|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 1, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 245761 | 7.2 | 危険 | freshmeat Debian |
- | Debian GNU/Linux の XWine の w_editeur.c における任意のファイルを上書きされる脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2008-0930 | 2012-06-26 15:55 | 2008-02-26 | Show | GitHub Exploit DB Packet Storm |
| 245762 | 7.5 | 危険 | becontent | - | beContent の news.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-0921 | 2012-06-26 15:55 | 2008-02-22 | Show | GitHub Exploit DB Packet Storm |
| 245763 | 7.5 | 危険 | astats Joomla! |
- | Joomla! の astatspro コンポーネントの includes/count_dl_or_link.inc.php における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2008-0918 | 2012-06-26 15:55 | 2008-02-22 | Show | GitHub Exploit DB Packet Storm |
| 245764 | 7.5 | 危険 | エフ・セキュア | - | 複数の F-Secure アンチウイルス製品におけるマルウェアを回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-0910 | 2012-06-26 15:55 | 2008-02-22 | Show | GitHub Exploit DB Packet Storm |
| 245765 | 7.8 | 危険 | bea systems | - | BEA Plumtree Collaboration SP2 における任意のファイルを読まれる脆弱性 |
CWE-200
情報漏えい |
CVE-2008-0904 | 2012-06-26 15:55 | 2008-02-22 | Show | GitHub Exploit DB Packet Storm |
| 245766 | 4.9 | 警告 | bea systems | - | BEA WebLogic Portal MP1 におけるアクセス制限を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2008-0896 | 2012-06-26 15:55 | 2008-02-22 | Show | GitHub Exploit DB Packet Storm |
| 245767 | 6.8 | 警告 | アップル | - | Apple Safari における重要なメモリコンテンツを取得される脆弱性 |
CWE-DesignError
|
CVE-2008-0894 | 2012-06-26 15:55 | 2008-02-21 | Show | GitHub Exploit DB Packet Storm |
| 245768 | 7.5 | 危険 | BEAシステムズ | - | BEA WebLogic Portal Maintenance Pack 2 におけるセッションを傍受される脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2008-0870 | 2012-06-26 15:55 | 2008-02-20 | Show | GitHub Exploit DB Packet Storm |
| 245769 | 4.3 | 警告 | BEAシステムズ | - | BEA WebLogic Workshop におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-0869 | 2012-06-26 15:55 | 2008-02-20 | Show | GitHub Exploit DB Packet Storm |
| 245770 | 4.3 | 警告 | BEAシステムズ | - | BEA WebLogic Portal Maintenance Pack 1 の Groupspace におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-0868 | 2012-06-26 15:55 | 2008-02-20 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 1, 2026, 4:12 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 218431 | 6.1 |
MEDIUM
Network |
upcoming_events_project | upcoming_events | An XSS issue was discovered in upcoming_events.php in the Upcoming Events plugin before 1.33 for MyBB via a crafted name for an event. |
CWE-79
Cross-site Scripting |
CVE-2019-9650 | 2024-11-21 13:52 | 2019-03-11 | Show | GitHub Exploit DB Packet Storm |
| 218432 | 6.1 |
MEDIUM
Network |
codepeople | contact_form_email | The Contact Form Email plugin before 1.2.66 for WordPress allows wp-admin/admin.php item XSS, related to cp_admin_int_edition.inc.php in the "custom edition area." |
CWE-79
Cross-site Scripting |
CVE-2019-9646 | 2024-11-21 13:52 | 2019-03-11 | Show | GitHub Exploit DB Packet Storm |
| 218433 | 9.8 |
CRITICAL
Network |
php debian canonical opensuse netapp |
php debian_linux ubuntu_linux leap storage_automation_store |
An issue was discovered in the EXIF component in PHP before 7.1.27, 7.2.x before 7.2.16, and 7.3.x before 7.3.3. There is an uninitialized read in exif_process_IFD_in_TIFF. |
