|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 6, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 228941 | 7.5 | 危険 | x-dev | - | X-dev xNews の classes/class.news.php における SQL インジェクションの脆弱性 | - | CVE-2007-0630 | 2012-12-20 18:19 | 2007-01-31 | Show | GitHub Exploit DB Packet Storm |
| 228942 | 6.4 | 警告 | plain black | - | Plain Black WebGUI の www_purgeList メソッドにおける許可されていないアセットを削除される脆弱性 | - | CVE-2007-0629 | 2012-12-20 18:19 | 2007-01-31 | Show | GitHub Exploit DB Packet Storm |
| 228943 | 4.3 | 警告 | サン・マイクロシステムズ | - | Sun Java System Access Manager におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2007-0628 | 2012-12-20 18:19 | 2007-01-29 | Show | GitHub Exploit DB Packet Storm |
| 228944 | 5 | 警告 | vlad leont | - | FD Script の download.php における特定の拡張子を伴う Web 文書ルート配下のファイルのソースを読み取られる脆弱性 | - | CVE-2007-0620 | 2012-12-20 18:19 | 2007-01-31 | Show | GitHub Exploit DB Packet Storm |
| 228945 | 7.8 | 危険 | Zenphoto | - | zenphoto の zen/template-functions.php におけるディレクトリトラバーサルの脆弱性 | - | CVE-2007-0616 | 2012-12-20 18:19 | 2007-01-31 | Show | GitHub Exploit DB Packet Storm |
| 228946 | 4.3 | 警告 | W-Agora | - | Web-Agora におけるアプリケーションのパス情報を取得される脆弱性 | - | CVE-2007-0607 | 2012-12-20 18:19 | 2007-03-20 | Show | GitHub Exploit DB Packet Storm |
| 228947 | 5 | 警告 | W-Agora | - | w-agora における重要な情報を取得される脆弱性 | - | CVE-2007-0606 | 2012-12-20 18:19 | 2007-03-21 | Show | GitHub Exploit DB Packet Storm |
| 228948 | 6.8 | 警告 | シックス・アパート株式会社 | - | Movable Type におけるクロスサイトスクリプティングの脆弱性 | - | CVE-2007-0604 | 2012-12-20 18:19 | 2007-01-30 | Show | GitHub Exploit DB Packet Storm |
| 228949 | 6.9 | 警告 | トレンドマイクロ | - | Linux 用の Trend Micro VirusWall におけるバッファオーバーフローの脆弱性 | - | CVE-2007-0602 | 2012-12-20 18:19 | 2007-01-30 | Show | GitHub Exploit DB Packet Storm |
| 228950 | 5 | 警告 | siteman | - | Siteman におけるパスワードハッシュを含むデータベースをダウンロードされる脆弱性 | - | CVE-2007-0594 | 2012-12-20 18:19 | 2007-01-30 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 7, 2026, 4:22 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 223651 | 4.3 |
MEDIUM
Network |
google debian fedoraproject redhat |
chrome debian_linux fedora enterprise_linux_server enterprise_linux_for_scientific_computing enterprise_linux_workstation enterprise_linux_desktop |
Insufficient policy enforcement in extensions in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. |
NVD-CWE-noinfo
|
CVE-2019-13754 | 2024-11-21 13:25 | 2019-12-11 | Show | GitHub Exploit DB Packet Storm |
| 223652 | 6.5 |
MEDIUM
Network |
google debian fedoraproject redhat canonical |
chrome debian_linux fedora enterprise_linux_server enterprise_linux_for_scientific_computing enterprise_linux_workstation enterprise_linux_desktop ubuntu_linux |
Out of bounds read in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. |
CWE-125
Out-of-bounds Read |
CVE-2019-13753 | 2024-11-21 13:25 | 2019-12-11 | Show | GitHub Exploit DB Packet Storm |
| 223653 | 6.5 |
MEDIUM
Network |
google debian fedoraproject redhat canonical |
chrome debian_linux fedora enterprise_linux_server enterprise_linux_for_scientific_computing enterprise_linux_workstation enterprise_linux_desktop ubuntu_linux |
Out of bounds read in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. |
CWE-125
Out-of-bounds Read |
CVE-2019-13752 | 2024-11-21 13:25 | 2019-12-11 | Show | GitHub Exploit DB Packet Storm |
| 223654 | 6.5 |
MEDIUM
Network |
