Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227891 5 警告 Quirm - SAXON における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2007-4861 2012-12-20 18:33 2007-10-30 Show GitHub Exploit DB Packet Storm
227892 7.5 危険 webace - wls の start.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4846 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
227893 7.5 危険 rwscripts.com - RW::Download の UPLOAD/index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4845 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
227894 4.3 警告 x-diesel - X-Diesel Unreal Commander におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2007-4844 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
227895 5.8 警告 x-diesel - X-Diesel Unreal Commander におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-4843 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
227896 7.5 危険 proxy anket - Proxy Anket の anket.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4837 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
227897 4.3 警告 phpmyquote - phpMyQuote の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4836 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
227898 7.5 危険 phpmyquote - phpMyQuote の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4835 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
227899 7.5 危険 phprealty - phpRealty における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-4834 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
227900 2.6 注意 torrenttrader - TorrentTrader の account_settings.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4831 2012-12-20 18:33 2007-09-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222621 9.8 CRITICAL
Network
microdigital mdc-n4090_firmware
mdc-n4090w_firmware
mdc-n2190v_firmware
An issue was discovered on MicroDigital N-series cameras with firmware through 6400.0.8.5. In a CGI program running under the HTTPD web server, a buffer overflow in the param parameter leads to remot… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-14698 2024-11-21 13:27 2019-08-7 Show GitHub Exploit DB Packet Storm
222622 9.8 CRITICAL
Network
musl-libc musl musl libc through 1.1.23 has an x87 floating-point stack adjustment imbalance, related to the math/i386/ directory. In some cases, use of this library could introduce out-of-bounds writes that are no… CWE-787
 Out-of-bounds Write
CVE-2019-14697 2024-11-21 13:27 2019-08-7 Show GitHub Exploit DB Packet Storm
222623 6.1 MEDIUM
Network
open-school open-school Open-School 3.0, and Community Edition 2.3, allows XSS via the osv/index.php?r=students/guardians/create id parameter. CWE-79
Cross-site Scripting
CVE-2019-14696 2024-11-21 13:27 2019-08-7 Show GitHub Exploit DB Packet Storm
222624 9.8 CRITICAL
Network
sygnoos popup_builder A SQL injection vulnerability exists in the Sygnoos Popup Builder plugin before 3.45 for WordPress. Successful exploitation of this vulnerability would allow a remote attacker to execute arbitrary SQ… CWE-89
SQL Injection
CVE-2019-14695 2024-11-21 13:27 2019-08-6 Show GitHub Exploit DB Packet Storm
222625 8.8 HIGH
Network
adplug_project
fedoraproject
adplug
fedora
AdPlug 2.3.1 has a heap-based buffer overflow in CmkjPlayer::load() in mkj.cpp. CWE-787
 Out-of-bounds Write
CVE-2019-14692 2024-11-21 13:27 2019-08-6 Show GitHub Exploit DB Packet Storm
222626 8.8 HIGH
Network
adplug_project
fedoraproject
adplug
fedora
AdPlug 2.3.1 has a heap-based buffer overflow in CdtmLoader::load() in dtm.cpp. CWE-787
 Out-of-bounds Write
CVE-2019-14691 2024-11-21 13:27 2019-08-6 Show GitHub Exploit DB Packet Storm
222627 8.8 HIGH
Network
adplug_project
fedoraproject
adplug
fedora
AdPlug 2.3.1 has a heap-based buffer overflow in CxadbmfPlayer::__bmf_convert_stream() in bmf.cpp. CWE-787
 Out-of-bounds Write
CVE-2019-14690 2024-11-21 13:27 2019-08-6 Show GitHub Exploit DB Packet Storm
222628 5.4 MEDIUM
Network
firefly-iii firefly_iii Firefly III 4.7.17.5 is vulnerable to stored XSS due to the lack of filtration of user-supplied data in the liability name field. The JavaScript code is executed upon an error condition during a visi… CWE-79
Cross-site Scripting
CVE-2019-14672 2024-11-21 13:27 2019-08-6 Show GitHub Exploit DB Packet Storm
222629 3.3 LOW
Local
firefly-iii firefly_iii Firefly III 4.7.17.3 is vulnerable to local file enumeration. An attacker can enumerate local files due to the lack of protocol scheme sanitization, such as for file:/// URLs. This is related to fint… CWE-20
 Improper Input Validation 
CVE-2019-14671 2024-11-21 13:27 2019-08-6 Show GitHub Exploit DB Packet Storm
222630 5.4 MEDIUM
Network
firefly-iii firefly_iii Firefly III 4.7.17.3 is vulnerable to stored XSS due to the lack of filtration of user-supplied data in the bill name field. The JavaScript code is executed during rule-from-bill creation. CWE-79
Cross-site Scripting
CVE-2019-14670 2024-11-21 13:27 2019-08-6 Show GitHub Exploit DB Packet Storm