Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 12:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228981 4.3 警告 WordPress.org - WordPress の wp-db-backup.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0193 2012-12-20 18:34 2008-01-9 Show GitHub Exploit DB Packet Storm
228982 4.3 警告 WordPress.org - WordPress におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0192 2012-12-20 18:34 2008-01-9 Show GitHub Exploit DB Packet Storm
228983 5 警告 WordPress.org - WordPress における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2008-0191 2012-12-20 18:34 2008-01-9 Show GitHub Exploit DB Packet Storm
228984 7.5 危険 spacial audio solutions - SAM Broadcaster samPHPweb の songinfo.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0187 2012-12-20 18:34 2008-01-9 Show GitHub Exploit DB Packet Storm
228985 4.3 警告 phprisk - NetRisk の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0186 2012-12-20 18:34 2008-01-9 Show GitHub Exploit DB Packet Storm
228986 6.4 警告 prenotazioni on line - Line System 上で稼動している Sys-Hotel における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-0184 2012-12-20 18:34 2008-01-9 Show GitHub Exploit DB Packet Storm
228987 4.3 警告 Plone Foundation - Plone CMS におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2008-0164 2012-12-20 18:34 2008-03-14 Show GitHub Exploit DB Packet Storm
228988 7.2 危険 sam lantinga - splitvt の misc.c における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-0162 2012-12-20 18:34 2008-02-21 Show GitHub Exploit DB Packet Storm
228989 5 警告 shop-script - Shop-Script の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-0158 2012-12-20 18:34 2008-01-8 Show GitHub Exploit DB Packet Storm
228990 5 警告 pragma systems - Pragma TelnetServer の telnetd.exe におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-0153 2012-12-20 18:34 2008-01-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224421 6.1 MEDIUM
Network
kimai kimai_2 Kimai v2 before 1.1 has XSS via a timesheet description. CWE-79
Cross-site Scripting
CVE-2019-15481 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
224422 5.4 MEDIUM
Network
domoticz domoticz Domoticz 4.10717 has XSS via item.Name. CWE-79
Cross-site Scripting
CVE-2019-15480 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
224423 6.1 MEDIUM
Network
jooby jooby Jooby before 1.6.4 has XSS via the default error handler. CWE-79
Cross-site Scripting
CVE-2019-15477 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
224424 6.1 MEDIUM
Network
former_project former Former before 4.2.1 has XSS via a checkbox value. CWE-79
Cross-site Scripting
CVE-2019-15476 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
224425 7.5 HIGH
Network
openwrt
motorola
libuci
cx2l_mwr04l_firmware
c1_mwr03_firmware
An issue was discovered in OpenWrt libuci (aka Library for the Unified Configuration Interface) before 15.05.1 as used on Motorola CX2L MWR04L 1.01 and C1 MWR03 1.01 devices. /tmp/.uci/network lockin… CWE-667
 Improper Locking
CVE-2019-15513 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
224426 6.5 MEDIUM
Network
octopus server
tentacle
In Octopus Tentacle versions 3.0.8 to 5.0.0, when a web request proxy is configured, an authenticated user (in certain limited OctopusPrintVariables circumstances) could trigger a deployment that wri… CWE-532
CWE-312
 Inclusion of Sensitive Information in Log Files
 Cleartext Storage of Sensitive Information
CVE-2019-15508 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
224427 6.5 MEDIUM
Network
octopus server In Octopus Deploy versions 2018.8.4 to 2019.7.6, when a web request proxy is configured, an authenticated user (in certain limited special-characters circumstances) could trigger a deployment that wr… CWE-532
CWE-312
 Inclusion of Sensitive Information in Log Files
 Cleartext Storage of Sensitive Information
CVE-2019-15507 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
224428 9.8 CRITICAL
Network
linux
debian
canonical
linux_kernel
debian_linux
ubuntu_linux
drivers/media/usb/dvb-usb/technisat-usb2.c in the Linux kernel through 5.2.9 has an out-of-bounds read via crafted USB device traffic (which may be remote via usbip or usbredir). CWE-125
Out-of-bounds Read
CVE-2019-15505 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
224429 9.8 CRITICAL
Network
linux
canonical
linux_kernel
ubuntu_linux
drivers/net/wireless/rsi/rsi_91x_usb.c in the Linux kernel through 5.2.9 has a Double Free via crafted USB device traffic (which may be remote via usbip or usbredir). CWE-415
 Double Free
CVE-2019-15504 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
224430 6.1 MEDIUM
Network
hackmd codimd CodiMD 1.3.1, when Safari is used, allows XSS via an IFRAME element with allow-top-navigation in the sandbox attribute, in conjunction with a data: URL. CWE-79
Cross-site Scripting
CVE-2019-15499 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm