Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228041 6.8 警告 simian systems inc - Sitellite CMS における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3228 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
228042 4.3 警告 Ruby on Rails project - Ruby on Rails の to_json 関数におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-3227 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
228043 6.4 警告 サン・マイクロシステムズ - slapd における特定のデータを変更される脆弱性 - CVE-2007-3225 2012-12-20 18:19 2007-06-13 Show GitHub Exploit DB Packet Storm
228044 5 警告 サン・マイクロシステムズ - slapd におけるエントリの属性の存在を特定される脆弱性 - CVE-2007-3224 2012-12-20 18:19 2007-06-13 Show GitHub Exploit DB Packet Storm
228045 7.5 危険 XOOPS - XOOPS 用の XFsection モジュールにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3222 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
228046 6.8 警告 XOOPS - XOOPS 用の XT-Conteudo モジュールにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3221 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
228047 6.8 警告 XOOPS - XOOPS 用の Cjay Content モジュールにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3220 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
228048 7.5 危険 prototype of an php application - PHP アプリケーションの Prototype における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3217 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
228049 6.8 警告 PHPMailer project - PHPMailer における任意のシェルコマンドを実行される脆弱性 - CVE-2007-3215 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
228050 10 危険 PhpWiki - PhpWiki の lib/WikiUser/LDAP.php における認証を回避される脆弱性 - CVE-2007-3193 2012-12-20 18:19 2007-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 30, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213441 8.8 HIGH
Network
foxitsoftware phantompdf
reader
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit PhantomPDF. User interaction is required to exploit this vulnerability in that the target mus… CWE-125
Out-of-bounds Read
CVE-2019-6731 2024-11-21 13:47 2019-03-22 Show GitHub Exploit DB Packet Storm
213442 7.8 HIGH
Local
barracuda vpn_client The barracudavpn component of the Barracuda VPN Client prior to version 5.0.2.7 for Linux, macOS, and OpenBSD runs as a privileged process and can allow an unprivileged local attacker to load a malic… CWE-426
 Untrusted Search Path
CVE-2019-6724 2024-11-21 13:47 2019-03-22 Show GitHub Exploit DB Packet Storm
213443 9.4 CRITICAL
Network
logonbox nervepoint_access_manager An unauthenticated Insecure Direct Object Reference (IDOR) in Wicket Core in LogonBox Nervepoint Access Manager 2013 through 2017 allows a remote attacker to enumerate internal Active Directory usern… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2019-6716 2024-11-21 13:47 2019-03-22 Show GitHub Exploit DB Packet Storm
213444 8.8 HIGH
Network
foxitsoftware phantompdf
reader
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader. User interaction is required to exploit this vulnerability in that the target must vi… CWE-416
 Use After Free
CVE-2019-6730 2024-11-21 13:47 2019-03-22 Show GitHub Exploit DB Packet Storm
213445 8.8 HIGH
Network
foxitsoftware phantompdf
reader
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader. User interaction is required to exploit this vulnerability in that the target must vi… CWE-125
Out-of-bounds Read
CVE-2019-6729 2024-11-21 13:47 2019-03-22 Show GitHub Exploit DB Packet Storm
213446 6.5 MEDIUM
Network
foxitsoftware phantompdf
reader
This vulnerability allows remote attackers to disclose sensitive information on vulnerable installations of Foxit Reader. User interaction is required to exploit this vulnerability in that the target… CWE-125
Out-of-bounds Read
CVE-2019-6728 2024-11-21 13:47 2019-03-22 Show GitHub Exploit DB Packet Storm
213447 8.8 HIGH
Network
foxitsoftware phantompdf
reader
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Foxit Reader. User interaction is required to exploit this vulnerability in that the target must vi… CWE-416
 Use After Free
CVE-2019-6727 2024-11-21 13:47 2019-03-22 Show GitHub Exploit DB Packet Storm
213448 7.5 HIGH
Network
imagemagick
opensuse
debian
canonical
imagemagick
leap
debian_linux
ubuntu_linux
In ImageMagick before 7.0.8-25, some memory leaks exist in DecodeImage in coders/pcd.c. CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2019-7175 2024-11-21 13:47 2019-03-8 Show GitHub Exploit DB Packet Storm
213449 5.5 MEDIUM
Local
avaya one-x_communicator Avaya one-X Communicator uses weak cryptographic algorithms in the client authentication component that could allow a local attacker to decrypt sensitive information. Affected versions include all 6.… CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2019-7006 2024-11-21 13:47 2019-02-27 Show GitHub Exploit DB Packet Storm
213450 9.8 CRITICAL
Network
sqlalchemy
debian
opensuse
redhat
oracle
sqlalchemy
debian_linux
leap
backports_sle
enterprise_linux_eus
enterprise_linux_server_tus
enterprise_linux_server_aus
enterprise_linux
communications_operations_monitor
SQLAlchemy through 1.2.17 and 1.3.x through 1.3.0b2 allows SQL Injection via the order_by parameter. CWE-89
SQL Injection
CVE-2019-7164 2024-11-21 13:47 2019-02-20 Show GitHub Exploit DB Packet Storm