Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 22, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228241 9.3 危険 sonicspot - Sonic Spot Audioactive Player におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-1815 2012-12-20 19:10 2009-05-29 Show GitHub Exploit DB Packet Storm
228242 7.5 危険 submitterscript - Submitter Script の admin/index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1813 2012-12-20 19:10 2009-05-29 Show GitHub Exploit DB Packet Storm
228243 7.5 危険 videoscript - VideoScript.us YouTube Video Script の admin/index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1804 2012-12-20 19:10 2009-05-28 Show GitHub Exploit DB Packet Storm
228244 6.8 警告 sebastian-thiele - ST-Gallery の st_admin/gallery_output.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1799 2012-12-20 19:10 2009-05-28 Show GitHub Exploit DB Packet Storm
228245 4.3 警告 サン・マイクロシステムズ - Sun Java System Portal Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1796 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
228246 9.3 危険 stonetrip - StoneTrip Ston3D StandalonePlayer および WebPlayer の system.openURL 関数における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2009-1792 2012-12-20 19:10 2009-05-29 Show GitHub Exploit DB Packet Storm
228247 7.5 危険 phpdirsubmit - PHP Dir Submit における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1787 2012-12-20 19:10 2009-05-26 Show GitHub Exploit DB Packet Storm
228248 4.3 警告 ulteo - Ulteo Open Virtual Desktop におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1785 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
228249 6.8 警告 roboform - Frax.dk Php Recommend の admin.php における phpre_config.php へ任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2009-1781 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
228250 7.5 危険 roboform - Frax.dk Php Recommend の admin.php における管理者権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-1780 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
221051 7.3 HIGH
Local
google android In updatePermissions of PermissionManagerService.java, it may be possible for a malicious app to obtain a custom permission from another app due to a permission bypass. This could lead to local escal… CWE-276
Incorrect Default Permissions 
CVE-2019-2200 2024-11-21 13:40 2020-02-14 Show GitHub Exploit DB Packet Storm
221052 7.8 HIGH
Local
qualcomm mdm9205_firmware
qcs404_firmware
qcs605_firmware
sda845_firmware
sdm670_firmware
sdm710_firmware
sdm845_firmware
sdm850_firmware
sm8150_firmware
sxr1130_firmware
sxr2130…
Locked regions may be modified through other interfaces in secure boot loader image due to improper access control. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consume… NVD-CWE-Other
CVE-2019-2267 2024-11-21 13:40 2020-01-21 Show GitHub Exploit DB Packet Storm
221053 7.8 HIGH
Local
qualcomm ipq4019_firmware
ipq8064_firmware
ipq8074_firmware
mdm9607_firmware
msm8917_firmware
msm8920_firmware
msm8937_firmware
msm8940_firmware
qcn7605_firmware
qcs405_firmware
Integer overflow to buffer overflow due to lack of validation of event arguments received from firmware. in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Sna… CWE-20
CWE-787
CWE-190
 Improper Input Validation 
 Out-of-bounds Write
 Integer Overflow or Wraparound
CVE-2019-2304 2024-11-21 13:40 2019-12-18 Show GitHub Exploit DB Packet Storm
221054 7.8 HIGH
Local
qualcomm apq8017_firmware
apq8053_firmware
apq8098_firmware
ipq8074_firmware
mdm9150_firmware
mdm9650_firmware
mdm9655_firmware
msm8917_firmware
msm8920_firmware
msm8937_firmware
Improper Access Control for RPU write access from secure processor in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial… NVD-CWE-noinfo
CVE-2019-2274 2024-11-21 13:40 2019-12-18 Show GitHub Exploit DB Packet Storm
221055 9.8 CRITICAL
Network
qualcomm apq8009_firmware
apq8016_firmware
apq8017_firmware
apq8053_firmware
apq8096_firmware
apq8096au_firmware
apq8098_firmware
mdm9150_firmware
mdm9607_firmware
mdm9615_firmware<…
Device memory may get corrupted because of buffer overflow/underflow. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdragon Industr… CWE-190
 Integer Overflow or Wraparound
CVE-2019-2242 2024-11-21 13:40 2019-12-18 Show GitHub Exploit DB Packet Storm
221056 7.1 HIGH
Local
qualcomm mdm9205_firmware
msm8998_firmware
qcs404_firmware
qcs605_firmware
sda660_firmware
sda845_firmware
sdm630_firmware
sdm636_firmware
sdm660_firmware
sdm670_firmware
sdm710_…
Crafted image that has a valid signature from a non-QC entity can be loaded which can read/write memory that belongs to the secure world in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivit… NVD-CWE-noinfo
CVE-2019-2338 2024-11-21 13:40 2019-12-12 Show GitHub Exploit DB Packet Storm
221057 7.5 HIGH
Network
qualcomm apq8053_firmware
apq8096au_firmware
apq8098_firmware
mdm9150_firmware
mdm9205_firmware
mdm9206_firmware
mdm9640_firmware
mdm9650_firmware
mdm9655_firmware
msm8905_firmware<…
While Skipping unknown IES, EMM is reading the buffer even if the no of bytes to read are more than message length which may cause device to shutdown in Snapdragon Auto, Snapdragon Compute, Snapdrago… CWE-125
Out-of-bounds Read
CVE-2019-2337 2024-11-21 13:40 2019-12-12 Show GitHub Exploit DB Packet Storm
221058 7.8 HIGH
Local
qualcomm apq8009_firmware
apq8017_firmware
apq8053_firmware
apq8096_firmware
apq8096au_firmware
apq8098_firmware
ipq4019_firmware
ipq8074_firmware
mdm9150_firmware
mdm9205_firmware<…
Incorrect length used while validating the qsee log buffer sent from HLOS which could then lead to remap conflict in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer … CWE-120
Classic Buffer Overflow
CVE-2019-2321 2024-11-21 13:40 2019-12-12 Show GitHub Exploit DB Packet Storm
221059 9.8 CRITICAL
Network
qualcomm apq8009_firmware
apq8017_firmware
apq8053_firmware
apq8096au_firmware
apq8098_firmware
mdm9150_firmware
mdm9205_firmware
mdm9206_firmware
mdm9607_firmware
mdm9615_firmware<…
Possible out of bounds write in a MT SMS/SS scenario due to improper validation of array index in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon I… CWE-787
CWE-129
 Out-of-bounds Write
 Improper Validation of Array Index
CVE-2019-2320 2024-11-21 13:40 2019-12-12 Show GitHub Exploit DB Packet Storm
221060 7.8 HIGH
Local
qualcomm mdm9205_firmware
qcs404_firmware
qcs605_firmware
sda845_firmware
sdm670_firmware
sdm710_firmware
sdm845_firmware
sdm850_firmware
sm6150_firmware
sm7150_firmware
sm8150_f…
HLOS could corrupt CPZ page table memory for S1 managed VMs in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Sna… CWE-787
 Out-of-bounds Write
CVE-2019-2319 2024-11-21 13:40 2019-12-12 Show GitHub Exploit DB Packet Storm