Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 12:09 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227401 7.5 危険 phparcadescript - phpArcadeScript の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1163 2012-12-20 18:34 2008-03-5 Show GitHub Exploit DB Packet Storm
227402 7.5 危険 ZyXEL - ZyXEL ZyWALL における権限を取得される脆弱性 CWE-DesignError
CVE-2008-1160 2012-12-20 18:34 2008-03-24 Show GitHub Exploit DB Packet Storm
227403 5.1 警告 The phpMyAdmin Project - phpMyAdmin における SQL インジェクションおよびクロスサイトリクエストフォージェリ攻撃を実行される脆弱性 CWE-352
CWE-89
CVE-2008-1149 2012-12-20 18:34 2008-03-3 Show GitHub Exploit DB Packet Storm
227404 9.3 危険 synce - SynCE-dccm の vdccm の src/utils.cpp における任意のコマンドを実行される脆弱性 CWE-20
CWE-94
CVE-2008-1136 2012-12-20 18:34 2008-03-4 Show GitHub Exploit DB Packet Storm
227405 4.3 警告 xrms crm - XRMS CRM の admin/users/self.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1129 2012-12-20 18:34 2008-03-3 Show GitHub Exploit DB Packet Storm
227406 6.8 警告 phpmytourney - phpMyTourney の tourney/index.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1128 2012-12-20 18:34 2008-03-3 Show GitHub Exploit DB Packet Storm
227407 5 警告 podcast generator - Podcast Generator におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-1125 2012-12-20 18:34 2008-03-3 Show GitHub Exploit DB Packet Storm
227408 6.8 警告 podcast generator - Podcast Generator における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1124 2012-12-20 18:34 2008-03-3 Show GitHub Exploit DB Packet Storm
227409 6.8 警告 sitebuilder - SiteBuilder Elite における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1123 2012-12-20 18:34 2008-03-3 Show GitHub Exploit DB Packet Storm
227410 9.3 危険 rising antivirus international - Rising Antivirus Online Scanner の Web Scan Object ActiveX コントロール における任意のコードを強制的にダウンロードされる脆弱性 CWE-DesignError
CVE-2008-1116 2012-12-20 18:34 2008-03-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222741 4.6 MEDIUM
Physics
linux
netapp
canonical
debian
opensuse
linux_kernel
h410c_firmware
data_availability_services
solidfire_\&_hci_management_node
active_iq_unified_manager
solidfire_baseboard_management_controller
ubuntu_linux
debia…
An issue was discovered in the Linux kernel before 5.0.14. There is a NULL pointer dereference caused by a malicious USB device in the drivers/usb/misc/yurex.c driver. CWE-476
 NULL Pointer Dereference
CVE-2019-15216 2024-11-21 13:28 2019-08-20 Show GitHub Exploit DB Packet Storm
222742 4.6 MEDIUM
Physics
linux
netapp
canonical
debian
opensuse
linux_kernel
h410c_firmware
data_availability_services
solidfire_\&_hci_management_node
active_iq_unified_manager
solidfire_baseboard_management_controller
ubuntu_linux
debia…
An issue was discovered in the Linux kernel before 5.2.6. There is a use-after-free caused by a malicious USB device in the drivers/media/usb/cpia2/cpia2_usb.c driver. CWE-416
 Use After Free
CVE-2019-15215 2024-11-21 13:28 2019-08-20 Show GitHub Exploit DB Packet Storm
222743 6.4 MEDIUM
Local
linux
canonical
opensuse
linux_kernel
ubuntu_linux
leap
An issue was discovered in the Linux kernel before 5.0.10. There is a use-after-free in the sound subsystem because card disconnection causes certain data structures to be deleted too early. This is … CWE-416
 Use After Free
CVE-2019-15214 2024-11-21 13:28 2019-08-20 Show GitHub Exploit DB Packet Storm
222744 4.6 MEDIUM
Physics
linux
netapp
opensuse
linux_kernel
h410c_firmware
data_availability_services
solidfire_\&_hci_management_node
active_iq_unified_manager
solidfire_baseboard_management_controller
leap
An issue was discovered in the Linux kernel before 5.2.3. There is a use-after-free caused by a malicious USB device in the drivers/media/usb/dvb-usb/dvb-usb-init.c driver. CWE-416
 Use After Free
CVE-2019-15213 2024-11-21 13:28 2019-08-20 Show GitHub Exploit DB Packet Storm
222745 4.6 MEDIUM
Physics
linux
netapp
canonical
debian
opensuse
linux_kernel
h410c_firmware
data_availability_services
solidfire_\&_hci_management_node
active_iq_unified_manager
solidfire_baseboard_management_controller
ubuntu_linux
debia…
An issue was discovered in the Linux kernel before 5.1.8. There is a double-free caused by a malicious USB device in the drivers/usb/misc/rio500.c driver. CWE-415
 Double Free
CVE-2019-15212 2024-11-21 13:28 2019-08-20 Show GitHub Exploit DB Packet Storm
222746 4.6 MEDIUM
Physics
linux
netapp
canonical
debian
opensuse
linux_kernel
h410c_firmware
data_availability_services
solidfire_\&_hci_management_node
active_iq_unified_manager
solidfire_baseboard_management_controller
ubuntu_linux
debia…
An issue was discovered in the Linux kernel before 5.2.6. There is a use-after-free caused by a malicious USB device in the drivers/media/v4l2-core/v4l2-dev.c driver because drivers/media/radio/radio… CWE-416
 Use After Free
CVE-2019-15211 2024-11-21 13:28 2019-08-20 Show GitHub Exploit DB Packet Storm
222747 7.5 HIGH
Network
kbrw sweet_xml The SweetXml (aka sweet_xml) package through 0.6.6 for Erlang and Elixir allows attackers to cause a denial of service (resource consumption) via an XML entity expansion attack with an inline DTD. CWE-776
XML Entity Expansion
CVE-2019-15160 2024-11-21 13:28 2019-08-19 Show GitHub Exploit DB Packet Storm
222748 8.8 HIGH
Network
schine.games mw-oauth2client In the OAuth2 Client extension before 0.4 for MediaWiki, a CSRF vulnerability exists due to the OAuth2 state parameter not being checked in the callback function. CWE-352
 Origin Validation Error
CVE-2019-15150 2024-11-21 13:28 2019-08-19 Show GitHub Exploit DB Packet Storm
222749 9.8 CRITICAL
Network
adplug_project
fedoraproject
adplug
fedora
AdPlug 2.3.1 has a double free in the Cu6mPlayer class in u6m.h. CWE-415
 Double Free
CVE-2019-15151 2024-11-21 13:28 2019-08-19 Show GitHub Exploit DB Packet Storm
222750 6.5 MEDIUM
Network
gopro gpmf-parser GoPro GPMF-parser 1.2.2 has an out-of-bounds write in OpenMP4Source in demo/GPMF_mp4reader.c. CWE-787
 Out-of-bounds Write
CVE-2019-15148 2024-11-21 13:28 2019-08-19 Show GitHub Exploit DB Packet Storm