Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254031 4.3 警告 Opera Software ASA - Opera における data: URI をブロックしない脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3013 2010-09-27 16:13 2009-08-31 Show GitHub Exploit DB Packet Storm
254032 5 警告 Opera Software ASA - Opera におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-2577 2010-09-27 16:12 2009-07-22 Show GitHub Exploit DB Packet Storm
254033 4.3 警告 Opera Software ASA - Opera におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-2540 2010-09-27 16:11 2009-07-20 Show GitHub Exploit DB Packet Storm
254034 4.3 警告 Opera Software ASA - Opera における javascript: URI をブロックしない脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2351 2010-09-27 16:11 2009-07-7 Show GitHub Exploit DB Packet Storm
254035 6.8 警告 Opera Software ASA - Opera における任意の https サイトになりすまされる脆弱性 CWE-287
不適切な認証
CVE-2009-2070 2010-09-27 16:11 2009-06-15 Show GitHub Exploit DB Packet Storm
254036 6.8 警告 Opera Software ASA - Opera における任意の Web スクリプトを実行される脆弱性 CWE-287
不適切な認証
CVE-2009-2067 2010-09-27 16:10 2009-06-15 Show GitHub Exploit DB Packet Storm
254037 6.8 警告 Opera Software ASA - Opera における任意の Web スクリプトを実行される脆弱性 CWE-287
不適切な認証
CVE-2009-2063 2010-09-27 16:10 2009-06-15 Show GitHub Exploit DB Packet Storm
254038 6.8 警告 Opera Software ASA - Opera における任意の Web スクリプトを実行される脆弱性 CWE-287
不適切な認証
CVE-2009-2059 2010-09-27 16:10 2009-06-15 Show GitHub Exploit DB Packet Storm
254039 9.3 危険 アドビシステムズ
Opera Software ASA
- Opera における Adobe Acrobat の JavaScript の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-1599 2010-09-27 16:09 2009-05-11 Show GitHub Exploit DB Packet Storm
254040 5 警告 Opera Software ASA - Opera におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2008-7245 2010-09-27 16:09 2009-09-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
221811 7.5 HIGH
Network
dlink dsl-2680_firmware A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an attacker to change DNS servers without being authenticated on the admin interfac… CWE-306
Missing Authentication for Critical Function
CVE-2019-19225 2024-11-21 13:34 2020-03-5 Show GitHub Exploit DB Packet Storm
221812 7.5 HIGH
Network
dlink dsl-2680_firmware A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an attacker to download the configuration (binary file) settings by submitting a ro… CWE-306
Missing Authentication for Critical Function
CVE-2019-19224 2024-11-21 13:34 2020-03-5 Show GitHub Exploit DB Packet Storm
221813 7.5 HIGH
Network
dlink dsl-2680_firmware A Broken Access Control vulnerability in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an attacker to reboot the router by submitting a reboot.html GET request without be… CWE-79
CWE-444
Cross-site Scripting
HTTP Request Smuggling
CVE-2019-19223 2024-11-21 13:34 2020-03-5 Show GitHub Exploit DB Packet Storm
221814 5.4 MEDIUM
Network
dlink dsl-2680_firmware A Stored XSS issue in the D-Link DSL-2680 web administration interface (Firmware EU_1.03) allows an authenticated attacker to inject arbitrary JavaScript code into the info.html administration page b… CWE-79
Cross-site Scripting
CVE-2019-19222 2024-11-21 13:34 2020-03-5 Show GitHub Exploit DB Packet Storm
221815 6.1 MEDIUM
Network
mitel micollab_audio\
_web_\&_video_conferencing
A cross-site scripting (XSS) vulnerability in the web conferencing component of Mitel MiCollab AWV before 8.1.2.2 could allow an unauthenticated attacker to conduct a reflected cross-site scripting (… CWE-79
Cross-site Scripting
CVE-2019-19371 2024-11-21 13:34 2020-03-3 Show GitHub Exploit DB Packet Storm
221816 6.1 MEDIUM
Network
mitel micollab A cross-site scripting (XSS) vulnerability in the web conferencing component of the Mitel MiCollab application before 9.0.15 for Android could allow an unauthenticated attacker to conduct a reflected… CWE-79
Cross-site Scripting
CVE-2019-19370 2024-11-21 13:34 2020-03-3 Show GitHub Exploit DB Packet Storm
221817 6.1 MEDIUM
Network
heroplugins hero_maps_premium The Hero Maps Premium plugin 2.2.1 and prior for WordPress is prone to unauthenticated XSS via the views/dashboard/index.php p parameter because it fails to sufficiently sanitize user-supplied input.… CWE-79
Cross-site Scripting
CVE-2019-19134 2024-11-21 13:34 2020-02-27 Show GitHub Exploit DB Packet Storm
221818 7.8 HIGH
Local
patriotmemory viper_rgb_driver A buffer overflow was found in Patriot Viper RGB through 1.1 when processing IoControlCode 0x80102040. Local attackers (including low integrity processes) can exploit this to gain NT AUTHORITY\SYSTEM… CWE-787
 Out-of-bounds Write
CVE-2019-19452 2024-11-21 13:34 2020-02-22 Show GitHub Exploit DB Packet Storm
221819 6.1 MEDIUM
Network
silverstripe silverstripe SilverStripe through 4.4.x before 4.4.5 and 4.5.x before 4.5.2 allows Reflected XSS on the login form and custom forms. Silverstripe Forms allow malicious HTML or JavaScript to be inserted through no… CWE-79
Cross-site Scripting
CVE-2019-19325 2024-11-21 13:34 2020-02-18 Show GitHub Exploit DB Packet Storm
221820 6.5 MEDIUM
Adjacent
st wb55
bluenrg-2
The Bluetooth Low Energy implementation on STMicroelectronics BLE Stack through 1.3.1 for STM32WB5x devices does not properly handle consecutive Attribute Protocol (ATT) requests on reception, allowi… CWE-20
 Improper Input Validation 
CVE-2019-19192 2024-11-21 13:34 2020-02-13 Show GitHub Exploit DB Packet Storm