Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252511 4 警告 シックス・アパート株式会社 - Movable Type におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4634 2011-05-31 10:35 2008-10-17 Show GitHub Exploit DB Packet Storm
252512 5 警告 アドビシステムズ - Adobe Flash Media Server におけるサービス運用妨害 (XML データ破損) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-0612 2011-05-27 11:19 2011-05-12 Show GitHub Exploit DB Packet Storm
252513 9.3 危険 アドビシステムズ - Windows 上で稼働する Adobe Audition におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-0615 2011-05-27 10:50 2011-05-12 Show GitHub Exploit DB Packet Storm
252514 9.3 危険 アドビシステムズ - Windows 上で稼働する Adobe Audition におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-0614 2011-05-27 10:49 2011-05-12 Show GitHub Exploit DB Packet Storm
252515 5 警告 レッドハット
Avahi
オラクル
- Avahi の avahi-core/socket.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-1002 2011-05-27 10:33 2011-02-22 Show GitHub Exploit DB Packet Storm
252516 5 警告 Squid-cache.org
レッドハット
- Squid の string-comparison 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2010-3072 2011-05-27 10:05 2010-09-3 Show GitHub Exploit DB Packet Storm
252517 6 警告 Walrus,Digit. - WalRack におけるアップロードファイルの取扱いに関する脆弱性 CWE-20
不適切な入力確認
CVE-2011-1329 2011-05-26 11:06 2011-05-26 Show GitHub Exploit DB Packet Storm
252518 6.9 警告 Linux
レッドハット
- Linux kernel の Radeon GPU ドライバにおける任意のメモリロケーションへ書き込みされる脆弱性 CWE-20
不適切な入力確認
CVE-2011-1016 2011-05-26 10:45 2011-02-28 Show GitHub Exploit DB Packet Storm
252519 6.9 警告 Linux
レッドハット
- Linux kernel の drm_modeset_ctl 関数における整数符号エラーの脆弱性 CWE-189
数値処理の問題
CVE-2011-1013 2011-05-26 10:43 2011-05-9 Show GitHub Exploit DB Packet Storm
252520 6.2 警告 Linux
レッドハット
- Linux kernel の caiaq Native Instruments USB オーディオ機能におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-0712 2011-05-26 10:21 2011-02-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222101 9.8 CRITICAL
Network
sparkdevnetwork rock_rms Rock RMS version before 8.6 is vulnerable to account takeover by tampering with the user ID parameter in the profile update feature. The lack of validation and use of sequential user IDs allows any u… NVD-CWE-noinfo
CVE-2019-18642 2024-11-21 13:33 2021-01-8 Show GitHub Exploit DB Packet Storm
222102 6.5 MEDIUM
Network
un4seen bass The BASS Audio Library 2.4.14 under Windows is prone to a BASS_StreamCreateFile Denial of Service vulnerability (infinite loop) via a crafted .mp3 file. This weakness could allow attackers to consume… CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2019-18796 2024-11-21 13:33 2020-10-16 Show GitHub Exploit DB Packet Storm
222103 6.5 MEDIUM
Network
un4seen bass The BASS Audio Library 2.4.14 under Windows is prone to a BASS_StreamCreateFile out of bounds read vulnerability via a crafted .wav file. An attacker can exploit this issues to gain access to sensiti… CWE-125
Out-of-bounds Read
CVE-2019-18795 2024-11-21 13:33 2020-10-16 Show GitHub Exploit DB Packet Storm
222104 6.5 MEDIUM
Network
un4seen bass The BASS Audio Library 2.4.14 under Windows is prone to a BASS_StreamCreateFile Use after Free vulnerability via a crafted .ogg file. An attacker can exploit this to gain access to sensitive informat… CWE-416
 Use After Free
CVE-2019-18794 2024-11-21 13:33 2020-10-16 Show GitHub Exploit DB Packet Storm
222105 5.4 MEDIUM
Adjacent
qualcomm atheros_ar9132_firmware
atheros_ar9283_firmware
atheros_ar9285_firmware
A partial authentication bypass vulnerability exists on Atheros AR9132 3.60(AMX.8), AR9283 1.85, and AR9285 1.0.0.12NA devices. The vulnerability allows sending an unencrypted data frame to a WPA2-pr… CWE-290
 Authentication Bypass by Spoofing
CVE-2019-18991 2024-11-21 13:33 2020-10-1 Show GitHub Exploit DB Packet Storm
222106 5.4 MEDIUM
Adjacent
realtek rtl8812ar_firmware
rtl8196d_firmware
rtl8192er_firmware
rtl8881an_firmware
A partial authentication bypass vulnerability exists on Realtek RTL8812AR 1.21WW, RTL8196D 1.0.0, RTL8192ER 2.10, and RTL8881AN 1.09 devices. The vulnerability allows sending an unencrypted data fram… CWE-290
 Authentication Bypass by Spoofing
CVE-2019-18990 2024-11-21 13:33 2020-10-1 Show GitHub Exploit DB Packet Storm
222107 5.4 MEDIUM
Adjacent
mediatek mt7620n_firmware A partial authentication bypass vulnerability exists on Mediatek MT7620N 1.06 devices. The vulnerability allows sending an unencrypted data frame to a WPA2-protected WLAN router where the packet is r… CWE-290
 Authentication Bypass by Spoofing
CVE-2019-18989 2024-11-21 13:33 2020-10-1 Show GitHub Exploit DB Packet Storm
222108 9.8 CRITICAL
Network
akamai enterprise_application_access Enterprise Access Client Auto-Updater allows for Remote Code Execution prior to version 2.0.1. CWE-295
Improper Certificate Validation 
CVE-2019-18847 2024-11-21 13:33 2020-08-26 Show GitHub Exploit DB Packet Storm
222109 6.1 MEDIUM
Network
woocommerce subscriptions Persistent XSS in the WooCommerce Subscriptions plugin before 2.6.3 for WordPress allows remote attackers to execute arbitrary JavaScript because Billing Details are mishandled in WCS_Admin_Post_Type… CWE-79
Cross-site Scripting
CVE-2019-18834 2024-11-21 13:33 2020-07-24 Show GitHub Exploit DB Packet Storm
222110 7.8 HIGH
Local
synaptics
lenovo
hp
vfs75xx_firmware
thinkpad_25_firmware
thankpad_a475_firmware
thankpad_a485_firmware
thinkpad_e480_firmware
thinkpad_e580_firmware
thinkpad_e485_firmware
thinkpad_e585_firmware
Incorrect parameter validation in the synaTee component of Synaptics WBF drivers using an SGX enclave (all versions prior to 2019-11-15) allows a local user to execute arbitrary code in the enclave (… CWE-763
 Release of Invalid Pointer or Reference
CVE-2019-18619 2024-11-21 13:33 2020-07-22 Show GitHub Exploit DB Packet Storm