Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230041 7.5 危険 Toocharger - SMartBlog における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2184 2012-12-20 18:52 2008-05-13 Show GitHub Exploit DB Packet Storm
230042 7.5 危険 Toocharger - SMartBlog の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-2183 2012-12-20 18:52 2008-05-13 Show GitHub Exploit DB Packet Storm
230043 4.3 警告 TYPO3 Association - TYPO3 用の powermail エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2182 2012-12-20 18:52 2008-05-13 Show GitHub Exploit DB Packet Storm
230044 4.3 警告 zomp - Zomplog の admin/category.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2176 2012-12-20 18:52 2008-05-13 Show GitHub Exploit DB Packet Storm
230045 6.5 警告 shelter manager - Robin Rawson-Tetley ASM における脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-2174 2012-12-20 18:52 2008-05-13 Show GitHub Exploit DB Packet Storm
230046 7.1 危険 ヤマハ - Yamaha ルータにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-2173 2012-12-20 18:52 2008-05-13 Show GitHub Exploit DB Packet Storm
230047 4.3 警告 ZyXEL - ZyXEL ZyWALL 100 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2167 2012-12-20 18:52 2008-05-13 Show GitHub Exploit DB Packet Storm
230048 4.3 警告 SonicWALL - SonicWall Email Security におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2162 2012-12-20 18:52 2008-05-12 Show GitHub Exploit DB Packet Storm
230049 10 危険 tftp - Windows 上で稼動している TFTP Server におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-2161 2012-12-20 18:52 2008-05-12 Show GitHub Exploit DB Packet Storm
230050 7.5 危険 wordnet - Wordnet の searchwn におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-2149 2012-12-20 18:52 2008-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222961 6.5 MEDIUM
Network
gnu
opensuse
libredwg
leap
backports_sle
An issue was discovered in GNU LibreDWG 0.92. Crafted input will lead to an attempted excessive memory allocation in dwg_decode_LWPOLYLINE_private in dwg.spec. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2019-20015 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm
222962 8.8 HIGH
Network
gnu
opensuse
libredwg
leap
backports_sle
An issue was discovered in GNU LibreDWG before 0.93. There is a double-free in dwg_free in free.c. CWE-415
 Double Free
CVE-2019-20014 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm
222963 6.5 MEDIUM
Network
gnu
opensuse
libredwg
leap
backports_sle
An issue was discovered in GNU LibreDWG before 0.93. Crafted input will lead to an attempted excessive memory allocation in decode_3dsolid in dwg.spec. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2019-20013 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm
222964 6.5 MEDIUM
Network
gnu
opensuse
libredwg
leap
backports_sle
An issue was discovered in GNU LibreDWG 0.92. Crafted input will lead to an attempted excessive memory allocation in dwg_decode_HATCH_private in dwg.spec. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2019-20012 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm
222965 8.8 HIGH
Network
gnu
opensuse
libredwg
leap
backports_sle
An issue was discovered in GNU LibreDWG 0.92. There is a heap-based buffer over-read in decode_R13_R2000 in decode.c. CWE-125
Out-of-bounds Read
CVE-2019-20011 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm
222966 8.8 HIGH
Network
gnu
opensuse
libredwg
leap
backports_sle
An issue was discovered in GNU LibreDWG 0.92. There is a use-after-free in resolve_objectref_vector in decode.c. CWE-416
 Use After Free
CVE-2019-20010 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm
222967 6.5 MEDIUM
Network
gnu
opensuse
libredwg
leap
backports_sle
An issue was discovered in GNU LibreDWG before 0.93. Crafted input will lead to an attempted excessive memory allocation in dwg_decode_SPLINE_private in dwg.spec. CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2019-20009 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm
222968 5.4 MEDIUM
Network
archerysec archery In Archery before 1.3, inserting an XSS payload into a project name (either by creating a new project or editing an existing one) will result in stored XSS on the vulnerability-scan scheduling page. CWE-79
Cross-site Scripting
CVE-2019-20008 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm
222969 6.5 MEDIUM
Network
ezxml_project ezxml An issue was discovered in ezXML 0.8.2 through 0.8.6. The function ezxml_str2utf8, while parsing a crafted XML file, performs zero-length reallocation in ezxml.c, leading to returning a NULL pointer … CWE-476
 NULL Pointer Dereference
CVE-2019-20007 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm
222970 7.5 HIGH
Network
ezxml_project ezxml An issue was discovered in ezXML 0.8.3 through 0.8.6. The function ezxml_char_content puts a pointer to the internal address of a larger block as xml->txt. This is later deallocated (using free), lea… CWE-416
 Use After Free
CVE-2019-20006 2024-11-21 13:37 2019-12-27 Show GitHub Exploit DB Packet Storm