Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
245471 7.5 危険 drumster - BlogMe の admin_login.asp における SQL インジェクションの脆弱性 - CVE-2006-5976 2012-06-26 15:37 2006-11-20 Show GitHub Exploit DB Packet Storm
245472 6.8 警告 drumster - BlogMe の comments.asp におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-5975 2012-06-26 15:37 2006-11-20 Show GitHub Exploit DB Packet Storm
245473 7.8 危険 Fetchmail Project - fetchmail におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2006-5974 2012-06-26 15:37 2006-12-31 Show GitHub Exploit DB Packet Storm
245474 4.6 警告 fvwm - fvwm の evalFolderLine 関数における CRLF インジェクションの脆弱性 - CVE-2006-5969 2012-06-26 15:37 2006-11-17 Show GitHub Exploit DB Packet Storm
245475 4.6 警告 Alt-N - MDaemon における任意のコードを実行される脆弱性 - CVE-2006-5968 2012-06-26 15:37 2006-11-17 Show GitHub Exploit DB Packet Storm
245476 7.5 危険 20 20 applications - 20/20 DataShed の listings.asp における SQL インジェクションの脆弱性 - CVE-2006-5955 2012-06-26 15:37 2006-11-16 Show GitHub Exploit DB Packet Storm
245477 7.5 危険 asp smiley - ASP Smiley の admin/default.asp における SQL インジェクションの脆弱性 - CVE-2006-5952 2012-06-26 15:37 2006-11-16 Show GitHub Exploit DB Packet Storm
245478 7.5 危険 exophpdesk - Exophpdesk の pipe.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5951 2012-06-26 15:37 2006-11-16 Show GitHub Exploit DB Packet Storm
245479 5 警告 altools - ALTools ALFTP FTP Server におけるインストールパスを取得される脆弱性 - CVE-2006-5950 2012-06-26 15:37 2006-11-16 Show GitHub Exploit DB Packet Storm
245480 5 警告 altools - ALTools ALFTP FTP Server におけるディレクトリトラバーサルの脆弱性 - CVE-2006-5949 2012-06-26 15:37 2006-11-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
219511 7.8 HIGH
Local
atlassian confluence
confluence_server
The usage of Tomcat in Confluence on the Microsoft Windows operating system before version 7.0.5, and from version 7.1.0 before version 7.1.1 allows local system attackers who have permission to writ… CWE-427
 Uncontrolled Search Path Element
CVE-2019-20406 2024-11-21 13:38 2020-02-6 Show GitHub Exploit DB Packet Storm
219512 4.3 MEDIUM
Network
atlassian jira_server
jira_data_center
The JMX monitoring flag in Atlassian Jira Server and Data Center before version 8.6.0 allows remote attackers to turn the JMX monitoring flag off or on via a Cross-site request forgery (CSRF) vulnera… CWE-352
 Origin Validation Error
CVE-2019-20405 2024-11-21 13:38 2020-02-6 Show GitHub Exploit DB Packet Storm
219513 4.3 MEDIUM
Network
atlassian jira_server
jira_data_center
The API in Atlassian Jira Server and Data Center before version 8.6.0 allows authenticated remote attackers to determine project titles they do not have access to via an improper authorization vulner… NVD-CWE-noinfo
CVE-2019-20404 2024-11-21 13:38 2020-02-6 Show GitHub Exploit DB Packet Storm
219514 5.3 MEDIUM
Network
atlassian jira_server
jira_data_center
The API in Atlassian Jira Server and Data Center before version 8.6.0 allows remote attackers to determine if a Jira project key exists or not via an information disclosure vulnerability. NVD-CWE-noinfo
CVE-2019-20403 2024-11-21 13:38 2020-02-6 Show GitHub Exploit DB Packet Storm
219515 4.9 MEDIUM
Network
atlassian jira
jira_software_data_center
Support zip files in Atlassian Jira Server and Data Center before version 8.6.0 could be downloaded by a System Administrator user without requiring the user to re-enter their password via an imprope… NVD-CWE-noinfo
CVE-2019-20402 2024-11-21 13:38 2020-02-6 Show GitHub Exploit DB Packet Storm
219516 6.5 MEDIUM
Network
atlassian jira_server Various installation setup resources in Jira before version 8.5.2 allow remote attackers to configure a Jira instance, which has not yet finished being installed, via Cross-site request forgery (CSRF… CWE-352
 Origin Validation Error
CVE-2019-20401 2024-11-21 13:38 2020-02-6 Show GitHub Exploit DB Packet Storm
219517 7.8 HIGH
Local
atlassian jira_server The usage of Tomcat in Jira before version 8.5.2 allows local attackers with permission to write a dll file to a directory in the global path environmental variable can inject code into via a DLL hij… CWE-427
 Uncontrolled Search Path Element
CVE-2019-20400 2024-11-21 13:38 2020-02-6 Show GitHub Exploit DB Packet Storm
219518 4.3 MEDIUM
Network
atlassian jira
jira_software_data_center
jira_server
jira_data_center
Comment properties in Atlassian Jira Server and Data Center before version 7.13.12, from 8.0.0 before version 8.5.4, and 8.6.0 before version 8.6.1 allows remote attackers to make comments on a ticke… CWE-276
Incorrect Default Permissions 
CVE-2019-20106 2024-11-21 13:38 2020-02-6 Show GitHub Exploit DB Packet Storm
219519 7.5 HIGH
Network
atlassian crowd The OpenID client application in Atlassian Crowd before version 3.6.2, and from version 3.7.0 before 3.7.1 allows remote attackers to perform a Denial of Service attack via an XML Entity Expansion vu… CWE-776
XML Entity Expansion
CVE-2019-20104 2024-11-21 13:38 2020-02-6 Show GitHub Exploit DB Packet Storm
219520 9.8 CRITICAL
Network
jobberbase jobberbase Jobberbase 2.0 has SQL injection via the PATH_INFO to the jobs-in endpoint. CWE-89
SQL Injection
CVE-2019-20447 2024-11-21 13:38 2020-02-6 Show GitHub Exploit DB Packet Storm