Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230121 7.5 危険 XOOPS - XOOPS 用の Makale モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4653 2012-12-20 18:52 2008-10-21 Show GitHub Exploit DB Packet Storm
230122 7.5 危険 sweetcms - sweetCMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4647 2012-12-20 18:52 2008-10-21 Show GitHub Exploit DB Packet Storm
230123 2.1 注意 ウェブセンス - Websense Enterprise の Websense Reporter Module におけるデータベースへの権限を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2008-4646 2012-12-20 18:52 2008-10-21 Show GitHub Exploit DB Packet Storm
230124 9 危険 phpwebgallery - PhpWebGallery の plugins/event_tracer/event_list.php における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2008-4645 2012-12-20 18:52 2008-10-21 Show GitHub Exploit DB Packet Storm
230125 10 危険 Matthias Wandel - Matthias Wandel jhead の jhead.c における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-4641 2012-12-20 18:52 2008-10-21 Show GitHub Exploit DB Packet Storm
230126 3.6 注意 Matthias Wandel - Matthias Wandel jhead の jhead.c における任意のファイルを削除される脆弱性 CWE-20
不適切な入力確認
CVE-2008-4640 2012-12-20 18:52 2008-10-21 Show GitHub Exploit DB Packet Storm
230127 4.6 警告 Matthias Wandel - Matthias Wandel jhead の jhead.c における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2008-4639 2012-12-20 18:52 2008-10-21 Show GitHub Exploit DB Packet Storm
230128 7.5 危険 rgallery - WBB 用の rGallery プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4627 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
230129 6.8 警告 zirkon box - Fritz Berger yappa-ng の yappa-ng におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-4626 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
230130 7.5 危険 shiftthis - WordPress 用の ShiftThis Newsletter プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-4625 2012-12-20 18:52 2008-10-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224371 7.8 HIGH
Local
qualcomm mdm9150_firmware
mdm9607_firmware
mdm9650_firmware
msm8909w_firmware
msm8996au_firmware
qcs405_firmware
qcs605_firmware
qualcomm_215_firmware
sd_425_firmware
sd_427_firmwar…
User application could potentially make RPC call to the fastrpc driver and the driver will allow the message to go through to the remote subsystem in Snapdragon Auto, Snapdragon Consumer IOT, Snapdra… NVD-CWE-noinfo
CVE-2019-2308 2024-11-21 13:40 2019-07-26 Show GitHub Exploit DB Packet Storm
224372 9.8 CRITICAL
Network
qualcomm mdm9150_firmware
mdm9206_firmware
mdm9607_firmware
mdm9640_firmware
mdm9650_firmware
msm8996au_firmware
qca6174a_firmware
qca6574au_firmware
qca9377_firmware
qca9379_firmwa…
Possible integer underflow due to lack of validation before calculation of data length in 802.11 Rx management configuration in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdrag… CWE-125
CWE-191
Out-of-bounds Read
 Integer Underflow (Wrap or Wraparound)
CVE-2019-2307 2024-11-21 13:40 2019-07-26 Show GitHub Exploit DB Packet Storm
224373 7.8 HIGH
Local
qualcomm mdm9150_firmware
mdm9206_firmware
mdm9607_firmware
mdm9650_firmware
msm8909w_firmware
msm8996au_firmware
qcs405_firmware
qcs605_firmware
qualcomm_215_firmware
sd_210_firmwa…
Improper casting of structure while handling the buffer leads to out of bound read in display in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdrag… CWE-125
CWE-704
Out-of-bounds Read
 Incorrect Type Conversion or Cast
CVE-2019-2306 2024-11-21 13:40 2019-07-26 Show GitHub Exploit DB Packet Storm
224374 9.8 CRITICAL
Network
qualcomm mdm9150_firmware
mdm9206_firmware
mdm9607_firmware
mdm9640_firmware
mdm9650_firmware
msm8996au_firmware
qca6174a_firmware
qca6574au_firmware
qca9377_firmware
qca9379_firmwa…
Out of bound access when reason code is extracted from frame data without validating the frame length in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Snapdr… CWE-125
Out-of-bounds Read
CVE-2019-2305 2024-11-21 13:40 2019-07-26 Show GitHub Exploit DB Packet Storm
224375 7.8 HIGH
Local
qualcomm ipq4019_firmware
ipq8064_firmware
msm8909w_firmware
msm8996au_firmware
qca9980_firmware
qcs605_firmware
qualcomm_215_firmware
sd_425_firmware
sd_439_firmware
sd_429_firmwar…
Possibility of out-of-bound read if id received from SPI is not in range of FIFO in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdra… CWE-125
Out-of-bounds Read
CVE-2019-2301 2024-11-21 13:40 2019-07-26 Show GitHub Exploit DB Packet Storm
224376 7.8 HIGH
Local
qualcomm ipq4019_firmware
ipq8064_firmware
ipq8074_firmware
mdm9150_firmware
mdm9206_firmware
mdm9607_firmware
mdm9640_firmware
mdm9650_firmware
msm8996au_firmware
qca6174a_firmware…
An out-of-bound write can be triggered by a specially-crafted command supplied by a userspace application. in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, S… CWE-787
 Out-of-bounds Write
CVE-2019-2299 2024-11-21 13:40 2019-07-26 Show GitHub Exploit DB Packet Storm
224377 7.8 HIGH
Local
qualcomm mdm9150_firmware
mdm9206_firmware
mdm9607_firmware
mdm9640_firmware
mdm9650_firmware
msm8909w_firmware
qcs405_firmware
qcs605_firmware
sd_210_firmware
sd_212_firmware
sd…
Protection is missing while accessing md sessions info via macro which can lead to use-after-free in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdrago… CWE-416
 Use After Free
CVE-2019-2298 2024-11-21 13:40 2019-07-26 Show GitHub Exploit DB Packet Storm
224378 7.8 HIGH
Local
qualcomm msm8909w_firmware
qcs405_firmware
qcs605_firmware
sd_425_firmware
sd_427_firmware
sd_430_firmware
sd_435_firmware
sd_450_firmware
sd_625_firmware
sd_636_firmware
sd_675_…
Pointer dereference while freeing IFE resources due to lack of length check of in port resource. in Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Voice & Music, Sn… CWE-416
 Use After Free
CVE-2019-2293 2024-11-21 13:40 2019-07-26 Show GitHub Exploit DB Packet Storm
224379 7.8 HIGH
Local
qualcomm mdm9206_firmware
mdm9607_firmware
mdm9640_firmware
mdm9650_firmware
msm8909w_firmware
msm8996au_firmware
qcs605_firmware
sd_425_firmware
sd_427_firmware
sd_430_firmware
Multiple open and close from multiple threads will lead camera driver to access destroyed session data pointer in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industr… CWE-416
 Use After Free
CVE-2019-2290 2024-11-21 13:40 2019-07-26 Show GitHub Exploit DB Packet Storm
224380 7.8 HIGH
Local
qualcomm qcs405_firmware
qcs605_firmware
sd_636_firmware
sd_665_firmware
sd_675_firmware
sd_712_firmware
sd_710_firmware
sd_670_firmware
sd_730_firmware
sd_820_firmware
sd_835_fi…
An unauthenticated bitmap image can be loaded in to memory and subsequently cause execution of unverified code. in Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Ind… NVD-CWE-noinfo
CVE-2019-2281 2024-11-21 13:40 2019-07-26 Show GitHub Exploit DB Packet Storm