Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226511 5 警告 VideoLAN - VideoLAN VLC Media Player の TagLib プラグインにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-2937 2012-12-20 19:29 2010-08-20 Show GitHub Exploit DB Packet Storm
226512 5 警告 ZNC - ZNC におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2010-2934 2012-12-20 19:29 2010-08-3 Show GitHub Exploit DB Packet Storm
226513 9.3 危険 topazsystems - SigPlus Pro ActiveX コントロールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-2931 2012-12-20 19:29 2010-08-5 Show GitHub Exploit DB Packet Storm
226514 7.5 危険 solucija - sNews の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2926 2012-12-20 19:29 2010-07-30 Show GitHub Exploit DB Packet Storm
226515 7.5 危険 silvercover - WordPress 用の myLinksDump プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2924 2012-12-20 19:29 2010-07-30 Show GitHub Exploit DB Packet Storm
226516 7.5 危険 prasanna - Joomla! 用の YouTube コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2923 2012-12-20 19:29 2010-07-30 Show GitHub Exploit DB Packet Storm
226517 7.5 危険 visocrea - Joomla! 用の Visites コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-2918 2012-12-20 19:29 2010-07-30 Show GitHub Exploit DB Packet Storm
226518 7.5 危険 toughtomato - Joomla! 用の TTVideo コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2909 2012-12-20 19:29 2010-07-28 Show GitHub Exploit DB Packet Storm
226519 4.3 警告 SAP - SAP NetWeaver の SLD コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2904 2012-12-20 19:29 2010-07-28 Show GitHub Exploit DB Packet Storm
226520 2.6 注意 runcms - RunCMS の modules/headlines/magpierss/scripts/magpie_debug.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2852 2012-12-20 19:29 2010-07-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2691 4.3 MEDIUM
Network
google chrome Insufficient policy enforcement in WebUI in Google Chrome on Linux, Mac, Windows, ChromeOS prior to 148.0.7778.96 allowed a remote attacker who had compromised the renderer process to bypass site iso… NVD-CWE-noinfo
CWE-693
 Protection Mechanism Failure
CVE-2026-7946 2026-05-9 05:16 2026-05-7 Show GitHub Exploit DB Packet Storm
2692 4.4 MEDIUM
Local
google chrome Insufficient policy enforcement in Downloads in Google Chrome prior to 148.0.7778.96 allowed a local attacker to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: M… NVD-CWE-noinfo
CWE-693
 Protection Mechanism Failure
CVE-2026-7932 2026-05-9 05:16 2026-05-7 Show GitHub Exploit DB Packet Storm
2693 8.3 HIGH
Network
google chrome Insufficient data validation in InterestGroups in Google Chrome prior to 148.0.7778.96 allowed a remote attacker who had compromised the renderer process to potentially perform a sandbox escape via a… NVD-CWE-noinfo
CWE-20
 Improper Input Validation 
CVE-2026-7916 2026-05-9 05:16 2026-05-7 Show GitHub Exploit DB Packet Storm
2694 5.5 MEDIUM
Local
osgeo gdal A vulnerability was determined in OSGeo gdal up to 3.13.0dev-4. This vulnerability affects the function memmove of the file frmts/hdf4/hdf-eos/SWapi.c of the component HDF-EOS Grid File Handler. This… CWE-119
CWE-125
Incorrect Access of Indexable Resource ('Range Error') 
Out-of-bounds Read
CVE-2026-8084 2026-05-9 05:11 2026-05-8 Show GitHub Exploit DB Packet Storm
2695 5.5 MEDIUM
Local
osgeo gdal A weakness has been identified in OSGeo gdal up to 3.13.0dev-4. The affected element is the function GDfieldinfo of the file frmts/hdf4/hdf-eos/GDapi.c. Executing a manipulation can lead to out-of-bo… CWE-119
CWE-125
Incorrect Access of Indexable Resource ('Range Error') 
Out-of-bounds Read
CVE-2026-8088 2026-05-9 05:11 2026-05-8 Show GitHub Exploit DB Packet Storm
2696 6.5 MEDIUM
Network
traccar traccar Traccar is an open source GPS tracking system. In versions between 6.11.1 and 6.13.0, the CSV export functionality writes position data, including user-controlled device and computed attributes, to C… CWE-1236
 Improper Neutralization of Formula Elements in a CSV File
CVE-2026-27644 2026-05-9 05:04 2026-05-5 Show GitHub Exploit DB Packet Storm
2697 5.4 MEDIUM
Network
traccar traccar Traccar is an open source GPS tracking system. In org.traccar:traccar versions starting at 6.11.1 before 6.13.0, the KML and GPX export functionality writes device names to XML output without proper … CWE-91
Blind XPath Injection
CVE-2026-27693 2026-05-9 05:04 2026-05-5 Show GitHub Exploit DB Packet Storm
2698 5.4 MEDIUM
Network
traccar traccar Traccar is an open source GPS tracking system. In org.traccar:traccar versions starting at 6.11.1 before 6.13.0, the email notification templates insert user-controlled device, geofence, and driver n… CWE-79
Cross-site Scripting
CVE-2026-27694 2026-05-9 05:03 2026-05-5 Show GitHub Exploit DB Packet Storm
2699 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: ceph: supply snapshot context in ceph_zero_partial_object() The ceph_zero_partial_object function was missing proper snapshot con… NVD-CWE-noinfo
CVE-2026-43273 2026-05-9 05:01 2026-05-6 Show GitHub Exploit DB Packet Storm
2700 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: ring-buffer: Fix possible dereference of uninitialized pointer There is a pointer head_page in rb_meta_validate_events() which is… CWE-476
 NULL Pointer Dereference
CVE-2026-43272 2026-05-9 05:00 2026-05-6 Show GitHub Exploit DB Packet Storm