Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 2:09 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229081 7.5 危険 revolutionproducts - Flexbb の includes/start.php における SQL インジェクションの脆弱性 - CVE-2007-1729 2012-12-20 18:19 2007-03-28 Show GitHub Exploit DB Packet Storm
229082 7.8 危険 ソニー・コンピュータエンタテインメント - PS3 および PSP の Remote Play 機能におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1728 2012-12-20 18:19 2007-03-28 Show GitHub Exploit DB Packet Storm
229083 10 危険 reactos - ReactOS における脆弱性 - CVE-2007-1724 2012-12-20 18:19 2007-03-10 Show GitHub Exploit DB Packet Storm
229084 10 危険 signkorea - SignKorea SKCommAX ActiveX コントロールモジュールの DownloadCertificateExt 関数におけるバッファオーバーフローの脆弱性 - CVE-2007-1722 2012-12-20 18:19 2007-03-27 Show GitHub Exploit DB Packet Storm
229085 10 危険 realink - C-Arbre における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1721 2012-12-20 18:19 2007-03-27 Show GitHub Exploit DB Packet Storm
229086 7.5 危険 sb-websoft - PHP-Nuke 用の Addressbook モジュールにおけるディレクトリトラバーサルの脆弱性 - CVE-2007-1720 2012-12-20 18:19 2007-03-27 Show GitHub Exploit DB Packet Storm
229087 7.5 危険 ttcms - ttCMS の lib/db/ez_sql.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1708 2012-12-20 18:19 2007-03-26 Show GitHub Exploit DB Packet Storm
229088 7.8 危険 yet another telephony engine - Yate の SIP チャネルモジュールにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1693 2012-12-20 18:19 2007-05-17 Show GitHub Exploit DB Packet Storm
229089 6.8 警告 second sight software - Second Sight Software ActiveGS ActiveX コントロール におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-1691 2012-12-20 18:19 2007-04-19 Show GitHub Exploit DB Packet Storm
229090 6.8 警告 second sight software - Second Sight Software ActiveGS ActiveX コントロール におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-1690 2012-12-20 18:19 2007-04-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213821 7.5 HIGH
Network
rubygems
opensuse
debian
rubygems
leap
debian_linux
An issue was discovered in RubyGems 2.6 and later through 3.0.2. Since Gem::CommandManager#run calls alert_error without escaping, escape sequence injection is possible. (There are many ways to cause… CWE-74
Injection
CVE-2019-8325 2024-11-21 13:49 2019-06-18 Show GitHub Exploit DB Packet Storm
213822 8.8 HIGH
Network
rubygems
debian
opensuse
redhat
rubygems
debian_linux
leap
enterprise_linux
An issue was discovered in RubyGems 2.6 and later through 3.0.2. A crafted gem with a multi-line name is not handled correctly. Therefore, an attacker could inject arbitrary code to the stub line of … CWE-94
Code Injection
CVE-2019-8324 2024-11-21 13:49 2019-06-18 Show GitHub Exploit DB Packet Storm
213823 6.5 MEDIUM
Network
gemalto sentinel_ldk Hasplm cookie in Gemalto Admin Control Center, all versions prior to 7.92, does not have 'HttpOnly' flag. This allows malicious javascript to steal it. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2019-8283 2024-11-21 13:49 2019-06-8 Show GitHub Exploit DB Packet Storm
213824 5.3 MEDIUM
Network
gemalto sentinel_ldk Gemalto Admin Control Center, all versions prior to 7.92, uses cleartext HTTP to communicate with www3.safenet-inc.com to obtain language packs. This allows attacker to do man-in-the-middle (MITM) at… CWE-346
 Origin Validation Error
CVE-2019-8282 2024-11-21 13:49 2019-06-8 Show GitHub Exploit DB Packet Storm
213825 7.4 HIGH
Network
rubygems rubygems A Directory Traversal issue was discovered in RubyGems 2.7.6 and later through 3.0.2. Before making new directories or touching files (which now include path-checking code for symlinks), it would del… CWE-22
Path Traversal
CVE-2019-8320 2024-11-21 13:49 2019-06-7 Show GitHub Exploit DB Packet Storm
213826 9.8 CRITICAL
Network
thomsonreuters firm_central_desktop
concourse_matter_room
An issue was discovered in Thomson Reuters Desktop Extensions 1.9.0.358. An unauthenticated directory traversal and local file inclusion vulnerability in the ThomsonReuters.Desktop.Service.exe and Th… CWE-22
Path Traversal
CVE-2019-8385 2024-11-21 13:49 2019-06-6 Show GitHub Exploit DB Packet Storm
213827 9.8 CRITICAL
Network
sqlite
canonical
opensuse
fedoraproject
sqlite
ubuntu_linux
leap
fedora
SQLite3 from 3.6.0 to and including 3.27.2 is vulnerable to heap out-of-bound read in the rtreenode() function when handling invalid rtree tables. CWE-125
Out-of-bounds Read
CVE-2019-8457 2024-11-21 13:49 2019-05-31 Show GitHub Exploit DB Packet Storm
213828 6.1 MEDIUM
Network
zohocorp manageengine_adselfservice_plus In Zoho ManageEngine ADSelfService Plus 5.x through 5704, an authorization.do cross-site Scripting (XSS) vulnerability allows for an unauthenticated manipulation of the JavaScript code by injecting t… CWE-79
Cross-site Scripting
CVE-2019-8346 2024-11-21 13:49 2019-05-25 Show GitHub Exploit DB Packet Storm
213829 8.1 HIGH
Network
atlassian jira
jira_server
The ViewUpgrades resource in Jira before version 7.13.4, from version 8.0.0 before version 8.0.4, and from version 8.1.0 before version 8.1.1 allows remote attackers who have obtained access to admin… CWE-287
Improper Authentication
CVE-2019-8443 2024-11-21 13:49 2019-05-23 Show GitHub Exploit DB Packet Storm
213830 7.5 HIGH
Network
atlassian jira
jira_server
The CachingResourceDownloadRewriteRule class in Jira before version 7.13.4, and from version 8.0.0 before version 8.0.4, and from version 8.1.0 before version 8.1.1 allows remote attackers to access … NVD-CWE-noinfo
CVE-2019-8442 2024-11-21 13:49 2019-05-23 Show GitHub Exploit DB Packet Storm