Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252441 7.5 危険 ELITE LADDAERS - Elite Gaming Ladders における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5017 2011-12-9 13:59 2011-11-2 Show GitHub Exploit DB Packet Storm
252442 4.3 警告 2daybiz - 2daybiz Online Classified Script におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-5018 2011-12-9 13:59 2011-11-2 Show GitHub Exploit DB Packet Storm
252443 7.5 危険 2daybiz - 2daybiz Online Classified Script における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5019 2011-12-9 13:58 2011-11-2 Show GitHub Exploit DB Packet Storm
252444 7.5 危険 NetArt Media - NetArt Media iBoutique における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5020 2011-12-9 13:56 2011-11-2 Show GitHub Exploit DB Packet Storm
252445 7.5 危険 Cramer Development - Digital Interchange Document Library における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5021 2011-12-9 13:56 2011-11-2 Show GitHub Exploit DB Packet Storm
252446 7.5 危険 Jextensions - Joomla! 用 JExtensions JE Story Submit コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5022 2011-12-9 13:55 2011-11-2 Show GitHub Exploit DB Packet Storm
252447 7.5 危険 Cramer Development - Digital Interchange Calendar における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5023 2011-12-9 13:54 2011-11-2 Show GitHub Exploit DB Packet Storm
252448 6 警告 CuteSITE - CuteSITE CMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5024 2011-12-9 13:54 2011-11-2 Show GitHub Exploit DB Packet Storm
252449 4.3 警告 CuteSITE - CuteSITE CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-5025 2011-12-9 13:50 2011-11-2 Show GitHub Exploit DB Packet Storm
252450 6.8 警告 Lightbox Technologies Inc. - Science Fair In A Box における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-5026 2011-12-9 13:50 2011-11-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224831 8.8 HIGH
Network
mozilla firefox
firefox_esr
During the initialization of a new content process, a pointer offset can be manipulated leading to memory corruption and a potentially exploitable crash in the parent process. *Note: this issue only … CWE-787
 Out-of-bounds Write
CVE-2019-17015 2024-11-21 13:31 2020-01-9 Show GitHub Exploit DB Packet Storm
224832 7.4 HIGH
Network
mozilla firefox If an image had not loaded correctly (such as when it is not actually an image), it could be dragged and dropped cross-domain, resulting in a cross-origin information leak. This vulnerability affects… CWE-863
 Incorrect Authorization
CVE-2019-17014 2024-11-21 13:31 2020-01-9 Show GitHub Exploit DB Packet Storm
224833 8.8 HIGH
Network
mozilla firefox Mozilla developers reported memory safety bugs present in Firefox 70. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been expl… CWE-787
CWE-416
 Out-of-bounds Write
 Use After Free
CVE-2019-17013 2024-11-21 13:31 2020-01-9 Show GitHub Exploit DB Packet Storm
224834 8.8 HIGH
Network
mozilla
opensuse
canonical
firefox
firefox_esr
thunderbird
leap
ubuntu_linux
Mozilla developers reported memory safety bugs present in Firefox 70 and Firefox ESR 68.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these… CWE-787
 Out-of-bounds Write
CVE-2019-17012 2024-11-21 13:31 2020-01-9 Show GitHub Exploit DB Packet Storm
224835 7.5 HIGH
Network
mozilla
opensuse
canonical
firefox
firefox_esr
thunderbird
leap
ubuntu_linux
Under certain conditions, when retrieving a document from a DocShell in the antitracking code, a race condition could cause a use-after-free condition and a potentially exploitable crash. This vulner… CWE-362
Race Condition
CVE-2019-17011 2024-11-21 13:31 2020-01-9 Show GitHub Exploit DB Packet Storm
224836 7.5 HIGH
Network
mozilla
opensuse
canonical
firefox
firefox_esr
thunderbird
leap
ubuntu_linux
Under certain conditions, when checking the Resist Fingerprinting preference during device orientation checks, a race condition could have caused a use-after-free and a potentially exploitable crash.… CWE-362
Race Condition
CVE-2019-17010 2024-11-21 13:31 2020-01-9 Show GitHub Exploit DB Packet Storm
224837 7.8 HIGH
Local
mozilla
opensuse
firefox
firefox_esr
thunderbird
leap
When running, the updater service wrote status and log files to an unrestricted location; potentially allowing an unprivileged process to locate and exploit a vulnerability in file handling in the up… NVD-CWE-noinfo
CVE-2019-17009 2024-11-21 13:31 2020-01-9 Show GitHub Exploit DB Packet Storm
224838 8.8 HIGH
Network
mozilla
opensuse
firefox
firefox_esr
thunderbird
leap
When using nested workers, a use-after-free could occur during worker destruction. This resulted in a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3,… CWE-416
 Use After Free
CVE-2019-17008 2024-11-21 13:31 2020-01-9 Show GitHub Exploit DB Packet Storm
224839 8.8 HIGH
Network
mozilla
opensuse
canonical
firefox
firefox_esr
thunderbird
leap
ubuntu_linux
The plain text serializer used a fixed-size array for the number of <ol> elements it could process; however it was possible to overflow the static-sized array leading to memory corruption and a poten… CWE-787
 Out-of-bounds Write
CVE-2019-17005 2024-11-21 13:31 2020-01-9 Show GitHub Exploit DB Packet Storm
224840 4.3 MEDIUM
Network
mozilla firefox If upgrade-insecure-requests was specified in the Content Security Policy, and a link was dragged and dropped from that page, the link was not upgraded to https. This vulnerability affects Firefox < … NVD-CWE-noinfo
CVE-2019-17002 2024-11-21 13:31 2020-01-9 Show GitHub Exploit DB Packet Storm