Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229061 7.5 危険 sd studio - SD Studio CMS の index.php における SQL インジェクションの脆弱性 - CVE-2006-3919 2012-12-20 18:02 2006-07-27 Show GitHub Exploit DB Packet Storm
229062 7.5 危険 r. corson - R. Corson PHP Forge の inc/gabarits.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-3917 2012-12-20 18:02 2006-07-27 Show GitHub Exploit DB Packet Storm
229063 4.3 警告 solucija - sNews の snews.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3916 2012-12-20 18:02 2006-07-27 Show GitHub Exploit DB Packet Storm
229064 5 警告 マイクロソフト - Windows 上で稼動する Microsoft Internet Explorer 6 におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-3915 2012-12-20 18:02 2006-07-27 Show GitHub Exploit DB Packet Storm
229065 6 警告 Blackboard, Inc. - Blackboard Academic Suite におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3914 2012-12-20 18:02 2006-07-27 Show GitHub Exploit DB Packet Storm
229066 7.5 危険 freeciv - Freeciv および SVN におけるバッファオーバーフローの脆弱性 - CVE-2006-3913 2012-12-20 18:02 2006-07-27 Show GitHub Exploit DB Packet Storm
229067 2.1 注意 RARLAB - WinRAR の SFX モジュールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2006-3912 2012-12-20 18:02 2006-07-27 Show GitHub Exploit DB Packet Storm
229068 7.5 危険 php live - OSI Codes PHP Live! における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-3911 2012-12-20 18:02 2006-07-27 Show GitHub Exploit DB Packet Storm
229069 5 警告 マイクロソフト - Windows 上で稼動する Internet Explorer 6 におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-3910 2012-12-20 18:02 2006-07-27 Show GitHub Exploit DB Packet Storm
229070 6.8 警告 wired community software - WWWthreads の calendar.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3909 2012-12-20 18:02 2006-07-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 30, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
212881 6.1 MEDIUM
Network
rukovoditel rukovoditel Rukovoditel through 2.4.1 allows XSS via a URL that lacks a module=users%2flogin substring. CWE-79
Cross-site Scripting
CVE-2019-7541 2024-11-21 13:48 2019-05-8 Show GitHub Exploit DB Packet Storm
212882 8.1 HIGH
Network
kde
opensuse
fedoraproject
kauth
leap
backports
fedora
KDE KAuth before 5.55 allows the passing of parameters with arbitrary types to helpers running as root over DBus via DBusHelperProxy.cpp. Certain types can cause crashes, and trigger the decoding of … CWE-20
 Improper Input Validation 
CVE-2019-7443 2024-11-21 13:48 2019-05-8 Show GitHub Exploit DB Packet Storm
212883 6.1 MEDIUM
Network
zohocorp manageengine_netflow_analyzer XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone "/netflow/jspui/linkdownalertConfig.jsp" file in the autorefTime or graphTypes parameter. CWE-79
Cross-site Scripting
CVE-2019-7427 2024-11-21 13:48 2019-05-8 Show GitHub Exploit DB Packet Storm
212884 6.1 MEDIUM
Network
zohocorp manageengine_netflow_analyzer XSS exists in Zoho ManageEngine Netflow Analyzer Professional v7.0.0.2 in the Administration zone "/netflow/jspui/linkdownalertConfig.jsp" file in the groupDesc, groupName, groupID, or task parameter. CWE-79
Cross-site Scripting
CVE-2019-7426 2024-11-21 13:48 2019-05-8 Show GitHub Exploit DB Packet Storm
212885 8.1 HIGH
Network
sonicwall global_management_system A vulnerability in SonicWall Global Management System (GMS), allow a remote user to gain access to the appliance using existing SSH key. This vulnerability affects GMS versions 9.1, 9.0, 8.7, 8.6, 8.… CWE-1188
 Insecure Default Initialization of Resource
CVE-2019-7476 2024-11-21 13:48 2019-04-27 Show GitHub Exploit DB Packet Storm
212886 9.8 CRITICAL
Network
nice engage In NICE Engage through 6.5, the default configuration binds an unauthenticated JMX/RMI interface to all network interfaces, without restricting registration of MBeans, which allows remote attackers t… CWE-306
Missing Authentication for Critical Function
CVE-2019-7727 2024-11-21 13:48 2019-04-24 Show GitHub Exploit DB Packet Storm
212887 9.8 CRITICAL
Network
auth0 auth0-wcf-service-jwt Auth0 Auth0-WCF-Service-JWT before 1.0.4 leaks the expected JWT signature in an error message when it cannot successfully validate the JWT signature. If this error message is presented to an attacker… CWE-209
Information Exposure Through an Error Message
CVE-2019-7644 2024-11-21 13:48 2019-04-12 Show GitHub Exploit DB Packet Storm
212888 9.0 CRITICAL
Network
cantemo portal Cantemo Portal before 3.2.13, 3.3.x before 3.3.8, and 3.4.x before 3.4.9 has XSS. Leveraging this vulnerability would enable performing actions as users, including administrative users. This could en… CWE-79
Cross-site Scripting
CVE-2019-7551 2024-11-21 13:48 2019-04-11 Show GitHub Exploit DB Packet Storm
212889 7.8 HIGH
Local
autodesk advance_steel
autocad
autocad_architecture
autocad_electrical
autocad_lt
autocad_map_3d
autocad_mechanical
autocad_mep
autocad_p\&id
autocad_plant_3d
civil_3d
An attacker may convince a victim to open a malicious action micro (.actm) file that has serialized data, which may trigger a code execution in Autodesk Advance Steel 2018, Autodesk AutoCAD 2018, Aut… CWE-502
 Deserialization of Untrusted Data
CVE-2019-7361 2024-11-21 13:48 2019-04-10 Show GitHub Exploit DB Packet Storm
212890 7.8 HIGH
Local
autodesk advance_steel
autocad
autocad_architecture
autocad_electrical
autocad_lt
autocad_map_3d
autocad_mechanical
autocad_mep
autocad_p\&id
autocad_plant_3d
civil_3d
An exploitable use-after-free vulnerability in the DXF-parsing functionality in Autodesk Advance Steel 2018, Autodesk AutoCAD 2018, Autodesk AutoCAD Architecture 2018, Autodesk AutoCAD Electrical 201… CWE-416
 Use After Free
CVE-2019-7360 2024-11-21 13:48 2019-04-10 Show GitHub Exploit DB Packet Storm