Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228801 4.3 警告 pyrophobia - Pyrophobia の modules/out.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-1159 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
228802 5 警告 postnuke software foundation - PostNuke 用の Pagesetter モジュールにおけるディレクトリトラバーサルの脆弱性 - CVE-2007-1158 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
228803 4.6 警告 webSPELL - webSPELL における任意の PHP コードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2007-1155 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
228804 6.8 警告 webSPELL - webSPELL における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-1154 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
228805 5 警告 pyrophobia - Pyrophobia におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-1152 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
228806 4.3 警告 reamday enterprises - Magic News Plus におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-1142 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
228807 7.5 危険 reamday enterprises - Magic News Plus の preview.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-1141 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
228808 5 警告 加藤和良 - Putmail の putmail.py における重要な情報を取得される脆弱性 - CVE-2007-1137 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
228809 6.8 警告 webmplayer - WebMplayer の index.php における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2007-1136 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
228810 6.8 警告 加藤和良 - WebMplayer における SQL インジェクションの脆弱性 - CVE-2007-1135 2012-12-20 18:19 2007-03-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222901 4.3 MEDIUM
Network
cpanel cpanel cPanel before 78.0.2 allows a demo account to link with an OpenID provider (SEC-460). NVD-CWE-noinfo
CVE-2019-14408 2024-11-21 13:26 2019-07-31 Show GitHub Exploit DB Packet Storm
222902 2.7 LOW
Network
cpanel cpanel cPanel before 78.0.2 reveals internal data to OpenID providers (SEC-415). NVD-CWE-noinfo
CVE-2019-14407 2024-11-21 13:26 2019-07-31 Show GitHub Exploit DB Packet Storm
222903 6.1 MEDIUM
Network
cpanel cpanel cPanel before 78.0.18 has stored XSS in the BoxTrapper Queue Listing (SEC-493). CWE-79
Cross-site Scripting
CVE-2019-14406 2024-11-21 13:26 2019-07-31 Show GitHub Exploit DB Packet Storm
222904 8.8 HIGH
Network
cpanel cpanel cPanel before 78.0.18 allows demo accounts to execute code via securitypolicy.cg (SEC-487). NVD-CWE-noinfo
CVE-2019-14405 2024-11-21 13:26 2019-07-31 Show GitHub Exploit DB Packet Storm
222905 5.5 MEDIUM
Local
cpanel cpanel cPanel before 78.0.18 allows certain file-read operations in the context of the root account via the Exim virtual_user_spam router (SEC-484). NVD-CWE-noinfo
CVE-2019-14404 2024-11-21 13:26 2019-07-31 Show GitHub Exploit DB Packet Storm
222906 4.3 MEDIUM
Network
cpanel cpanel cPanel before 78.0.18 offers an open mail relay because of incorrect domain-redirect routing (SEC-483). CWE-601
Open Redirect
CVE-2019-14403 2024-11-21 13:26 2019-07-31 Show GitHub Exploit DB Packet Storm
222907 3.3 LOW
Local
cpanel cpanel cPanel before 78.0.18 unsafely determines terminal capabilities by using infocmp (SEC-481). NVD-CWE-noinfo
CVE-2019-14402 2024-11-21 13:26 2019-07-31 Show GitHub Exploit DB Packet Storm
222908 8.8 HIGH
Network
cpanel cpanel cPanel before 78.0.18 allows code execution via an addforward API1 call (SEC-480). NVD-CWE-noinfo
CVE-2019-14401 2024-11-21 13:26 2019-07-31 Show GitHub Exploit DB Packet Storm
222909 7.8 HIGH
Local
cpanel cpanel cPanel before 78.0.18 allows local users to escalate to root access because of userdata cache misparsing (SEC-479). NVD-CWE-noinfo
CVE-2019-14400 2024-11-21 13:26 2019-07-31 Show GitHub Exploit DB Packet Storm
222910 7.1 HIGH
Local
cpanel cpanel The SSL certificate-storage feature in cPanel before 78.0.18 allows unsafe file operations in the context of the root account (SEC-477). NVD-CWE-noinfo
CVE-2019-14399 2024-11-21 13:26 2019-07-31 Show GitHub Exploit DB Packet Storm