Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227701 6.8 警告 request it - Request It の index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2015 2012-12-20 18:19 2007-04-12 Show GitHub Exploit DB Packet Storm
227702 6.8 警告 simpcms - SimpCMS Light の filename.asp における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2009 2012-12-20 18:19 2007-04-12 Show GitHub Exploit DB Packet Storm
227703 7.5 危険 pl-php - pL-PHP の admin.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2008 2012-12-20 18:19 2007-04-12 Show GitHub Exploit DB Packet Storm
227704 10 危険 stephen craton - Stephen Craton Chatness の admin/options.php における classes/vars.php などの設定ファイルを読まれる脆弱性 - CVE-2007-2147 2012-12-20 18:19 2007-04-19 Show GitHub Exploit DB Packet Storm
227705 7.5 危険 shoutpro - ShoutPro の shoutbox.php における shouts.php へ任意の PHP コードを挿入される脆弱性 - CVE-2007-2141 2012-12-20 18:19 2007-04-19 Show GitHub Exploit DB Packet Storm
227706 7.5 危険 rha7 downloads - XOOPS 用の rha7downloads モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-2107 2012-12-20 18:19 2007-04-18 Show GitHub Exploit DB Packet Storm
227707 6.8 警告 wabbit - Wabbit PHP Gallery の showpic.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2098 2012-12-20 18:19 2007-04-18 Show GitHub Exploit DB Packet Storm
227708 7.5 危険 tsdisplay4xoops - TSD4XOOPS の blocks/tsdisplay4xoops_block2.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-2091 2012-12-20 18:19 2007-04-18 Show GitHub Exploit DB Packet Storm
227709 6.8 警告 tumusika evolution - TuMusika Evolution の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2090 2012-12-20 18:19 2007-04-18 Show GitHub Exploit DB Packet Storm
227710 7.5 危険 pl-php - pL-PHP の admin.php における認証を回避される脆弱性 - CVE-2007-2007 2012-12-20 18:19 2007-04-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 29, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211321 7.5 HIGH
Network
apple
apache
canonical
debian
synology
fedoraproject
opensuse
redhat
oracle
mcafee
nodejs
swiftnio
traffic_server
ubuntu_linux
debian_linux
skynas
diskstation_manager
vs960hd_firmware
fedora
leap
software_collections
jboss_core_services
enterprise_linux
Some HTTP/2 implementations are vulnerable to a flood of empty frames, potentially leading to a denial of service. The attacker sends a stream of frames with an empty payload and without the end-of-s… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2019-9518 2024-11-21 13:51 2019-08-14 Show GitHub Exploit DB Packet Storm
211322 7.5 HIGH
Network
apple
apache
canonical
debian
synology
fedoraproject
opensuse
redhat
oracle
mcafee
netapp
nodejs
swiftnio
traffic_server
http_server
ubuntu_linux
debian_linux
skynas
diskstation_manager
vs960hd_firmware
fedora
leap
software_collections
jboss_core_services
ente…
Some HTTP/2 implementations are vulnerable to unconstrained interal data buffering, potentially leading to a denial of service. The attacker opens the HTTP/2 window so the peer can send without const… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2019-9517 2024-11-21 13:51 2019-08-14 Show GitHub Exploit DB Packet Storm
211323 6.5 MEDIUM
Network
apple
apache
canonical
debian
fedoraproject
synology
opensuse
redhat
oracle
mcafee
f5
nodejs
swiftnio
traffic_server
ubuntu_linux
debian_linux
fedora
skynas
diskstation_manager
vs960hd_firmware
leap
software_collections
jboss_core_services
enterprise_linux
Some HTTP/2 implementations are vulnerable to a header leak, potentially leading to a denial of service. The attacker sends a stream of headers with a 0-length header name and 0-length header value, … CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2019-9516 2024-11-21 13:51 2019-08-14 Show GitHub Exploit DB Packet Storm
