Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230121 7.5 危険 softbiz - Softbiz Jokes & Funny Pics Script の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1050 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
230122 10 危険 positive software - Parallels H-Sphere で使用される Parallels SiteStudio における脆弱性 CWE-noinfo
情報不足
CVE-2008-1049 2012-12-20 18:34 2008-02-26 Show GitHub Exploit DB Packet Storm
230123 4.3 警告 Plume CMS - Plume CMS の manager/xmedia.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1048 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
230124 4.3 警告 Tiki Software Community Association - TikiWiki の tiki-edit_article.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1047 2012-12-20 18:34 2008-02-23 Show GitHub Exploit DB Packet Storm
230125 6.8 警告 quinsonnas - Quinsonnas Mail Checker の footer.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2008-1046 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
230126 7.5 危険 porar - PORAR WEBBOARD の question.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1039 2012-12-20 18:34 2008-02-27 Show GitHub Exploit DB Packet Storm
230127 5.8 警告 spyce - Spyce - PSP における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2008-0982 2012-12-20 18:34 2008-02-25 Show GitHub Exploit DB Packet Storm
230128 6.4 警告 spyce - Spyce - PSP の spyce/examples/redirect.spy におけるオープンリダイレクトの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-0981 2012-12-20 18:34 2008-02-25 Show GitHub Exploit DB Packet Storm
230129 4.3 警告 spyce - Spyce - PSP におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0980 2012-12-20 18:34 2008-02-25 Show GitHub Exploit DB Packet Storm
230130 4.3 警告 webgui - Plain Black WebGUI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0940 2012-12-20 18:34 2008-02-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223331 8.8 HIGH
Network
mz-automation libiec61850 In libIEC61850 1.4.0, MmsValue_decodeMmsData in mms/iso_mms/server/mms_access_result.c has a heap-based buffer overflow. CWE-787
 Out-of-bounds Write
CVE-2019-19931 2024-11-21 13:35 2019-12-23 Show GitHub Exploit DB Packet Storm
223332 6.5 MEDIUM
Network
mz-automation libiec61850 In libIEC61850 1.4.0, MmsValue_newOctetString in mms/iso_mms/common/mms_value.c has an integer signedness error that can lead to an attempted excessive memory allocation. CWE-190
 Integer Overflow or Wraparound
CVE-2019-19930 2024-11-21 13:35 2019-12-23 Show GitHub Exploit DB Packet Storm
223333 7.8 HIGH
Local
malwarebytes adwcleaner An Untrusted Search Path vulnerability in Malwarebytes AdwCleaner before 8.0.1 could cause arbitrary code execution with SYSTEM privileges when a malicious DLL library is loaded by the product. CWE-426
 Untrusted Search Path
CVE-2019-19929 2024-11-21 13:35 2019-12-23 Show GitHub Exploit DB Packet Storm
223334 7.5 HIGH
Network
sqlite
siemens
oracle
debian
redhat
opensuse
suse
netapp
sqlite
sinec_infrastructure_network_services
mysql_workbench
debian_linux
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
leap
backports_sle
p…
multiSelect in select.c in SQLite 3.30.1 mishandles certain errors during parsing, as demonstrated by errors from sqlite3WindowRewrite() calls. NOTE: this vulnerability exists because of an incomplet… CWE-476
 NULL Pointer Dereference
CVE-2019-19926 2024-11-21 13:35 2019-12-23 Show GitHub Exploit DB Packet Storm
223335 5.5 MEDIUM
Local
linux
debian
canonical
oracle
netapp
linux_kernel
debian_linux
ubuntu_linux
sd-wan_edge
cloud_backup
steelstore_cloud_integrated_storage
data_availability_services
solidfire_\&_hci_management_node
active_iq_u…
kernel/sched/fair.c in the Linux kernel before 5.3.9, when cpu.cfs_quota_us is used (e.g., with Kubernetes), allows attackers to cause a denial of service against non-cpu-bound applications by genera… CWE-400
 Uncontrolled Resource Consumption
CVE-2019-19922 2024-11-21 13:35 2019-12-23 Show GitHub Exploit DB Packet Storm
223336 8.8 HIGH
Network
sa-exim_project
debian
canonical
sa-exim
debian_linux
ubuntu_linux
sa-exim 4.2.1 allows attackers to execute arbitrary code if they can write a .cf file or a rule. This occurs because Greylisting.pm relies on eval (rather than direct parsing and/or use of the taint … CWE-78
OS Command 
CVE-2019-19920 2024-11-21 13:35 2019-12-23 Show GitHub Exploit DB Packet Storm
223337 9.8 CRITICAL
Network
handlebars.js_project
tenable
handlebars.js
tenable.sc
Versions of handlebars prior to 4.3.0 are vulnerable to Prototype Pollution leading to Remote Code Execution. Templates may alter an Object's __proto__ and __defineGetter__ properties, which may allo… CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2019-19919 2024-11-21 13:35 2019-12-21 Show GitHub Exploit DB Packet Storm
223338 7.8 HIGH
Local
lout_project
opensuse
fedoraproject
lout
leap
fedora
backports_sle
Lout 3.40 has a heap-based buffer overflow in the srcnext() function in z02.c. CWE-787
 Out-of-bounds Write
CVE-2019-19918 2024-11-21 13:35 2019-12-21 Show GitHub Exploit DB Packet Storm
223339 7.8 HIGH
Local
lout_project
opensuse
fedoraproject
lout
leap
backports_sle
fedora
Lout 3.40 has a buffer overflow in the StringQuotedWord() function in z39.c. CWE-120
Classic Buffer Overflow
CVE-2019-19917 2024-11-21 13:35 2019-12-21 Show GitHub Exploit DB Packet Storm
223340 9.8 CRITICAL
Network
neuvector neuvector NeuVector 3.1 when configured to allow authentication via Active Directory, does not enforce non-empty passwords which allows an attacker with access to the Neuvector portal to authenticate as any va… CWE-521
Weak Password Requirements 
CVE-2019-19747 2024-11-21 13:35 2019-12-21 Show GitHub Exploit DB Packet Storm