Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228191 9 危険 PHPNUKE - PHP-Nuke の DownloadsPlus モジュールにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-4767 2012-12-20 18:52 2008-10-28 Show GitHub Exploit DB Packet Storm
228192 4.3 警告 wikidsystems - WiKID wClient-PHP の sample.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4763 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
228193 5 警告 php-daily - PHP-Daily の download_file.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4758 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
228194 7.5 危険 php-daily - PHP-Daily における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4757 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
228195 4.3 警告 php-daily - PHP-Daily の add_prest_date.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4756 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
228196 7.5 危険 pozscripts - PozScripts Classified Auctions Script の gotourl.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4755 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
228197 5.8 警告 scripts-for-sites - SFS Ez Forum の forum.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4754 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
228198 7.5 危険 tech logic - TlNews における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-4752 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
228199 7.5 危険 uniwin - Uniwin eCart Professional における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4746 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
228200 4.3 警告 uniwin - Uniwin eCart Professional の emailFriend.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4745 2012-12-20 18:52 2008-10-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
221391 6.5 MEDIUM
Network
cesnet libyang A stack consumption issue is present in libyang before v1.0-r1 due to the self-referential union type containing leafrefs. Applications that use libyang to parse untrusted input yang files may crash. CWE-674
 Uncontrolled Recursion
CVE-2019-20395 2024-11-21 13:38 2020-01-23 Show GitHub Exploit DB Packet Storm
221392 8.8 HIGH
Network
cesnet libyang A double-free is present in libyang before v1.0-r3 in the function yyparse() when a type statement in used in a notification statement. Applications that use libyang to parse untrusted input yang fil… CWE-415
 Double Free
CVE-2019-20394 2024-11-21 13:38 2020-01-23 Show GitHub Exploit DB Packet Storm
221393 8.8 HIGH
Network
cesnet libyang A double-free is present in libyang before v1.0-r1 in the function yyparse() when an empty description is used. Applications that use libyang to parse untrusted input yang files may be vulnerable to … CWE-415
 Double Free
CVE-2019-20393 2024-11-21 13:38 2020-01-23 Show GitHub Exploit DB Packet Storm
221394 6.5 MEDIUM
Network
cesnet libyang An invalid memory access flaw is present in libyang before v1.0-r1 in the function resolve_feature_value() when an if-feature statement is used inside a list key node, and the feature used is not def… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-20392 2024-11-21 13:38 2020-01-23 Show GitHub Exploit DB Packet Storm
221395 6.5 MEDIUM
Network
cesnet libyang An invalid memory access flaw is present in libyang before v1.0-r3 in the function resolve_feature_value() when an if-feature statement is used inside a bit. Applications that use libyang to parse un… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-20391 2024-11-21 13:38 2020-01-23 Show GitHub Exploit DB Packet Storm
221396 7.5 HIGH
Network
opensuse
debian
libsolv
debian_linux
repodata_schema2id in repodata.c in libsolv before 0.7.6 has a heap-based buffer over-read via a last schema whose length is less than the length of the input schema. CWE-125
Out-of-bounds Read
CVE-2019-20387 2024-11-21 13:38 2020-01-22 Show GitHub Exploit DB Packet Storm
221397 7.5 HIGH
Network
xmlsoft
debian
netapp
oracle
opensuse
fedoraproject
libxml2
debian_linux
cloud_backup
steelstore_cloud_integrated_storage
ontap_select_deploy_administration_utility
clustered_data_ontap
smi-s_provider
snapdrive
plug-in_for_syma…
xmlSchemaPreRun in xmlschemas.c in libxml2 2.9.10 allows an xmlSchemaValidateStream memory leak. CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2019-20388 2024-11-21 13:38 2020-01-22 Show GitHub Exploit DB Packet Storm
221398 2.4 LOW
Physics
systemd_project
canonical
fedoraproject
opensuse
netapp
systemd
ubuntu_linux
fedora
leap
cloud_backup
steelstore_cloud_integrated_storage
active_iq_unified_manager
An issue was discovered in button_open in login/logind-button.c in systemd before 243. When executing the udevadm trigger command, a memory leak may occur. CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2019-20386 2024-11-21 13:38 2020-01-21 Show GitHub Exploit DB Packet Storm
221399 8.8 HIGH
Network
logaritmo aware_callmanager The CSV upload feature in /supervisor/procesa_carga.php on Logaritmo Aware CallManager 2012 devices allows upload of .php files with a text/* content type. The PHP code can then be executed by visiti… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2019-20385 2024-11-21 13:38 2020-01-21 Show GitHub Exploit DB Packet Storm
221400 5.5 MEDIUM
Local
gentoo portage Gentoo Portage through 2.3.84 allows local users to place a Trojan horse plugin in the /usr/lib64/nagios/plugins directory by leveraging access to the nagios user account, because this directory is w… CWE-362
Race Condition
CVE-2019-20384 2024-11-21 13:38 2020-01-21 Show GitHub Exploit DB Packet Storm