211324 7.5 HIGH
Network
apple
apache
debian
nodejs
swiftnio
traffic_server
debian_linux
node.js
Some HTTP/2 implementations are vulnerable to ping floods, potentially leading to a denial of service. The attacker sends continual pings to an HTTP/2 peer, causing the peer to build an internal queu… CWE-400
 Uncontrolled Resource Consumption
CVE-2019-9512 2024-11-21 13:51 2019-08-14 Show GitHub Exploit DB Packet Storm
211325 7.5 HIGH
Network
apple
apache
canonical
debian
synology
fedoraproject
opensuse
redhat
oracle
mcafee
f5
nodejs
swiftnio
traffic_server
ubuntu_linux
debian_linux
skynas
diskstation_manager
vs960hd_firmware
fedora
leap
software_collections
jboss_core_services
enterprise_linux
Some HTTP/2 implementations are vulnerable to a settings flood, potentially leading to a denial of service. The attacker sends a stream of SETTINGS frames to the peer. Since the RFC requires that the… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2019-9515 2024-11-21 13:51 2019-08-14 Show GitHub Exploit DB Packet Storm
211326 7.5 HIGH
Network
apple
apache
debian
canonical
synology
fedoraproject
opensuse
redhat
oracle
mcafee
netapp
f5
nodejs
swiftnio
traffic_server
debian_linux
ubuntu_linux
skynas
diskstation_manager
vs960hd_firmware
fedora
leap
enterprise_linux_workstation
enterprise_linux_server
softwar…
Some HTTP/2 implementations are vulnerable to a reset flood, potentially leading to a denial of service. The attacker opens a number of streams and sends an invalid request over each stream that shou… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2019-9514 2024-11-21 13:51 2019-08-14 Show GitHub Exploit DB Packet Storm
211327 7.5 HIGH
Network
apple
apache
canonical
debian
fedoraproject
synology
opensuse
redhat
oracle
mcafee
f5
nodejs
swiftnio
traffic_server
ubuntu_linux
debian_linux
fedora
skynas
diskstation_manager
vs960hd_firmware
leap
software_collections
jboss_core_services
enterprise_linux
Some HTTP/2 implementations are vulnerable to resource loops, potentially leading to a denial of service. The attacker creates multiple request streams and continually shuffles the priority of the st… NVD-CWE-Other
CVE-2019-9513 2024-11-21 13:51 2019-08-14 Show GitHub Exploit DB Packet Storm
211328 7.5 HIGH
Network
apple
apache
canonical
debian
synology
fedoraproject
opensuse
redhat
oracle
mcafee
f5
nodejs
swiftnio
traffic_server
ubuntu_linux
debian_linux
skynas
diskstation_manager
vs960hd_firmware
fedora
leap
software_collections
jboss_core_services
enterprise_linux
Some HTTP/2 implementations are vulnerable to window size manipulation and stream prioritization manipulation, potentially leading to a denial of service. The attacker requests a large amount of data… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2019-9511 2024-11-21 13:51 2019-08-14 Show GitHub Exploit DB Packet Storm
211329 9.8 CRITICAL
Network
imgtech zoneplayer ZInsVX.dll ActiveX Control 2018.02 and earlier in Zoneplayer contains a vulnerability that could allow remote attackers to execute arbitrary files by setting the arguments to the ActiveX method. This… NVD-CWE-noinfo
CVE-2019-9141 2024-11-21 13:51 2019-08-3 Show GitHub Exploit DB Packet Storm
211330 8.1 HIGH
Network
happypointcard happypoint When processing Deeplink scheme, Happypoint mobile app 6.3.19 and earlier versions doesn't check Deeplink URL correctly. This could lead to javascript code execution, url redirection, sensitive infor… CWE-601
Open Redirect
CVE-2019-9140 2024-11-21 13:51 2019-08-2 Show GitHub Exploit DB Packet Storm