Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229071 5 警告 The Tor Project - Tor におけるトラフィックの送信元などの匿名性を侵害される脆弱性 - CVE-2007-3165 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
229072 5 警告 westbyte - ida の idaiehlp.dll におけるバッファオーバーフローの脆弱性 - CVE-2007-3162 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
229073 6.8 警告 visicommedia - Ace-FTP Client におけるバッファオーバーフローの脆弱性 - CVE-2007-3161 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
229074 5 警告 tenyearsgone - ASP Folder Gallery の download_script.asp における任意のファイルを読まれる脆弱性 - CVE-2007-3158 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
229075 5 警告 SafeNet, Inc - SafeNET High Assurance Remote および SoftRemote におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-3157 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
229076 5 警告 zen help desk software - Zen Help Desk におけるパスワードを含むデータベースをダウンロードされる脆弱性 - CVE-2007-3146 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
229077 6.8 警告 phpwebthings - phpWebThings の core/editor.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3141 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
229078 6.5 警告 WordPress.org - WordPress の xmlrpc.php における SQL インジェクションの脆弱性 - CVE-2007-3140 2012-12-20 18:19 2007-06-8 Show GitHub Exploit DB Packet Storm
229079 4.3 警告 webmaster solutions - WmsCMS の 4print.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-3137 2012-12-20 18:19 2007-06-8 Show GitHub Exploit DB Packet Storm
229080 6.8 警告 w1l3d4 - W1L3D4 WEBmarket の urunbak.asp における SQL インジェクションの脆弱性 - CVE-2007-3133 2012-12-20 18:19 2007-06-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222611 7.5 HIGH
Network
tenda n301_firmware On Tenda N301 wireless routers, a long string in the wifiSSID parameter of a goform/setWifi POST request causes the device to crash. NVD-CWE-noinfo
CVE-2019-16288 2024-11-21 13:30 2019-09-14 Show GitHub Exploit DB Packet Storm
222612 7.8 HIGH
Local
picoc_project picoc PicoC 2.1 has a heap-based buffer overflow in StringStrcpy in cstdlib/string.c when called from ExpressionParseFunctionCall in expression.c. CWE-787
 Out-of-bounds Write
CVE-2019-16277 2024-11-21 13:30 2019-09-13 Show GitHub Exploit DB Packet Storm
222613 6.5 MEDIUM
Adjacent
w1.fi
debian
canonical
hostapd
wpa_supplicant
debian_linux
ubuntu_linux
hostapd before 2.10 and wpa_supplicant before 2.10 allow an incorrect indication of disconnection in certain situations because source address validation is mishandled. This is a denial of service th… CWE-346
 Origin Validation Error
CVE-2019-16275 2024-11-21 13:30 2019-09-13 Show GitHub Exploit DB Packet Storm
222614 6.1 MEDIUM
Network
afterlogic aurora Afterlogic Aurora through 8.3.9-build-a3 has XSS that can be leveraged for session hijacking by retrieving the session cookie from the administrator login. CWE-79
Cross-site Scripting
CVE-2019-16238 2024-11-21 13:30 2019-09-13 Show GitHub Exploit DB Packet Storm
222615 9.1 CRITICAL
Network
tripplite pdumh15at_firmware Tripp Lite PDUMH15AT 12.04.0053 devices allow unauthenticated POST requests to the /Forms/ directory, as demonstrated by changing the manager or admin password, or shutting off power to an outlet. NO… CWE-287
Improper Authentication
CVE-2019-16261 2024-11-21 13:30 2019-09-13 Show GitHub Exploit DB Packet Storm
222616 9.8 CRITICAL
Network
motorola motorola_firmware Some Motorola devices include the SIMalliance Toolbox Browser (aka S@T Browser) on the UICC, which might allow remote attackers to retrieve location and IMEI information, or retrieve other data or ex… NVD-CWE-noinfo
CVE-2019-16257 2024-11-21 13:30 2019-09-12 Show GitHub Exploit DB Packet Storm
222617 9.8 CRITICAL
Network
samsung samsung_firmware Some Samsung devices include the SIMalliance Toolbox Browser (aka S@T Browser) on the UICC, which might allow remote attackers to retrieve location and IMEI information, or retrieve other data or exe… NVD-CWE-noinfo
CVE-2019-16256 2024-11-21 13:30 2019-09-12 Show GitHub Exploit DB Packet Storm
222618 7.5 HIGH
Network
oceanwp ocean_extra includes/wizard/wizard.php in the Ocean Extra plugin through 1.5.8 for WordPress allows unauthenticated options changes and injection of a Cascading Style Sheets (CSS) token sequence. CWE-287
Improper Authentication
CVE-2019-16250 2024-11-21 13:30 2019-09-12 Show GitHub Exploit DB Packet Storm
222619 5.3 MEDIUM
Network
opencv opencv OpenCV 4.1.1 has an out-of-bounds read in hal_baseline::v_load in core/hal/intrin_sse.hpp when called from computeSSDMeanNorm in modules/video/src/dis_flow.cpp. CWE-125
Out-of-bounds Read
CVE-2019-16249 2024-11-21 13:30 2019-09-12 Show GitHub Exploit DB Packet Storm
222620 5.5 MEDIUM
Local
telegram telegram The "delete for" feature in Telegram before 5.11 on Android does not delete shared media files from the Telegram Images directory. In other words, there is a potentially misleading UI indication that… NVD-CWE-noinfo
CVE-2019-16248 2024-11-21 13:30 2019-09-12 Show GitHub Exploit DB Packet Storm