Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229111 7.5 危険 PHPKIT - PHPKit における SQL インジェクションの脆弱性 - CVE-2006-7115 2012-12-20 18:18 2007-03-5 Show GitHub Exploit DB Packet Storm
229112 5 警告 planerd.net - P-News における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2006-7114 2012-12-20 18:18 2007-03-5 Show GitHub Exploit DB Packet Storm
229113 7.5 危険 planerd.net - P-News における任意のコードをアップロードおよび実行される脆弱性 CWE-20
不適切な入力確認
CVE-2006-7113 2012-12-20 18:18 2007-03-5 Show GitHub Exploit DB Packet Storm
229114 7.5 危険 powerphlogger - Power Phlogger の config.inc.php3 における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-7106 2012-12-20 18:18 2007-03-3 Show GitHub Exploit DB Packet Storm
229115 7.5 危険 phpwind - PHPWind の admin.php における SQL インジェクションの脆弱性 - CVE-2006-7101 2012-12-20 18:18 2007-03-3 Show GitHub Exploit DB Packet Storm
229116 6.8 警告 phpBB - phpBB Insert User の includes/functions_mod_user.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-7100 2012-12-20 18:18 2007-03-3 Show GitHub Exploit DB Packet Storm
229117 5 警告 solarpay - SolarPay の index.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-7099 2012-12-20 18:18 2007-03-3 Show GitHub Exploit DB Packet Storm
229118 10 危険 taskfreak - TaskFreak! における脆弱性 - CVE-2006-7097 2012-12-20 18:18 2007-03-2 Show GitHub Exploit DB Packet Storm
229119 6.8 警告 phpbb security - phpBB Security の phpbb_security.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-7090 2012-12-20 18:18 2007-03-2 Show GitHub Exploit DB Packet Storm
229120 7.5 危険 simple php forum - Simple PHP Forum における SQL インジェクションの脆弱性 - CVE-2006-7088 2012-12-20 18:18 2007-03-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 1, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211381 8.8 HIGH
Network
cmsmadesimple cms_made_simple In CMS Made Simple (CMSMS) before 2.2.10, an authenticated user can achieve SQL Injection in class.showtime2_data.php via the functions _updateshow (parameter show_id), _inputshow (parameter show_id)… CWE-89
SQL Injection
CVE-2019-9693 2024-11-21 13:52 2019-03-12 Show GitHub Exploit DB Packet Storm
211382 6.5 MEDIUM
Network
cmsmadesimple cms_made_simple class.showtime2_image.php in CMS Made Simple (CMSMS) before 2.2.10 does not ensure that a watermark file has a standard image file extension (GIF, JPG, JPEG, or PNG). CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2019-9692 2024-11-21 13:52 2019-03-12 Show GitHub Exploit DB Packet Storm
211383 8.8 HIGH
Network
sftnow sftnow sftnow through 2018-12-29 allows index.php?g=Admin&m=User&a=add_post CSRF to add an admin account. CWE-352
 Origin Validation Error
CVE-2019-9688 2024-11-21 13:52 2019-03-12 Show GitHub Exploit DB Packet Storm
211384 9.8 CRITICAL
Network
podofo_project
fedoraproject
podofo
fedora
PoDoFo 0.9.6 has a heap-based buffer overflow in PdfString::ConvertUTF16toUTF8 in base/PdfString.cpp. CWE-787
 Out-of-bounds Write
CVE-2019-9687 2024-11-21 13:52 2019-03-12 Show GitHub Exploit DB Packet Storm
211385 8.1 HIGH
Network
php
canonical
opensuse
php
ubuntu_linux
leap
An issue was discovered in PHP 7.x before 7.1.27 and 7.3.x before 7.3.3. phar_tar_writeheaders_int in ext/phar/tar.c has a buffer overflow via a long link value. NOTE: The vendor indicates that the l… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-9675 2024-11-21 13:52 2019-03-11 Show GitHub Exploit DB Packet Storm
211386 7.5 HIGH
Network
jtbc jtbc_php An issue was discovered in JTBC(PHP) 3.0.1.8. Its cache management module is flawed. An arbitrary file ending in "inc.php" can be deleted via a console/cache/manage.php?type=action&action=batch&batch… CWE-22
Path Traversal
CVE-2019-9662 2024-11-21 13:52 2019-03-11 Show GitHub Exploit DB Packet Storm
211387 8.8 HIGH
Network
pacman_project pacman pacman before 5.1.3 allows directory traversal when installing a remote package via a specified URL "pacman -U <url>" due to an unsanitized file name received from a Content-Disposition header. pacma… CWE-22
Path Traversal
CVE-2019-9686 2024-11-21 13:52 2019-03-12 Show GitHub Exploit DB Packet Storm
211388 4.8 MEDIUM
Network
yzmcms yzmcms Stored XSS exists in YzmCMS 5.2 via the admin/system_manage/user_config_edit.html "value" parameter, CWE-79
Cross-site Scripting
CVE-2019-9661 2024-11-21 13:52 2019-03-11 Show GitHub Exploit DB Packet Storm
211389 4.8 MEDIUM
Network
yzmcms yzmcms Stored XSS exists in YzmCMS 5.2 via the admin/category/edit.html "catname" parameter. CWE-79
Cross-site Scripting
CVE-2019-9660 2024-11-21 13:52 2019-03-11 Show GitHub Exploit DB Packet Storm
211390 5.3 MEDIUM
Network
checkstyle
debian
fedoraproject
checkstyle
debian_linux
fedora
Checkstyle before 8.18 loads external DTDs by default. CWE-611
XXE
CVE-2019-9658 2024-11-21 13:52 2019-03-11 Show GitHub Exploit DB Packet Storm