google debian fedoraproject redhat canonical |
chrome debian_linux fedora enterprise_linux_server enterprise_linux_for_scientific_computing enterprise_linux_workstation enterprise_linux_desktop ubuntu_linux |
Uninitialized data in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. |
CWE-908
Use of Uninitialized Resource |
CVE-2019-13751 | 2024-11-21 13:25 | 2019-12-11 | Show | GitHub Exploit DB Packet Storm |
| 223655 | 6.5 |
MEDIUM
Network |
google debian fedoraproject redhat canonical |
chrome debian_linux fedora enterprise_linux_server enterprise_linux_for_scientific_computing enterprise_linux_workstation enterprise_linux_desktop ubuntu_linux |
Insufficient data validation in SQLite in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to bypass defense-in-depth measures via a crafted HTML page. |
CWE-20
Improper Input Validation |
CVE-2019-13750 | 2024-11-21 13:25 | 2019-12-11 | Show | GitHub Exploit DB Packet Storm |
| 223656 | 6.5 |
MEDIUM
Network |
google debian fedoraproject redhat |
chrome debian_linux fedora enterprise_linux_server enterprise_linux_for_scientific_computing enterprise_linux_workstation enterprise_linux_desktop |
Incorrect security UI in Omnibox in Google Chrome on iOS prior to 79.0.3945.79 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. |
NVD-CWE-noinfo
|
CVE-2019-13749 | 2024-11-21 13:25 | 2019-12-11 | Show | GitHub Exploit DB Packet Storm |
| 223657 | 6.5 |
MEDIUM
Network |
google debian fedoraproject redhat |
chrome debian_linux fedora enterprise_linux_server enterprise_linux_for_scientific_computing enterprise_linux_workstation enterprise_linux_desktop |
Insufficient policy enforcement in developer tools in Google Chrome prior to 79.0.3945.79 allowed a local attacker to obtain potentially sensitive information from process memory via a crafted HTML p… |
CWE-862
Missing Authorization |
CVE-2019-13748 | 2024-11-21 13:25 | 2019-12-11 | Show | GitHub Exploit DB Packet Storm |
| 223658 | 8.8 |
HIGH
Network |
google debian fedoraproject redhat |
chrome debian_linux fedora enterprise_linux_server enterprise_linux_for_scientific_computing enterprise_linux_workstation enterprise_linux_desktop |
Uninitialized data in rendering in Google Chrome on Android prior to 79.0.3945.79 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. |
CWE-787 CWE-908 Out-of-bounds Write Use of Uninitialized Resource |
CVE-2019-13747 | 2024-11-21 13:25 | 2019-12-11 | Show | GitHub Exploit DB Packet Storm |
| 223659 | 6.5 |
MEDIUM
Network |
google debian fedoraproject redhat |
chrome debian_linux fedora enterprise_linux_server enterprise_linux_for_scientific_computing enterprise_linux_workstation enterprise_linux_desktop |
Insufficient policy enforcement in Omnibox in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted HTML page. |
NVD-CWE-noinfo
|
CVE-2019-13746 | 2024-11-21 13:25 | 2019-12-11 | Show | GitHub Exploit DB Packet Storm |
| 223660 | 6.5 |
MEDIUM
Network |
google debian suse opensuse fedoraproject redhat |
chrome debian_linux package_hub backports_sle fedora enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation |
Insufficient policy enforcement in audio in Google Chrome prior to 79.0.3945.79 allowed a remote attacker to leak cross-origin data via a crafted HTML page. |
NVD-CWE-noinfo
|
CVE-2019-13745 | 2024-11-21 13:25 | 2019-12-11 | Show | GitHub Exploit DB Packet Storm |