Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252111 6.4 警告 ターボリナックス
Timo Sirainen
- Dovecot の ACL プラグインにおけるメールボックスを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-3304 2011-07-4 08:32 2010-07-24 Show GitHub Exploit DB Packet Storm
252112 5.8 警告 レッドハット - TigerVNC の vncviewer コンポネント内にある CSecurityTLS::processMsg 関数における TLS VNC サーバを偽造される脆弱性 CWE-20
不適切な入力確認
CVE-2011-1775 2011-07-4 08:30 2011-05-26 Show GitHub Exploit DB Packet Storm
252113 9.3 危険 アドビシステムズ - Adobe Shockwave Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-2128 2011-07-1 15:32 2011-06-14 Show GitHub Exploit DB Packet Storm
252114 9.3 危険 アドビシステムズ - Adobe Shockwave Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-2127 2011-07-1 15:31 2011-06-14 Show GitHub Exploit DB Packet Storm
252115 9.3 危険 アドビシステムズ - Adobe Shockwave Player におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-2126 2011-07-1 15:30 2011-06-14 Show GitHub Exploit DB Packet Storm
252116 9.3 危険 アドビシステムズ - Adobe Shockwave Player の Dirapix.dll におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-2125 2011-07-1 10:19 2011-06-14 Show GitHub Exploit DB Packet Storm
252117 9.3 危険 アドビシステムズ - Adobe Shockwave Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-2124 2011-07-1 10:17 2011-06-14 Show GitHub Exploit DB Packet Storm
252118 9.3 危険 アドビシステムズ - Adobe Shockwave Player の Shockwave 3D Asset x32 コンポーネントにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2011-2123 2011-07-1 10:15 2011-06-14 Show GitHub Exploit DB Packet Storm
252119 9.3 危険 アドビシステムズ - Adobe Shockwave Player の Dirapi.dll における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-2122 2011-07-1 10:14 2011-06-14 Show GitHub Exploit DB Packet Storm
252120 9.3 危険 アドビシステムズ - Adobe Shockwave Player における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2011-2121 2011-06-30 10:59 2011-06-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222621 7.5 HIGH
Network
freerdp
opensuse
freerdp
leap
libfreerdp/codec/region.c in FreeRDP through 1.1.x and 2.x through 2.0.0-rc4 has memory leaks because a supplied realloc pointer (i.e., the first argument to realloc) is also used for a realloc retur… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2019-17177 2024-11-21 13:31 2019-10-5 Show GitHub Exploit DB Packet Storm
222622 7.5 HIGH
Network
joyplus-cms_project joyplus-cms joyplus-cms 1.6.0 allows manager/admin_pic.php?rootpath= absolute path traversal. CWE-22
Path Traversal
CVE-2019-17175 2024-11-21 13:31 2019-10-5 Show GitHub Exploit DB Packet Storm
222623 9.8 CRITICAL
Network
liferay liferay_portal Liferay Portal CE 6.2.5 allows remote command execution because of deserialization of a JSON payload. CWE-502
 Deserialization of Untrusted Data
CVE-2019-16891 2024-11-21 13:31 2019-10-4 Show GitHub Exploit DB Packet Storm
222624 9.8 CRITICAL
Network
linux
debian
canonical
opensuse
linux_kernel
debian_linux
ubuntu_linux
leap
In the Linux kernel through 5.3.2, cfg80211_mgd_wext_giwessid in net/wireless/wext-sme.c does not reject a long SSID IE, leading to a Buffer Overflow. CWE-120
Classic Buffer Overflow
CVE-2019-17133 2024-11-21 13:31 2019-10-4 Show GitHub Exploit DB Packet Storm
222625 9.8 CRITICAL
Network
vbulletin vbulletin vBulletin through 5.5.4 mishandles custom avatars. CWE-94
CWE-20
Code Injection
 Improper Input Validation 
CVE-2019-17132 2024-11-21 13:31 2019-10-4 Show GitHub Exploit DB Packet Storm
222626 4.3 MEDIUM
Network
vbulletin vbulletin vBulletin before 5.5.4 allows clickjacking. CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2019-17131 2024-11-21 13:31 2019-10-4 Show GitHub Exploit DB Packet Storm
222627 6.5 MEDIUM
Network
vbulletin vbulletin vBulletin through 5.5.4 mishandles external URLs within the /core/vb/vurl.php file and the /core/vb/vurl directories. CWE-552
 Files or Directories Accessible to External Parties
CVE-2019-17130 2024-11-21 13:31 2019-10-4 Show GitHub Exploit DB Packet Storm
222628 5.4 MEDIUM
Network
vanderbilt redcap REDCap before 9.3.4 has XSS on the Customize & Manage Locking/E-signatures page via Lock Record Custom Text values. CWE-79
Cross-site Scripting
CVE-2019-17121 2024-11-21 13:31 2019-10-4 Show GitHub Exploit DB Packet Storm
222629 9.8 CRITICAL
Network
openmpt libopenmpt In libopenmpt before 0.3.19 and 0.4.x before 0.4.9, ModPlug_InstrumentName and ModPlug_SampleName in libopenmpt_modplug.c do not restrict the lengths of libmodplug output-buffer strings in the C API,… CWE-120
Classic Buffer Overflow
CVE-2019-17113 2024-11-21 13:31 2019-10-4 Show GitHub Exploit DB Packet Storm
222630 6.1 MEDIUM
Network
themeisle visualizer A stored XSS vulnerability in the Visualizer plugin 3.3.0 for WordPress allows an unauthenticated attacker to execute arbitrary JavaScript when an admin or other privileged user edits the chart via t… CWE-79
Cross-site Scripting
CVE-2019-16931 2024-11-21 13:31 2019-10-4 Show GitHub Exploit DB Packet Storm