Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
245841 10 危険 cromosoft - Cromosoft SPP における任意のスクリプトをアップロードされる脆弱性 CWE-94
コード・インジェクション
CVE-2007-1139 2012-06-26 15:46 2007-03-2 Show GitHub Exploit DB Packet Storm
245842 5 警告 cromosoft - Cromosoft SPP の list_main_pages.php における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-1138 2012-06-26 15:46 2007-03-2 Show GitHub Exploit DB Packet Storm
245843 6.8 警告 efiction - eFiction における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1118 2012-06-26 15:46 2007-02-26 Show GitHub Exploit DB Packet Storm
245844 6.8 警告 activecalendar - ActiveCalendar におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1111 2012-06-26 15:46 2007-02-26 Show GitHub Exploit DB Packet Storm
245845 5 警告 activecalendar - ActiveCalendar の data/showcode.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-1110 2012-06-26 15:46 2007-02-26 Show GitHub Exploit DB Packet Storm
245846 6.8 警告 cs-gallery - Christian Schneider CS-Gallery の index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1108 2012-06-26 15:46 2007-02-26 Show GitHub Exploit DB Packet Storm
245847 7.5 危険 Coppermine Photo Gallery - CPG の thumbnails.php における SQL インジェクションの脆弱性 - CVE-2007-1107 2012-06-26 15:46 2007-02-26 Show GitHub Exploit DB Packet Storm
245848 5 警告 extreme phpbb - Extreme phpBB の functions.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-1105 2012-06-26 15:46 2007-02-26 Show GitHub Exploit DB Packet Storm
245849 7.6 危険 Google - Google Desktop におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1085 2012-06-26 15:46 2007-02-22 Show GitHub Exploit DB Packet Storm
245850 7.1 危険 ftpx - FTP Explorer におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2007-1082 2012-06-26 15:46 2007-02-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
219661 5.5 MEDIUM
Local
linux
fedoraproject
debian
canonical
opensuse
netapp
linux_kernel
fedora
debian_linux
ubuntu_linux
leap
vasa_provider_for_clustered_data_ontap
solidfire
hci_management_node
snapprotect
active_iq_unified_manager_for_vmware_vsp…
A flaw was found in the Linux kernel's vfio interface implementation that permits violation of the user's locked memory limit. If a device is bound to a vfio driver, such as vfio-pci, and the local a… - CVE-2019-3882 2024-11-21 13:42 2019-04-25 Show GitHub Exploit DB Packet Storm
219662 3.8 LOW
Network
redhat keycloak Keycloak up to version 6.0.0 allows the end user token (access or id token JWT) to be used as the session cookie for browser sessions for OIDC. As a result an attacker with access to service provider… CWE-200
Information Exposure
CVE-2019-3868 2024-11-21 13:42 2019-04-25 Show GitHub Exploit DB Packet Storm
219663 9.8 CRITICAL
Network
pivotal_software application_service Pivotal Apps Manager Release, versions 665.0.x prior to 665.0.28, versions 666.0.x prior to 666.0.21, versions 667.0.x prior to 667.0.7, contain an invitation service that accepts HTTP. A remote unau… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2019-3793 2024-11-21 13:42 2019-04-25 Show GitHub Exploit DB Packet Storm
219664 6.5 MEDIUM
Network
cloudfoundry routing_release Cloud Foundry Routing Release, all versions prior to 0.188.0, contains a vulnerability that can hijack the traffic to route services hosted outside the platform. A user with space developer permissio… CWE-269
 Improper Privilege Management
CVE-2019-3789 2024-11-21 13:42 2019-04-25 Show GitHub Exploit DB Packet Storm
219665 7.1 HIGH
Network
cloudfoundry bosh_backup_and_restore Cloud Foundry BOSH Backup and Restore CLI, all versions prior to 1.5.0, does not check the authenticity of backup scripts in BOSH. A remote authenticated malicious user can modify the metadata file o… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2019-3786 2024-11-21 13:42 2019-04-25 Show GitHub Exploit DB Packet Storm
219666 5.9 MEDIUM
Network
mercurial
redhat
debian
mercurial
enterprise_linux
debian_linux
A flaw was found in Mercurial before 4.9. It was possible to use symlinks and subrepositories to defeat Mercurial's path-checking logic and write files outside a repository. CWE-59
Link Following
CVE-2019-3902 2024-11-21 13:42 2019-04-23 Show GitHub Exploit DB Packet Storm
219667 9.8 CRITICAL
Network
redhat
heketi_project
openshift_container_platform
heketi
It was found that default configuration of Heketi does not require any authentication potentially exposing the management interface to misuse. This isue only affects heketi as shipped with Openshift … - CVE-2019-3899 2024-11-21 13:42 2019-04-23 Show GitHub Exploit DB Packet Storm
219668 4.7 MEDIUM
Local
linux
debian
netapp
linux_kernel
debian_linux
vasa_provider_for_clustered_data_ontap
solidfire
hci_management_node
snapprotect
active_iq_unified_manager_for_vmware_vsphere
virtual_storage_console_fo…
A race condition in perf_event_open() allows local attackers to leak sensitive data from setuid programs. As no relevant locks (in particular the cred_guard_mutex) are held during the ptrace_may_acce… - CVE-2019-3901 2024-11-21 13:42 2019-04-23 Show GitHub Exploit DB Packet Storm
219669 8.0 HIGH
Adjacent
dell supportassist Dell SupportAssist Client versions prior to 3.2.0.90 contain a remote code execution vulnerability. An unauthenticated attacker, sharing the network access layer with the vulnerable system, can compr… NVD-CWE-noinfo
CVE-2019-3719 2024-11-21 13:42 2019-04-19 Show GitHub Exploit DB Packet Storm
219670 8.8 HIGH
Network
dell supportassist Dell SupportAssist Client versions prior to 3.2.0.90 contain an improper origin validation vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability to attempt CS… CWE-352
 Origin Validation Error
CVE-2019-3718 2024-11-21 13:42 2019-04-19 Show GitHub Exploit DB Packet Storm