Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252631 4.4 警告 オラクル - Oracle Solaris 10 および 11 Express の Kernel/NFS における脆弱性 CWE-noinfo
情報不足
CVE-2010-4443 2011-02-17 14:00 2011-01-18 Show GitHub Exploit DB Packet Storm
252632 5 警告 オラクル - Oracle Sun Management Center の Web コンソールにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-4436 2011-02-17 14:00 2011-01-18 Show GitHub Exploit DB Packet Storm
252633 5 警告 オラクル - Oracle Solaris 10 の Ethernet および Driver sub-component における脆弱性 CWE-noinfo
情報不足
CVE-2010-4433 2011-02-17 13:59 2011-01-18 Show GitHub Exploit DB Packet Storm
252634 5.7 警告 オラクル - Oracle GlassFish および Java System Message Queue における脆弱性 CWE-noinfo
情報不足
CVE-2010-4438 2011-02-17 13:59 2011-01-18 Show GitHub Exploit DB Packet Storm
252635 6.4 警告 オラクル - Oracle Sun Convergence の Web メールにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-4464 2011-02-17 13:59 2011-01-18 Show GitHub Exploit DB Packet Storm
252636 6.8 警告 サン・マイクロシステムズ
オラクル
- Oracle Sun Java System Access Manager および Oracle OpenSSO における脆弱性 CWE-noinfo
情報不足
CVE-2010-4444 2011-02-17 13:58 2011-01-18 Show GitHub Exploit DB Packet Storm
252637 6.8 警告 オラクル - Oracle VM VirtualBox の拡張モジュールにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-4414 2011-02-16 14:13 2011-01-18 Show GitHub Exploit DB Packet Storm
252638 7.8 危険 オラクル - Oracle Solaris 11 Express の SMB および CIFS における脆弱性 CWE-noinfo
情報不足
CVE-2010-4457 2011-02-16 14:11 2011-01-18 Show GitHub Exploit DB Packet Storm
252639 10 危険 ヒューレット・パッカード
IBM
オラクル
- Oracle Solaris の CDE Calendar Manager Service Daemon および RPC における脆弱性 CWE-noinfo
情報不足
CVE-2010-4435 2011-02-16 14:07 2011-01-18 Show GitHub Exploit DB Packet Storm
252640 2.1 注意 Apache Software Foundation
オラクル
- Apache Derby の BUILTIN 認証機能であるパスワードハッシュ生成アルゴリズムにおけるパスワードを解読される脆弱性 CWE-310
暗号の問題
CVE-2009-4269 2011-02-16 14:00 2011-01-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222381 8.8 HIGH
Network
netgate pfsense pfSense through 2.3.4 through 2.4.4-p3 allows Remote Code Injection via a methodCall XML document with a pfsense.exec_php call containing shell metacharacters in a parameter value. CWE-78
OS Command 
CVE-2019-16701 2024-11-21 13:31 2019-09-26 Show GitHub Exploit DB Packet Storm
222382 9.8 CRITICAL
Network
emlog emlog emlog through 6.0.0beta has an arbitrary file deletion vulnerability via an admin/data.php?action=dell_all_bak request with directory traversal sequences in the bak[] parameter. CWE-22
Path Traversal
CVE-2019-16868 2024-11-21 13:31 2019-09-25 Show GitHub Exploit DB Packet Storm
222383 6.5 MEDIUM
Network
hongcms_project hongcms HongCMS 3.0.0 allows arbitrary file deletion via a ../ in the file parameter to admin/index.php/database/ajax?action=delete, a similar issue to CVE-2018-16774. (If the attacker deletes config.php and… CWE-22
Path Traversal
CVE-2019-16867 2024-11-21 13:31 2019-09-25 Show GitHub Exploit DB Packet Storm
222384 9.8 CRITICAL
Network
vbulletin vbulletin vBulletin 5.x through 5.5.4 allows remote command execution via the widgetConfig[code] parameter in an ajax/render/widget_php routestring request. CWE-94
Code Injection
CVE-2019-16759 2024-11-21 13:31 2019-09-25 Show GitHub Exploit DB Packet Storm
222385 6.1 MEDIUM
Network
joomla joomla\! In Joomla! 3.x before 3.9.12, inadequate escaping allowed XSS attacks using the logo parameter of the default templates. CWE-79
Cross-site Scripting
CVE-2019-16725 2024-11-21 13:31 2019-09-25 Show GitHub Exploit DB Packet Storm
222386 9.8 CRITICAL
Network
upredsun file_sharing_wizard File Sharing Wizard 1.5.0 allows a remote attacker to obtain arbitrary code execution by exploiting a Structured Exception Handler (SEH) based buffer overflow in an HTTP POST parameter, a similar iss… CWE-120
Classic Buffer Overflow
CVE-2019-16724 2024-11-21 13:31 2019-09-25 Show GitHub Exploit DB Packet Storm
222387 7.5 HIGH
Network
riot-os riot RIOT 2019.07 contains a NULL pointer dereference in the MQTT-SN implementation (asymcute), potentially allowing an attacker to crash a network node running RIOT. This requires spoofing an MQTT server… CWE-476
 NULL Pointer Dereference
CVE-2019-16754 2024-11-21 13:31 2019-09-25 Show GitHub Exploit DB Packet Storm
222388 6.1 MEDIUM
Network
devise_token_auth_project devise_token_auth An issue was discovered in Devise Token Auth through 1.1.2. The omniauth failure endpoint is vulnerable to Reflected Cross Site Scripting (XSS) through the message parameter. Unauthenticated attacker… CWE-79
Cross-site Scripting
CVE-2019-16751 2024-11-21 13:31 2019-09-25 Show GitHub Exploit DB Packet Storm
222389 9.8 CRITICAL
Network
wolfssl wolfssl In wolfSSL through 4.1.0, there is a missing sanity check of memory accesses in parsing ASN.1 certificate data while handshaking. Specifically, there is a one-byte heap-based buffer over-read in Chec… CWE-125
Out-of-bounds Read
CVE-2019-16748 2024-11-21 13:31 2019-09-24 Show GitHub Exploit DB Packet Storm
222390 9.8 CRITICAL
Network
linux
debian
canonical
fedoraproject
opensuse
linux_kernel
debian_linux
ubuntu_linux
fedora
leap
An issue was discovered in net/wireless/nl80211.c in the Linux kernel through 5.2.17. It does not check the length of variable elements in a beacon head, leading to a buffer overflow. CWE-120
Classic Buffer Overflow
CVE-2019-16746 2024-11-21 13:31 2019-09-24 Show GitHub Exploit DB Packet Storm