Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227051 7.5 危険 theratstudios - The Rat CMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5163 2012-12-20 18:52 2008-11-19 Show GitHub Exploit DB Packet Storm
227052 6.9 警告 uoregon - tau における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-5157 2012-12-20 18:52 2008-11-18 Show GitHub Exploit DB Packet Storm
227053 9.3 危険 smsclient - smsclient の mail2sms.sh における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-5155 2012-12-20 18:52 2008-11-18 Show GitHub Exploit DB Packet Storm
227054 6.9 警告 tkman - tkman の tkman における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-5137 2012-12-20 18:52 2008-11-18 Show GitHub Exploit DB Packet Storm
227055 4.3 警告 scripts4profit - Scripts4Profit DXShopCart の search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-5119 2012-12-20 18:52 2008-11-17 Show GitHub Exploit DB Packet Storm
227056 4 警告 WordPress.org - WordPress におけるクロスサイトリクエストフォージェリ (CSRF) 攻撃を実行される脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-5113 2012-12-20 18:52 2008-11-17 Show GitHub Exploit DB Packet Storm
227057 4 警告 Zope Foundation - Zope の PythonScripts におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-5102 2012-12-20 18:52 2008-11-17 Show GitHub Exploit DB Packet Storm
227058 5 警告 TYPO3 Association - TYPO3 File List エクステンションにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2008-5096 2012-12-20 18:52 2008-11-14 Show GitHub Exploit DB Packet Storm
227059 7.5 危険 TYPO3 Association - TYPO3 Another Backend Login エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5087 2012-12-20 18:52 2008-11-14 Show GitHub Exploit DB Packet Storm
227060 6.8 警告 scripts frenzy - E-Uploader Pro における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-5075 2012-12-20 18:52 2008-11-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223781 8.8 HIGH
Network
artifex
fedoraproject
opensuse
ghostscript
fedora
leap
A flaw was found in all versions of ghostscript 9.x before 9.50, where the `.charkeys` procedure, where it did not properly secure its privileged calls, enabling scripts to bypass `-dSAFER` restricti… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2019-14869 2024-11-21 13:27 2019-11-15 Show GitHub Exploit DB Packet Storm
223782 10.0 CRITICAL
Network
sas xml_mapper
base_sas
SAS XML Mapper 9.45 has an XML External Entity (XXE) vulnerability that can be leveraged by malicious attackers in multiple ways. Examples are Local File Reading, Out Of Band File Exfiltration, Serve… CWE-611
XXE
CVE-2019-14678 2024-11-21 13:27 2019-11-15 Show GitHub Exploit DB Packet Storm
223783 7.5 HIGH
Network
dpdk
redhat
fedoraproject
data_plane_development_kit
enterprise_linux_fast_datapath
openstack
virtualization_eus
fedora
A flaw was found in all dpdk version 17.x.x before 17.11.8, 16.x.x before 16.11.10, 18.x.x before 18.11.4 and 19.x.x before 19.08.1 where a malicious master, or a container with access to vhost_user … CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2019-14818 2024-11-21 13:27 2019-11-15 Show GitHub Exploit DB Packet Storm
223784 7.8 HIGH
Local
intel nuvoton_consumer_infrared Improper permissions in the installer for the Nuvoton* CIR Driver versions 1.02.1002 and before may allow an authenticated user to potentially enable escalation of privilege via local access. CWE-276
Incorrect Default Permissions 
CVE-2019-14602 2024-11-21 13:27 2019-11-15 Show GitHub Exploit DB Packet Storm
223785 6.5 MEDIUM
Network
redhat syndesis
fuse
It was found that the Syndesis configuration for Cross-Origin Resource Sharing was set to allow all origins. An attacker could use this lack of protection to conduct phishing attacks and further acce… NVD-CWE-Other
CVE-2019-14860 2024-11-21 13:27 2019-11-9 Show GitHub Exploit DB Packet Storm
223786 6.5 MEDIUM
Network
fedoraproject
redhat
debian
389_directory_server
enterprise_linux
debian_linux
A flaw was found in the 'deref' plugin of 389-ds-base where it could use the 'search' permission to display attribute values. In some configurations, this could allow an authenticated attacker to vie… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2019-14824 2024-11-21 13:27 2019-11-9 Show GitHub Exploit DB Packet Storm
223787 4.3 MEDIUM
Network
atlassian troubleshooting_and_support
jira
bitbucket
confluence
crowd
fisheye
crucible
bamboo
The Atlassian Troubleshooting and Support Tools plugin prior to version 1.17.2 allows an unprivileged user to initiate periodic log scans and send the results to a user-specified email address due to… CWE-862
 Missing Authorization
CVE-2019-15005 2024-11-21 13:27 2019-11-8 Show GitHub Exploit DB Packet Storm
223788 7.5 HIGH
Network
atlassian jira_service_desk The Customer Context Filter in Atlassian Jira Service Desk Server and Jira Service Desk Data Center before 3.9.17, from 3.10.0 before 3.16.10, from 4.0.0 before 4.2.6, from 4.3.0 before 4.3.5, from 4… CWE-22
Path Traversal
CVE-2019-15004 2024-11-21 13:27 2019-11-7 Show GitHub Exploit DB Packet Storm
223789 5.3 MEDIUM
Network
atlassian jira_service_desk The Customer Context Filter in Atlassian Jira Service Desk Server and Jira Service Desk Data Center before 3.9.17, from 3.10.0 before 3.16.10, from 4.0.0 before 4.2.6, from 4.3.0 before 4.3.5, from 4… CWE-22
Path Traversal
CVE-2019-15003 2024-11-21 13:27 2019-11-7 Show GitHub Exploit DB Packet Storm
223790 4.9 MEDIUM
Network
samba
opensuse
fedoraproject
samba
leap
fedora
A flaw was found in samba 4.0.0 before samba 4.9.15 and samba 4.10.x before 4.10.10. An attacker can crash AD DC LDAP server via dirsync resulting in denial of service. Privilege escalation is not po… CWE-476
 NULL Pointer Dereference
CVE-2019-14847 2024-11-21 13:27 2019-11-6 Show GitHub Exploit DB Packet Storm