CWE-908
Use of Uninitialized Resource |
CVE-2019-9641 | 2024-11-21 13:52 | 2019-03-9 | Show | GitHub Exploit DB Packet Storm |
| 218434 | 7.5 |
HIGH
Network |
php canonical debian opensuse netapp redhat |
php ubuntu_linux debian_linux leap storage_automation_store software_collections |
An issue was discovered in the EXIF component in PHP before 7.1.27, 7.2.x before 7.2.16, and 7.3.x before 7.3.3. There is an Invalid Read in exif_process_SOFn. |
CWE-125
Out-of-bounds Read |
CVE-2019-9640 | 2024-11-21 13:52 | 2019-03-9 | Show | GitHub Exploit DB Packet Storm |
| 218435 | 7.5 |
HIGH
Network |
php debian canonical opensuse netapp redhat |
php debian_linux ubuntu_linux leap storage_automation_store software_collections |
An issue was discovered in the EXIF component in PHP before 7.1.27, 7.2.x before 7.2.16, and 7.3.x before 7.3.3. There is an uninitialized read in exif_process_IFD_in_MAKERNOTE because of mishandling… |
CWE-908 CWE-909 Use of Uninitialized Resource Missing Initialization of Resource |
CVE-2019-9639 | 2024-11-21 13:52 | 2019-03-9 | Show | GitHub Exploit DB Packet Storm |
| 218436 | 7.5 |
HIGH
Network |
php debian canonical opensuse netapp redhat |
php debian_linux ubuntu_linux leap storage_automation_store software_collections |
An issue was discovered in the EXIF component in PHP before 7.1.27, 7.2.x before 7.2.16, and 7.3.x before 7.3.3. There is an uninitialized read in exif_process_IFD_in_MAKERNOTE because of mishandling… |
CWE-125
Out-of-bounds Read |
CVE-2019-9638 | 2024-11-21 13:52 | 2019-03-9 | Show | GitHub Exploit DB Packet Storm |
| 218437 | 7.5 |
HIGH
Network |
php debian canonical opensuse netapp |
php debian_linux ubuntu_linux leap storage_automation_store |
An issue was discovered in PHP before 7.1.27, 7.2.x before 7.2.16, and 7.3.x before 7.3.3. Due to the way rename() across filesystems is implemented, it is possible that file being renamed is briefly… |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2019-9637 | 2024-11-21 13:52 | 2019-03-9 | Show | GitHub Exploit DB Packet Storm |
| 218438 | 9.8 |
CRITICAL
Network |
python fedoraproject opensuse debian canonical redhat oracle |
python fedora leap debian_linux ubuntu_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation enterprise_linux_server_aus enterprise_linux e… |
Python 2.7.x through 2.7.16 and 3.x through 3.7.2 is affected by: Improper Handling of Unicode Encoding (with an incorrect netloc) during NFKC normalization. The impact is: Information disclosure (cr… |
NVD-CWE-noinfo
|
CVE-2019-9636 | 2024-11-21 13:52 | 2019-03-9 | Show | GitHub Exploit DB Packet Storm |
| 218439 | 7.8 |
HIGH
Local |
golang | go | Go through 1.12 on Windows misuses certain LoadLibrary functionality, leading to DLL injection. |
CWE-427
Uncontrolled Search Path Element |
CVE-2019-9634 | 2024-11-21 13:52 | 2019-03-9 | Show | GitHub Exploit DB Packet Storm |
| 218440 | 6.5 |
MEDIUM
Network |
gnome | glib | gio/gsocketclient.c in GNOME GLib 2.59.2 does not ensure that a parent GTask remains alive during the execution of a connection-attempting enumeration, which allows remote attackers to cause a denial… |
CWE-754
Improper Check for Unusual or Exceptional Conditions |
CVE-2019-9633 | 2024-11-21 13:52 | 2019-03-8 | Show | GitHub Exploit DB Packet Storm |