Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 2, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229671 6.8 警告 サン・マイクロシステムズ - SSGD におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4958 2012-12-20 18:02 2006-09-23 Show GitHub Exploit DB Packet Storm
229672 7.5 危険 the myreview system - MyReview の functions.php における SQL インジェクションの脆弱性 - CVE-2006-4957 2012-12-20 18:02 2006-09-23 Show GitHub Exploit DB Packet Storm
229673 7.5 危険 prosysinfo - ProSysInfo TFTP Server TFTPDWIN の tftpd.exe におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2006-4948 2012-12-20 18:02 2006-09-22 Show GitHub Exploit DB Packet Storm
229674 4.6 警告 シマンテック - Symantec AntiVirus などの製品で使用される NAVENG などのデバイスドライバにおける権限を取得される脆弱性 - CVE-2006-4927 2012-12-20 18:02 2006-10-4 Show GitHub Exploit DB Packet Storm
229675 5 警告 siteatschool - S@S の starnet/editors/htmlarea/popups/images.php における実行可能な拡張子を伴う任意のファイルをアップロードされる脆弱性 - CVE-2006-4922 2012-12-20 18:02 2006-09-20 Show GitHub Exploit DB Packet Storm
229676 7.5 危険 siteatschool - S@S における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4921 2012-12-20 18:02 2006-09-20 Show GitHub Exploit DB Packet Storm
229677 7.5 危険 siteatschool - S@S における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4920 2012-12-20 18:02 2006-09-20 Show GitHub Exploit DB Packet Storm
229678 2.6 注意 siteatschool - S@S の starnet/editors/htmlarea/popups/images.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-4919 2012-12-20 18:02 2006-09-20 Show GitHub Exploit DB Packet Storm
229679 7.5 危険 simple discussion board - Simple Discussion Board における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4918 2012-12-20 18:02 2006-09-20 Show GitHub Exploit DB Packet Storm
229680 4.3 警告 pt news - PT News の search.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4917 2012-12-20 18:02 2006-09-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 2, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211681 5.5 MEDIUM
Local
cron_project
debian
fedoraproject
cron
debian_linux
fedora
Vixie Cron before the 3.0pl1-133 Debian package allows local users to cause a denial of service (memory consumption) via a large crontab file because an unlimited number of lines is accepted. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2019-9705 2024-11-21 13:52 2019-03-12 Show GitHub Exploit DB Packet Storm
211682 5.5 MEDIUM
Local
cron_project
fedoraproject
debian
cron
fedora
debian_linux
Vixie Cron before the 3.0pl1-133 Debian package allows local users to cause a denial of service (daemon crash) via a large crontab file because the calloc return value is not checked. CWE-476
CWE-252
 NULL Pointer Dereference
 Unchecked Return Value
CVE-2019-9704 2024-11-21 13:52 2019-03-12 Show GitHub Exploit DB Packet Storm
211683 8.8 HIGH
Network
cmsmadesimple cms_made_simple In CMS Made Simple (CMSMS) before 2.2.10, an authenticated user can achieve SQL Injection in class.showtime2_data.php via the functions _updateshow (parameter show_id), _inputshow (parameter show_id)… CWE-89
SQL Injection
CVE-2019-9693 2024-11-21 13:52 2019-03-12 Show GitHub Exploit DB Packet Storm
211684 6.5 MEDIUM
Network
cmsmadesimple cms_made_simple class.showtime2_image.php in CMS Made Simple (CMSMS) before 2.2.10 does not ensure that a watermark file has a standard image file extension (GIF, JPG, JPEG, or PNG). CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2019-9692 2024-11-21 13:52 2019-03-12 Show GitHub Exploit DB Packet Storm
211685 8.8 HIGH
Network
sftnow sftnow sftnow through 2018-12-29 allows index.php?g=Admin&m=User&a=add_post CSRF to add an admin account. CWE-352
 Origin Validation Error
CVE-2019-9688 2024-11-21 13:52 2019-03-12 Show GitHub Exploit DB Packet Storm
211686 9.8 CRITICAL
Network
podofo_project
fedoraproject
podofo
fedora
PoDoFo 0.9.6 has a heap-based buffer overflow in PdfString::ConvertUTF16toUTF8 in base/PdfString.cpp. CWE-787
 Out-of-bounds Write
CVE-2019-9687 2024-11-21 13:52 2019-03-12 Show GitHub Exploit DB Packet Storm
211687 8.1 HIGH
Network
php
canonical
opensuse
php
ubuntu_linux
leap
An issue was discovered in PHP 7.x before 7.1.27 and 7.3.x before 7.3.3. phar_tar_writeheaders_int in ext/phar/tar.c has a buffer overflow via a long link value. NOTE: The vendor indicates that the l… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-9675 2024-11-21 13:52 2019-03-11 Show GitHub Exploit DB Packet Storm
211688 7.5 HIGH
Network
jtbc jtbc_php An issue was discovered in JTBC(PHP) 3.0.1.8. Its cache management module is flawed. An arbitrary file ending in "inc.php" can be deleted via a console/cache/manage.php?type=action&action=batch&batch… CWE-22
Path Traversal
CVE-2019-9662 2024-11-21 13:52 2019-03-11 Show GitHub Exploit DB Packet Storm
211689 8.8 HIGH
Network
pacman_project pacman pacman before 5.1.3 allows directory traversal when installing a remote package via a specified URL "pacman -U <url>" due to an unsanitized file name received from a Content-Disposition header. pacma… CWE-22
Path Traversal
CVE-2019-9686 2024-11-21 13:52 2019-03-12 Show GitHub Exploit DB Packet Storm
211690 4.8 MEDIUM
Network
yzmcms yzmcms Stored XSS exists in YzmCMS 5.2 via the admin/system_manage/user_config_edit.html "value" parameter, CWE-79
Cross-site Scripting
CVE-2019-9661 2024-11-21 13:52 2019-03-11 Show GitHub Exploit DB Packet Storm