Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231811 6.8 警告 simple php scripts gallery - sphp の Ivan Peevski gallery における任意の PHP コードを実行される脆弱性 - CVE-2007-2679 2012-12-20 18:19 2007-05-14 Show GitHub Exploit DB Packet Storm
231812 7.5 危険 phpchess - phpChess Community Edition における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2677 2012-12-20 18:19 2007-05-14 Show GitHub Exploit DB Packet Storm
231813 7.5 危険 PreProject.com - Pre Classifieds Listings の search.php における SQL インジェクションの脆弱性 - CVE-2007-2675 2012-12-20 18:19 2007-05-14 Show GitHub Exploit DB Packet Storm
231814 7.5 危険 PreProject.com - Pre Shopping Mall の detail.php における SQL インジェクションの脆弱性 - CVE-2007-2674 2012-12-20 18:19 2007-05-14 Show GitHub Exploit DB Packet Storm
231815 7.5 危険 thinc4orce marketing group - PHP Coupon Script の index.php における SQL インジェクションの脆弱性 - CVE-2007-2672 2012-12-20 18:19 2007-05-14 Show GitHub Exploit DB Packet Storm
231816 6.8 警告 webdesproxy - webdesproxy におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-2668 2012-12-20 18:19 2007-05-14 Show GitHub Exploit DB Packet Storm
231817 7.5 危険 tomasz rekawek - Yaap の includes/common.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2664 2012-12-20 18:19 2007-05-14 Show GitHub Exploit DB Packet Storm
231818 7.8 危険 precisionid barcode - PrecisionID_DataMatrix.DLL の PrecisionID Barcode ActiveX コントロールにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2657 2012-12-20 18:19 2007-05-14 Show GitHub Exploit DB Packet Storm
231819 4.4 警告 SUSE
xfsdump
- xfsdump の xfs_fsr における xfs ファイルシステム上で任意のファイルを上書きされる脆弱性 CWE-362
CWE-Other
CVE-2007-2654 2012-12-20 18:19 2007-05-11 Show GitHub Exploit DB Packet Storm
231820 7.5 危険 voodoo circle - VooDoo cIRCle におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2651 2012-12-20 18:19 2007-05-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211391 5.4 MEDIUM
Network
wuzhicms wuzhi_cms A cross-site scripting (XSS) vulnerability in the system bulletin component of WUZHI CMS v4.1.0 allows attackers to steal the admin's cookie. CWE-79
Cross-site Scripting
CVE-2020-19770 2024-11-21 14:09 2021-12-22 Show GitHub Exploit DB Packet Storm
211392 8.8 HIGH
Network
laravel framework OS Command injection vulnerability in function link in Filesystem.php in Laravel Framework before 5.8.17. CWE-78
OS Command 
CVE-2020-19316 2024-11-21 14:09 2021-12-21 Show GitHub Exploit DB Packet Storm
211393 5.4 MEDIUM
Network
zzzcms zzzcms A Cross Site Scripting (XSS) exists in ZZZCMS V1.7.1 via an editfile action in save.php. CWE-79
Cross-site Scripting
CVE-2020-19683 2024-11-21 14:09 2021-12-10 Show GitHub Exploit DB Packet Storm
211394 8.8 HIGH
Network
zzzcms zzzcms A Cross Site Request Forgery (CSRF) vulnerability exits in ZZZCMS V1.7.1 via the save_user funciton in save.php. CWE-352
 Origin Validation Error
CVE-2020-19682 2024-11-21 14:09 2021-12-10 Show GitHub Exploit DB Packet Storm
211395 6.1 MEDIUM
Network
racktables_project racktables Cross Site Scripting (XSS) in redirect module of Racktables version 0.21.2, allows an attacker to inject arbitrary web script or HTML via the op parameter. CWE-79
Cross-site Scripting
CVE-2020-19611 2024-11-21 14:09 2021-12-8 Show GitHub Exploit DB Packet Storm
211396 6.5 MEDIUM
Network
phpmywind phpmywind A Cross Site Request Forgery (CSRF) vulnerability was discovered in PHPMyWind 5.6 which allows attackers to create a new administrator account without authentication. CWE-352
 Origin Validation Error
CVE-2020-19964 2024-11-21 14:09 2021-10-15 Show GitHub Exploit DB Packet Storm
211397 5.4 MEDIUM
Network
chaoji_cms_project chaoji_cms A stored cross-site scripting (XSS) vulnerability in the getClientIp function in /lib/tinwin.class.php of Chaoji CMS 2.39, allows attackers to execute arbitrary web scripts. CWE-79
Cross-site Scripting
CVE-2020-19962 2024-11-21 14:09 2021-10-15 Show GitHub Exploit DB Packet Storm
211398 7.5 HIGH
Network
zzcms zzcms A SQL injection vulnerability has been discovered in zz cms version 2019 which allows attackers to retrieve sensitive data via the component subzs.php. CWE-89
SQL Injection
CVE-2020-19961 2024-11-21 14:09 2021-10-15 Show GitHub Exploit DB Packet Storm
211399 7.5 HIGH
Network
zzcms zzcms A SQL injection vulnerability has been discovered in zz cms version 2019 which allows attackers to retrieve sensitive data via the dlid parameter in the /dl/dl_sendsms.php page cookie. CWE-89
SQL Injection
CVE-2020-19960 2024-11-21 14:09 2021-10-15 Show GitHub Exploit DB Packet Storm
211400 7.5 HIGH
Network
zzcms zzcms A SQL injection vulnerability has been discovered in zz cms version 2019 which allows attackers to retrieve sensitive data via the dlid parameter in the /dl/dl_sendmail.php page cookie. CWE-89
SQL Injection
CVE-2020-19959 2024-11-21 14:09 2021-10-15 Show GitHub Exploit DB Packet Storm