Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227211 4.3 警告 torrenttrader - TorrentTrader Classic の account-inbox.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-1172 2012-12-20 18:34 2008-03-5 Show GitHub Exploit DB Packet Storm
227212 7.8 危険 simm-comm - SCI Photo Chat Server の組み込まれた HTTP サーバにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-1169 2012-12-20 18:34 2008-03-5 Show GitHub Exploit DB Packet Storm
227213 4.3 警告 sarg - Sarg におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1168 2012-12-20 18:34 2008-03-5 Show GitHub Exploit DB Packet Storm
227214 10 危険 sarg - Sarg の useragent.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-1167 2012-12-20 18:34 2008-03-5 Show GitHub Exploit DB Packet Storm
227215 7.5 危険 phpComasy - phpComasy の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1164 2012-12-20 18:34 2008-03-5 Show GitHub Exploit DB Packet Storm
227216 7.5 危険 phparcadescript - phpArcadeScript の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1163 2012-12-20 18:34 2008-03-5 Show GitHub Exploit DB Packet Storm
227217 7.5 危険 ZyXEL - ZyXEL ZyWALL における権限を取得される脆弱性 CWE-DesignError
CVE-2008-1160 2012-12-20 18:34 2008-03-24 Show GitHub Exploit DB Packet Storm
227218 5.1 警告 The phpMyAdmin Project - phpMyAdmin における SQL インジェクションおよびクロスサイトリクエストフォージェリ攻撃を実行される脆弱性 CWE-352
CWE-89
CVE-2008-1149 2012-12-20 18:34 2008-03-3 Show GitHub Exploit DB Packet Storm
227219 9.3 危険 synce - SynCE-dccm の vdccm の src/utils.cpp における任意のコマンドを実行される脆弱性 CWE-20
CWE-94
CVE-2008-1136 2012-12-20 18:34 2008-03-4 Show GitHub Exploit DB Packet Storm
227220 4.3 警告 xrms crm - XRMS CRM の admin/users/self.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1129 2012-12-20 18:34 2008-03-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223391 9.8 CRITICAL
Network
marvell 88w8688_firmware An issue was discovered in Marvell 88W8688 Wi-Fi firmware before version p52, as used on Tesla Model S/X vehicles manufactured before March 2018, via the Parrot Faurecia Automotive FC6050W module. A … CWE-787
 Out-of-bounds Write
CVE-2019-13582 2024-11-21 13:25 2019-11-16 Show GitHub Exploit DB Packet Storm
223392 9.8 CRITICAL
Network
marvell 88w8688_firmware An issue was discovered in Marvell 88W8688 Wi-Fi firmware before version p52, as used on Tesla Model S/X vehicles manufactured before March 2018, via the Parrot Faurecia Automotive FC6050W module. A … CWE-787
 Out-of-bounds Write
CVE-2019-13581 2024-11-21 13:25 2019-11-16 Show GitHub Exploit DB Packet Storm
223393 5.9 MEDIUM
Network
mitsubishielectric q03\/04\/06\/13\/26udvcpu_firmware
q04\/06\/13\/26udpvcpu_firmware
q03udecpu_firmware
q04\/06\/10\/13\/20\/26\/50\/100udehcpu_firmware
l02\/06\/26cpu_firmware
l26cpu-bt_firmware
l02…
In Mitsubishi Electric MELSEC-Q Series Q03/04/06/13/26UDVCPU: serial number 21081 and prior, Q04/06/13/26UDPVCPU: serial number 21081 and prior, and Q03UDECPU, Q04/06/10/13/20/26/50/100UDEHCPU: seria… CWE-400
 Uncontrolled Resource Consumption
CVE-2019-13555 2024-11-21 13:25 2019-11-14 Show GitHub Exploit DB Packet Storm
223394 7.5 HIGH
Network
medtronic valleylab_exchange_client
valleylab_ft10_energy_platform_firmware
valleylab_fx8_energy_platform_firmware
Medtronic Valleylab Exchange Client version 3.4 and below, Valleylab FT10 Energy Platform (VLFT10GEN) software version 4.0.0 and below, and Valleylab FX8 Energy Platform (VLFX8GEN) software version 1… CWE-798
 Use of Hard-coded Credentials
CVE-2019-13543 2024-11-21 13:25 2019-11-9 Show GitHub Exploit DB Packet Storm
223395 4.6 MEDIUM
Physics
medtronic valleylab_ft10_energy_platform_firmware
valleylab_ls10_energy_platform_firmware
In Medtronic Valleylab FT10 Energy Platform (VLFT10GEN) version 2.1.0 and lower and version 2.0.3 and lower, and Valleylab LS10 Energy Platform (VLLS10GEN—not available in the United States) version … CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2019-13535 2024-11-21 13:25 2019-11-9 Show GitHub Exploit DB Packet Storm
223396 7.8 HIGH
Local
medtronic valleylab_exchange_client
valleylab_ft10_energy_platform_firmware
valleylab_fx8_energy_platform_firmware
Medtronic Valleylab Exchange Client version 3.4 and below, Valleylab FT10 Energy Platform (VLFT10GEN) software version 4.0.0 and below, and Valleylab FX8 Energy Platform (VLFX8GEN) software version 1… CWE-326
Inadequate Encryption Strength
CVE-2019-13539 2024-11-21 13:25 2019-11-9 Show GitHub Exploit DB Packet Storm
223397 4.6 MEDIUM
Physics
medtronic valleylab_ft10_energy_platform_firmware
valleylab_ls10_energy_platform_firmware
In Medtronic Valleylab FT10 Energy Platform (VLFT10GEN) version 2.1.0 and lower and version 2.0.3 and lower, and Valleylab LS10 Energy Platform (VLLS10GEN—not available in the United States) version … NVD-CWE-noinfo
CVE-2019-13531 2024-11-21 13:25 2019-11-9 Show GitHub Exploit DB Packet Storm
223398 5.3 MEDIUM
Network
philips tasy_emr
tasy_webportal
In Tasy EMR, Tasy WebPortal Versions 3.02.1757 and prior, there is an information exposure vulnerability which may allow a remote attacker to access system and configuration information. CWE-200
Information Exposure
CVE-2019-13557 2024-11-21 13:25 2019-11-9 Show GitHub Exploit DB Packet Storm
223399 6.5 MEDIUM
Network
oneidentity cloud_access_manager One Identity Cloud Access Manager before 8.1.4 Hotfix 1 allows CSRF for logout requests. CWE-352
 Origin Validation Error
CVE-2019-13497 2024-11-21 13:25 2019-11-5 Show GitHub Exploit DB Packet Storm
223400 8.1 HIGH
Network
oneidentity cloud_access_manager One Identity Cloud Access Manager before 8.1.4 Hotfix 1 allows OTP bypass via vectors involving a man in the middle, the One Identity Defender product, and replacing a failed SAML response with a suc… CWE-354
 Improper Validation of Integrity Check Value
CVE-2019-13496 2024-11-21 13:25 2019-11-5 Show GitHub Exploit DB Packet Storm