Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229281 10 危険 Progress Software Corporation - Progress Webspeed Messenger における任意のファイルを実行される脆弱性 CWE-DesignError
CVE-2007-2266 2012-12-20 18:19 2007-04-25 Show GitHub Exploit DB Packet Storm
229282 6.8 警告 phpee - YA Book におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2265 2012-12-20 18:19 2007-04-25 Show GitHub Exploit DB Packet Storm
229283 7.5 危険 sinato - Sinato jmuffin の html/php/detail.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-2262 2012-12-20 18:19 2007-04-25 Show GitHub Exploit DB Packet Storm
229284 7.5 危険 realink - C-Arbre の espaces/communiques/annotations.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2261 2012-12-20 18:19 2007-04-25 Show GitHub Exploit DB Packet Storm
229285 7.5 危険 phpmybibli - PHPMyBibli の includes/init.inc.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2258 2012-12-20 18:19 2007-04-25 Show GitHub Exploit DB Packet Storm
229286 4.3 警告 tjschat - TJSChat の you.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2256 2012-12-20 18:19 2007-04-25 Show GitHub Exploit DB Packet Storm
229287 7.5 危険 Xaraya - Xaraya の Roles モジュールにおける権限を取得される脆弱性 - CVE-2007-2251 2012-12-20 18:19 2007-04-22 Show GitHub Exploit DB Packet Storm
229288 7.5 危険 phpmyspace - phpMySpace の modules/news/article.php における SQL インジェクションの脆弱性 - CVE-2007-2247 2012-12-20 18:19 2007-04-25 Show GitHub Exploit DB Packet Storm
229289 6.8 警告 The phpMyAdmin Project - phpMyAdmin におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2245 2012-12-20 18:19 2007-04-25 Show GitHub Exploit DB Packet Storm
229290 6.8 警告 PunBB - PunBB の footer.php における include/user/ 配下のローカルファイルをインクルードされる脆弱性 - CVE-2007-2236 2012-12-20 18:19 2007-04-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312521 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: dmaengine: idxd: Let probe fail when workqueue cannot be enabled The workqueue is enabled when the appropriate driver is loaded a… CWE-476
 NULL Pointer Dereference
CVE-2022-48868 2024-09-5 03:38 2024-08-21 Show GitHub Exploit DB Packet Storm
312522 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: wifi: mac80211: sdata can be NULL during AMPDU start ieee80211_tx_ba_session_handle_start() may get NULL for sdata when a deauthe… CWE-476
 NULL Pointer Dereference
CVE-2022-48875 2024-09-5 03:33 2024-08-21 Show GitHub Exploit DB Packet Storm
312523 7.5 HIGH
Network
avtecinc outpost_uploader_utility
outpost_0810_firmware
Avtec Outpost stores sensitive information in an insecure location without proper access controls in place. CWE-219
 Storage of File with Sensitive Data Under Web Root
CVE-2024-39776 2024-09-5 03:25 2024-08-23 Show GitHub Exploit DB Packet Storm
312524 7.5 HIGH
Network
avtecinc outpost_uploader_utility
outpost_0810_firmware
Avtec Outpost uses a default cryptographic key that can be used to decrypt sensitive information. CWE-321
 Use of Hard-coded Cryptographic Key
CVE-2024-42418 2024-09-5 03:22 2024-08-23 Show GitHub Exploit DB Packet Storm
312525 9.8 CRITICAL
Network
angeljudesuarez e-commerce_website A vulnerability has been found in itsourcecode E-Commerce Website 1.0 and classified as critical. Affected by this vulnerability is an unknown functionality of the file search_list.php. The manipulat… CWE-89
SQL Injection
CVE-2024-8139 2024-09-5 03:02 2024-08-25 Show GitHub Exploit DB Packet Storm
312526 8.1 HIGH
Network
progress ws_ftp_server In WS_FTP Server versions before 8.8.8 (2022.0.8), a Missing Critical Step in Multi-Factor Authentication of the Web Transfer Module allows users to skip the second-factor verification and log in wit… CWE-287
Improper Authentication
CVE-2024-7745 2024-09-5 02:57 2024-08-29 Show GitHub Exploit DB Packet Storm
312527 6.5 MEDIUM
Network
progress ws_ftp_server In WS_FTP Server versions before 8.8.8 (2022.0.8), an Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in the Web Transfer Module allows File Discovery, Pr… CWE-22
Path Traversal
CVE-2024-7744 2024-09-5 02:57 2024-08-29 Show GitHub Exploit DB Packet Storm
312528 5.4 MEDIUM
Network
mattermost mattermost_server Mattermost versions 9.9.x <= 9.9.0, 9.5.x <= 9.5.6 fail to properly restrict channel creation which allows a malicious remote to create arbitrary channels, when shared channels were enabled. NVD-CWE-noinfo
CVE-2024-39837 2024-09-5 02:38 2024-08-2 Show GitHub Exploit DB Packet Storm
312529 8.8 HIGH
Network
easytest_online_test_platform_project easytest_online_test_platform SQL Injection in online dictionary function of Easytest Online Test Platform ver.24E01 and earlier allow remote authenticated users to execute arbitrary SQL commands via the word parameter. CWE-89
SQL Injection
CVE-2024-7871 2024-09-5 02:34 2024-09-2 Show GitHub Exploit DB Packet Storm
312530 4.3 MEDIUM
Network
mattermost mattermost_server Mattermost versions 9.9.x <= 9.9.0, 9.5.x <= 9.5.6, 9.7.x <= 9.7.5, 9.8.x <= 9.8.1 fail to disallow users to set their own remote username, when shared channels were enabled, which allows a user on a… NVD-CWE-noinfo
CVE-2024-39839 2024-09-5 02:34 2024-08-2 Show GitHub Exploit DB Packet Storm