Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 4:09 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232101 5 警告 加藤和良 - Putmail の putmail.py における重要な情報を取得される脆弱性 - CVE-2007-1137 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
232102 6.8 警告 webmplayer - WebMplayer の index.php における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2007-1136 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
232103 6.8 警告 加藤和良 - WebMplayer における SQL インジェクションの脆弱性 - CVE-2007-1135 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
232104 7.5 危険 web-app.org - WebAPP における脆弱性 - CVE-2007-1188 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
232105 5.5 警告 web-app.org - WebAPP における重要な情報を取得される脆弱性 - CVE-2007-1187 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
232106 5 警告 web-app.org - WebAPP における脆弱性 - CVE-2007-1186 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
232107 5 警告 web-app.org - WebAPP の Search フォームなどにおける脆弱性 - CVE-2007-1185 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
232108 5 警告 web-app.org - WebAPP の初期設定における不正なデータを送信される脆弱性 CWE-16
環境設定
CVE-2007-1184 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
232109 7.5 危険 web-app.org - WebAPP におけるユーザの本名を偽装される脆弱性 - CVE-2007-1183 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
232110 6.4 警告 web-app.org - WebAPP における Guest プロフィールを編集される脆弱性 - CVE-2007-1182 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314231 5.4 MEDIUM
Network
mayurik free_and_open_source_inventory_management_system A vulnerability was found in SourceCodester Inventory Management System 1.0. It has been declared as problematic. Affected by this vulnerability is an unknown functionality of the file /app/action/ad… CWE-79
Cross-site Scripting
CVE-2024-9323 2024-10-1 21:55 2024-09-29 Show GitHub Exploit DB Packet Storm
314232 9.8 CRITICAL
Network
endress echo_curve_viewer
fieldcare_sfe500_package
field_xpert_smt79_firmware
field_xpert_smt77_firmware
field_xpert_smt70_firmware
field_xpert_smt50_firmware
An unauthenticated remote attacker can run malicious c# code included in curve files and execute commands in the users context. CWE-94
Code Injection
CVE-2024-6596 2024-10-1 21:26 2024-09-10 Show GitHub Exploit DB Packet Storm
314233 9.8 CRITICAL
Network
openfga openfga OpenFGA is an authorization/permission engine. OpenFGA v1.5.7 and v1.5.8 are vulnerable to authorization bypass when calling Check API with a model that uses `but not` and `from` expressions and a us… CWE-863
 Incorrect Authorization
CVE-2024-42473 2024-10-1 21:21 2024-08-12 Show GitHub Exploit DB Packet Storm
314234 9.8 CRITICAL
Network
mayurik advocate_office_management_system A vulnerability was found in SourceCodester Advocate Office Management System 1.0. It has been classified as critical. Affected is an unknown function of the file /control/forgot_pass.php. The manipu… CWE-89
SQL Injection
CVE-2024-9296 2024-10-1 20:36 2024-09-28 Show GitHub Exploit DB Packet Storm
314235 9.8 CRITICAL
Network
mayurik advocate_office_management_system A vulnerability was found in SourceCodester Advocate Office Management System 1.0 and classified as critical. This issue affects some unknown processing of the file /control/login.php. The manipulati… CWE-89
SQL Injection
CVE-2024-9295 2024-10-1 20:36 2024-09-28 Show GitHub Exploit DB Packet Storm
314236 9.8 CRITICAL
Network
mayurik advocate_office_management_system A vulnerability was found in SourceCodester Advocate Office Management System 1.0. It has been rated as critical. This issue affects some unknown processing of the file /control/edit_client.php. The … CWE-89
SQL Injection
CVE-2024-9328 2024-10-1 20:34 2024-09-30 Show GitHub Exploit DB Packet Storm
314237 5.4 MEDIUM
Network
mattermost mattermost_server Mattermost versions 9.11.x <= 9.11.0, 9.10.x <= 9.10.1, 9.9.x <= 9.9.2 and 9.5.x <= 9.5.8 fail to properly authorize requests when viewing archived channels is disabled, which allows an attacker to r… NVD-CWE-noinfo
CVE-2024-42406 2024-10-1 20:15 2024-09-26 Show GitHub Exploit DB Packet Storm
314238 4.4 MEDIUM
Local
codesys oscat_basic_library Out-of-Bounds read vulnerability in OSCAT Basic Library allows an local, unprivileged attacker to access limited internal data of the PLC which may lead to a crash of the affected service. CWE-125
Out-of-bounds Read
CVE-2024-6876 2024-10-1 16:15 2024-09-11 Show GitHub Exploit DB Packet Storm
314239 7.3 HIGH
Local
beckhoff twincat\/bsd
mdp_package
The MPD package included in TwinCAT/BSD allows an authenticated, low-privileged local attacker to induce a Denial-of-Service (DoS) condition on the daemon and execute code in the context of user “roo… NVD-CWE-Other
CVE-2024-41176 2024-10-1 16:15 2024-08-27 Show GitHub Exploit DB Packet Storm
314240 8.1 HIGH
Network
phoenixcontact tc_mguard_rs4000_4g_vzw_vpn_firmware
tc_mguard_rs4000_4g_vpn_firmware
tc_mguard_rs4000_4g_att_vpn_firmware
tc_mguard_rs4000_3g_vpn_firmware
tc_mguard_rs2000_4g_vzw_vpn_firmware
tc_mgua…
A low privileged remote attacker can perform configuration changes of the firewall services, including packet filter, packet forwarding, network access control or NAT through the FW_INCOMING.FROM_IP … NVD-CWE-noinfo
CVE-2024-43393 2024-10-1 16:15 2024-09-10 Show GitHub Exploit DB Packet Storm