. This can be exploited by a physical attacker who is able to… CWE-354
 Improper Validation of Integrity Check Value
CVE-2023-24063 2024-08-20 04:04 2024-08-9 Show GitHub Exploit DB Packet Storm
312637 6.8 MEDIUM
Physics
dieboldnixdorf vynamic_security_suite Diebold Nixdorf Vynamic Security Suite (VSS) before 3.3.0 SR17, 4.0.0 SR07, 4.1.0 SR04, 4.2.0 SR04, and 4.3.0 SR02 fails to validate file attributes during the Pre-Boot Authorization (PBA) process. T… CWE-665
 Improper Initialization
CVE-2023-40261 2024-08-20 04:03 2024-08-9 Show GitHub Exploit DB Packet Storm
312638 7.8 HIGH
Local
adobe dimension Dimension versions 3.4.11 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of this issue requi… CWE-416
 Use After Free
CVE-2024-20789 2024-08-20 03:59 2024-08-15 Show GitHub Exploit DB Packet Storm
312639 5.5 MEDIUM
Local
adobe dimension Dimension versions 3.4.11 and earlier are affected by an out-of-bounds read vulnerability that could lead to disclosure of sensitive memory. An attacker could leverage this vulnerability to bypass mi… CWE-125
Out-of-bounds Read
CVE-2024-20790 2024-08-20 03:58 2024-08-15 Show GitHub Exploit DB Packet Storm
312640 7.8 HIGH
Local
adobe photoshop Photoshop Desktop versions 24.7.3, 25.9.1 and earlier are affected by a Use After Free vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation of … CWE-416
 Use After Free
CVE-2024-34117 2024-08-20 03:57 2024-08-15 Show GitHub Exploit DB Packet Storm