Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 12:09 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228871 4.3 警告 realguestbook - realGuestbook におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1623 2012-12-20 18:19 2007-03-23 Show GitHub Exploit DB Packet Storm
228872 4.3 警告 WordPress.org - WordPress の wp-admin/vars.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1622 2012-12-20 18:19 2007-03-22 Show GitHub Exploit DB Packet Storm
228873 7.5 危険 scriptmagix - ScriptMagix Photo Rating の viewcomments.php における SQL インジェクションの脆弱性 - CVE-2007-1619 2012-12-20 18:19 2007-03-22 Show GitHub Exploit DB Packet Storm
228874 7.5 危険 scriptmagix - ScriptMagix FAQ Builder の index.php における SQL インジェクションの脆弱性 - CVE-2007-1618 2012-12-20 18:19 2007-03-22 Show GitHub Exploit DB Packet Storm
228875 7.5 危険 scriptmagix - ScriptMagix Recipes の index.php における SQL インジェクションの脆弱性 - CVE-2007-1617 2012-12-20 18:19 2007-03-22 Show GitHub Exploit DB Packet Storm
228876 7.5 危険 scriptmagix - ScriptMagix Lyrics の index.php における SQL インジェクションの脆弱性 - CVE-2007-1616 2012-12-20 18:19 2007-03-22 Show GitHub Exploit DB Packet Storm
228877 7.5 危険 scriptmagix - ScriptMagix Jokes の index.php における SQL インジェクションの脆弱性 - CVE-2007-1615 2012-12-20 18:19 2007-03-22 Show GitHub Exploit DB Packet Storm
228878 9.3 危険 zziplib project - ZZIPlib Library の zzip/file.c におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-1614 2012-12-20 18:19 2007-03-17 Show GitHub Exploit DB Packet Storm
228879 5 警告 W-Agora - Web-Agora の search.php における重要な情報を取得される脆弱性 - CVE-2007-1607 2012-12-20 18:19 2007-03-22 Show GitHub Exploit DB Packet Storm
228880 4.3 警告 W-Agora - Web-Agora におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1606 2012-12-20 18:19 2007-03-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222681 6.1 MEDIUM
Network
boltcms bolt Bolt before 3.6.10 has XSS via a title that is mishandled in the system log. CWE-79
Cross-site Scripting
CVE-2019-15483 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
222682 6.1 MEDIUM
Network
selectize-plugin-a11y_project selectize-plugin-a11y selectize-plugin-a11y before 1.1.0 has XSS via the msg field. CWE-79
Cross-site Scripting
CVE-2019-15482 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
222683 6.1 MEDIUM
Network
kimai kimai_2 Kimai v2 before 1.1 has XSS via a timesheet description. CWE-79
Cross-site Scripting
CVE-2019-15481 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
222684 5.4 MEDIUM
Network
domoticz domoticz Domoticz 4.10717 has XSS via item.Name. CWE-79
Cross-site Scripting
CVE-2019-15480 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
222685 6.1 MEDIUM
Network
jooby jooby Jooby before 1.6.4 has XSS via the default error handler. CWE-79
Cross-site Scripting
CVE-2019-15477 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
222686 6.1 MEDIUM
Network
former_project former Former before 4.2.1 has XSS via a checkbox value. CWE-79
Cross-site Scripting
CVE-2019-15476 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
222687 7.5 HIGH
Network
openwrt
motorola
libuci
cx2l_mwr04l_firmware
c1_mwr03_firmware
An issue was discovered in OpenWrt libuci (aka Library for the Unified Configuration Interface) before 15.05.1 as used on Motorola CX2L MWR04L 1.01 and C1 MWR03 1.01 devices. /tmp/.uci/network lockin… CWE-667
 Improper Locking
CVE-2019-15513 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
222688 6.5 MEDIUM
Network
octopus server
tentacle
In Octopus Tentacle versions 3.0.8 to 5.0.0, when a web request proxy is configured, an authenticated user (in certain limited OctopusPrintVariables circumstances) could trigger a deployment that wri… CWE-532
CWE-312
 Inclusion of Sensitive Information in Log Files
 Cleartext Storage of Sensitive Information
CVE-2019-15508 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
222689 6.5 MEDIUM
Network
octopus server In Octopus Deploy versions 2018.8.4 to 2019.7.6, when a web request proxy is configured, an authenticated user (in certain limited special-characters circumstances) could trigger a deployment that wr… CWE-532
CWE-312
 Inclusion of Sensitive Information in Log Files
 Cleartext Storage of Sensitive Information
CVE-2019-15507 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
222690 9.8 CRITICAL
Network
linux
debian
canonical
linux_kernel
debian_linux
ubuntu_linux
drivers/media/usb/dvb-usb/technisat-usb2.c in the Linux kernel through 5.2.9 has an out-of-bounds read via crafted USB device traffic (which may be remote via usbip or usbredir). CWE-125
Out-of-bounds Read
CVE-2019-15505 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm