Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228951 9.3 危険 tricerasoft - TriceraSoft Swift Ultralite におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3253 2012-12-20 19:28 2009-09-18 Show GitHub Exploit DB Packet Storm
228952 9 危険 Vtiger - vtiger CRM の Compose Mail 機能における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2009-3250 2012-12-20 19:28 2009-09-18 Show GitHub Exploit DB Packet Storm
228953 7.5 危険 Vtiger - vtiger CRM におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-3249 2012-12-20 19:28 2009-09-18 Show GitHub Exploit DB Packet Storm
228954 6.8 警告 Vtiger - vtiger CRM の RSS モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-3248 2012-12-20 19:28 2009-09-18 Show GitHub Exploit DB Packet Storm
228955 4.3 警告 Vtiger - vtiger CRM の Activities モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3247 2012-12-20 19:28 2009-09-18 Show GitHub Exploit DB Packet Storm
228956 5 警告 Wireshark - Wireshark の TLS 解析子におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-3243 2012-12-20 19:28 2009-09-15 Show GitHub Exploit DB Packet Storm
228957 5 警告 Wireshark - Wireshark の GSM A RR 解析子におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-3242 2012-12-20 19:28 2009-09-15 Show GitHub Exploit DB Packet Storm
228958 7.8 危険 Wireshark - Wireshark の OpcUa 解析子におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-3241 2012-12-20 19:28 2009-09-15 Show GitHub Exploit DB Packet Storm
228959 7.5 危険 Tecnick.com - AIOCP の cp_html2txt.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-3220 2012-12-20 19:28 2009-09-16 Show GitHub Exploit DB Packet Storm
228960 6.8 警告 the-ghost - AWCM の a.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-3219 2012-12-20 19:28 2009-09-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
310571 9.8 CRITICAL
Network
vanquish woocommerce_upload_files The WooCommerce Upload Files plugin for WordPress is vulnerable to arbitrary file uploads due to missing file type validation in the upload_files() function in all versions up to, and including, 84.3… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-10820 2024-11-20 02:38 2024-11-13 Show GitHub Exploit DB Packet Storm
310572 - - - A security vulnerability has been identified in HPE Cray Data Virtualization Service (DVS). Depending on configuration, this vulnerability may lead to local/cluster unauthorized access. - CVE-2024-51765 2024-11-20 02:35 2024-11-16 Show GitHub Exploit DB Packet Storm
310573 - - - A security vulnerability has been identified in HPE Data Management Framework (DMF) Suite (CXFS). Depending on configuration, this vulnerability may lead to local/cluster unauthorized access. - CVE-2024-51764 2024-11-20 02:35 2024-11-16 Show GitHub Exploit DB Packet Storm
310574 - - - In the read() function of ProcessStats.java, there is a possible read/write serialization issue leading to a permissions bypass. This could lead to local escalation of privilege where an app can star… - CVE-2017-13311 2024-11-20 02:35 2024-11-16 Show GitHub Exploit DB Packet Storm
310575 - - - In createFromParcel of ViewPager.java, there is a possible read/write serialization issue leading to a permissions bypass. This could lead to local escalation of privilege where an app can start an a… - CVE-2017-13310 2024-11-20 02:35 2024-11-16 Show GitHub Exploit DB Packet Storm
310576 - - - An uninitialized pointer dereference in OpenAirInterface CN5G AMF up to v2.0.0 allows attackers to cause a Denial of Service (DoS) via a crafted InitialContextSetupResponse message sent to the AMF. - CVE-2024-24446 2024-11-20 02:35 2024-11-16 Show GitHub Exploit DB Packet Storm
310577 - - - Magma v1.8.0 and OAI EPC Federation v1.20 were discovered to contain an out-of-bounds read in the amf_as_establish_req function at /tasks/amf/amf_as.cpp. This vulnerability allows attackers to cause … - CVE-2024-24425 2024-11-20 02:35 2024-11-16 Show GitHub Exploit DB Packet Storm
310578 - - - An issue in Snipe-IT v.7.0.13 build 15514 allows a low-privileged attacker to modify their profile name and inject a malicious payload into the "Name" field. When an administrator later accesses the … - CVE-2024-51094 2024-11-20 02:35 2024-11-13 Show GitHub Exploit DB Packet Storm
310579 - - - The End-User Portal module before 1.0.65 for FreeScout sometimes allows an attacker to authenticate as an arbitrary user because a session token can be sent to the /auth endpoint. NOTE: this module i… - CVE-2023-52268 2024-11-20 02:35 2024-11-13 Show GitHub Exploit DB Packet Storm
310580 - - - Sublime Text 4 was discovered to contain a command injection vulnerability via the New Build System module. - CVE-2024-25255 2024-11-20 02:35 2024-11-12 Show GitHub Exploit DB Packet Storm