Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229371 7.5 危険 vspin.net - vSpin.net Classified System における SQL インジェクションの脆弱性 - CVE-2006-6152 2012-12-20 18:02 2006-11-28 Show GitHub Exploit DB Packet Storm
229372 2.6 注意 takeshi kanno - Takeshi Kanno libharu2 の hpdf_page_operator.c におけるバッファオーバーフローの脆弱性 - CVE-2006-6146 2012-12-20 18:02 2006-11-16 Show GitHub Exploit DB Packet Storm
229373 7.5 危険 sisfo kampus - Semarang 3 における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6140 2012-12-20 18:02 2006-11-27 Show GitHub Exploit DB Packet Storm
229374 5 警告 sisfo kampus - Semarang 3 の downloadexcel.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-6139 2012-12-20 18:02 2006-11-27 Show GitHub Exploit DB Packet Storm
229375 5 警告 sisfo kampus - Sisfo Kampus の download.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-6138 2012-12-20 18:02 2006-11-27 Show GitHub Exploit DB Packet Storm
229376 7.5 危険 sisfo kampus - Sisfo Kampus における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6137 2012-12-20 18:02 2006-11-27 Show GitHub Exploit DB Packet Storm
229377 7.5 危険 softacid - Link Exchange Lite における SQL インジェクションの脆弱性 - CVE-2006-6132 2012-12-20 18:02 2006-11-27 Show GitHub Exploit DB Packet Storm
229378 7.5 危険 tin.org - TIN におけるバッファオーバーフローの脆弱性 - CVE-2006-6122 2012-12-20 18:02 2006-11-26 Show GitHub Exploit DB Packet Storm
229379 7.5 危険 PicturesPro - PicturesPro Photo Cart の adminprint.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6093 2012-12-20 18:02 2006-11-24 Show GitHub Exploit DB Packet Storm
229380 5 警告 unverse.net - aBitWhizzy の abitwhizzy.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-6084 2012-12-20 18:02 2006-11-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213641 4.8 MEDIUM
Network
magento magento A stored cross-site scripting vulnerability exists in the admin panel of Magento Open Source prior to 1.9.4.2, and Magento Commerce prior to 1.14.4.2, Magento 2.1 prior to 2.1.18, Magento 2.2 prior t… CWE-79
Cross-site Scripting
CVE-2019-7934 2024-11-21 13:48 2019-08-3 Show GitHub Exploit DB Packet Storm
213642 7.2 HIGH
Network
magento magento A remote code execution vulnerability exists in Magento Open Source prior to 1.9.4.2, and Magento Commerce prior to 1.14.4.2, Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prio… NVD-CWE-noinfo
CVE-2019-7932 2024-11-21 13:48 2019-08-3 Show GitHub Exploit DB Packet Storm
213643 7.2 HIGH
Network
magento magento A file upload restriction bypass exists in Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prior to 2.3.2. An authenticated user with administrator privileges to the import featu… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2019-7930 2024-11-21 13:48 2019-08-3 Show GitHub Exploit DB Packet Storm
213644 4.9 MEDIUM
Network
magento magento An information leakage vulnerability exists in Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prior to 2.3.2. An authenticated user with administrator privileges may be able to … NVD-CWE-noinfo
CVE-2019-7929 2024-11-21 13:48 2019-08-3 Show GitHub Exploit DB Packet Storm
213645 7.5 HIGH
Network
magento magento A denial-of-service (DoS) vulnerability exists in Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prior to 2.3.2. By abusing insufficient brute-forcing defenses in the token exch… NVD-CWE-noinfo
CVE-2019-7928 2024-11-21 13:48 2019-08-3 Show GitHub Exploit DB Packet Storm
213646 4.8 MEDIUM
Network
magento magento A stored cross-site scripting vulnerability exists in the admin panel of Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prior to 2.3.2. This could be exploited by an authenticat… CWE-79
Cross-site Scripting
CVE-2019-7927 2024-11-21 13:48 2019-08-3 Show GitHub Exploit DB Packet Storm
213647 4.8 MEDIUM
Network
magento magento A stored cross-site scripting vulnerability exists in the admin panel of Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prior to 2.3.2. This could be exploited by an authenticat… CWE-79
Cross-site Scripting
CVE-2019-7926 2024-11-21 13:48 2019-08-3 Show GitHub Exploit DB Packet Storm
213648 4.9 MEDIUM
Network
magento magento An insecure direct object reference (IDOR) vulnerability exists in Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prior to 2.3.2. This can be exploited by an administrator with … CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2019-7925 2024-11-21 13:48 2019-08-3 Show GitHub Exploit DB Packet Storm
213649 7.2 HIGH
Network
magento magento A server-side request forgery (SSRF) vulnerability exists in Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prior to 2.3.2. This can be exploited by authenticated user with admi… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2019-7923 2024-11-21 13:48 2019-08-3 Show GitHub Exploit DB Packet Storm
213650 5.4 MEDIUM
Network
magento magento A stored cross-site scripting vulnerability exists in the product catalog form of Magento 2.1 prior to 2.1.18, Magento 2.2 prior to 2.2.9, Magento 2.3 prior to 2.3.2. This could be exploited by an au… CWE-79
Cross-site Scripting
CVE-2019-7921 2024-11-21 13:48 2019-08-3 Show GitHub Exploit DB Packet Storm