Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252601 9.3 危険 マイクロソフト - Microsoft Excel および Microsoft Office における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-3238 2010-10-28 16:34 2010-10-12 Show GitHub Exploit DB Packet Storm
252602 9.3 危険 マイクロソフト - 複数の Microsoft 製品における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-3236 2010-10-28 16:34 2010-10-12 Show GitHub Exploit DB Packet Storm
252603 9.3 危険 マイクロソフト - Microsoft Excel における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-3233 2010-10-28 16:34 2010-10-12 Show GitHub Exploit DB Packet Storm
252604 9.3 危険 マイクロソフト - 複数の Microsoft 製品における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-3232 2010-10-28 16:33 2010-10-12 Show GitHub Exploit DB Packet Storm
252605 9.3 危険 マイクロソフト - 複数の Microsoft 製品における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-3242 2010-10-28 16:33 2010-10-12 Show GitHub Exploit DB Packet Storm
252606 9.3 危険 マイクロソフト - 複数の Microsoft 製品における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-3241 2010-10-28 16:33 2010-10-12 Show GitHub Exploit DB Packet Storm
252607 9.3 危険 マイクロソフト - Microsoft Excel における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-3239 2010-10-28 16:32 2010-10-12 Show GitHub Exploit DB Packet Storm
252608 9.3 危険 マイクロソフト - Microsoft Excel および Microsoft Office における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-3237 2010-10-28 16:32 2010-10-12 Show GitHub Exploit DB Packet Storm
252609 9.3 危険 マイクロソフト - Microsoft Excel における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-3235 2010-10-27 15:17 2010-10-12 Show GitHub Exploit DB Packet Storm
252610 9.3 危険 マイクロソフト - Microsoft Excel における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-3234 2010-10-27 15:17 2010-10-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222811 8.8 HIGH
Network
adplug_project
fedoraproject
adplug
fedora
AdPlug 2.3.1 has a heap-based buffer overflow in CxadbmfPlayer::__bmf_convert_stream() in bmf.cpp. CWE-787
 Out-of-bounds Write
CVE-2019-14690 2024-11-21 13:27 2019-08-6 Show GitHub Exploit DB Packet Storm
222812 5.4 MEDIUM
Network
firefly-iii firefly_iii Firefly III 4.7.17.5 is vulnerable to stored XSS due to the lack of filtration of user-supplied data in the liability name field. The JavaScript code is executed upon an error condition during a visi… CWE-79
Cross-site Scripting
CVE-2019-14672 2024-11-21 13:27 2019-08-6 Show GitHub Exploit DB Packet Storm
222813 3.3 LOW
Local
firefly-iii firefly_iii Firefly III 4.7.17.3 is vulnerable to local file enumeration. An attacker can enumerate local files due to the lack of protocol scheme sanitization, such as for file:/// URLs. This is related to fint… CWE-20
 Improper Input Validation 
CVE-2019-14671 2024-11-21 13:27 2019-08-6 Show GitHub Exploit DB Packet Storm
222814 5.4 MEDIUM
Network
firefly-iii firefly_iii Firefly III 4.7.17.3 is vulnerable to stored XSS due to the lack of filtration of user-supplied data in the bill name field. The JavaScript code is executed during rule-from-bill creation. CWE-79
Cross-site Scripting
CVE-2019-14670 2024-11-21 13:27 2019-08-6 Show GitHub Exploit DB Packet Storm
222815 5.4 MEDIUM
Network
firefly-iii firefly_iii Firefly III 4.7.17.3 is vulnerable to stored XSS due to the lack of filtration of user-supplied data in the asset account name. The JavaScript code is executed during a visit to the audit account sta… CWE-79
Cross-site Scripting
CVE-2019-14669 2024-11-21 13:27 2019-08-6 Show GitHub Exploit DB Packet Storm
222816 5.4 MEDIUM
Network
firefly-iii firefly_iii Firefly III 4.7.17.3 is vulnerable to stored XSS due to the lack of filtration of user-supplied data in the transaction description field. The JavaScript code is executed during deletion of a transac… CWE-79
Cross-site Scripting
CVE-2019-14668 2024-11-21 13:27 2019-08-6 Show GitHub Exploit DB Packet Storm
222817 6.1 MEDIUM
Network
firefly-iii firefly_iii Firefly III 4.7.17.4 is vulnerable to multiple stored XSS issues due to the lack of filtration of user-supplied data in the transaction description field and the asset account name. The JavaScript co… CWE-79
Cross-site Scripting
CVE-2019-14667 2024-11-21 13:27 2019-08-6 Show GitHub Exploit DB Packet Storm
222818 6.5 MEDIUM
Network
enigmail
fedoraproject
enigmail
fedora
In Enigmail below 2.1, an attacker in possession of PGP encrypted emails can wrap them as sub-parts within a crafted multipart email. The encrypted part(s) can further be hidden using HTML/CSS or ASC… CWE-319
Cleartext Transmission of Sensitive Information
CVE-2019-14664 2024-11-21 13:27 2019-08-6 Show GitHub Exploit DB Packet Storm
222819 5.5 MEDIUM
Local
brandy_project brandy Brandy 1.20.1 has a heap-based buffer overflow in define_array in variables.c via crafted BASIC source code. CWE-787
 Out-of-bounds Write
CVE-2019-14665 2024-11-21 13:27 2019-08-6 Show GitHub Exploit DB Packet Storm
222820 5.5 MEDIUM
Local
brandy_project brandy Brandy 1.20.1 has a stack-based buffer overflow in fileio_openin in fileio.c via crafted BASIC source code. CWE-787
 Out-of-bounds Write
CVE-2019-14663 2024-11-21 13:27 2019-08-5 Show GitHub Exploit DB Packet Storm