Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230181 4.3 警告 simon elvery
WordPress.org
- WordPress 用の Simon Elvery WP-Footnotes プラグイにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0691 2012-12-20 18:34 2008-02-11 Show GitHub Exploit DB Packet Storm
230182 4.3 警告 smartscript - Smartscript Domain Trader の catalog.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0688 2012-12-20 18:34 2008-02-11 Show GitHub Exploit DB Packet Storm
230183 7.5 危険 youtube - Youtube Clone Script の siteadmin/editor_files/includes/load_message.php におけるクロスサイトスクリプティングの脆弱性 CWE-94
コード・インジェクション
CVE-2008-0687 2012-12-20 18:34 2008-02-11 Show GitHub Exploit DB Packet Storm
230184 7.5 危険 WordPress.org - WordPress 用の st_newsletter プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0683 2012-12-20 18:34 2008-02-11 Show GitHub Exploit DB Packet Storm
230185 7.5 危険 WordPress.org - WordPress 用の Wordspew プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0682 2012-12-20 18:34 2008-02-11 Show GitHub Exploit DB Packet Storm
230186 6.8 警告 phpshop - PHPShop の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0681 2012-12-20 18:34 2008-02-11 Show GitHub Exploit DB Packet Storm
230187 7.5 危険 the everything development company - The Everything Development System の The Everything Development Engine における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-0675 2012-12-20 18:34 2008-02-11 Show GitHub Exploit DB Packet Storm
230188 7.5 危険 tintin - TinTin++ および WinTin++ におけるホームディレクトリの一番上のレベルにある任意のファイルを切り捨てられる脆弱性 CWE-DesignError
CVE-2008-0673 2012-12-20 18:34 2008-02-11 Show GitHub Exploit DB Packet Storm
230189 5 警告 tintin - TinTin++ および WinTin++ の process_chat_input 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-0672 2012-12-20 18:34 2008-02-11 Show GitHub Exploit DB Packet Storm
230190 10 危険 tintin - TinTin++ および WinTin++ の add_line_buffer 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-0671 2012-12-20 18:34 2008-02-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223321 7.5 HIGH
Network
xmlsoft
debian
oracle
fedoraproject
canonical
netapp
siemens
libxml2
debian_linux
real_user_experience_insight
fedora
ubuntu_linux
steelstore_cloud_integrated_storage
ontap_select_deploy_administration_utility
clustered_data_ontap
clust…
xmlParseBalancedChunkMemoryRecover in parser.c in libxml2 before 2.9.10 has a memory leak related to newDoc->oldNs. CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2019-19956 2024-11-21 13:35 2019-12-25 Show GitHub Exploit DB Packet Storm
223322 7.5 HIGH
Network
trendmicro antivirus A privilege escalation vulnerability in Trend Micro Antivirus for Mac 2019 (v9.0.1379 and below) could potentially allow an attacker to create a symbolic link to a target file and modify it. CWE-59
Link Following
CVE-2019-19695 2024-11-21 13:35 2019-12-24 Show GitHub Exploit DB Packet Storm
223323 9.1 CRITICAL
Network
graphicsmagick
debian
opensuse
graphicsmagick
debian_linux
leap
backports
In GraphicsMagick 1.4 snapshot-20191208 Q8, there is a heap-based buffer over-read in the function EncodeImage of coders/pict.c. CWE-125
Out-of-bounds Read
CVE-2019-19953 2024-11-21 13:35 2019-12-24 Show GitHub Exploit DB Packet Storm
223324 9.8 CRITICAL
Network
imagemagick imagemagick In ImageMagick 7.0.9-7 Q16, there is a use-after-free in the function MngInfoDiscardObject of coders/png.c, related to ReadOneMNGImage. CWE-416
 Use After Free
CVE-2019-19952 2024-11-21 13:35 2019-12-24 Show GitHub Exploit DB Packet Storm
223325 9.8 CRITICAL
Network
graphicsmagick
debian
opensuse
graphicsmagick
debian_linux
leap
backports
In GraphicsMagick 1.4 snapshot-20190423 Q8, there is a heap-based buffer overflow in the function ImportRLEPixels of coders/miff.c. CWE-787
 Out-of-bounds Write
CVE-2019-19951 2024-11-21 13:35 2019-12-24 Show GitHub Exploit DB Packet Storm
223326 9.8 CRITICAL
Network
graphicsmagick
debian
opensuse
graphicsmagick
debian_linux
leap
backports
In GraphicsMagick 1.4 snapshot-20190403 Q8, there is a use-after-free in ThrowException and ThrowLoggedException of magick/error.c. CWE-416
 Use After Free
CVE-2019-19950 2024-11-21 13:35 2019-12-24 Show GitHub Exploit DB Packet Storm
223327 9.1 CRITICAL
Network
imagemagick
debian
opensuse
canonical
imagemagick
debian_linux
leap
ubuntu_linux
In ImageMagick 7.0.8-43 Q16, there is a heap-based buffer over-read in the function WritePNGImage of coders/png.c, related to Magick_png_write_raw_profile and LocaleNCompare. CWE-125
Out-of-bounds Read
CVE-2019-19949 2024-11-21 13:35 2019-12-24 Show GitHub Exploit DB Packet Storm
223328 9.8 CRITICAL
Network
imagemagick
debian
opensuse
canonical
imagemagick
debian_linux
leap
ubuntu_linux
In ImageMagick 7.0.8-43 Q16, there is a heap-based buffer overflow in the function WriteSGIImage of coders/sgi.c. CWE-787
 Out-of-bounds Write
CVE-2019-19948 2024-11-21 13:35 2019-12-24 Show GitHub Exploit DB Packet Storm
223329 4.6 MEDIUM
Physics
linux
debian
canonical
netapp
linux_kernel
debian_linux
ubuntu_linux
cloud_backup
steelstore_cloud_integrated_storage
data_availability_services
solidfire_\&_hci_management_node
active_iq_unified_manager<…
In the Linux kernel through 5.4.6, there are information leaks of uninitialized memory to a USB device in the drivers/net/can/usb/kvaser_usb/kvaser_usb_leaf.c driver, aka CID-da2311a6385c. CWE-908
 Use of Uninitialized Resource
CVE-2019-19947 2024-11-21 13:35 2019-12-24 Show GitHub Exploit DB Packet Storm
223330 6.5 MEDIUM
Network
mz-automation libiec61850 In libIEC61850 1.4.0, BerDecoder_decodeUint32 in mms/asn1/ber_decode.c has an out-of-bounds read, related to intLen and bufPos. CWE-125
Out-of-bounds Read
CVE-2019-19944 2024-11-21 13:35 2019-12-24 Show GitHub Exploit DB Packet Storm