Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227101 2.6 注意 Tribal Ltd. - Tribiq CMS の templates/mytribiqsite/tribal-GPL-1066/includes/header.inc.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4893 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
227102 4.3 警告 planetluc - Planetluc MyGallery の gallery.inc.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4892 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
227103 4.3 警告 planetluc - Planetluc SignMe の signme.inc.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4891 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
227104 7.5 危険 YourFreeWorld.com - YourFreeWorld Shopping Cart Script の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4886 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
227105 7.5 危険 YourFreeWorld.com - YourFreeWorld Scrolling Text Ads Script の tr1.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4885 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
227106 7.5 危険 YourFreeWorld.com - YourFreeWorld Classifieds Hosting Script の tr.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4884 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
227107 7.5 危険 YourFreeWorld.com - YourFreeWorld Blog Blaster Script の tr.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4883 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
227108 7.5 危険 YourFreeWorld.com - YourFreeWorld Autoresponder Hosting Script の tr.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4882 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
227109 7.5 危険 YourFreeWorld.com - YourFreeWorld Reminder Service Script の tr.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4881 2012-12-20 18:52 2008-11-3 Show GitHub Exploit DB Packet Storm
227110 10 危険 sepal - Sepal SPBOARD の board.cgi における任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2008-4873 2012-12-20 18:52 2008-10-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223521 5.3 MEDIUM
Network
zabbix
debian
zabbix
debian_linux
Zabbix through 4.4.0alpha1 allows User Enumeration. With login requests, it is possible to enumerate application usernames based on the variability of server responses (e.g., the "Login name or passw… CWE-203
 Information Exposure Through Discrepancy
CVE-2019-15132 2024-11-21 13:28 2019-08-18 Show GitHub Exploit DB Packet Storm
223522 6.1 MEDIUM
Network
sandhillsdev easy_digital_downloads The easy-digital-downloads plugin before 2.9.16 for WordPress has XSS related to IP address logging. CWE-79
Cross-site Scripting
CVE-2019-15116 2024-11-21 13:28 2019-08-17 Show GitHub Exploit DB Packet Storm
223523 8.8 HIGH
Network
profilepress loginwp The peters-login-redirect plugin before 2.9.2 for WordPress has CSRF. CWE-352
 Origin Validation Error
CVE-2019-15115 2024-11-21 13:28 2019-08-17 Show GitHub Exploit DB Packet Storm
223524 8.8 HIGH
Network
ncrafts formcraft The formcraft-form-builder plugin before 1.2.2 for WordPress has CSRF. CWE-352
 Origin Validation Error
CVE-2019-15114 2024-11-21 13:28 2019-08-17 Show GitHub Exploit DB Packet Storm
223525 8.8 HIGH
Network
codeermeneer companion_sitemap_generator The companion-sitemap-generator plugin before 3.7.0 for WordPress has CSRF. CWE-352
 Origin Validation Error
CVE-2019-15113 2024-11-21 13:28 2019-08-17 Show GitHub Exploit DB Packet Storm
223526 5.4 MEDIUM
Network
kunena kunena The Kunena extension before 5.1.14 for Joomla! allows XSS via BBCode. CWE-79
Cross-site Scripting
CVE-2019-15120 2024-11-21 13:28 2019-08-17 Show GitHub Exploit DB Packet Storm
223527 5.5 MEDIUM
Local
nps_project nps lib/install/install.go in cnlh nps through 0.23.2 uses 0777 permissions for /usr/local/bin/nps and/or /usr/bin/nps, leading to a file overwrite by a local user. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2019-15119 2024-11-21 13:28 2019-08-17 Show GitHub Exploit DB Packet Storm
223528 5.5 MEDIUM
Local
linux
canonical
debian
opensuse
netapp
linux_kernel
ubuntu_linux
debian_linux
leap
data_availability_services
solidfire
hci_management_node
active_iq_unified_manager
solidfire_baseboard_management_controller_firmwa…
check_input_term in sound/usb/mixer.c in the Linux kernel through 5.2.9 mishandles recursion, leading to kernel stack exhaustion. CWE-674
 Uncontrolled Recursion
CVE-2019-15118 2024-11-21 13:28 2019-08-16 Show GitHub Exploit DB Packet Storm
223529 7.8 HIGH
Local
linux linux_kernel parse_audio_mixer_unit in sound/usb/mixer.c in the Linux kernel through 5.2.9 mishandles a short descriptor, leading to out-of-bounds memory access. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-15117 2024-11-21 13:28 2019-08-16 Show GitHub Exploit DB Packet Storm
223530 9.8 CRITICAL
Network
artica integria_ims filemgr.php in Artica Integria IMS 5.0.86 allows index.php?sec=wiki&sec2=operation/wiki/wiki&action=upload arbitrary file upload. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2019-15091 2024-11-21 13:28 2019-08-16 Show GitHub Exploit DB Packet Storm