Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227651 4.3 警告 phpwebgallery - PhpWebGallery の admin/include/isadmin.inc.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4591 2012-12-20 18:52 2008-10-16 Show GitHub Exploit DB Packet Storm
227652 7.5 危険 stash - Stash における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4590 2012-12-20 18:52 2008-10-16 Show GitHub Exploit DB Packet Storm
227653 5 警告 Matthias Wandel - jhead の DoCommand 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-4575 2012-12-20 18:52 2008-10-15 Show GitHub Exploit DB Packet Storm
227654 7.5 危険 real-estate-scripts - Real Estate Classifieds の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4570 2012-12-20 18:52 2008-10-15 Show GitHub Exploit DB Packet Storm
227655 7.5 危険 xigla - XIGLA Software Absolute Poll Manager XE の xlacomments.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4569 2012-12-20 18:52 2008-10-15 Show GitHub Exploit DB Packet Storm
227656 6.8 警告 VideoLAN - VLC Media Player における任意のメモリを上書きされる脆弱性 CWE-399
リソース管理の問題
CVE-2008-4558 2012-12-20 18:52 2008-10-14 Show GitHub Exploit DB Packet Storm
227657 7.2 危険 Fabrice Bellard - Debian GNU/Linux 上で稼動する qemu の qemu-make-debian-root における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-4553 2012-12-20 18:52 2008-10-15 Show GitHub Exploit DB Packet Storm
227658 5 警告 strongSwan - strongSwan におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-4551 2012-12-20 18:52 2008-10-14 Show GitHub Exploit DB Packet Storm
227659 9.3 危険 rtssentry - RTS Sentry の PTZCamPanelCtrl ActiveX コントロールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-4548 2012-12-20 18:52 2008-10-14 Show GitHub Exploit DB Packet Storm
227660 7.5 危険 PHP-Fusion - PHP-Fusion 用の Recepies モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4527 2012-12-20 18:52 2008-10-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224441 6.1 MEDIUM
Network
vocabularyserver tematres TemaTres 3.0 has reflected XSS via the replace_string or search_string parameter to the vocab/admin.php?doAdmin=bulkReplace URI. CWE-79
Cross-site Scripting
CVE-2019-14344 2024-11-21 13:26 2019-12-14 Show GitHub Exploit DB Packet Storm
224442 5.3 MEDIUM
Network
wolfssl wolfssl wolfSSL and wolfCrypt 4.1.0 and earlier (formerly known as CyaSSL) generate biased DSA nonces. This allows a remote attacker to compute the long term private key from several hundred DSA signatures v… CWE-331
 Insufficient Entropy
CVE-2019-14317 2024-11-21 13:26 2019-12-12 Show GitHub Exploit DB Packet Storm
224443 7.5 HIGH
Network
temenos t24 An issue was discovered in T24 in TEMENOS Channels R15.01. The login page presents JavaScript functions to access a document on the server once successfully authenticated. However, an attacker can le… CWE-22
Path Traversal
CVE-2019-14251 2024-11-21 13:26 2019-12-10 Show GitHub Exploit DB Packet Storm
224444 5.4 MEDIUM
Network
cloudera cloudera_manager An issue was discovered in Cloudera Manager 5.x before 5.16.2, 6.0.x before 6.0.2, and 6.1.x before 6.1.1. Malicious impala queries can result in Cross Site Scripting (XSS) when viewed within this pr… CWE-79
Cross-site Scripting
CVE-2019-14449 2024-11-21 13:26 2019-11-27 Show GitHub Exploit DB Packet Storm
224445 7.8 HIGH
Local
infoway social_photo_gallery The Social Photo Gallery plugin 1.0 for WordPress allows Remote Code Execution by creating an album and attaching a malicious PHP file in the cover photo album, because the file extension is not chec… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2019-14467 2024-11-21 13:26 2019-11-19 Show GitHub Exploit DB Packet Storm
224446 9.8 CRITICAL
Network
vocabularyserver tematres TemaTres 3.0 allows remote unprivileged users to create an administrator account NVD-CWE-noinfo
CVE-2019-14345 2024-11-21 13:26 2019-11-15 Show GitHub Exploit DB Packet Storm
224447 5.4 MEDIUM
Network
vocabularyserver tematres TemaTres 3.0 has stored XSS via the value parameter to the vocab/admin.php?vocabulario_id=list URI. CWE-79
Cross-site Scripting
CVE-2019-14343 2024-11-21 13:26 2019-11-15 Show GitHub Exploit DB Packet Storm
224448 5.5 MEDIUM
Local
intel
netapp
graphics_driver
cloud_backup
steelstore_cloud_integrated_storage
data_availability_services
solidfire_baseboard_management_controller_firmware
Improper input validation in the API for Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated user to potentially enable denial of service via local access. CWE-20
 Improper Input Validation 
CVE-2019-14591 2024-11-21 13:26 2019-11-15 Show GitHub Exploit DB Packet Storm
224449 5.5 MEDIUM
Local
intel
netapp
graphics_driver
cloud_backup
steelstore_cloud_integrated_storage
data_availability_services
solidfire_baseboard_management_controller_firmware
Improper access control in the API for the Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated user to potentially enable information disclosure via local access. CWE-269
 Improper Privilege Management
CVE-2019-14590 2024-11-21 13:26 2019-11-15 Show GitHub Exploit DB Packet Storm
224450 5.5 MEDIUM
Local
intel
netapp
graphics_driver
cloud_backup
steelstore_cloud_integrated_storage
data_availability_services
solidfire_baseboard_management_controller_firmware
Out of bounds read in a subsystem for Intel(R) Graphics Driver versions before 26.20.100.7209 may allow an authenticated user to potentially enable denial of service via local access. CWE-125
Out-of-bounds Read
CVE-2019-14574 2024-11-21 13:26 2019-11-15 Show GitHub Exploit DB Packet Storm