Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
248811 3.5 注意 SocialCMS - SocialCMS の my_admin/admin1_list_pages.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1982 2012-04-9 10:26 2012-04-5 Show GitHub Exploit DB Packet Storm
248812 10 危険 ヒューレット・パッカード - HP-UX 上の Distributed Computing Environment におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2012-0131 2012-04-9 10:06 2012-04-2 Show GitHub Exploit DB Packet Storm
248813 4.3 警告 ヒューレット・パッカード - HP Business Availability Center におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0132 2012-04-9 10:02 2012-04-3 Show GitHub Exploit DB Packet Storm
248814 5 警告 ヒューレット・パッカード - HP Onboard Administrator における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-0130 2012-04-9 09:59 2012-04-2 Show GitHub Exploit DB Packet Storm
248815 7.6 危険 ヒューレット・パッカード - HP Onboard Administrator におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-0129 2012-04-9 09:55 2012-04-2 Show GitHub Exploit DB Packet Storm
248816 5.8 警告 ヒューレット・パッカード - HP Onboard Administrator におけるユーザを任意の Web サイトにリダイレクトされる脆弱性 CWE-20
不適切な入力確認
CVE-2012-0128 2012-04-9 09:51 2012-04-2 Show GitHub Exploit DB Packet Storm
248817 5 警告 GitHub - GitHub Enterprise における public_key[user_id] の値を設定される脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-2055 2012-04-6 16:21 2012-04-4 Show GitHub Exploit DB Packet Storm
248818 5 警告 Redmine - Redmine における属性を設定される脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-2054 2012-04-6 16:21 2012-03-6 Show GitHub Exploit DB Packet Storm
248819 5 警告 Spree Commerce - Spree のセッション Cookie ストアの実装における暗号保護メカニズムを容易に回避される脆弱性 CWE-255
証明書・パスワード管理
CVE-2008-7311 2012-04-6 16:19 2008-08-12 Show GitHub Exploit DB Packet Storm
248820 5 警告 Spree Commerce - Spree における Order ステートの値を設定される脆弱性 CWE-255
証明書・パスワード管理
CVE-2008-7310 2012-04-6 16:16 2008-09-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313921 9.8 CRITICAL
Network
microfocus edirectory Possible External Service Interaction attack in eDirectory has been discovered in OpenText™ eDirectory. This impact all version before 9.2.6.0000. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2021-38132 2024-09-19 06:04 2024-09-12 Show GitHub Exploit DB Packet Storm
313922 6.1 MEDIUM
Network
microfocus edirectory Possible Cross-Site Scripting (XSS) Vulnerability in eDirectory has been discovered in OpenText™ eDirectory 9.2.5.0000. CWE-79
Cross-site Scripting
CVE-2021-38131 2024-09-19 06:00 2024-09-12 Show GitHub Exploit DB Packet Storm
313923 6.1 MEDIUM
Network
i-doit i-doit Cross-site Scripting (XSS) vulnerability in idoit pro version 28. This vulnerability allows an attacker to retrieve session details of an authenticated user due to lack of proper sanitization of the … CWE-79
Cross-site Scripting
CVE-2024-8750 2024-09-19 05:38 2024-09-12 Show GitHub Exploit DB Packet Storm
313924 5.3 MEDIUM
Network
ordat ordat.erp User enumeration vulnerability in ORDAT FOSS-Online before v2.24.01 allows attackers to determine if an account exists in the application by comparing the server responses of the forgot password func… CWE-203
 Information Exposure Through Discrepancy
CVE-2024-34336 2024-09-19 05:32 2024-09-13 Show GitHub Exploit DB Packet Storm
313925 6.1 MEDIUM
Network
ordat ordat.erp ORDAT FOSS-Online before version 2.24.01 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the login page. CWE-79
Cross-site Scripting
CVE-2024-34335 2024-09-19 05:32 2024-09-13 Show GitHub Exploit DB Packet Storm
313926 7.5 HIGH
Network
ordat ordat.erp ORDAT FOSS-Online before v2.24.01 was discovered to contain a SQL injection vulnerability via the forgot password function. CWE-89
SQL Injection
CVE-2024-34334 2024-09-19 05:32 2024-09-13 Show GitHub Exploit DB Packet Storm
313927 9.8 CRITICAL
Network
soplanning soplanning A unauthenticated Remote Code Execution (RCE) vulnerability is found in the SO Planning online planning tool. With this vulnerability, an attacker can upload executable files that are moved to a publ… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-27115 2024-09-19 05:32 2024-09-11 Show GitHub Exploit DB Packet Storm
313928 3.1 LOW
Network
keyfactor ejbca The CMP CLI client in KeyFactor EJBCA before 8.3.1 has only 6 octets of salt, and is thus not compliant with the security requirements of RFC 4211, and might make man-in-the-middle attacks easier. CM… NVD-CWE-noinfo
CVE-2024-36066 2024-09-19 05:28 2024-09-13 Show GitHub Exploit DB Packet Storm
313929 7.8 HIGH
Local
wibu wibukey An issue was discovered in WibuKey64.sys in WIBU-SYSTEMS WibuKey before v6.70 and fixed in v.6.70. An improper bounds check allows crafted packets to cause an arbitrary address write, resulting in ke… CWE-787
 Out-of-bounds Write
CVE-2024-45181 2024-09-19 05:26 2024-09-13 Show GitHub Exploit DB Packet Storm
313930 6.1 MEDIUM
Network
discourse calendar Discourse Calendar plugin adds the ability to create a dynamic calendar in the first post of a topic to Discourse. Rendering event names can be susceptible to XSS attacks. This vulnerability only aff… CWE-79
Cross-site Scripting
CVE-2024-45303 2024-09-19 05:25 2024-09-13 Show GitHub Exploit DB Packet Storm