Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227061 7.5 危険 Plogger Project - Plogger における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3563 2012-12-20 18:52 2008-07-29 Show GitHub Exploit DB Packet Storm
227062 6.8 警告 powergap - Powergap Shopsystem の s03.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3561 2012-12-20 18:52 2008-08-10 Show GitHub Exploit DB Packet Storm
227063 6.8 警告 wsnlinks - WSN Forum などの index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-3555 2012-12-20 18:52 2008-08-8 Show GitHub Exploit DB Packet Storm
227064 10 危険 サン・マイクロシステムズ - Nokia Series 40 3rd エディションデバイスにおける任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-3553 2012-12-20 18:52 2008-08-8 Show GitHub Exploit DB Packet Storm
227065 10 危険 サン・マイクロシステムズ - Sun Wireless Toolkit で同梱されている Sun Java Platform Micro Edition における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2008-3551 2012-12-20 18:52 2008-08-8 Show GitHub Exploit DB Packet Storm
227066 4.9 警告 サン・マイクロシステムズ - Sun Netra T5220 Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2008-3548 2012-12-20 18:52 2008-08-4 Show GitHub Exploit DB Packet Storm
227067 4.7 警告 レッドハット - Fedora などの Linux 上で稼動している initscripts の rc.sysinit における任意のファイルを削除される脆弱性 CWE-59
リンク解釈の問題
CVE-2008-3524 2012-12-20 18:52 2008-09-25 Show GitHub Exploit DB Packet Storm
227068 4.3 警告 レッドハット - Red Hat JBoss Enterprise Application Platform の JBossAs コンポーネントにおける重要な情報を取得される脆弱性 CWE-16
環境設定
CVE-2008-3519 2012-12-20 18:52 2008-09-22 Show GitHub Exploit DB Packet Storm
227069 4.3 警告 softbiz - Softbiz Photo Gallery におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3511 2012-12-20 18:52 2008-08-7 Show GitHub Exploit DB Packet Storm
227070 5 警告 wogan may - LiteNews における認証を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-3508 2012-12-20 18:52 2008-08-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223211 7.8 HIGH
Local
intel setup_and_configuration_software_platform_discovery_utility Improper permissions in the installer for the Intel(R) SCS Platform Discovery Utility, all versions, may allow an authenticated user to potentially enable escalation of privilege via local attack. CWE-276
Incorrect Default Permissions 
CVE-2019-14605 2024-11-21 13:27 2019-12-17 Show GitHub Exploit DB Packet Storm
223212 5.5 MEDIUM
Local
intel quartus_prime Null pointer dereference in the FPGA kernel driver for Intel(R) Quartus(R) Prime Pro Edition before version 19.3 may allow an authenticated user to potentially enable denial of service via local acce… CWE-476
 NULL Pointer Dereference
CVE-2019-14604 2024-11-21 13:27 2019-12-17 Show GitHub Exploit DB Packet Storm
223213 7.8 HIGH
Local
intel quartus_prime Improper permissions in the installer for the License Server software for Intel® Quartus® Prime Pro Edition before version 19.3 may allow an authenticated user to potentially enable escalation of pri… CWE-276
Incorrect Default Permissions 
CVE-2019-14603 2024-11-21 13:27 2019-12-17 Show GitHub Exploit DB Packet Storm
223214 7.8 HIGH
Local
intel control_center-i Unquoted service path in Control Center-I version 2.1.0.0 and earlier may allow an authenticated user to potentially enable escalation of privilege via local access. CWE-426
 Untrusted Search Path
CVE-2019-14599 2024-11-21 13:27 2019-12-17 Show GitHub Exploit DB Packet Storm
223215 5.4 MEDIUM
Network
redhat 3scale A vulnerability was found in 3scale before version 2.6, did not set the HTTPOnly attribute on the user session cookie. An attacker could use this to conduct cross site scripting attacks and gain acce… - CVE-2019-14849 2024-11-21 13:27 2019-12-12 Show GitHub Exploit DB Packet Storm
223216 4.3 MEDIUM
Network
atlassian crucible
fisheye
The /json/profile/removeStarAjax.do resource in Atlassian Fisheye and Crucible before version 4.8.0 allows remote attackers to remove another user's favourite setting for a project via an improper au… NVD-CWE-noinfo
CVE-2019-15009 2024-11-21 13:27 2019-12-12 Show GitHub Exploit DB Packet Storm
223217 6.1 MEDIUM
Network
atlassian crucible
fisheye
The /plugins/servlet/branchreview resource in Atlassian Fisheye and Crucible before version 4.7.3 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulne… CWE-79
Cross-site Scripting
CVE-2019-15008 2024-11-21 13:27 2019-12-12 Show GitHub Exploit DB Packet Storm
223218 4.8 MEDIUM
Network
atlassian crucible
fisheye
The review resource in Atlassian Fisheye and Crucible before version 4.7.3 allows remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability through the na… CWE-79
Cross-site Scripting
CVE-2019-15007 2024-11-21 13:27 2019-12-12 Show GitHub Exploit DB Packet Storm
223219 7.4 HIGH
Adjacent
freebsd
linux
openbsd
apple
freebsd
linux_kernel
openbsd
mac_os_x
tvos
iphone_os
ipados
macos
A vulnerability was discovered in Linux, FreeBSD, OpenBSD, MacOS, iOS, and Android that allows a malicious access point, or an adjacent user, to determine if a connected user is using a VPN, make pos… - CVE-2019-14899 2024-11-21 13:27 2019-12-12 Show GitHub Exploit DB Packet Storm
223220 8.8 HIGH
Network
libssh
canonical
opensuse
fedoraproject
debian
oracle
libssh
ubuntu_linux
leap
fedora
debian_linux
mysql_workbench
A flaw was found with the libssh API function ssh_scp_new() in versions before 0.9.3 and before 0.8.8. When the libssh SCP client connects to a server, the scp command, which includes a user-provided… CWE-78
OS Command 
CVE-2019-14889 2024-11-21 13:27 2019-12-11 Show GitHub Exploit DB Packet Storm