Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229921 4.3 警告 webcms - webCMS Portal Edition の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4184 2012-12-20 18:52 2008-09-23 Show GitHub Exploit DB Packet Storm
229922 7.5 危険 PreProject.com - Pre Real Estate Listings の search.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4177 2012-12-20 18:52 2008-09-23 Show GitHub Exploit DB Packet Storm
229923 7.5 危険 proarcadescript - ProArcadeScript における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4173 2012-12-20 18:52 2008-09-22 Show GitHub Exploit DB Packet Storm
229924 7.5 危険 rfaah - Cars & Vehicle の page.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4172 2012-12-20 18:52 2008-09-22 Show GitHub Exploit DB Packet Storm
229925 4.3 警告 pro2col - Pro2col Stingray FTS の verify_login.jsp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4168 2012-12-20 18:52 2008-09-22 Show GitHub Exploit DB Packet Storm
229926 7.5 危険 zanfi solutions - Zanfi CMS lite および Jaw Portal の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4159 2012-12-20 18:52 2008-09-22 Show GitHub Exploit DB Packet Storm
229927 6.8 警告 zanfi solutions - Zanfi CMS lite の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4158 2012-12-20 18:52 2008-09-22 Show GitHub Exploit DB Packet Storm
229928 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech phpVID の groups.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4157 2012-12-20 18:52 2008-09-22 Show GitHub Exploit DB Packet Storm
229929 7.5 危険 razorecommerce - RazorCommerce Shopping Cart の category_search.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4143 2012-12-20 18:52 2008-09-24 Show GitHub Exploit DB Packet Storm
229930 7.5 危険 x10media - x10Media x10 Automatic MP3 Script における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-4141 2012-12-20 18:52 2008-09-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224651 6.5 MEDIUM
Network
matio_project matio An attempted excessive memory allocation was discovered in Mat_VarRead5 in mat5.c in matio 1.5.17. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2019-20019 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm
224652 6.5 MEDIUM
Network
matio_project matio A stack-based buffer over-read was discovered in ReadNextCell in mat5.c in matio 1.5.17. CWE-125
Out-of-bounds Read
CVE-2019-20018 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm
224653 6.5 MEDIUM
Network
matio_project matio A stack-based buffer over-read was discovered in Mat_VarReadNextInfo5 in mat5.c in matio 1.5.17. CWE-125
Out-of-bounds Read
CVE-2019-20017 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm
224654 6.5 MEDIUM
Network
symonics libmysofa libmysofa before 2019-11-24 does not properly restrict recursive function calls, as demonstrated by reports of stack consumption in readOHDRHeaderMessageDatatype in dataobject.c and directblockRead i… CWE-787
 Out-of-bounds Write
CVE-2019-20016 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm
224655 6.5 MEDIUM
Network
gnu
opensuse
libredwg
leap
backports_sle
An issue was discovered in GNU LibreDWG 0.92. Crafted input will lead to an attempted excessive memory allocation in dwg_decode_LWPOLYLINE_private in dwg.spec. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2019-20015 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm
224656 8.8 HIGH
Network
gnu
opensuse
libredwg
leap
backports_sle
An issue was discovered in GNU LibreDWG before 0.93. There is a double-free in dwg_free in free.c. CWE-415
 Double Free
CVE-2019-20014 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm
224657 6.5 MEDIUM
Network
gnu
opensuse
libredwg
leap
backports_sle
An issue was discovered in GNU LibreDWG before 0.93. Crafted input will lead to an attempted excessive memory allocation in decode_3dsolid in dwg.spec. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2019-20013 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm
224658 6.5 MEDIUM
Network
gnu
opensuse
libredwg
leap
backports_sle
An issue was discovered in GNU LibreDWG 0.92. Crafted input will lead to an attempted excessive memory allocation in dwg_decode_HATCH_private in dwg.spec. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2019-20012 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm
224659 8.8 HIGH
Network
gnu
opensuse
libredwg
leap
backports_sle
An issue was discovered in GNU LibreDWG 0.92. There is a heap-based buffer over-read in decode_R13_R2000 in decode.c. CWE-125
Out-of-bounds Read
CVE-2019-20011 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm
224660 8.8 HIGH
Network
gnu
opensuse
libredwg
leap
backports_sle
An issue was discovered in GNU LibreDWG 0.92. There is a use-after-free in resolve_objectref_vector in decode.c. CWE-416
 Use After Free
CVE-2019-20010 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm