Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227551 5 警告 Wireshark - Wireshark の IPMI 解析子におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2559 2012-12-20 19:10 2009-07-20 Show GitHub Exploit DB Packet Storm
227552 5 警告 The Tor Project - Tor におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2009-2425 2012-12-20 19:10 2009-07-10 Show GitHub Exploit DB Packet Storm
227553 4.3 警告 レッドハット - Red Hat JBoss Enterprise Application Platform の Web Console におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2405 2012-12-20 19:10 2009-12-9 Show GitHub Exploit DB Packet Storm
227554 9.3 危険 shinji-chiba - SCMPX におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2403 2012-12-20 19:10 2009-07-9 Show GitHub Exploit DB Packet Storm
227555 7.5 危険 phpecho cms - PHPEcho CMS の forum モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2402 2012-12-20 19:10 2009-07-9 Show GitHub Exploit DB Packet Storm
227556 4.3 警告 phpecho cms - PHPEcho CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2401 2012-12-20 19:10 2009-07-9 Show GitHub Exploit DB Packet Storm
227557 5 警告 PHPSUGAR - PHP-Sugar の test/index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-2398 2012-12-20 19:10 2009-07-9 Show GitHub Exploit DB Packet Storm
227558 7.5 危険 smspages - Mr.Saphp Arabic Script Mobile の SMSPages における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2394 2012-12-20 19:10 2009-07-9 Show GitHub Exploit DB Packet Storm
227559 6.5 警告 Virtue Netz - Virtuenetz Virtue Online Test Generator の admin/index.php における脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-2393 2012-12-20 19:10 2009-07-9 Show GitHub Exploit DB Packet Storm
227560 7.5 危険 Virtue Netz - Virtuenetz Virtue Online Test Generator の text.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2392 2012-12-20 19:10 2009-07-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224811 6.5 MEDIUM
Adjacent
w1.fi
debian
canonical
hostapd
wpa_supplicant
debian_linux
ubuntu_linux
hostapd before 2.10 and wpa_supplicant before 2.10 allow an incorrect indication of disconnection in certain situations because source address validation is mishandled. This is a denial of service th… CWE-346
 Origin Validation Error
CVE-2019-16275 2024-11-21 13:30 2019-09-13 Show GitHub Exploit DB Packet Storm
224812 6.1 MEDIUM
Network
afterlogic aurora Afterlogic Aurora through 8.3.9-build-a3 has XSS that can be leveraged for session hijacking by retrieving the session cookie from the administrator login. CWE-79
Cross-site Scripting
CVE-2019-16238 2024-11-21 13:30 2019-09-13 Show GitHub Exploit DB Packet Storm
224813 9.1 CRITICAL
Network
tripplite pdumh15at_firmware Tripp Lite PDUMH15AT 12.04.0053 devices allow unauthenticated POST requests to the /Forms/ directory, as demonstrated by changing the manager or admin password, or shutting off power to an outlet. NO… CWE-287
Improper Authentication
CVE-2019-16261 2024-11-21 13:30 2019-09-13 Show GitHub Exploit DB Packet Storm
224814 9.8 CRITICAL
Network
motorola motorola_firmware Some Motorola devices include the SIMalliance Toolbox Browser (aka S@T Browser) on the UICC, which might allow remote attackers to retrieve location and IMEI information, or retrieve other data or ex… NVD-CWE-noinfo
CVE-2019-16257 2024-11-21 13:30 2019-09-12 Show GitHub Exploit DB Packet Storm
224815 9.8 CRITICAL
Network
samsung samsung_firmware Some Samsung devices include the SIMalliance Toolbox Browser (aka S@T Browser) on the UICC, which might allow remote attackers to retrieve location and IMEI information, or retrieve other data or exe… NVD-CWE-noinfo
CVE-2019-16256 2024-11-21 13:30 2019-09-12 Show GitHub Exploit DB Packet Storm
224816 7.5 HIGH
Network
oceanwp ocean_extra includes/wizard/wizard.php in the Ocean Extra plugin through 1.5.8 for WordPress allows unauthenticated options changes and injection of a Cascading Style Sheets (CSS) token sequence. CWE-287
Improper Authentication
CVE-2019-16250 2024-11-21 13:30 2019-09-12 Show GitHub Exploit DB Packet Storm
224817 5.3 MEDIUM
Network
opencv opencv OpenCV 4.1.1 has an out-of-bounds read in hal_baseline::v_load in core/hal/intrin_sse.hpp when called from computeSSDMeanNorm in modules/video/src/dis_flow.cpp. CWE-125
Out-of-bounds Read
CVE-2019-16249 2024-11-21 13:30 2019-09-12 Show GitHub Exploit DB Packet Storm
224818 5.5 MEDIUM
Local
telegram telegram The "delete for" feature in Telegram before 5.11 on Android does not delete shared media files from the Telegram Images directory. In other words, there is a potentially misleading UI indication that… NVD-CWE-noinfo
CVE-2019-16248 2024-11-21 13:30 2019-09-12 Show GitHub Exploit DB Packet Storm
224819 7.8 HIGH
Local
deltaww dcisoft Delta DCISoft 1.21 has a User Mode Write AV starting at CommLib!CCommLib::SetSerializeData+0x000000000000001b. NVD-CWE-noinfo
CVE-2019-16247 2024-11-21 13:30 2019-09-12 Show GitHub Exploit DB Packet Storm
224820 7.5 HIGH
Network
dino
canonical
fedoraproject
debian
dino
ubuntu_linux
fedora
debian_linux
Dino before 2019-09-10 does not properly check the source of an MAM message in module/xep/0313_message_archive_management.vala. CWE-346
 Origin Validation Error
CVE-2019-16237 2024-11-21 13:30 2019-09-12 Show GitHub Exploit DB Packet Storm