Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231211 7.5 危険 PHP-Fusion - PHP-Fusion 用の Expanded Calendar モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-5187 2012-12-20 18:33 2007-10-3 Show GitHub Exploit DB Packet Storm
231212 6.8 警告 segue cms - Segue CMS の index.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5186 2012-12-20 18:33 2007-10-3 Show GitHub Exploit DB Packet Storm
231213 6.8 警告 phpwcms-xt - phpWCMS XT における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5185 2012-12-20 18:33 2007-10-3 Show GitHub Exploit DB Packet Storm
231214 7.5 危険 smbftpd - SmbFTPD の dirlist.c におけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2007-5184 2012-12-20 18:33 2007-09-30 Show GitHub Exploit DB Packet Storm
231215 4.3 警告 y&k iletisim formu - Y&K Iletisim Formu の iletisim.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5179 2012-12-20 18:33 2007-10-3 Show GitHub Exploit DB Packet Storm
231216 5 警告 quicksilver forums - Quicksilver Forums における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2007-5172 2012-12-20 18:33 2007-10-1 Show GitHub Exploit DB Packet Storm
231217 5 警告 quicksilver forums - Quicksilver Forums における任意の PMs を削除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5171 2012-12-20 18:33 2007-10-1 Show GitHub Exploit DB Packet Storm
231218 5 警告 サン・マイクロシステムズ - Sun Fire X2100 M2 および ELOM の SP における任意のネットワークトラフィックを送信される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-5170 2012-12-20 18:33 2007-09-28 Show GitHub Exploit DB Packet Storm
231219 6.8 警告 phplister - phpLister の .systeme/fonctions.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-5167 2012-12-20 18:33 2007-10-1 Show GitHub Exploit DB Packet Storm
231220 5 警告 wzdftpd - wzdftpd の libwzd-core/wzd_login.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
CWE-189
CVE-2007-5300 2012-12-20 18:33 2007-10-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313091 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: tipc: re-fetch skb cb after tipc_msg_validate As the call trace shows, the original skb was freed in tipc_msg_validate(), and der… CWE-416
 Use After Free
CVE-2022-49017 2024-10-25 03:36 2024-10-22 Show GitHub Exploit DB Packet Storm
313092 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net: mdiobus: fix unbalanced node reference count I got the following report while doing device(mscc-miim) load test with CONFIG_… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2022-49016 2024-10-25 03:35 2024-10-22 Show GitHub Exploit DB Packet Storm
313093 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net: hsr: Fix potential use-after-free The skb is delivered to netif_rx() which may free it, after calling this, dereferencing sk… CWE-416
 Use After Free
CVE-2022-49015 2024-10-25 03:31 2024-10-22 Show GitHub Exploit DB Packet Storm
313094 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: net: tun: Fix use-after-free in tun_detach() syzbot reported use-after-free in tun_detach() [1]. This causes call trace like bel… CWE-416
 Use After Free
CVE-2022-49014 2024-10-25 03:29 2024-10-22 Show GitHub Exploit DB Packet Storm
313095 - - - A Command injection vulnerability in requestLetsEncryptSslWithDnsChallenge in NginxProxyManager 2.11.3 allows an attacker to achieve remote code execution via Add Let's Encrypt Certificate. NOTE: thi… - CVE-2024-46257 2024-10-25 03:15 2024-09-28 Show GitHub Exploit DB Packet Storm
313096 7.5 HIGH
Network
mfasoft secure_authentication_server An improper access control (IDOR) vulnerability in the /api-selfportal/get-info-token-properties endpoint in MFASOFT Secure Authentication Server (SAS) 1.8.x through 1.9.x before 1.9.040924 allows re… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2024-46937 2024-10-25 02:35 2024-09-16 Show GitHub Exploit DB Packet Storm
313097 7.5 HIGH
Network
opendaylight authentication\
_authorization_and_accounting
An issue was discovered in OpenDaylight Authentication, Authorization and Accounting (AAA) through 0.19.3. A rogue controller can join a cluster to impersonate an offline peer, even if this rogue con… NVD-CWE-noinfo
CVE-2024-46943 2024-10-25 02:35 2024-09-16 Show GitHub Exploit DB Packet Storm
313098 6.7 MEDIUM
Local
crucial mx500_firmware Micron Crucial MX500 Series Solid State Drives M3CR046 is vulnerable to Buffer Overflow, which can be triggered by sending specially crafted ATA packets from the host to the drive controller. CWE-787
 Out-of-bounds Write
CVE-2024-42642 2024-10-25 02:35 2024-09-5 Show GitHub Exploit DB Packet Storm
313099 - - - A Command injection vulnerability in requestLetsEncryptSsl in NginxProxyManager 2.11.3 allows an attacker to RCE via Add Let's Encrypt Certificate. - CVE-2024-46256 2024-10-25 02:15 2024-09-28 Show GitHub Exploit DB Packet Storm
313100 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: drm/amd/display: Handle null 'stream_status' in 'planes_changed_for_existing_stream' This commit adds a null check for 'stream_st… CWE-476
 NULL Pointer Dereference
CVE-2024-49912 2024-10-25 02:10 2024-10-22 Show GitHub Exploit DB Packet Storm