Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226251 6.8 警告 tntforum - TNT Forum の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-5265 2012-12-20 18:52 2008-11-28 Show GitHub Exploit DB Packet Storm
226252 4.3 警告 tornado - Tornado Knowledge Retrieval System の searcher.exe におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5264 2012-12-20 18:52 2008-11-28 Show GitHub Exploit DB Packet Storm
226253 4.4 警告 virtualox - Sun Innotek VirtualBox の ipcdUnix.cpp における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-5256 2012-12-20 18:52 2008-11-26 Show GitHub Exploit DB Packet Storm
226254 4.3 警告 Xine - xine-lib におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-5248 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
226255 4.3 警告 Xine - xine-lib の demux_real.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2008-5247 2012-12-20 18:52 2008-09-10 Show GitHub Exploit DB Packet Storm
226256 9.3 危険 Xine - xine-lib におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-5246 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
226257 9.3 危険 Xine - xine-lib における脆弱性 CWE-119
バッファエラー
CVE-2008-5245 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
226258 10 危険 Xine - xine-lib における脆弱性 CWE-noinfo
情報不足
CVE-2008-5244 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
226259 4.3 警告 Xine - xine-lib の demux_real.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-5243 2012-12-20 18:52 2008-09-10 Show GitHub Exploit DB Packet Storm
226260 6.8 警告 Xine - xine-lib の demux_qt.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2008-5242 2012-12-20 18:52 2008-09-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211891 5.4 MEDIUM
Network
labkey labkey_server An issue was discovered in LabKey Server 19.1.0. The display name of a user is vulnerable to stored XSS that can execute on administrators from security/permissions.view, security/addUsers.view, or w… CWE-79
Cross-site Scripting
CVE-2019-9758 2024-11-21 13:52 2019-10-30 Show GitHub Exploit DB Packet Storm
211892 7.5 HIGH
Network
labkey labkey_server An issue was discovered in LabKey Server 19.1.0. Sending an SVG containing an XXE payload to the endpoint visualization-exportImage.view or visualization-exportPDF.view allows local files to be read. CWE-611
XXE
CVE-2019-9757 2024-11-21 13:52 2019-10-30 Show GitHub Exploit DB Packet Storm
211893 4.5 MEDIUM
Adjacent
symantec messaging_gateway Symantec Messaging Gateway (prior to 10.7.0), may be susceptible to an information disclosure issue, which is a type of vulnerability that could potentially allow unauthorized access to data. NVD-CWE-noinfo
CVE-2019-9699 2024-11-21 13:52 2019-10-25 Show GitHub Exploit DB Packet Storm
211894 7.8 HIGH
Local
cloudcti hip_integrator_recognition_configuration_tool CloudCTI HIP Integrator Recognition Configuration Tool allows privilege escalation via its EXQUISE integration. This tool communicates with a service (Recognition Update Client Service) via an insecu… CWE-269
 Improper Privilege Management
CVE-2019-9745 2024-11-21 13:52 2019-10-15 Show GitHub Exploit DB Packet Storm
211895 7.8 HIGH
Local
libreoffice libreoffice LibreOffice documents can contain macros. The execution of those macros is controlled by the document security settings, typically execution of macros are blocked by default. A URL decoding flaw exis… CWE-116
 Improper Encoding or Escaping of Output
CVE-2019-9853 2024-11-21 13:52 2019-09-28 Show GitHub Exploit DB Packet Storm
211896 6.5 MEDIUM
Network
libav libav A stack-based buffer overflow in the subtitle decoder in Libav 12.3 allows attackers to corrupt the stack via a crafted video file in Matroska format, because srt_to_ass in libavcodec/srtdec.c misuse… CWE-787
 Out-of-bounds Write
CVE-2019-9720 2024-11-21 13:52 2019-09-20 Show GitHub Exploit DB Packet Storm
211897 8.8 HIGH
Network
libav libav A stack-based buffer overflow in the subtitle decoder in Libav 12.3 allows attackers to corrupt the stack via a crafted video file in Matroska format, because srt_to_ass in libavcodec/srtdec.c misuse… CWE-787
 Out-of-bounds Write
CVE-2019-9719 2024-11-21 13:52 2019-09-20 Show GitHub Exploit DB Packet Storm
211898 6.5 MEDIUM
Network
libav libav In Libav 12.3, a denial of service in the subtitle decoder allows attackers to hog the CPU via a crafted video file in Matroska format, because srt_to_ass in libavcodec/srtdec.c has a complex format … CWE-400
 Uncontrolled Resource Consumption
CVE-2019-9717 2024-11-21 13:52 2019-09-20 Show GitHub Exploit DB Packet Storm
211899 5.3 MEDIUM
Network
dahuasecurity ipc-hdw1x2x_firmware
ipc-hfw1x2x_firmware
ipc-hdw2x2x_firmware
ipc-hfw2x2x_firmware
ipc-hdw4x2x_firmware
ipc-hfw4x2x_firmware
ipc-hdbw4x2x_firmware
ipc-hdw5x2x_firmware
ipc-hf…
Some Dahua products have information leakage issues. Attackers can obtain the IP address and device model information of the device by constructing malicious data packets. Affected products include: … NVD-CWE-noinfo
CVE-2019-9680 2024-11-21 13:52 2019-09-19 Show GitHub Exploit DB Packet Storm
211900 8.8 HIGH
Network
dahuasecurity ipc-hdw1x2x_firmware
ipc-hfw1x2x_firmware
ipc-hdw2x2x_firmware
ipc-hfw2x2x_firmware
ipc-hdw4x2x_firmware
ipc-hfw4x2x_firmware
ipc-hdbw4x2x_firmware
ipc-hdw5x2x_firmware
ipc-hf…
Some of Dahua's Debug functions do not have permission separation. Low-privileged users can use the Debug function after logging in. Affected products include: IPC-HDW1X2X,IPC-HFW1X2X,IPC-HDW2X2X,IPC… CWE-276
Incorrect Default Permissions 
CVE-2019-9679 2024-11-21 13:52 2019-09-19 Show GitHub Exploit DB Packet Storm