|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 20, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 245341 | 7.5 | 危険 | bbsprocess | - | BBsProcesS BBPortalS の tnews.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2007-5630 | 2012-06-26 15:54 | 2007-10-23 | Show | GitHub Exploit DB Packet Storm |
| 245342 | 4.3 | 警告 | candypress | - | ShoppingTree CandyPress Store の admin/logon.asp におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2007-5629 | 2012-06-26 15:54 | 2007-10-23 | Show | GitHub Exploit DB Packet Storm |
| 245343 | 2.1 | 注意 | Bacula.org | - | Bacula の make_catalog_backup におけるパスワードを取得される脆弱性 |
CWE-310
暗号の問題 |
CVE-2007-5626 | 2012-06-26 15:54 | 2007-10-23 | Show | GitHub Exploit DB Packet Storm |
| 245344 | 5 | 警告 | 3proxy | - | 3proxy の ftpprchild 関数におけるメモリ二重解放の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2007-5622 | 2012-06-26 15:54 | 2007-10-29 | Show | GitHub Exploit DB Packet Storm |
| 245345 | 3.5 | 注意 | Drupal Ubercart |
- | Drupal 用の Token モジュールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2007-5621 | 2012-06-26 15:54 | 2007-10-17 | Show | GitHub Exploit DB Packet Storm |
| 245346 | 6.8 | 警告 | artmedic webdesign | - | Artmedic CMS の index.php における任意の PHP コードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2007-5600 | 2012-06-26 15:54 | 2007-10-19 | Show | GitHub Exploit DB Packet Storm |
| 245347 | 6.8 | 警告 | awrate | - | awrate における PHP リモートファイルインクルージョンの脆弱性 |
CWE-94
コード・インジェクション |
CVE-2007-5599 | 2012-06-26 15:54 | 2007-10-19 | Show | GitHub Exploit DB Packet Storm |
| 245348 | 4.3 | 警告 | Drupal | - | Drupal 用の Weblinks におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2007-5598 | 2012-06-26 15:54 | 2007-10-17 | Show | GitHub Exploit DB Packet Storm |
| 245349 | 4.3 | 警告 | Drupal | - | Drupal の hook_comments API におけるアクセス制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2007-5597 | 2012-06-26 15:54 | 2007-10-17 | Show | GitHub Exploit DB Packet Storm |
| 245350 | 4.3 | 警告 | Drupal | - | Drupal のコア Upload モジュールにおけるクロスサイトスクリプティング攻撃を誘発する脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2007-5596 | 2012-06-26 15:54 | 2007-10-17 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 20, 2026, 4:14 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 218761 | 6.5 |
MEDIUM
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Incorrect handling of a confusable character in Omnibox in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted domain name. |
NVD-CWE-noinfo
|
CVE-2019-5781 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 218762 | 7.8 |
HIGH
Local |
google redhat debian fedoraproject |
chrome enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation debian_linux fedora |
Insufficient restrictions on what can be done with Apple Events in Google Chrome on macOS prior to 72.0.3626.81 allowed a local attacker to execute JavaScript via Apple Events. |
CWE-20
Improper Input Validation |
CVE-2019-5780 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 218763 | 4.3 |
MEDIUM
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Insufficient policy validation in ServiceWorker in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. |
CWE-862
Missing Authorization |
CVE-2019-5779 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 218764 | 6.5 |
MEDIUM
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
A missing case for handling special schemes in permission request checks in Extensions in Google Chrome prior to 72.0.3626.81 allowed an attacker who convinced a user to install a malicious extension… |
CWE-79
Cross-site Scripting |
CVE-2019-5778 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 218765 | 6.5 |
MEDIUM
Network |
google redhat debian fedoraproject |
chrome enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation debian_linux fedora |
Incorrect handling of a confusable character in Omnibox in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted domain name. |
NVD-CWE-noinfo
|
CVE-2019-5777 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 218766 | 6.5 |
MEDIUM
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Incorrect handling of a confusable character in Omnibox in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted domain name. |
NVD-CWE-noinfo
|
CVE-2019-5776 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 218767 | 6.5 |
MEDIUM
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Incorrect handling of a confusable character in Omnibox in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted domain name. |
NVD-CWE-noinfo
|
CVE-2019-5775 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 218768 | 8.8 |
HIGH
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Omission of the .desktop filetype from the Safe Browsing checklist in SafeBrowsing in Google Chrome on Linux prior to 72.0.3626.81 allowed an attacker who convinced a user to download a .desktop file… |
CWE-862
Missing Authorization |
CVE-2019-5774 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 218769 | 6.5 |
MEDIUM
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Insufficient origin validation in IndexedDB in Google Chrome prior to 72.0.3626.81 allowed a remote attacker who had compromised the renderer process to bypass same origin policy via a crafted HTML p… |
CWE-346
Origin Validation Error |
CVE-2019-5773 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 218770 | 8.8 |
HIGH
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Sharing of objects over calls into JavaScript runtime in PDFium in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. |
CWE-787 CWE-416 Out-of-bounds Write Use After Free |
CVE-2019-5772 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |