Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228891 4.3 警告 Rapid Leech - Rapidleech の upload.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1091 2012-12-20 19:10 2009-03-25 Show GitHub Exploit DB Packet Storm
228892 6.8 警告 Rapid Leech - Rapidleech の upload.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-1090 2012-12-20 19:10 2009-03-25 Show GitHub Exploit DB Packet Storm
228893 9 危険 サン・マイクロシステムズ - Sun Java System IdM における任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-1083 2012-12-20 19:10 2009-03-19 Show GitHub Exploit DB Packet Storm
228894 9 危険 サン・マイクロシステムズ - Sun Java System IdM における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2009-1082 2012-12-20 19:10 2009-03-19 Show GitHub Exploit DB Packet Storm
228895 4.3 警告 サン・マイクロシステムズ - Sun Java System IdM におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1081 2012-12-20 19:10 2009-03-19 Show GitHub Exploit DB Packet Storm
228896 4.3 警告 サン・マイクロシステムズ - Sun Java System IdM におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1080 2012-12-20 19:10 2009-03-19 Show GitHub Exploit DB Packet Storm
228897 4.3 警告 サン・マイクロシステムズ - Sun Java System IdM におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1079 2012-12-20 19:10 2009-03-19 Show GitHub Exploit DB Packet Storm
228898 4 警告 サン・マイクロシステムズ - Sun Java System IdM における脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-1078 2012-12-20 19:10 2009-03-19 Show GitHub Exploit DB Packet Storm
228899 6.5 警告 サン・マイクロシステムズ - Sun Java System IdM の Change My Password 実装における他のユーザのパスワードを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-1077 2012-12-20 19:10 2009-03-19 Show GitHub Exploit DB Packet Storm
228900 5 警告 サン・マイクロシステムズ - Sun Java System Identity Manager IdM における有効なユーザ名を列挙される脆弱性 CWE-200
情報漏えい
CVE-2009-1076 2012-12-20 19:10 2009-03-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
225441 4.3 MEDIUM
Network
fastvelocity minify In the WordPress plugin, Fast Velocity Minify before 2.7.7, the full web root path to the running WordPress application can be discovered. In order to exploit this vulnerability, FVM Debug Mode needs… CWE-200
Information Exposure
CVE-2019-19983 2024-11-21 13:35 2019-12-26 Show GitHub Exploit DB Packet Storm
225442 5.3 MEDIUM
Network
icegram email_subscribers_\&_newsletters The WordPress plugin, Email Subscribers & Newsletters, before 4.2.3 had a flaw that allowed for unauthenticated option creation. In order to exploit this vulnerability, an attacker would need to send… CWE-287
Improper Authentication
CVE-2019-19982 2024-11-21 13:35 2019-12-26 Show GitHub Exploit DB Packet Storm
225443 5.4 MEDIUM
Network
icegram email_subscribers_\&_newsletters The WordPress plugin, Email Subscribers & Newsletters, before 4.2.3 had a flaw that allowed for CSRF to be exploited on all plugin settings. CWE-352
 Origin Validation Error
CVE-2019-19981 2024-11-21 13:35 2019-12-26 Show GitHub Exploit DB Packet Storm
225444 4.3 MEDIUM
Network
icegram email_subscribers_\&_newsletters The WordPress plugin, Email Subscribers & Newsletters, before 4.2.3 had a privilege bypass flaw that allowed authenticated users (Subscriber or greater access) to send test emails from the administra… NVD-CWE-noinfo
CVE-2019-19980 2024-11-21 13:35 2019-12-26 Show GitHub Exploit DB Packet Storm
225445 8.8 HIGH
Network
wp_maintenance_project wp_maintenance A flaw in the WordPress plugin, WP Maintenance before 5.0.6, allowed attackers to enable a vulnerable site's maintenance mode and inject malicious code affecting site visitors. There was CSRF with re… CWE-352
CWE-79
 Origin Validation Error
Cross-site Scripting
CVE-2019-19979 2024-11-21 13:35 2019-12-26 Show GitHub Exploit DB Packet Storm
225446 9.8 CRITICAL
Network
libesmtp_project libesmtp libESMTP through 1.0.6 mishandles domain copying into a fixed-size buffer in ntlm_build_type_2 in ntlm/ntlmstruct.c, as demonstrated by a stack-based buffer over-read. CWE-125
Out-of-bounds Read
CVE-2019-19977 2024-11-21 13:35 2019-12-26 Show GitHub Exploit DB Packet Storm
225447 7.5 HIGH
Network
upc connect_box_eurodocsis_firmware The Administration page on Connect Box EuroDOCSIS 3.0 Voice Gateway CH7465LG-NCIP-6.12.18.25-2p6-NOSH devices accepts a cleartext password in a POST request on port 80, as demonstrated by the Passwor… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2019-19967 2024-11-21 13:35 2019-12-26 Show GitHub Exploit DB Packet Storm
225448 5.3 MEDIUM
Network
wolfssl wolfssl An issue was discovered in wolfSSL before 4.3.0 in a non-default configuration where DSA is enabled. DSA signing uses the BEEA algorithm during modular inversion of the nonce, leading to a side-chann… NVD-CWE-Other
CVE-2019-19963 2024-11-21 13:35 2019-12-25 Show GitHub Exploit DB Packet Storm
225449 7.5 HIGH
Network
wolfssl wolfssl wolfSSL before 4.3.0 mishandles calls to wc_SignatureGenerateHash, leading to fault injection in RSA cryptography. CWE-347
 Improper Verification of Cryptographic Signature
CVE-2019-19962 2024-11-21 13:35 2019-12-25 Show GitHub Exploit DB Packet Storm
225450 4.6 MEDIUM
Physics
linux
debian
opensuse
netapp
linux_kernel
debian_linux
leap
cloud_backup
steelstore_cloud_integrated_storage
data_availability_services
solidfire_\&_hci_management_node
active_iq_unified_manager
solid…
In the Linux kernel before 5.1.6, there is a use-after-free in cpia2_exit() in drivers/media/usb/cpia2/cpia2_v4l.c that will cause denial of service, aka CID-dea37a972655. CWE-416
 Use After Free
CVE-2019-19966 2024-11-21 13:35 2019-12-25 Show GitHub Exploit DB Packet Storm