Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 22, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227311 7.5 危険 Uiga - Uiga Fan Club の admin/admin_login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1366 2012-12-20 19:29 2010-04-13 Show GitHub Exploit DB Packet Storm
227312 7.5 危険 Uiga - Uiga Fan Club の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1365 2012-12-20 19:29 2010-04-13 Show GitHub Exploit DB Packet Storm
227313 7.5 危険 Uiga - Uiga Personal Portal の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1364 2012-12-20 19:29 2010-04-13 Show GitHub Exploit DB Packet Storm
227314 2.1 注意 ron jerome - Drupal 用の Bibliography モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1358 2012-12-20 19:29 2010-01-13 Show GitHub Exploit DB Packet Storm
227315 4.3 警告 sbddirectorysoftware - SBD Directory Software の editors/logindialogue.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1357 2012-12-20 19:29 2010-04-13 Show GitHub Exploit DB Packet Storm
227316 10 危険 vsecurity - TANDBERG VCS における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2010-1356 2012-12-20 19:29 2010-04-13 Show GitHub Exploit DB Packet Storm
227317 4.3 警告 vsecurity - TANDBERG VCS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1355 2012-12-20 19:29 2010-04-13 Show GitHub Exploit DB Packet Storm
227318 5 警告 ternaria - Joomla! 用の vjdeo コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1354 2012-12-20 19:29 2010-04-12 Show GitHub Exploit DB Packet Storm
227319 5 警告 wowjoomla - Joomla! 用の loginbox コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1353 2012-12-20 19:29 2010-04-12 Show GitHub Exploit DB Packet Storm
227320 6.8 警告 ribafs - Mini CMS RibaFS の admin/login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1346 2012-12-20 19:29 2010-04-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
221521 5.3 MEDIUM
Network
wpgraphql wpgraphql The WPGraphQL WordPress plugin before 0.3.5 doesn't properly restrict access to information about other users' roles on the affected site. Because of this, a remote attacker could forge a GraphQL que… - CVE-2019-25060 2024-11-21 13:39 2022-05-10 Show GitHub Exploit DB Packet Storm
221522 7.8 HIGH
Local
artifex
debian
ghostscript
debian_linux
Artifex Ghostscript through 9.26 mishandles .completefont. NOTE: this issue exists because of an incomplete fix for CVE-2019-3839. NVD-CWE-noinfo
CVE-2019-25059 2024-11-21 13:39 2022-04-25 Show GitHub Exploit DB Packet Storm
221523 7.8 HIGH
Local
usbguard_project
fedoraproject
debian
usbguard
fedora
debian_linux
An issue was discovered in USBGuard before 1.1.0. On systems with the usbguard-dbus daemon running, an unprivileged user could make USBGuard allow all USB devices to be connected in the future. CWE-863
 Incorrect Authorization
CVE-2019-25058 2024-11-21 13:39 2022-02-25 Show GitHub Exploit DB Packet Storm
221524 7.5 HIGH
Network
r3 corda In Corda before 4.1, the meaning of serialized data can be modified via an attacker-controlled CustomSerializer. NVD-CWE-noinfo
CVE-2019-25057 2024-11-21 13:39 2022-02-15 Show GitHub Exploit DB Packet Storm
221525 5.3 MEDIUM
Network
bromite bromite In Bromite through 78.0.3904.130, there are adblock rules in the release APK; therefore, probing which resources are blocked and which aren't can identify the application version and defeat the User-… CWE-203
 Information Exposure Through Discrepancy
CVE-2019-25056 2024-11-21 13:39 2022-01-26 Show GitHub Exploit DB Packet Storm
221526 7.5 HIGH
Network
libpulse-binding_project libpulse-binding An issue was discovered in the libpulse-binding crate before 2.6.0 for Rust. It mishandles a panic that crosses a Foreign Function Interface (FFI) boundary. NVD-CWE-noinfo
CVE-2019-25055 2024-11-21 13:39 2021-12-27 Show GitHub Exploit DB Packet Storm
221527 7.5 HIGH
Network
pnet_project pnet An issue was discovered in the pnet crate before 0.27.2 for Rust. There is a segmentation fault (upon attempted dereference of an uninitialized descriptor) because of an erroneous IcmpTransportChanne… CWE-909
 Missing Initialization of Resource
CVE-2019-25054 2024-11-21 13:39 2021-12-27 Show GitHub Exploit DB Packet Storm
221528 9.1 CRITICAL
Network
linaro op-tee In Linaro OP-TEE before 3.7.0, by using inconsistent or malformed data, it is possible to call update and final cryptographic functions directly, causing a crash that could leak sensitive information. CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2019-25052 2024-11-21 13:39 2021-08-12 Show GitHub Exploit DB Packet Storm
221529 7.8 HIGH
Local
gnu
debian
fedoraproject
aspell
debian_linux
fedora
objstack in GNU Aspell 0.60.8 has a heap-based buffer overflow in acommon::ObjStack::dup_top (called from acommon::StringMap::add and acommon::Config::lookup_list). CWE-787
 Out-of-bounds Write
CVE-2019-25051 2024-11-21 13:39 2021-07-20 Show GitHub Exploit DB Packet Storm
221530 7.8 HIGH
Local
osgeo gdal netCDF in GDAL 2.4.2 through 3.0.4 has a stack-based buffer overflow in nc4_get_att (called from nc4_get_att_tc and nc_get_att_text) and in uffd_cleanup (called from netCDFDataset::~netCDFDataset and… CWE-787
 Out-of-bounds Write
CVE-2019-25050 2024-11-21 13:39 2021-07-20 Show GitHub Exploit DB Packet Storm