Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229361 7.5 危険 phpauctions - PHPAuction GPL の profile.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3487 2012-12-20 18:52 2008-08-6 Show GitHub Exploit DB Packet Storm
229362 4.3 警告 screwturn - ScrewTurn Wiki におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3483 2012-12-20 18:52 2008-08-5 Show GitHub Exploit DB Packet Storm
229363 2.6 注意 The phpMyAdmin Project - phpMyAdmin におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3457 2012-12-20 18:52 2008-07-28 Show GitHub Exploit DB Packet Storm
229364 6.4 警告 The phpMyAdmin Project - phpMyAdmin におけるなりすましされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-3456 2012-12-20 18:52 2008-07-28 Show GitHub Exploit DB Packet Storm
229365 4 警告 phpwebgallery - PhpWebGallery における他のユーザの電子メールアドレスを取得される脆弱性 CWE-200
情報漏えい
CVE-2008-3451 2012-12-20 18:52 2008-08-4 Show GitHub Exploit DB Packet Storm
229366 7.5 危険 phpmyrealty - PMR の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-3445 2012-12-20 18:52 2008-08-4 Show GitHub Exploit DB Packet Storm
229367 7.5 危険 winzip - WinZip における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-3442 2012-12-20 18:52 2008-08-1 Show GitHub Exploit DB Packet Storm
229368 7.5 危険 サン・マイクロシステムズ - Sun Java における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-3440 2012-12-20 18:52 2008-08-1 Show GitHub Exploit DB Packet Storm
229369 7.5 危険 speedbit - SpeedBit Video Acceleration における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-3439 2012-12-20 18:52 2008-08-1 Show GitHub Exploit DB Packet Storm
229370 7.5 危険 speedbit - SpeedBit DAP における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-3433 2012-12-20 18:52 2008-08-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224561 7.8 HIGH
Local
parallels parallels_desktop This vulnerability allows local attackers to escalate privileges on affected installations of Parallels Desktop Parallels Desktop version 14.1.3 (45485). An attacker must first obtain the ability to … CWE-78
OS Command 
CVE-2019-17148 2024-11-21 13:31 2020-01-8 Show GitHub Exploit DB Packet Storm
224562 8.8 HIGH
Network
tp-link tl-wr841n_firmware This vulnerability allows remote attackers to execute arbitrary code on affected installations of TP-LINK TL-WR841N routers. Authentication is not required to exploit this vulnerability. The specific… CWE-120
Classic Buffer Overflow
CVE-2019-17147 2024-11-21 13:31 2020-01-8 Show GitHub Exploit DB Packet Storm
224563 9.8 CRITICAL
Network
dlink dcs-935l_firmware
dcs-960l_firmware
This vulnerability allows remote attackers to execute arbitrary code on affected installations of D-Link DCS-960L v1.07.102. Authentication is not required to exploit this vulnerability. The specific… CWE-306
Missing Authentication for Critical Function
CVE-2019-17146 2024-11-21 13:31 2020-01-8 Show GitHub Exploit DB Packet Storm
224564 6.1 MEDIUM
Network
open-xchange open-xchange_appsuite OX App Suite through 7.10.2 has XSS. CWE-79
Cross-site Scripting
CVE-2019-16717 2024-11-21 13:31 2020-01-7 Show GitHub Exploit DB Packet Storm
224565 6.6 MEDIUM
Network
open-xchange open-xchange_appsuite OX App Suite through 7.10.2 has Incorrect Access Control. CWE-276
Incorrect Default Permissions 
CVE-2019-16716 2024-11-21 13:31 2020-01-7 Show GitHub Exploit DB Packet Storm
224566 8.8 HIGH
Network
tiny_file_manager_project tiny_file_manager In Tiny File Manager before 2.3.9, there is a remote code execution via Upload from URL and Edit/Rename files. Only authenticated users are impacted. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2019-16790 2024-11-21 13:31 2019-12-31 Show GitHub Exploit DB Packet Storm
224567 7.8 HIGH
Local
k7computing k7_ultimate_security In K7 Ultimate Security 16.0.0117, the module K7BKCExt.dll (aka the backup module) improperly validates the administrative privileges of the user, allowing an arbitrary file write via a symbolic link… CWE-59
Link Following
CVE-2019-16896 2024-11-21 13:31 2019-12-28 Show GitHub Exploit DB Packet Storm
224568 5.4 MEDIUM
Network
wordpress
debian
wordpress
debian_linux
In WordPress before 5.3.1, authenticated users with lower privileges (like contributors) can inject JavaScript code in the block editor, which is executed within the dashboard. It can lead to an admi… CWE-79
Cross-site Scripting
CVE-2019-16781 2024-11-21 13:31 2019-12-27 Show GitHub Exploit DB Packet Storm
224569 8.2 HIGH
Network
agendaless
oracle
debian
fedoraproject
redhat
waitress
communications_cloud_native_core_network_function_cloud_native_environment
debian_linux
fedora
openstack
In Waitress through version 1.4.0, if a proxy server is used in front of waitress, an invalid request may be sent by an attacker that bypasses the front-end and is parsed differently by waitress lead… CWE-444
HTTP Request Smuggling
CVE-2019-16789 2024-11-21 13:31 2019-12-27 Show GitHub Exploit DB Packet Storm
224570 5.4 MEDIUM
Network
wordpress
debian
wordpress
debian_linux
WordPress users with lower privileges (like contributors) can inject JavaScript code in the block editor using a specific payload, which is executed within the dashboard. This can lead to XSS if an a… CWE-79
Cross-site Scripting
CVE-2019-16780 2024-11-21 13:31 2019-12-27 Show GitHub Exploit DB Packet Storm