Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230381 4.3 警告 TYPO3 Association - TYPO3 用の powermail エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2182 2012-12-20 18:52 2008-05-13 Show GitHub Exploit DB Packet Storm
230382 4.3 警告 zomp - Zomplog の admin/category.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2176 2012-12-20 18:52 2008-05-13 Show GitHub Exploit DB Packet Storm
230383 6.5 警告 shelter manager - Robin Rawson-Tetley ASM における脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-2174 2012-12-20 18:52 2008-05-13 Show GitHub Exploit DB Packet Storm
230384 7.1 危険 ヤマハ - Yamaha ルータにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-2173 2012-12-20 18:52 2008-05-13 Show GitHub Exploit DB Packet Storm
230385 4.3 警告 ZyXEL - ZyXEL ZyWALL 100 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2167 2012-12-20 18:52 2008-05-13 Show GitHub Exploit DB Packet Storm
230386 4.3 警告 SonicWALL - SonicWall Email Security におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-2162 2012-12-20 18:52 2008-05-12 Show GitHub Exploit DB Packet Storm
230387 10 危険 tftp - Windows 上で稼動している TFTP Server におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-2161 2012-12-20 18:52 2008-05-12 Show GitHub Exploit DB Packet Storm
230388 7.5 危険 wordnet - Wordnet の searchwn におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-2149 2012-12-20 18:52 2008-05-12 Show GitHub Exploit DB Packet Storm
230389 4.6 警告 VideoLAN - VideoLAN VLC における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-2147 2012-12-20 18:52 2008-05-12 Show GitHub Exploit DB Packet Storm
230390 7.5 危険 WordPress.org - Wordpress の wp-includes/vars.php における特定のページに対するアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-2146 2012-12-20 18:52 2008-05-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223641 5.4 MEDIUM
Network
atlassian jira
jira_software_data_center
jira_server
jira_data_center
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in Issue Navigator Basic Search… CWE-79
Cross-site Scripting
CVE-2019-20414 2024-11-21 13:38 2020-06-29 Show GitHub Exploit DB Packet Storm
223642 7.5 HIGH
Network
atlassian jira
jira_software_data_center
jira_server
jira_data_center
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to impact the application's availability via a Denial of Service (DoS) vulnerability on the UserPickerBrowser.jspa pa… NVD-CWE-noinfo
CVE-2019-20413 2024-11-21 13:38 2020-06-29 Show GitHub Exploit DB Packet Storm
223643 5.3 MEDIUM
Network
atlassian jira
jira_software_data_center
jira_server
jira_data_center
The Convert Sub-Task to Issue page in affected versions of Atlassian Jira Server and Data Center allow remote attackers to enumerate the following information via an Improper Authentication vulnerabi… CWE-287
Improper Authentication
CVE-2019-20412 2024-11-21 13:38 2020-06-29 Show GitHub Exploit DB Packet Storm
223644 4.3 MEDIUM
Network
atlassian jira
jira_server
jira_data_center
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to modify Wallboard settings via a Cross-site request forgery (CSRF) vulnerability. The affected versions are before … CWE-352
 Origin Validation Error
CVE-2019-20411 2024-11-21 13:38 2020-06-29 Show GitHub Exploit DB Packet Storm
223645 6.5 MEDIUM
Network
atlassian jira
jira_software_data_center
jira_server
jira_data_center
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to view sensitive information via an Information Disclosure vulnerability in the comment restriction feature. The aff… NVD-CWE-noinfo
CVE-2019-20410 2024-11-21 13:38 2020-06-29 Show GitHub Exploit DB Packet Storm
223646 9.8 CRITICAL
Network
atlassian jira_software_data_center
jira
The way in which velocity templates were used in Atlassian Jira Server and Data Center prior to version 8.8.0 allowed remote attackers to gain remote code execution if they were able to exploit a ser… CWE-74
Injection
CVE-2019-20409 2024-11-21 13:38 2020-06-23 Show GitHub Exploit DB Packet Storm
223647 8.1 HIGH
Network
intelliants subrion A Cross-Site Request Forgery (CSRF) vulnerability was discovered in Subrion CMS 4.2.1 that allows a remote attacker to remove files on the server without a victim's knowledge, by enticing an authenti… CWE-352
 Origin Validation Error
CVE-2019-20390 2024-11-21 13:38 2020-05-16 Show GitHub Exploit DB Packet Storm
223648 6.1 MEDIUM
Network
intelliants subrion An XSS issue was identified on the Subrion CMS 4.2.1 /panel/configuration/general settings page. A remote attacker can inject arbitrary JavaScript code in the v[language_switch] parameter (within mul… CWE-79
Cross-site Scripting
CVE-2019-20389 2024-11-21 13:38 2020-05-16 Show GitHub Exploit DB Packet Storm
223649 6.1 MEDIUM
Network
atlassian confluence_server The attachment-uploading feature in Atlassian Confluence Server from version 6.14.0 through version 6.14.3, and version 6.15.0 before version 6.15.5 allows remote attackers to achieve stored cross-si… CWE-79
Cross-site Scripting
CVE-2019-20102 2024-11-21 13:38 2020-04-22 Show GitHub Exploit DB Packet Storm
223650 4.8 MEDIUM
Network
netgear rbr50_firmware
rbk50_firmware
rbs50_firmware
Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30. CWE-79
Cross-site Scripting
CVE-2019-20661 2024-11-21 13:38 2020-04-16 Show GitHub Exploit DB Packet Storm