Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 2:16 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226321 7.5 危険 Google - Google Chrome におけるメモリ二重解放の脆弱性 CWE-399
リソース管理の問題
CVE-2012-2885 2012-12-26 17:59 2012-09-25 Show GitHub Exploit DB Packet Storm
226322 5 警告 Google - Google Chrome で使用される Skia におけるサービス運用妨害 (out-of-bounds read) の脆弱性 CWE-119
バッファエラー
CVE-2012-2884 2012-12-26 17:58 2012-09-25 Show GitHub Exploit DB Packet Storm
226323 4.6 警告 GNU Project
VMware
- GNU C Library の stdlib における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2012-3480 2012-12-26 17:57 2012-08-25 Show GitHub Exploit DB Packet Storm
226324 3.3 注意 GNU Project
VMware
- GNU C Library の addmntent 関数における /etc/mtab ファイルの破損を誘発される脆弱性 CWE-16
環境設定
CVE-2011-1089 2012-12-26 17:55 2011-04-10 Show GitHub Exploit DB Packet Storm
226325 4.4 警告 Fabrice Bellard - Qemu の bdrv_open 関数における任意のファイルを上書きされる脆弱性 CWE-DesignError
CVE-2012-2652 2012-12-26 17:48 2012-08-7 Show GitHub Exploit DB Packet Storm
226326 7.5 危険 Google - Google Chrome で使用される Skia におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-2883 2012-12-26 17:40 2012-09-25 Show GitHub Exploit DB Packet Storm
226327 6.8 警告 Google - Google Chrome で使用される FFmpeg におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-2882 2012-12-26 17:39 2012-09-25 Show GitHub Exploit DB Packet Storm
226328 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DOM ツリーの破損) の脆弱性 CWE-noinfo
情報不足
CVE-2012-2881 2012-12-26 17:38 2012-09-25 Show GitHub Exploit DB Packet Storm
226329 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-362
競合状態
CVE-2012-2880 2012-12-26 17:37 2012-09-25 Show GitHub Exploit DB Packet Storm
226330 4.3 警告 Google - Google Chrome におけるサービス運用妨害 (DOM トポロジの破損) の脆弱性 CWE-noinfo
情報不足
CVE-2012-2879 2012-12-26 17:36 2012-09-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223491 7.5 HIGH
Network
psutil_project psutil psutil (aka python-psutil) through 5.6.5 can have a double free. This occurs because of refcount mishandling within a while or for loop that converts system data into a Python object. CWE-415
 Double Free
CVE-2019-18874 2024-11-21 13:33 2019-11-12 Show GitHub Exploit DB Packet Storm
223492 7.8 HIGH
Local
gnu mailutils maidag in GNU Mailutils before 3.8 is installed setuid and allows local privilege escalation in the url mode. NVD-CWE-noinfo
CVE-2019-18862 2024-11-21 13:33 2019-11-12 Show GitHub Exploit DB Packet Storm
223493 7.5 HIGH
Network
svg-sanitizer_project svg-sanitizer darylldoyle svg-sanitizer before 0.12.0 mishandles script and data values in attributes, as demonstrated by unexpected whitespace such as in the javascript	:alert substring. CWE-79
Cross-site Scripting
CVE-2019-18857 2024-11-21 13:33 2019-11-12 Show GitHub Exploit DB Packet Storm
223494 7.5 HIGH
Network
drupal svg_sanitizer A Denial Of Service vulnerability exists in the SVG Sanitizer module through 8.x-1.0-alpha1 for Drupal because access to external resources with an SVG use element is mishandled. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2019-18856 2024-11-21 13:33 2019-11-12 Show GitHub Exploit DB Packet Storm
223495 7.5 HIGH
Network
10up safe_svg A Denial Of Service vulnerability exists in the safe-svg (aka Safe SVG) plugin through 1.9.4 for WordPress, related to potentially unwanted elements or attributes. NVD-CWE-noinfo
CVE-2019-18855 2024-11-21 13:33 2019-11-12 Show GitHub Exploit DB Packet Storm
223496 7.5 HIGH
Network
10up safe_svg A Denial Of Service vulnerability exists in the safe-svg (aka Safe SVG) plugin through 1.9.4 for WordPress, related to unlimited recursion for a '<use ... xlink:href="#identifier">' substring. CWE-674
 Uncontrolled Recursion
CVE-2019-18854 2024-11-21 13:33 2019-11-12 Show GitHub Exploit DB Packet Storm
223497 9.0 CRITICAL
Network
fudforum fudforum FUDForum 3.0.9 is vulnerable to Stored XSS via the User-Agent HTTP header. This may result in remote code execution. An attacker can use a user account to fully compromise the system via a GET reques… CWE-79
CWE-78
Cross-site Scripting
OS Command 
CVE-2019-18873 2024-11-21 13:33 2019-11-12 Show GitHub Exploit DB Packet Storm
223498 6.5 MEDIUM
Network
imagemagick imagemagick ImageMagick before 7.0.9-0 allows remote attackers to cause a denial of service because XML_PARSE_HUGE is not properly restricted in coders/svg.c, related to SVG and libxml2. CWE-674
 Uncontrolled Recursion
CVE-2019-18853 2024-11-21 13:33 2019-11-12 Show GitHub Exploit DB Packet Storm
223499 9.8 CRITICAL
Network
dlink dir-600_b1_firmware
dir-615_j1_firmware
dir-645_a1_firmware
dir-815_a1_firmware
dir-823_a1_firmware
dir-842_c1_firmware
dir-890l_a1_firmware
Certain D-Link devices have a hardcoded Alphanetworks user account with TELNET access because of /etc/config/image_sign or /etc/alpha_config/image_sign. This affects DIR-600 B1 V2.01 for WW, DIR-890L… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2019-18852 2024-11-21 13:33 2019-11-11 Show GitHub Exploit DB Packet Storm
223500 5.5 MEDIUM
Local
tnef_project
fedoraproject
canonical
debian
tnef
fedora
ubuntu_linux
debian_linux
In tnef before 1.4.18, an attacker may be able to write to the victim's .ssh/authorized_keys file via an e-mail message with a crafted winmail.dat application/ms-tnef attachment, because of a heap-ba… CWE-125
Out-of-bounds Read
CVE-2019-18849 2024-11-21 13:33 2019-11-11 Show GitHub Exploit DB Packet Storm