Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252121 9.3 危険 アドビシステムズ - Adobe Shockwave Player の Dirapi.dll における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-2119 2011-06-30 10:57 2011-06-14 Show GitHub Exploit DB Packet Storm
252122 9.3 危険 アドビシステムズ - Adobe Shockwave Player の FLV ASSET Xtra コンポーネントにおける任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2011-2118 2011-06-30 10:56 2011-06-14 Show GitHub Exploit DB Packet Storm
252123 9.3 危険 アドビシステムズ - Adobe Shockwave Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-2117 2011-06-30 10:55 2011-06-14 Show GitHub Exploit DB Packet Storm
252124 9.3 危険 アドビシステムズ - Adobe Shockwave Player の IML32.dll における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-2116 2011-06-30 10:55 2011-06-14 Show GitHub Exploit DB Packet Storm
252125 9.3 危険 アドビシステムズ - Adobe Shockwave Player の IML32.dll における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-2115 2011-06-30 10:54 2011-06-14 Show GitHub Exploit DB Packet Storm
252126 9.3 危険 アドビシステムズ - Adobe Shockwave Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-2114 2011-06-30 10:53 2011-06-14 Show GitHub Exploit DB Packet Storm
252127 9.3 危険 アドビシステムズ - Adobe Shockwave Player の Shockwave3DAsset コンポーネントにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-2113 2011-06-30 10:53 2011-06-14 Show GitHub Exploit DB Packet Storm
252128 9.3 危険 アドビシステムズ - Adobe Shockwave Player の IML32.dll におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-2112 2011-06-30 10:52 2011-06-14 Show GitHub Exploit DB Packet Storm
252129 9.3 危険 アドビシステムズ - Adobe Shockwave Player の IML32.dll における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-2111 2011-06-30 10:51 2011-06-14 Show GitHub Exploit DB Packet Storm
252130 9.3 危険 アドビシステムズ - Adobe Shockwave Player の Dirapi.dll における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2011-2109 2011-06-30 10:50 2011-06-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223881 7.0 HIGH
Local
valvesoftware steam_client Valve Steam Client for Windows through 2019-08-20 has weak folder permissions, leading to privilege escalation (to NT AUTHORITY\SYSTEM) via crafted use of CreateMountPoint.exe and SetOpLock.exe to le… CWE-367
CWE-732
 Time-of-check Time-of-use (TOCTOU) Race Condition
 Incorrect Permission Assignment for Critical Resource
CVE-2019-15316 2024-11-21 13:28 2019-08-22 Show GitHub Exploit DB Packet Storm
223882 7.8 HIGH
Local
valvesoftware steam_client Valve Steam Client for Windows through 2019-08-16 allows privilege escalation (to NT AUTHORITY\SYSTEM) because local users can replace the current versions of SteamService.exe and SteamService.dll wi… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2019-15315 2024-11-21 13:28 2019-08-22 Show GitHub Exploit DB Packet Storm
223883 5.4 MEDIUM
Network
vanderbilt redcap REDCap before 9.3.0 allows XSS attacks against non-administrator accounts on the Data Import Tool page via a CSV data import file. CWE-79
Cross-site Scripting
CVE-2019-15127 2024-11-21 13:28 2019-08-22 Show GitHub Exploit DB Packet Storm
223884 9.6 CRITICAL
Network
mantisbt mantisbt The Timeline feature in my_view_page.php in MantisBT through 2.21.1 has a stored cross-site scripting (XSS) vulnerability, allowing execution of arbitrary code (if CSP settings permit it) after uploa… CWE-79
Cross-site Scripting
CVE-2019-15074 2024-11-21 13:28 2019-08-22 Show GitHub Exploit DB Packet Storm
223885 7.8 HIGH
Local
bitdefender antivirus_2020 An Untrusted Search Path vulnerability in the ServiceInstance.dll library versions 1.0.15.119 and lower, as used in Bitdefender Antivirus Free 2020 versions prior to 1.0.15.138, allows an attacker to… CWE-426
 Untrusted Search Path
CVE-2019-15295 2024-11-21 13:28 2019-08-22 Show GitHub Exploit DB Packet Storm
223886 6.1 MEDIUM
Network
wp-slimstat slimstat_analytics The wp-slimstat plugin before 4.8.1 for WordPress has XSS. CWE-79
Cross-site Scripting
CVE-2019-15112 2024-11-21 13:28 2019-08-21 Show GitHub Exploit DB Packet Storm
223887 9.8 CRITICAL
Network
wp_front_end_profile_project wp_front_end_profile The wp-front-end-profile plugin before 0.2.2 for WordPress has a privilege escalation issue. NVD-CWE-noinfo
CVE-2019-15111 2024-11-21 13:28 2019-08-21 Show GitHub Exploit DB Packet Storm
223888 6.1 MEDIUM
Network
wp_front_end_profile_project wp_front_end_profile The wp-front-end-profile plugin before 0.2.2 for WordPress has XSS. CWE-79
Cross-site Scripting
CVE-2019-15110 2024-11-21 13:28 2019-08-21 Show GitHub Exploit DB Packet Storm
223889 6.1 MEDIUM
Network
stellarwp the_events_calendar The the-events-calendar plugin before 4.8.2 for WordPress has XSS via the tribe_paged URL parameter. CWE-79
Cross-site Scripting
CVE-2019-15109 2024-11-21 13:28 2019-08-21 Show GitHub Exploit DB Packet Storm
223890 7.8 HIGH
Local
audiocoding
debian
freeware_advanced_audio_decoder_2
debian_linux
An issue was discovered in Freeware Advanced Audio Decoder 2 (FAAD2) 2.8.8. The faad_resetbits function in libfaad/bits.c is affected by a buffer overflow vulnerability. The number of bits to be read… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-15296 2024-11-21 13:28 2019-08-21 Show GitHub Exploit DB Packet Storm