Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229251 5 警告 prototypejs - prototypejs フレームワークにおけるデータを取得される脆弱性 CWE-DesignError
CVE-2007-2383 2012-12-20 18:19 2007-04-24 Show GitHub Exploit DB Packet Storm
229252 10 危険 シマンテック - Symantec ESM のエージェントリモート更新インターフェースにおける任意のコードを実行される脆弱性 - CVE-2007-2375 2012-12-20 18:19 2007-04-5 Show GitHub Exploit DB Packet Storm
229253 7.5 危険 XOOPS - XOOPS 用の John Mordo モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-2370 2012-12-20 18:19 2007-04-30 Show GitHub Exploit DB Packet Storm
229254 5 警告 webSPELL - WebSPELL の picture.php における任意のファイルを読まれる脆弱性 - CVE-2007-2368 2012-12-20 18:19 2007-04-30 Show GitHub Exploit DB Packet Storm
229255 10 危険 wserve http server - whttp の wserve_console.exe におけるバッファオーバーフローの脆弱性 - CVE-2007-2367 2012-12-20 18:19 2007-04-30 Show GitHub Exploit DB Packet Storm
229256 4.9 警告 シマンテック - Symantec Norton Ghost などの製品における資格情報を取得される脆弱性 - CVE-2007-2361 2012-12-20 18:19 2007-04-26 Show GitHub Exploit DB Packet Storm
229257 6.8 警告 シマンテック - Symantec Norton Ghost などの製品における資格情報を取得される脆弱性 - CVE-2007-2360 2012-12-20 18:19 2007-04-26 Show GitHub Exploit DB Packet Storm
229258 7.2 危険 シマンテック - Symantec Norton Ghost などの製品で使用される Ghost Service Manager におけるバッファオーバーフローの脆弱性 - CVE-2007-2359 2012-12-20 18:19 2007-04-26 Show GitHub Exploit DB Packet Storm
229259 6.8 警告 sinecms - SineCms の mods/Core/result.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2357 2012-12-20 18:19 2007-04-30 Show GitHub Exploit DB Packet Storm
229260 7.8 危険 Progress Software Corporation - Progress Webspeed Messenger における重要な情報を取得される脆弱性 - CVE-2007-2354 2012-12-20 18:19 2007-04-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223071 9.8 CRITICAL
Network
srtalliance secure_reliable_transport Secure Reliable Transport (SRT) through 1.3.4 has a CSndUList array overflow if there are many SRT connections. CWE-129
 Improper Validation of Array Index
CVE-2019-15784 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223072 8.8 HIGH
Network
weblizar social_likebox_\&_feed The facebook-by-weblizar plugin before 2.8.5 for WordPress has CSRF. CWE-352
 Origin Validation Error
CVE-2019-15781 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223073 8.8 HIGH
Network
quadlayers wp_social_feed_gallery The insta-gallery plugin before 2.4.8 for WordPress has no nonce validation for qligg_dismiss_notice or qligg_form_item_delete. CWE-352
 Origin Validation Error
CVE-2019-15779 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223074 5.4 MEDIUM
Network
getwooplugins additional_variation_images_for_woocommerce The woo-variation-gallery plugin before 1.1.29 for WordPress has XSS. CWE-79
Cross-site Scripting
CVE-2019-15778 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223075 6.1 MEDIUM
Network
components_for_wp_bakery_page_builder_project components_for_wp_bakery_page_builder The nd-shortcodes plugin before 6.0 for WordPress has a nopriv_ AJAX action that allows modification of the siteurl setting. CWE-601
Open Redirect
CVE-2019-15771 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223076 8.8 HIGH
Adjacent
equeshome elf_smart_plug_firmware The Eques elf smart plug and the mobile app use a hardcoded AES 256 bit key to encrypt the commands and responses between the device and the app. The communication happens over UDP port 27431. An att… CWE-798
 Use of Hard-coded Credentials
CVE-2019-15745 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223077 7.5 HIGH
Network
libzetta-rs_project libzetta-rs libZetta.rs through 0.1.2 has an integer overflow in the zpool parser (for error stats) that leads to a panic. CWE-190
 Integer Overflow or Wraparound
CVE-2019-15787 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223078 9.8 CRITICAL
Network
lute-tab_project lute-tab Lute-Tab before 2019-08-23 has a buffer overflow in pdf_print.cc. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-15783 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223079 6.1 MEDIUM
Network
webtorrent webtorrent WebTorrent before 0.107.6 allows XSS in the HTTP server via a title or file name. CWE-79
Cross-site Scripting
CVE-2019-15782 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223080 9.8 CRITICAL
Network
strategy11 formidable_form_builder The formidable plugin before 4.02.01 for WordPress has unsafe deserialization. CWE-502
 Deserialization of Untrusted Data
CVE-2019-15780 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm