Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251641 7.5 危険 Parallels - Parallels Plesk Panel の Control Panel における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-4847 2011-12-20 12:23 2011-12-16 Show GitHub Exploit DB Packet Storm
251642 4.3 警告 Parallels - Parallels Plesk Panel の Site Editor 機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4777 2011-12-20 12:23 2011-12-16 Show GitHub Exploit DB Packet Storm
251643 4.3 警告 Parallels - Parallels Plesk Panel の Control Panel におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4776 2011-12-20 12:22 2011-12-16 Show GitHub Exploit DB Packet Storm
251644 10 危険 Parallels - Parallels Plesk Small Business Panel の Site Editor 機能における詳細不明な脆弱性 CWE-DesignError
CVE-2011-4768 2011-12-20 12:21 2011-12-16 Show GitHub Exploit DB Packet Storm
251645 5 警告 Parallels - Parallels Plesk Small Business Panel の Site Editor 機能における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-4767 2011-12-20 12:21 2011-12-16 Show GitHub Exploit DB Packet Storm
251646 4.3 警告 Parallels - Parallels Plesk Small Business Panel の Site Editor 機能における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-4765 2011-12-20 12:12 2011-12-16 Show GitHub Exploit DB Packet Storm
251647 4.3 警告 Parallels - Parallels Plesk Small Business Panel の Site Editor 機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4764 2011-12-20 12:11 2011-12-16 Show GitHub Exploit DB Packet Storm
251648 7.5 危険 Parallels - Parallels Plesk Small Business Panel の Site Editor 機能における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-4763 2011-12-20 12:11 2011-12-16 Show GitHub Exploit DB Packet Storm
251649 10 危険 Parallels - Parallels Plesk Small Business Panel における詳細不明な脆弱性 CWE-DesignError
CVE-2011-4762 2011-12-20 11:33 2011-12-16 Show GitHub Exploit DB Packet Storm
251650 10 危険 Parallels - Parallels Plesk Small Business Panel における詳細不明な脆弱性 CWE-DesignError
CVE-2011-4761 2011-12-20 11:33 2011-12-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223001 5.4 MEDIUM
Network
teampasswordmanager team_password_manager Post-authentication Stored XSS in Team Password Manager through 7.93.204 allows attackers to steal other users' credentials by creating a shared password with HTML code as the title. CWE-79
Cross-site Scripting
CVE-2019-19461 2024-11-21 13:34 2020-03-17 Show GitHub Exploit DB Packet Storm
223002 9.8 CRITICAL
Network
dolibarr dolibarr Dolibarr ERP/CRM 3.0 through 10.0.3 allows XSS via the qty parameter to product/fournisseurs.php (product price screen). CWE-79
Cross-site Scripting
CVE-2019-19212 2024-11-21 13:34 2020-03-17 Show GitHub Exploit DB Packet Storm
223003 7.4 HIGH
Network
opcfoundation ua-.netstandard
netstandard.opc.ua
In OPC Foundation OPC UA .NET Standard codebase 1.4.357.28, servers do not create sufficiently random numbers in OPCFoundation.NetStandard.Opc.Ua before 1.4.359.31, which allows man in the middle att… CWE-330
 Use of Insufficiently Random Values
CVE-2019-19135 2024-11-21 13:34 2020-03-17 Show GitHub Exploit DB Packet Storm
223004 6.1 MEDIUM
Network
dolibarr dolibarr Dolibarr ERP/CRM before 10.0.3 has an Insufficient Filtering issue that can lead to user/card.php XSS. CWE-79
Cross-site Scripting
CVE-2019-19211 2024-11-21 13:34 2020-03-17 Show GitHub Exploit DB Packet Storm
223005 5.4 MEDIUM
Network
dolibarr dolibarr Dolibarr ERP/CRM before 10.0.3 allows XSS because uploaded HTML documents are served as text/html despite being renamed to .noexe files. CWE-79
Cross-site Scripting
CVE-2019-19210 2024-11-21 13:34 2020-03-17 Show GitHub Exploit DB Packet Storm
223006 7.5 HIGH
Network
dolibarr dolibarr Dolibarr ERP/CRM before 10.0.3 allows SQL Injection. CWE-89
SQL Injection
CVE-2019-19209 2024-11-21 13:34 2020-03-17 Show GitHub Exploit DB Packet Storm
223007 9.8 CRITICAL
Network
codiad codiad Codiad Web IDE through 2.8.4 allows PHP Code injection. CWE-94
Code Injection
CVE-2019-19208 2024-11-21 13:34 2020-03-17 Show GitHub Exploit DB Packet Storm
223008 6.1 MEDIUM
Network
abacus abacus oauth/oauth2/v1/saml/ in Abacus OAuth Login 2019_01_r4_20191021_0000 before prior to R4 (20.11.2019 Hotfix) allows Reflected Cross Site Scripting (XSS) via an error message. CWE-79
Cross-site Scripting
CVE-2019-19381 2024-11-21 13:34 2020-03-11 Show GitHub Exploit DB Packet Storm
223009 7.5 HIGH
Network
siemens sinvr\/sivms_video_server A vulnerability has been identified in SiNVR/SiVMS Video Server (All versions < V5.0.0), SiNVR/SiVMS Video Server (All versions >= V5.0.0 < V5.0.2), SiNVR/SiVMS Video Server (All versions >= V5.0.2).… - CVE-2019-19299 2024-11-21 13:34 2020-03-11 Show GitHub Exploit DB Packet Storm
223010 7.5 HIGH
Network
siemens sinvr\/sivms_video_server A vulnerability has been identified in SiNVR/SiVMS Video Server (All versions < V5.0.0), SiNVR/SiVMS Video Server (All versions >= V5.0.0 < V5.0.2). The streaming service (default port 5410/tcp) of t… - CVE-2019-19298 2024-11-21 13:34 2020-03-11 Show GitHub Exploit DB Packet Storm