Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254021 10 危険 アップル
VMware
サン・マイクロシステムズ
- Sun Java SE の Provider クラスにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2009-2723 2010-01-4 14:55 2009-08-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224271 6.5 MEDIUM
Network
exiv2
fedoraproject
exiv2
fedora
An integer overflow in Exiv2 through 0.27.1 allows an attacker to cause a denial of service (SIGSEGV) via a crafted PNG image file, because PngImage::readMetadata mishandles a chunkLength - iccOffset… CWE-190
 Integer Overflow or Wraparound
CVE-2019-13109 2024-11-21 13:24 2019-07-1 Show GitHub Exploit DB Packet Storm
224272 6.5 MEDIUM
Network
exiv2
fedoraproject
exiv2
fedora
An integer overflow in Exiv2 through 0.27.1 allows an attacker to cause a denial of service (SIGSEGV) via a crafted PNG image file, because PngImage::readMetadata mishandles a zero value for iccOffse… CWE-190
 Integer Overflow or Wraparound
CVE-2019-13108 2024-11-21 13:24 2019-07-1 Show GitHub Exploit DB Packet Storm
224273 9.8 CRITICAL
Network
matio_project
fedoraproject
matio
fedora
Multiple integer overflows exist in MATIO before 1.5.16, related to mat.c, mat4.c, mat5.c, mat73.c, and matvar_struct.c CWE-190
 Integer Overflow or Wraparound
CVE-2019-13107 2024-11-21 13:24 2019-07-1 Show GitHub Exploit DB Packet Storm
224274 9.8 CRITICAL
Network
cszcms csz_cms core/MY_Security.php in CSZ CMS 1.2.2 before 2019-06-20 has member/login/check SQL injection by sending a crafted HTTP User-Agent header and omitting the csrf_csz parameter. CWE-89
SQL Injection
CVE-2019-13086 2024-11-21 13:24 2019-07-1 Show GitHub Exploit DB Packet Storm
224275 7.8 HIGH
Local
xnview xnview XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x000000000030ecfa. CWE-787
 Out-of-bounds Write
CVE-2019-13085 2024-11-21 13:24 2019-07-1 Show GitHub Exploit DB Packet Storm
224276 7.8 HIGH
Local
xnview xnview XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x000000000026b739. CWE-787
 Out-of-bounds Write
CVE-2019-13084 2024-11-21 13:24 2019-07-1 Show GitHub Exploit DB Packet Storm
224277 7.8 HIGH
Local
xnview xnview XnView Classic 2.48 has a User Mode Write AV starting at xnview+0x0000000000384e2a. CWE-787
 Out-of-bounds Write
CVE-2019-13083 2024-11-21 13:24 2019-07-1 Show GitHub Exploit DB Packet Storm
224278 9.8 CRITICAL
Network
chamilo chamilo_lms Chamilo LMS 1.11.8 and 2.x allows remote code execution through an lp_upload.php unauthenticated file upload feature. It extracts a ZIP archive before checking its content, and once it has been extra… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2019-13082 2024-11-21 13:24 2019-07-1 Show GitHub Exploit DB Packet Storm
224279 5.3 MEDIUM
Network
torproject tor_browser Tor Browser through 8.5.3 has an information exposure vulnerability. It allows remote attackers to detect the browser's language via vectors involving an IFRAME element, because text in that language… CWE-200
Information Exposure
CVE-2019-13075 2024-11-21 13:24 2019-06-30 Show GitHub Exploit DB Packet Storm
224280 5.4 MEDIUM
Network
zoneminder zoneminder Stored XSS in the Filters page (Name field) in ZoneMinder 1.32.3 allows a malicious user to embed and execute JavaScript code in the browser of any user who navigates to this page. CWE-79
Cross-site Scripting
CVE-2019-13072 2024-11-21 13:24 2019-06-30 Show GitHub Exploit DB Packet Storm