Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227441 7.5 危険 robocode - Robocode における "Robocode ゲーム内部にアクセスされる" 脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-2078 2012-12-20 18:52 2008-05-5 Show GitHub Exploit DB Packet Storm
227442 10 危険 plain black - Plain Black WebGUI における脆弱性 CWE-noinfo
情報不足
CVE-2008-2077 2012-12-20 18:52 2008-05-5 Show GitHub Exploit DB Packet Storm
227443 7.5 危険 successkid - Harris Yusuf Arifin Harris Wap Chat における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-2074 2012-12-20 18:52 2008-05-5 Show GitHub Exploit DB Packet Storm
227444 7.5 危険 virtual design studios - Virtual Design Studio vlbook の include/global.inc.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-2073 2012-12-20 18:52 2008-05-5 Show GitHub Exploit DB Packet Storm
227445 4.3 警告 virtual design studios - Virtual Design Studio vlbook の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2072 2012-12-20 18:52 2008-05-5 Show GitHub Exploit DB Packet Storm
227446 4.3 警告 WordPress.org - WordPress におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2068 2012-12-20 18:52 2008-04-25 Show GitHub Exploit DB Packet Storm
227447 7.5 危険 YourFreeWorld.com - YourFreeWorld Jokes Site Script の jokes.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2065 2012-12-20 18:52 2008-05-2 Show GitHub Exploit DB Packet Storm
227448 10 危険 phpgedview - PhpGedView における脆弱性 CWE-noinfo
情報不足
CVE-2008-2064 2012-12-20 18:52 2008-05-2 Show GitHub Exploit DB Packet Storm
227449 4.3 警告 softpedia - Softpedia SiteXS CMS の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2046 2012-12-20 18:52 2008-05-1 Show GitHub Exploit DB Packet Storm
227450 5 警告 SugarCRM - SugarCRM Sugar Community Edition における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-2045 2012-12-20 18:52 2008-04-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213901 9.8 CRITICAL
Network
hotels_server_project hotels_server Hotels_Server through 2018-11-05 has SQL Injection via the API because the controller/api/login.php telephone parameter is mishandled. CWE-89
SQL Injection
CVE-2019-8393 2024-11-21 13:49 2019-02-18 Show GitHub Exploit DB Packet Storm
213902 6.1 MEDIUM
Network
ory hydra ORY Hydra before v1.0.0-rc.3+oryOS.9 has Reflected XSS via the oauth2/fallbacks/error error_hint parameter. CWE-79
Cross-site Scripting
CVE-2019-8400 2024-11-21 13:49 2019-02-17 Show GitHub Exploit DB Packet Storm
213903 6.5 MEDIUM
Network
hdfgroup hdf5 An issue was discovered in the HDF HDF5 1.10.4 library. There is an out of bounds read in the function H5T_get_size in H5T.c. CWE-125
Out-of-bounds Read
CVE-2019-8398 2024-11-21 13:49 2019-02-17 Show GitHub Exploit DB Packet Storm
213904 6.5 MEDIUM
Network
hdfgroup hdf5 An issue was discovered in the HDF HDF5 1.10.4 library. There is an out of bounds read in the function H5T_close_real in H5T.c. CWE-125
Out-of-bounds Read
CVE-2019-8397 2024-11-21 13:49 2019-02-17 Show GitHub Exploit DB Packet Storm
213905 6.5 MEDIUM
Network
hdfgroup hdf5 A buffer overflow in H5O__layout_encode in H5Olayout.c in the HDF HDF5 through 1.10.4 library allows attackers to cause a denial of service via a crafted HDF5 file. This issue was triggered while rep… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-8396 2024-11-21 13:49 2019-02-17 Show GitHub Exploit DB Packet Storm
213906 9.8 CRITICAL
Network
zohocorp manageengine_servicedesk_plus An Insecure Direct Object Reference (IDOR) vulnerability exists in Zoho ManageEngine ServiceDesk Plus (SDP) before 10.0 build 10007 via an attachment to a request. CWE-22
CWE-706
Path Traversal
 Use of Incorrectly-Resolved Name or Reference
CVE-2019-8395 2024-11-21 13:49 2019-02-17 Show GitHub Exploit DB Packet Storm
213907 6.5 MEDIUM
Network
zohocorp manageengine_servicedesk_plus Zoho ManageEngine ServiceDesk Plus (SDP) before 10.0 build 10012 allows remote attackers to upload arbitrary files via login page customization. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2019-8394 2024-11-21 13:49 2019-02-17 Show GitHub Exploit DB Packet Storm
213908 7.5 HIGH
Network
dlink dir-823g_firmware An issue was discovered on D-Link DIR-823G devices with firmware 1.02B03. There is incorrect access control allowing remote attackers to enable Guest Wi-Fi via the SetWLanRadioSettings HNAP API to th… NVD-CWE-noinfo
CVE-2019-8392 2024-11-21 13:49 2019-02-17 Show GitHub Exploit DB Packet Storm
213909 8.1 HIGH
Adjacent
musicloud_project musicloud A file-read vulnerability was identified in the Wi-Fi transfer feature of Musicloud 1.6. By default, the application runs a transfer service on port 8080, accessible by everyone on the same Wi-Fi net… CWE-22
Path Traversal
CVE-2019-8389 2024-11-21 13:49 2019-02-17 Show GitHub Exploit DB Packet Storm
213910 7.8 HIGH
Local
advancemame
debian
fedoraproject
redhat
advancecomp
debian_linux
fedora
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_for_power_little_endian
An issue was discovered in AdvanceCOMP through 2.1. An invalid memory address occurs in the function adv_png_unfilter_8 in lib/png.c. It can be triggered by sending a crafted file to a binary. It all… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-8383 2024-11-21 13:49 2019-02-17 Show GitHub Exploit DB Packet Storm