Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227021 9.3 危険 Xine - xine-lib の src/demuxers/demux_real.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-5235 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
227022 9.3 危険 Xine - xine-lib におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-5234 2012-12-20 18:52 2008-09-10 Show GitHub Exploit DB Packet Storm
227023 4.3 警告 Xine - xine-lib におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2008-5233 2012-12-20 18:52 2008-09-10 Show GitHub Exploit DB Packet Storm
227024 10 危険 phpcow - PHPCow における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-5227 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
227025 7.5 危険 wportfolio - wPortfolio の admin/userinfo.php における admin アカウントのパスワードを変更される脆弱性 CWE-287
不適切な認証
CVE-2008-5221 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
227026 10 危険 wportfolio - wPortfolio の admin/upload_form.php における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-5220 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
227027 7.5 危険 videoscript - VVideoScript のパスワード変更機能における admin アカウントパスワードを変更される脆弱性 CWE-287
不適切な認証
CVE-2008-5219 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
227028 5 警告 Scriptsez.net - ScriptsEz FREEze Greetings における平文パスワードを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5218 2012-12-20 18:52 2008-11-25 Show GitHub Exploit DB Packet Storm
227029 5.1 警告 phpc0d3r - txtCMS の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-5217 2012-12-20 18:52 2008-11-24 Show GitHub Exploit DB Packet Storm
227030 7.5 危険 toddwoolums - Todd Woolums ASP News Management の viewnews.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5273 2012-12-20 18:52 2008-11-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223351 7.5 HIGH
Network
memcached memcached memcached 1.5.16, when UNIX sockets are used, has a stack-based buffer over-read in conn_to_str in memcached.c. CWE-125
Out-of-bounds Read
CVE-2019-15026 2024-11-21 13:27 2019-08-31 Show GitHub Exploit DB Packet Storm
223352 5.3 MEDIUM
Network
woocommerce payu_india_payment_gateway /payu/icpcheckout/ in the WooCommerce PayU India Payment Gateway plugin 2.1.1 for WordPress allows Parameter Tampering in the purchaseQuantity=1 parameter, as demonstrated by purchasing an item for l… CWE-20
 Improper Input Validation 
CVE-2019-14978 2024-11-21 13:27 2019-08-30 Show GitHub Exploit DB Packet Storm
223353 5.3 MEDIUM
Network
woocommerce paypal_checkout_payment_gateway cgi-bin/webscr?cmd=_cart in the WooCommerce PayPal Checkout Payment Gateway plugin 1.6.17 for WordPress allows Parameter Tampering in an amount parameter (such as amount_1), as demonstrated by purcha… CWE-20
 Improper Input Validation 
CVE-2019-14979 2024-11-21 13:27 2019-08-30 Show GitHub Exploit DB Packet Storm
223354 7.8 HIGH
Local
videolan
debian
vlc_media_player
debian_linux
A vulnerability in mkv::event_thread_t in VideoLAN VLC media player 3.0.7.1 allows remote attackers to trigger a heap-based buffer overflow via a crafted .mkv file. CWE-787
 Out-of-bounds Write
CVE-2019-14970 2024-11-21 13:27 2019-08-30 Show GitHub Exploit DB Packet Storm
223355 7.8 HIGH
Local
videolan
debian
vlc_media_player
debian_linux
The mkv::virtual_segment_c::seek method of demux/mkv/virtual_segment.cpp in VideoLAN VLC media player 3.0.7.1 has a use-after-free. CWE-416
 Use After Free
CVE-2019-14778 2024-11-21 13:27 2019-08-30 Show GitHub Exploit DB Packet Storm
223356 7.8 HIGH
Local
videolan
debian
vlc_media_player
debian_linux
The Control function of demux/mkv/mkv.cpp in VideoLAN VLC media player 3.0.7.1 has a use-after-free. CWE-416
 Use After Free
CVE-2019-14777 2024-11-21 13:27 2019-08-30 Show GitHub Exploit DB Packet Storm
223357 7.8 HIGH
Local
videolan
debian
vlc_media_player
debian_linux
A heap-based buffer over-read exists in DemuxInit() in demux/asf/asf.c in VideoLAN VLC media player 3.0.7.1 via a crafted .mkv file. CWE-125
Out-of-bounds Read
CVE-2019-14776 2024-11-21 13:27 2019-08-30 Show GitHub Exploit DB Packet Storm
223358 9.8 CRITICAL
Network
gitlab gitlab An issue was discovered in GitLab Community and Enterprise Edition 12.0 through 12.1.4. It uses Hard-coded Credentials. CWE-798
 Use of Hard-coded Credentials
CVE-2019-14943 2024-11-21 13:27 2019-08-29 Show GitHub Exploit DB Packet Storm
223359 4.7 MEDIUM
Local
comodo antivirus A use-after-free flaw in the sandbox container implemented in cmdguard.sys in Comodo Antivirus 12.0.0.6870 can be triggered due to a race condition when handling IRP_MJ_CLEANUP requests in the minifi… CWE-362
CWE-416
Race Condition
 Use After Free
CVE-2019-14694 2024-11-21 13:27 2019-08-29 Show GitHub Exploit DB Packet Storm
223360 6.5 MEDIUM
Network
mikrotik routeros MikroTik RouterOS through 6.44.5 and 6.45.x through 6.45.3 improperly handles the disk name, which allows authenticated users to delete arbitrary files. Attackers can exploit this vulnerability to re… CWE-22
Path Traversal
CVE-2019-15055 2024-11-21 13:27 2019-08-27 Show GitHub Exploit DB Packet Storm