Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 2:16 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
245961 7.5 危険 e-gads - E-GADS! の common.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-2521 2012-06-26 15:46 2007-05-8 Show GitHub Exploit DB Packet Storm
245962 6.8 警告 frankmancuso - MyNews の admin.php における SQL インジェクションの脆弱性 - CVE-2007-2520 2012-06-26 15:46 2007-06-26 Show GitHub Exploit DB Packet Storm
245963 9.3 危険 シマンテック
numara
centennial
- XferWan.exe におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-2514 2012-06-26 15:46 2007-06-6 Show GitHub Exploit DB Packet Storm
245964 7.5 危険 Alcatel-Lucent - OmniPCX Enterprise の Alcatel-Lucent IP-Touch Telephone におけるボイス VLAN へアクセスを取得される脆弱性 - CVE-2007-2512 2012-06-26 15:46 2007-06-7 Show GitHub Exploit DB Packet Storm
245965 7.5 危険 fernando m.a.d.s. - CodePress の codepress.html における任意のコードを実行される脆弱性 - CVE-2007-2501 2012-06-26 15:46 2007-05-3 Show GitHub Exploit DB Packet Storm
245966 10 危険 GNU Project - GNU Gnash の server/parser/sprite_definition.cpp における任意のコードを実行される脆弱性 - CVE-2007-2500 2012-06-26 15:46 2007-05-3 Show GitHub Exploit DB Packet Storm
245967 6.8 警告 globalmegacorp - DVDdb におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-2499 2012-06-26 15:46 2007-05-3 Show GitHub Exploit DB Packet Storm
245968 5 警告 archangelmgt - Archangel Weblog の index.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-2574 2012-06-26 15:46 2007-05-9 Show GitHub Exploit DB Packet Storm
245969 7.1 危険 cdelia software - Cdelia Software ImageProcessing におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2565 2012-06-26 15:46 2007-05-9 Show GitHub Exploit DB Packet Storm
245970 10 危険 Digium - Asterisk の IAX2 チャネルドライバにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2488 2012-06-26 15:46 2007-05-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
219381 5.4 MEDIUM
Network
ibm jazz_reporting_service IBM Jazz Reporting Service 6.0 through 6.0.6.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended funct… CWE-79
Cross-site Scripting
CVE-2019-4184 2024-11-21 13:43 2019-05-30 Show GitHub Exploit DB Packet Storm
219382 5.4 MEDIUM
Network
ibm cognos_analytics IBM Cognos Analytics 11.0, 11.1.0, and 11.1.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functi… CWE-79
Cross-site Scripting
CVE-2019-4139 2024-11-21 13:43 2019-05-30 Show GitHub Exploit DB Packet Storm
219383 5.9 MEDIUM
Network
ibm spectrum_control IBM Tivoli Storage Productivity Center 5.2.13 through 5.3.0.1 could allow a remote attacker to obtain sensitive information, caused by the failure to properly enable HTTP Strict Transport Security. A… CWE-522
 Insufficiently Protected Credentials
CVE-2019-4138 2024-11-21 13:43 2019-05-30 Show GitHub Exploit DB Packet Storm
219384 6.1 MEDIUM
Network
ibm spectrum_control IBM Tivoli Storage Productivity Center 5.2.13 through 5.3.0.1 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the… CWE-79
Cross-site Scripting
CVE-2019-4137 2024-11-21 13:43 2019-05-30 Show GitHub Exploit DB Packet Storm
219385 7.8 HIGH
Local
ibm websphere_mq IBM WebSphere MQ 8.0.0.0 through 8.0.0.9 and 9.0.0.0 through 9.1.1 could allow a local non privileged user to execute code as an administrator due to incorrect permissions set on MQ installation dire… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2019-4078 2024-11-21 13:43 2019-05-23 Show GitHub Exploit DB Packet Storm
219386 5.5 MEDIUM
Local
ibm websphere_mq IBM WebSphere MQ 8.0.0.0 through 8.0.0.9 and 9.0.0.0 through 9.1.1 could allow a local attacker to cause a denial of service within the error log reporting system. IBM X-Force ID: 156163. NVD-CWE-noinfo
CVE-2019-4039 2024-11-21 13:43 2019-05-23 Show GitHub Exploit DB Packet Storm
219387 5.3 MEDIUM
Network
ibm storwize_unified_v7000_software IBM Storwize V7000 Unified (2073) 1.6 configuration may allow an attacker to reveal the server version in default installation, which could be used in further attacks against the system. IBM X-Force … NVD-CWE-noinfo
CVE-2019-4293 2024-11-21 13:43 2019-05-21 Show GitHub Exploit DB Packet Storm
219388 6.5 MEDIUM
Network
ibm bigfix_platform IBM BigFix Platform 9.2 and 9.5 could allow a low-privilege user to manipulate the UI into exposing interface elements and information normally restricted to administrators. IBM X-Force ID: 156570. CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2019-4058 2024-11-21 13:43 2019-05-21 Show GitHub Exploit DB Packet Storm
219389 5.4 MEDIUM
Network
ibm bigfix_platform IBM BigFix Platform 9.2 and 9.5 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potent… CWE-79
Cross-site Scripting
CVE-2019-4011 2024-11-21 13:43 2019-05-21 Show GitHub Exploit DB Packet Storm
219390 9.8 CRITICAL
Network
ibm websphere_application_server IBM WebSphere Application Server 8.5 and 9.0 could allow a remote attacker to execute arbitrary code on the system with a specially-crafted sequence of serialized objects from untrusted sources. IBM … CWE-502
 Deserialization of Untrusted Data
CVE-2019-4279 2024-11-21 13:43 2019-05-18 Show GitHub Exploit DB Packet Storm