Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252841 4.3 警告 オラクル - Oracle Enterprise Manager Grid Control の Console コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2373 2010-08-5 16:33 2010-07-13 Show GitHub Exploit DB Packet Storm
252842 4.3 警告 オラクル - Oracle Fusion Middleware の Oracle Business Process Management コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2370 2010-08-5 16:33 2010-07-13 Show GitHub Exploit DB Packet Storm
252843 5 警告 オラクル - Oracle Secure Backup における脆弱性 CWE-noinfo
情報不足
CVE-2010-0904 2010-08-5 16:33 2010-07-13 Show GitHub Exploit DB Packet Storm
252844 9 危険 オラクル - Oracle Secure Backup における脆弱性 CWE-noinfo
情報不足
CVE-2010-0906 2010-08-5 16:32 2010-07-13 Show GitHub Exploit DB Packet Storm
252845 9 危険 オラクル - Oracle Secure Backup における脆弱性 CWE-noinfo
情報不足
CVE-2010-0899 2010-08-5 16:32 2010-07-13 Show GitHub Exploit DB Packet Storm
252846 10 危険 オラクル - Oracle Secure Backup における脆弱性 CWE-noinfo
情報不足
CVE-2010-0907 2010-08-5 16:32 2010-07-13 Show GitHub Exploit DB Packet Storm
252847 10 危険 オラクル - Oracle Secure Backup における脆弱性 CWE-noinfo
情報不足
CVE-2010-0898 2010-08-5 16:31 2010-07-13 Show GitHub Exploit DB Packet Storm
252848 5 警告 オラクル - Oracle TimesTen In-Memory Database の Data Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0910 2010-08-5 16:31 2010-07-13 Show GitHub Exploit DB Packet Storm
252849 10 危険 オラクル - Oracle TimesTen In-Memory Database の Data Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0873 2010-08-5 16:30 2010-07-13 Show GitHub Exploit DB Packet Storm
252850 3.2 注意 オラクル - Oracle Solaris における Solaris Management コンソールの処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2010-2384 2010-08-4 16:26 2010-07-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 30, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
213421 6.1 MEDIUM
Network
zarafa webaccess Unauthenticated reflected cross-site scripting (XSS) exists in Zarafa Webapp 2.0.1.47791 and earlier. NOTE: this is a discontinued product. The issue was fixed in later Zarafa Webapp versions; howeve… CWE-79
Cross-site Scripting
CVE-2019-7219 2024-11-21 13:47 2019-04-12 Show GitHub Exploit DB Packet Storm
213422 9.8 CRITICAL
Network
magento magento An unauthenticated user can execute SQL statements that allow arbitrary read access to the underlying database, which causes sensitive data leakage. This issue is fixed in Magento 2.1 prior to 2.1.18… CWE-89
SQL Injection
CVE-2019-7139 2024-11-21 13:47 2019-04-11 Show GitHub Exploit DB Packet Storm
213423 9.8 CRITICAL
Network
roxyfileman roxy_fileman Roxy Fileman 1.4.5 allows attackers to execute renamefile.php (aka Rename File), createdir.php (aka Create Directory), fileslist.php (aka Echo File List), and movefile.php (aka Move File) operations. NVD-CWE-noinfo
CVE-2019-7174 2024-11-21 13:47 2019-04-10 Show GitHub Exploit DB Packet Storm
213424 8.8 HIGH
Network
avaya ip_office_contact_center A SQL injection vulnerability in the WebUI component of IP Office Contact Center could allow an authenticated attacker to retrieve or alter sensitive data related to other users on the system. Affect… CWE-89
SQL Injection
CVE-2019-7001 2024-11-21 13:47 2019-04-5 Show GitHub Exploit DB Packet Storm
213425 7.5 HIGH
Network
boldgrid w3_total_cache pub/sns.php in the W3 Total Cache plugin before 0.9.4 for WordPress allows remote attackers to read arbitrary files via the SubscribeURL field in SubscriptionConfirmation JSON data. NVD-CWE-noinfo
CVE-2019-6715 2024-11-21 13:47 2019-04-2 Show GitHub Exploit DB Packet Storm
213426 6.5 MEDIUM
Network
digium asterisk An Integer Signedness issue (for a return code) in the res_pjsip_sdp_rtp module in Digium Asterisk versions 15.7.1 and earlier and 16.1.1 and earlier allows remote authenticated users to crash Asteri… CWE-190
 Integer Overflow or Wraparound
CVE-2019-7251 2024-11-21 13:47 2019-03-29 Show GitHub Exploit DB Packet Storm
213427 7.5 HIGH
Network
z.cash zcash Zcash, before the Sapling network upgrade (2018-10-28), had a counterfeiting vulnerability. A key-generation process, during evaluation of polynomials related to a to-be-proven statement, produced ce… CWE-754
 Improper Check for Unusual or Exceptional Conditions
CVE-2019-7167 2024-11-21 13:47 2019-03-27 Show GitHub Exploit DB Packet Storm
213428 6.1 MEDIUM
Network
wpsupportplus wp_support_plus_responsive_ticket_system A stored cross-site scripting (XSS) vulnerability in the submit_ticket.php module in the WP Support Plus Responsive Ticket System plugin 9.1.1 for WordPress allows remote attackers to inject arbitrar… CWE-79
Cross-site Scripting
CVE-2019-7299 2024-11-21 13:47 2019-03-22 Show GitHub Exploit DB Packet Storm
213429 5.4 MEDIUM
Network
invoiceplane invoiceplane InvoicePlane 1.5 has stored XSS via the index.php/invoices/ajax/save invoice_password parameter, aka the "PDF password" field to the "Create Invoice" option. The XSS payload is rendered at an index.p… CWE-79
Cross-site Scripting
CVE-2019-7223 2024-11-21 13:47 2019-03-22 Show GitHub Exploit DB Packet Storm
213430 5.5 MEDIUM
Local
linux
fedoraproject
opensuse
debian
canonical
netapp
redhat
linux_kernel
fedora
leap
debian_linux
ubuntu_linux
element_software_management_node
active_iq_performance_analytics_services
enterprise_linux_desktop
enterprise_linux_workstat…
The KVM implementation in the Linux kernel through 4.20.5 has an Information Leak. NVD-CWE-noinfo
CVE-2019-7222 2024-11-21 13:47 2019-03-22 Show GitHub Exploit DB Packet Storm