Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 12:02 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229491 7.5 危険 web-app.org
web-app.net
- web-app.net WebAPP などの Menu Manager Mod における任意のコマンドを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-3242 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
229492 4.3 警告 WordPress.org - WordPress 用の cordobo-green-park テーマの blogroll.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3241 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
229493 4.3 警告 WordPress.org - WordPress 用の Vistered-Little テーマの 404.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3240 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
229494 4.3 警告 WordPress.org - WordPress 用の AndyBlue テーマの searchform.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3239 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
229495 6 警告 WordPress.org - WordPress のデフォルトテーマの functions.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3238 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
229496 6.8 警告 XOOPS - XOOPS 用の TinyContent モジュールにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3237 2012-12-20 18:19 2007-06-12 Show GitHub Exploit DB Packet Storm
229497 7.5 危険 XOOPS - XOOPS 用の Horoscope モジュールにおける PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3236 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
229498 5 警告 tec-it - TEC-IT TBarCode OCX ActiveX コントロール における任意のファイルを上書きされる脆弱性 - CVE-2007-3233 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
229499 6.8 警告 simian systems inc - Idan Sofer PHP::HTML の phphtml.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-3230 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
229500 6.8 警告 singapore - Singapore Gallery の index.php における重要な情報を取得される脆弱性 - CVE-2007-3229 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223481 6.1 MEDIUM
Network
domainmod domainmod In DomainMOD through 4.13, the parameter daterange in the file reporting/domains/cost-by-month.php has XSS. CWE-79
Cross-site Scripting
CVE-2019-15811 2024-11-21 13:29 2019-08-30 Show GitHub Exploit DB Packet Storm
223482 4.7 MEDIUM
Local
linux
redhat
debian
linux_kernel
enterprise_linux
debian_linux
In the Linux kernel before 5.1.13, there is a memory leak in drivers/scsi/libsas/sas_expander.c when SAS expander discovery fails. This will cause a BUG and denial of service. CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2019-15807 2024-11-21 13:29 2019-08-30 Show GitHub Exploit DB Packet Storm
223483 9.8 CRITICAL
Network
commscope tr4400_firmware CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the administrative interface because they include the current base64 encoded passwo… CWE-326
Inadequate Encryption Strength
CVE-2019-15806 2024-11-21 13:29 2019-08-30 Show GitHub Exploit DB Packet Storm
223484 9.8 CRITICAL
Network
commscope tr4400_firmware CommScope ARRIS TR4400 devices with firmware through A1.00.004-180301 are vulnerable to an authentication bypass to the administrative interface because they include the current base64 encoded passwo… CWE-326
Inadequate Encryption Strength
CVE-2019-15805 2024-11-21 13:29 2019-08-30 Show GitHub Exploit DB Packet Storm
223485 9.8 CRITICAL
Network
irssi
canonical
irssi
ubuntu_linux
Irssi 1.2.x before 1.2.2 has a use-after-free if the IRC server sends a double CAP. CWE-416
 Use After Free
CVE-2019-15717 2024-11-21 13:29 2019-08-30 Show GitHub Exploit DB Packet Storm
223486 9.8 CRITICAL
Network
nvidia clara_genomics_analysis Clara Genomics Analysis before 0.2.0 has an integer overflow for cudapoa memory management in allocate_block.cpp. CWE-190
 Integer Overflow or Wraparound
CVE-2019-15788 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223487 9.8 CRITICAL
Network
robotis dynamixel_sdk ROBOTIS Dynamixel SDK through 3.7.11 has a buffer overflow via a large rxpacket. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-15786 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223488 9.8 CRITICAL
Network
fontforge fontforge FontForge 20190813 through 20190820 has a buffer overflow in PrefsUI_LoadPrefs in prefs.c. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-15785 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223489 9.8 CRITICAL
Network
srtalliance secure_reliable_transport Secure Reliable Transport (SRT) through 1.3.4 has a CSndUList array overflow if there are many SRT connections. CWE-129
 Improper Validation of Array Index
CVE-2019-15784 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223490 8.8 HIGH
Network
weblizar social_likebox_\&_feed The facebook-by-weblizar plugin before 2.8.5 for WordPress has CSRF. CWE-352
 Origin Validation Error
CVE-2019-15781 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm