Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228261 5 警告 Yaws - Yaws におけるサービス運用妨害 (メモリ消費およびクラッシュ) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-0751 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
228262 7.5 危険 tombstone - txtSQL 用の smNews example スクリプトにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0750 2012-12-20 19:10 2009-03-2 Show GitHub Exploit DB Packet Storm
228263 4.3 警告 Pebble - Pebble におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0736 2012-12-20 19:10 2009-02-25 Show GitHub Exploit DB Packet Storm
228264 7.5 危険 tony iha kazungu - taifajobs の jobdetails.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0727 2012-12-20 19:10 2009-02-24 Show GitHub Exploit DB Packet Storm
228265 7.5 危険 potato-scripts - Potato News の admin.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-0722 2012-12-20 19:10 2009-02-24 Show GitHub Exploit DB Packet Storm
228266 5 警告 vlad alexa mancini - PHPFootball の filter.php におけるパスワードハッシュを取得される脆弱性 CWE-200
情報漏えい
CVE-2009-0711 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
228267 4.3 警告 vlad alexa mancini - PHPFootball におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0710 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
228268 7.5 危険 vlad alexa mancini - PHPFootball の login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0709 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
228269 6.8 警告 SemanticScuttle - SemanticScuttle におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-0708 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
228270 7.5 危険 powerscripts - PowerClan の admin/index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0707 2012-12-20 19:10 2009-02-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
221171 7.8 HIGH
Local
google android In updateAssistMenuItems of Editor.java, there is a possible escape from the Setup Wizard due to a missing permission check. This could lead to local escalation of privilege and FRP bypass with no ad… CWE-862
 Missing Authorization
CVE-2019-2026 2024-11-21 13:40 2019-04-20 Show GitHub Exploit DB Packet Storm
221172 7.3 HIGH
Network
oracle retail_convenience_store_back_office Vulnerability in the Oracle Retail Convenience Store Back Office component of Oracle Retail Applications (subcomponent: Level 3 Maintenance Functions). The supported version that is affected is 3.6. … NVD-CWE-noinfo
CVE-2019-2424 2024-11-21 13:40 2019-04-24 Show GitHub Exploit DB Packet Storm
221173 5.5 MEDIUM
Local
google android The permissions on /proc/iomem were world-readable. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation. Pr… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2019-2001 2024-11-21 13:40 2019-03-1 Show GitHub Exploit DB Packet Storm
221174 7.8 HIGH
Local
google android In several functions of binder.c, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. User in… CWE-787
CWE-416
 Out-of-bounds Write
 Use After Free
CVE-2019-2000 2024-11-21 13:40 2019-03-1 Show GitHub Exploit DB Packet Storm
221175 3.8 LOW
Local
oracle vm_virtualbox Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vuln… NVD-CWE-noinfo
CVE-2019-2501 2024-11-21 13:40 2019-01-17 Show GitHub Exploit DB Packet Storm
221176 8.8 HIGH
Local
oracle vm_virtualbox Vulnerability in the Oracle VM VirtualBox component of Oracle Virtualization (subcomponent: Core). Supported versions that are affected are prior to 5.2.24 and prior to 6.0.2. Easily exploitable vuln… NVD-CWE-noinfo
CVE-2019-2500 2024-11-21 13:40 2019-01-17 Show GitHub Exploit DB Packet Storm
221177 6.1 MEDIUM
Network
oracle peoplesoft_enterprise_peopletools Vulnerability in the PeopleSoft Enterprise PeopleTools component of Oracle PeopleSoft Products (subcomponent: PIA Search Functionality). Supported versions that are affected are 8.55, 8.56 and 8.57. … NVD-CWE-noinfo
CVE-2019-2499 2024-11-21 13:40 2019-01-17 Show GitHub Exploit DB Packet Storm
221178 8.2 HIGH
Network
oracle e-business_suite Vulnerability in the Oracle Partner Management component of Oracle E-Business Suite (subcomponent: Partner Dash board). Supported versions that are affected are 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4… NVD-CWE-noinfo
CVE-2019-2498 2024-11-21 13:40 2019-01-17 Show GitHub Exploit DB Packet Storm
221179 8.2 HIGH
Network
oracle e-business_suite Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: Messages). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6, 12… NVD-CWE-noinfo
CVE-2019-2497 2024-11-21 13:40 2019-01-17 Show GitHub Exploit DB Packet Storm
221180 4.7 MEDIUM
Network
oracle e-business_suite Vulnerability in the Oracle CRM Technical Foundation component of Oracle E-Business Suite (subcomponent: Messages). Supported versions that are affected are 12.1.3, 12.2.3, 12.2.4, 12.2.5, 12.2.6, 12… NVD-CWE-noinfo
CVE-2019-2496 2024-11-21 13:40 2019-01-17 Show GitHub Exploit DB Packet Storm