Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232711 6.5 警告 Vtiger - vtiger CRM の index.php における管理の変更を実行される脆弱性 - CVE-2007-3616 2012-12-20 18:33 2006-10-24 Show GitHub Exploit DB Packet Storm
232712 8.5 危険 Zen Cart - Zen Cart におけるセッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2007-3597 2012-12-20 18:33 2007-07-6 Show GitHub Exploit DB Packet Storm
232713 7.5 危険 vbzoom - VBZooM の reply.php における SQL インジェクションの脆弱性 - CVE-2007-3588 2012-12-20 18:33 2007-07-5 Show GitHub Exploit DB Packet Storm
232714 7.5 危険 postnuke software foundation - PNphpBB2 の viewforum.php における SQL インジェクションの脆弱性 - CVE-2007-3584 2012-12-20 18:33 2007-07-5 Show GitHub Exploit DB Packet Storm
232715 4.3 警告 PHPIDS - PHPIDS における任意の Web スクリプトを挿入される脆弱性 - CVE-2007-3580 2012-12-20 18:33 2007-07-2 Show GitHub Exploit DB Packet Storm
232716 4.3 警告 PHPIDS - PHPIDS における任意の Web スクリプトを挿入される脆弱性 - CVE-2007-3579 2012-12-20 18:33 2007-07-2 Show GitHub Exploit DB Packet Storm
232717 4.3 警告 PHPIDS - PHPIDS における任意の Web スクリプトを挿入される脆弱性 - CVE-2007-3578 2012-12-20 18:33 2007-07-2 Show GitHub Exploit DB Packet Storm
232718 4.3 警告 PHPIDS - PHP iCalendar の print.php における任意の Web スクリプトを挿入される脆弱性 - CVE-2007-3577 2012-12-20 18:19 2007-07-2 Show GitHub Exploit DB Packet Storm
232719 9.3 危険 yoggie - Yoggie Pico and Pico Pro 上の Web インターフェースにおける任意のコマンドを実行される脆弱性 - CVE-2007-3572 2012-12-20 18:19 2007-07-5 Show GitHub Exploit DB Packet Storm
232720 4.3 警告 softlink europe - Oliver Library Management System におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3569 2012-12-20 18:19 2007-07-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314101 7.5 HIGH
Network
mintplexlabs anythingllm mintplex-labs/anything-llm version latest contains a vulnerability where sensitive information, specifically a password, is improperly stored within a JWT (JSON Web Token) used as a bearer token in s… CWE-312
 Cleartext Storage of Sensitive Information
CVE-2024-7783 2024-11-1 00:49 2024-10-29 Show GitHub Exploit DB Packet Storm
314102 7.2 HIGH
Network
funadmin funadmin funadmin 5.0.2 has a SQL injection vulnerability in the Curd one click command mode plugin. CWE-89
SQL Injection
CVE-2024-48229 2024-11-1 00:49 2024-10-26 Show GitHub Exploit DB Packet Storm
314103 4.9 MEDIUM
Network
funadmin funadmin Funadmin 5.0.2 has a logical flaw in the Curd one click command deletion function, which can result in a Denial of Service (DOS). NVD-CWE-noinfo
CVE-2024-48227 2024-11-1 00:48 2024-10-26 Show GitHub Exploit DB Packet Storm
314104 7.2 HIGH
Network
funadmin funadmin Funadmin v5.0.2 has a SQL injection vulnerability in /curd/table/fieldlist. CWE-89
SQL Injection
CVE-2024-48223 2024-11-1 00:44 2024-10-26 Show GitHub Exploit DB Packet Storm
314105 7.2 HIGH
Network
funadmin funadmin Funadmin v5.0.2 has a SQL injection vulnerability in /curd/table/edit. CWE-89
SQL Injection
CVE-2024-48222 2024-11-1 00:44 2024-10-26 Show GitHub Exploit DB Packet Storm
314106 7.2 HIGH
Network
funadmin funadmin Funadmin v5.0.2 has a SQL injection vulnerability in /curd/table/list. CWE-89
SQL Injection
CVE-2024-48218 2024-11-1 00:44 2024-10-26 Show GitHub Exploit DB Packet Storm
314107 9.1 CRITICAL
Network
langchain langchain A path traversal vulnerability exists in the `getFullPath` method of langchain-ai/langchainjs version 0.2.5. This vulnerability allows attackers to save files anywhere in the filesystem, overwrite ex… CWE-22
Path Traversal
CVE-2024-7774 2024-11-1 00:39 2024-10-29 Show GitHub Exploit DB Packet Storm
314108 7.2 HIGH
Network
funadmin funadmin Funadmin 5.0.2 is vulnerable to SQL Injection in curd/table/savefield. CWE-89
SQL Injection
CVE-2024-48226 2024-11-1 00:38 2024-10-26 Show GitHub Exploit DB Packet Storm
314109 6.5 MEDIUM
Network
funadmin funadmin Funadmin v5.0.2 has an arbitrary file deletion vulnerability in /curd/index/delfile. NVD-CWE-noinfo
CVE-2024-48225 2024-11-1 00:35 2024-10-26 Show GitHub Exploit DB Packet Storm
314110 - - - A vulnerability in the backup feature of Cisco UCS Central Software could allow an attacker with access to a backup file to learn sensitive information that is stored in the full state and configurat… - CVE-2024-20280 2024-11-1 00:35 2024-10-17 Show GitHub Exploit DB Packet Storm