Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227181 7.5 危険 rgallery - WBB 用の rGallery プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4627 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227182 6.8 警告 zirkon box - Fritz Berger yappa-ng の yappa-ng におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4626 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227183 7.5 危険 shiftthis - WordPress 用の ShiftThis Newsletter プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4625 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227184 5 警告 Wireshark - Wireshark の Bluetooth ACL 解析子におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-4683 2012-12-20 18:52 2007-04-4 Show GitHub Exploit DB Packet Storm
227185 7.5 危険 phpfastnews - phpFastNews の fastnews-code.php における認証を迂回される脆弱性 CWE-287
不適切な認証
CVE-2008-4622 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227186 7.5 危険 ZeeScripts.com - ZeeScripts Zeeproperty の bannerclick.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4621 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227187 10 危険 サン・マイクロシステムズ - Sun Solaris の RPC サブシステムにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2008-4619 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227188 7.5 危険 pyxicom - Joomla! 用の actualite モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4617 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227189 5 警告 the spanner
WordPress.org
- WordPress の SpamBam プラグインにおける制限を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2008-4616 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
227190 10 危険 portalapp - PortalApp の i_utils.asp における脆弱性 CWE-noinfo
情報不足
CVE-2008-4615 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213811 7.5 HIGH
Network
apple mac_os_x
iphone_os
watchos
tvos
A validation issue was addressed with improved logic. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. Processing a maliciously crafted string may lead to a denial of se… CWE-20
 Improper Input Validation 
CVE-2019-8516 2024-11-21 13:49 2019-12-19 Show GitHub Exploit DB Packet Storm
213812 6.5 MEDIUM
Network
apple iphone_os
tvos
icloud
itunes
safari
A cross-origin issue existed with the fetch API. This was addressed with improved input validation. This issue is fixed in iOS 12.2, tvOS 12.2, Safari 12.1, iTunes 12.9.4 for Windows, iCloud for Wind… CWE-20
 Improper Input Validation 
CVE-2019-8515 2024-11-21 13:49 2019-12-19 Show GitHub Exploit DB Packet Storm
213813 7.8 HIGH
Local
apple mac_os_x
iphone_os
watchos
tvos
A logic issue was addressed with improved state management. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, watchOS 5.2. An application may be able to gain elevated privileges. NVD-CWE-noinfo
CVE-2019-8514 2024-11-21 13:49 2019-12-19 Show GitHub Exploit DB Packet Storm
213814 7.8 HIGH
Local
apple mac_os_x This issue was addressed with improved checks. This issue is fixed in macOS Mojave 10.14.4. A local user may be able to execute arbitrary shell commands. CWE-78
OS Command 
CVE-2019-8513 2024-11-21 13:49 2019-12-19 Show GitHub Exploit DB Packet Storm
213815 5.7 MEDIUM
Network
apple iphone_os This issue was addressed with improved transparency. This issue is fixed in iOS 12.2. A user may authorize an enterprise administrator to remotely wipe their device without appropriate disclosure. CWE-863
 Incorrect Authorization
CVE-2019-8512 2024-11-21 13:49 2019-12-19 Show GitHub Exploit DB Packet Storm
213816 7.8 HIGH
Local
apple mac_os_x
iphone_os
watchos
A buffer overflow issue was addressed with improved memory handling. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, watchOS 5.2. A malicious application may be able to elevate privileges. CWE-120
Classic Buffer Overflow
CVE-2019-8511 2024-11-21 13:49 2019-12-19 Show GitHub Exploit DB Packet Storm
213817 5.5 MEDIUM
Local
apple mac_os_x
iphone_os
watchos
tvos
An out-of-bounds read issue existed that led to the disclosure of kernel memory. This was addressed with improved input validation. This issue is fixed in iOS 12.2, macOS Mojave 10.14.4, tvOS 12.2, w… CWE-125
Out-of-bounds Read
CVE-2019-8510 2024-11-21 13:49 2019-12-19 Show GitHub Exploit DB Packet Storm
213818 7.8 HIGH
Local
apple mac_os_x A buffer overflow was addressed with improved bounds checking. This issue is fixed in macOS Mojave 10.14.4. Mounting a maliciously crafted NFS network share may lead to arbitrary code execution with … CWE-120
Classic Buffer Overflow
CVE-2019-8508 2024-11-21 13:49 2019-12-19 Show GitHub Exploit DB Packet Storm
213819 5.5 MEDIUM
Local
apple mac_os_x Multiple memory corruption issues were addressed with improved input validation. This issue is fixed in macOS Mojave 10.14.4. Processing malicious data may lead to unexpected application termination. CWE-20
 Improper Input Validation 
CVE-2019-8507 2024-11-21 13:49 2019-12-19 Show GitHub Exploit DB Packet Storm
213820 6.1 MEDIUM
Network
apple iphone_os
safari
A logic issue was addressed with improved validation. This issue is fixed in iOS 12.2, Safari 12.1. Enabling the Safari Reader feature on a maliciously crafted webpage may lead to universal cross sit… CWE-79
Cross-site Scripting
CVE-2019-8505 2024-11-21 13:49 2019-12-19 Show GitHub Exploit DB Packet Storm