Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231631 7.5 危険 web-app.org - web-app.org WebAPP の cgi-bin/cgi-lib/subs.pl における脆弱性 - CVE-2007-3422 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
231632 7.5 危険 web-app.org - web-app.org WebAPP のログイン機能などにおける脆弱性 - CVE-2007-3421 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
231633 7.5 危険 web-app.org - web-app.org WebAPP の cgi-bin/cgi-lib/subs.pl における脆弱性 - CVE-2007-3420 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
231634 7.5 危険 web-app.org - web-app.org WebAPP の cgi-bin/cgi-lib/user.pl における脆弱性 - CVE-2007-3419 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
231635 6.5 警告 web-app.org - web-app.org WebAPP の cgi-bin/cgi-lib/forum_display.pl における他のユーザになりすまされる脆弱性 - CVE-2007-3418 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
231636 4.3 警告 web-app.org - web-app.org WebAPP の cgi-bin/cgi-lib/search.pl におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3417 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
231637 5 警告 web-app.org
web-app.net
- web-app.org WebAPP などのプロフィールなどの管理におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2007-3416 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
231638 7.5 危険 phpraider - phpRaider の index.php における SQL インジェクションの脆弱性 - CVE-2007-3415 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
231639 5 警告 sergey lyubka - Sergey Lyubka Simple HTTPD における重要な情報を取得される脆弱性 - CVE-2007-3407 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
231640 5 警告 sitedepth - SiteDepth CMS の ShowImage.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-3404 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313561 7.2 HIGH
Network
cacti cacti Cacti is an open source performance and fault management framework. An admin user can create a device with a malicious hostname containing php code and repeat the installation process (completing onl… CWE-94
Code Injection
CVE-2024-43363 2024-10-18 02:58 2024-10-8 Show GitHub Exploit DB Packet Storm
313562 2.4 LOW
Network
authzed spicedb SpiceDB is an open source database for scalably storing and querying fine-grained authorization data. Starting in version 1.35.0 and prior to version 1.37.1, clients that have enabled `LookupResource… NVD-CWE-Other
CVE-2024-48909 2024-10-18 02:56 2024-10-15 Show GitHub Exploit DB Packet Storm
313563 7.5 HIGH
Network
ss-proj shirasagi SHIRASAGI prior to v1.19.1 processes URLs in HTTP requests improperly, resulting in a path traversal vulnerability. If this vulnerability is exploited, arbitrary files on the server may be retrieved … CWE-22
Path Traversal
CVE-2024-46898 2024-10-18 02:52 2024-10-15 Show GitHub Exploit DB Packet Storm
313564 7.5 HIGH
Network
microsoft windows_server_2008
windows_server_2012
windows_server_2016
windows_server_2022_23h2
windows_server_2022
windows_server_2019
Microsoft Simple Certificate Enrollment Protocol Denial of Service Vulnerability NVD-CWE-noinfo
CVE-2024-43541 2024-10-18 02:50 2024-10-9 Show GitHub Exploit DB Packet Storm
313565 6.5 MEDIUM
Adjacent
microsoft windows_server_2022_23h2
windows_10_1809
windows_server_2019
windows_11_21h2
windows_10_21h2
windows_11_22h2
windows_10_22h2
windows_11_23h2
windows_11_24h2
Windows Mobile Broadband Driver Denial of Service Vulnerability NVD-CWE-noinfo
CVE-2024-43542 2024-10-18 02:40 2024-10-9 Show GitHub Exploit DB Packet Storm
313566 - - - An issue in Wanxing Technology's Yitu project Management Software 3.2.2 allows a remote attacker to execute arbitrary code via the platformpluginpath parameter to specify that the qt plugin loads the… - CVE-2024-48779 2024-10-18 02:35 2024-10-16 Show GitHub Exploit DB Packet Storm
313567 6.5 MEDIUM
Network
paytium paytium The Paytium: Mollie payment forms & donations plugin for WordPress is vulnerable to unauthorized data modification due to a missing capability check on the create_mollie_profile function in versions … CWE-862
 Missing Authorization
CVE-2023-7294 2024-10-18 02:34 2024-10-16 Show GitHub Exploit DB Packet Storm
313568 4.3 MEDIUM
Network
paytium paytium The Paytium: Mollie payment forms & donations plugin for WordPress is vulnerable to unauthorized access of data due to a missing capability check on the check_mollie_account_details function in versi… CWE-862
 Missing Authorization
CVE-2023-7293 2024-10-18 02:33 2024-10-16 Show GitHub Exploit DB Packet Storm
313569 4.4 MEDIUM
Local
google android In DRM service, there is a possible system crash due to null pointer dereference. This could lead to local denial of service with System execution privileges needed. CWE-476
 NULL Pointer Dereference
CVE-2024-39440 2024-10-18 02:33 2024-10-9 Show GitHub Exploit DB Packet Storm
313570 4.3 MEDIUM
Network
paytium paytium The Paytium: Mollie payment forms & donations plugin for WordPress is vulnerable to unauthorized notification dismissal due to a missing capability check on the paytium_notice_dismiss function in ver… CWE-862
 Missing Authorization
CVE-2023-7292 2024-10-18 02:32 2024-10-16 Show GitHub Exploit DB Packet Storm