Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230461 7.5 危険 pixel motion - Blog Pixel Motion の admin/sauvBase.php における重要な情報を含む blogPM.sql ファイルの結果を取得される脆弱性 CWE-287
不適切な認証
CVE-2008-1868 2012-12-20 18:52 2008-04-17 Show GitHub Exploit DB Packet Storm
230462 7.5 危険 pixel motion - Blog Pixel Motion における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1867 2012-12-20 18:52 2008-04-17 Show GitHub Exploit DB Packet Storm
230463 9 危険 pixel motion - Blog Pixel Motion の admin/modif_config.php における任意の PHP スクリプトをアップロードされる脆弱性 CWE-94
コード・インジェクション
CVE-2008-1866 2012-12-20 18:52 2008-04-17 Show GitHub Exploit DB Packet Storm
230464 7.5 危険 prozilla - Prozilla Freelancers の project.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1864 2012-12-20 18:52 2008-04-17 Show GitHub Exploit DB Packet Storm
230465 7.5 危険 prozilla - Prozilla Cheat Script の view_reviews.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1863 2012-12-20 18:52 2008-04-17 Show GitHub Exploit DB Packet Storm
230466 5 警告 SmarterTools Inc. - SmarterMail の SmarterMail Web Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2008-1854 2012-12-20 18:52 2008-04-16 Show GitHub Exploit DB Packet Storm
230467 4.3 警告 SAP - SAP NetWeaver のデフォルト設定におけるクロスサイトスクリプティング攻撃を実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1846 2012-12-20 18:52 2008-04-16 Show GitHub Exploit DB Packet Storm
230468 7.5 危険 w2b - W2B phpHotResources の cat.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1844 2012-12-20 18:52 2008-04-16 Show GitHub Exploit DB Packet Storm
230469 7.5 危険 w2b - W2B DatingClub の browse.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-1843 2012-12-20 18:52 2008-04-16 Show GitHub Exploit DB Packet Storm
230470 4.3 警告 work system e-commerce - WORK system e-commerce の module/main.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-1839 2012-12-20 18:52 2008-04-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223641 5.4 MEDIUM
Network
atlassian jira
jira_software_data_center
jira_server
jira_data_center
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to inject arbitrary HTML or JavaScript via a cross site scripting (XSS) vulnerability in Issue Navigator Basic Search… CWE-79
Cross-site Scripting
CVE-2019-20414 2024-11-21 13:38 2020-06-29 Show GitHub Exploit DB Packet Storm
223642 7.5 HIGH
Network
atlassian jira
jira_software_data_center
jira_server
jira_data_center
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to impact the application's availability via a Denial of Service (DoS) vulnerability on the UserPickerBrowser.jspa pa… NVD-CWE-noinfo
CVE-2019-20413 2024-11-21 13:38 2020-06-29 Show GitHub Exploit DB Packet Storm
223643 5.3 MEDIUM
Network
atlassian jira
jira_software_data_center
jira_server
jira_data_center
The Convert Sub-Task to Issue page in affected versions of Atlassian Jira Server and Data Center allow remote attackers to enumerate the following information via an Improper Authentication vulnerabi… CWE-287
Improper Authentication
CVE-2019-20412 2024-11-21 13:38 2020-06-29 Show GitHub Exploit DB Packet Storm
223644 4.3 MEDIUM
Network
atlassian jira
jira_server
jira_data_center
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to modify Wallboard settings via a Cross-site request forgery (CSRF) vulnerability. The affected versions are before … CWE-352
 Origin Validation Error
CVE-2019-20411 2024-11-21 13:38 2020-06-29 Show GitHub Exploit DB Packet Storm
223645 6.5 MEDIUM
Network
atlassian jira
jira_software_data_center
jira_server
jira_data_center
Affected versions of Atlassian Jira Server and Data Center allow remote attackers to view sensitive information via an Information Disclosure vulnerability in the comment restriction feature. The aff… NVD-CWE-noinfo
CVE-2019-20410 2024-11-21 13:38 2020-06-29 Show GitHub Exploit DB Packet Storm
223646 9.8 CRITICAL
Network
atlassian jira_software_data_center
jira
The way in which velocity templates were used in Atlassian Jira Server and Data Center prior to version 8.8.0 allowed remote attackers to gain remote code execution if they were able to exploit a ser… CWE-74
Injection
CVE-2019-20409 2024-11-21 13:38 2020-06-23 Show GitHub Exploit DB Packet Storm
223647 8.1 HIGH
Network
intelliants subrion A Cross-Site Request Forgery (CSRF) vulnerability was discovered in Subrion CMS 4.2.1 that allows a remote attacker to remove files on the server without a victim's knowledge, by enticing an authenti… CWE-352
 Origin Validation Error
CVE-2019-20390 2024-11-21 13:38 2020-05-16 Show GitHub Exploit DB Packet Storm
223648 6.1 MEDIUM
Network
intelliants subrion An XSS issue was identified on the Subrion CMS 4.2.1 /panel/configuration/general settings page. A remote attacker can inject arbitrary JavaScript code in the v[language_switch] parameter (within mul… CWE-79
Cross-site Scripting
CVE-2019-20389 2024-11-21 13:38 2020-05-16 Show GitHub Exploit DB Packet Storm
223649 6.1 MEDIUM
Network
atlassian confluence_server The attachment-uploading feature in Atlassian Confluence Server from version 6.14.0 through version 6.14.3, and version 6.15.0 before version 6.15.5 allows remote attackers to achieve stored cross-si… CWE-79
Cross-site Scripting
CVE-2019-20102 2024-11-21 13:38 2020-04-22 Show GitHub Exploit DB Packet Storm
223650 4.8 MEDIUM
Network
netgear rbr50_firmware
rbk50_firmware
rbs50_firmware
Certain NETGEAR devices are affected by stored XSS. This affects RBR50 before 2.3.5.30, RBS50 before 2.3.5.30, and RBK50 before 2.3.5.30. CWE-79
Cross-site Scripting
CVE-2019-20661 2024-11-21 13:38 2020-04-16 Show GitHub Exploit DB Packet Storm