Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253621 5 警告 Devon IT - Devon IT 製品に複数の脆弱性 CWE-255
証明書・パスワード管理
CVE-2010-3122 2010-09-16 15:42 2010-08-25 Show GitHub Exploit DB Packet Storm
253622 6.4 警告 日立 - JP1/NETM/Remote Control Agent における認証を回避される脆弱性 CWE-287
不適切な認証
- 2010-09-16 15:42 2010-08-31 Show GitHub Exploit DB Packet Storm
253623 6.8 警告 ヒューレット・パッカード - HP HP-UX の Software Distributor における権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2010-2712 2010-09-15 17:18 2010-08-25 Show GitHub Exploit DB Packet Storm
253624 6 警告 レッドハット - Red Hat Enterprise Linux の gdm におけるアクセス制限を回避される脆弱性 CWE-DesignError
CVE-2007-5079 2010-09-15 17:18 2007-09-25 Show GitHub Exploit DB Packet Storm
253625 9.3 危険 ImageMagick
GraphicsMagick
レッドハット
- ImageMagick および GraphicsMagick の XMakeImage 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-1882 2010-09-15 17:17 2009-06-2 Show GitHub Exploit DB Packet Storm
253626 3.3 注意 レッドハット - Firefox の SPICE プラグインにおける任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2010-2794 2010-09-15 17:17 2010-08-25 Show GitHub Exploit DB Packet Storm
253627 3.3 注意 レッドハット - Firefox の SPICE プラグインにおける重要な情報を取得される脆弱性 CWE-362
競合状態
CVE-2010-2792 2010-09-15 17:13 2010-08-25 Show GitHub Exploit DB Packet Storm
253628 1.9 注意 シトリックス・システムズ - Citrix XenServer におけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2010-2619 2010-09-14 15:55 2010-06-17 Show GitHub Exploit DB Packet Storm
253629 4.6 警告 シトリックス・システムズ - Citrix XenServer における認証を回避され Xen API (XAPI) を実行される脆弱性 CWE-noinfo
情報不足
CVE-2010-0633 2010-09-14 15:54 2010-02-12 Show GitHub Exploit DB Packet Storm
253630 4.3 警告 シトリックス・システムズ - 複数の Citrix XenServer 製品の XenAPI HTTP インターフェイスにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-3253 2010-09-14 15:54 2008-07-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222201 5.4 MEDIUM
Network
wordpress
debian
wordpress
debian_linux
WordPress before 5.2.3 allows XSS in post previews by authenticated users. CWE-79
Cross-site Scripting
CVE-2019-16223 2024-11-21 13:30 2019-09-11 Show GitHub Exploit DB Packet Storm
222202 6.1 MEDIUM
Network
wordpress
debian
wordpress
debian_linux
WordPress before 5.2.3 has an issue with URL sanitization in wp_kses_bad_protocol_once in wp-includes/kses.php that can lead to cross-site scripting (XSS) attacks. CWE-79
Cross-site Scripting
CVE-2019-16222 2024-11-21 13:30 2019-09-11 Show GitHub Exploit DB Packet Storm
222203 6.1 MEDIUM
Network
wordpress
debian
wordpress
debian_linux
WordPress before 5.2.3 allows reflected XSS in the dashboard. CWE-79
Cross-site Scripting
CVE-2019-16221 2024-11-21 13:30 2019-09-11 Show GitHub Exploit DB Packet Storm
222204 6.1 MEDIUM
Network
wordpress
debian
wordpress
debian_linux
In WordPress before 5.2.3, validation and sanitization of a URL in wp_validate_redirect in wp-includes/pluggable.php could lead to an open redirect if a provided URL path does not start with a forwar… CWE-601
Open Redirect
CVE-2019-16220 2024-11-21 13:30 2019-09-11 Show GitHub Exploit DB Packet Storm
222205 6.1 MEDIUM
Network
wordpress
debian
wordpress
debian_linux
WordPress before 5.2.3 allows XSS in shortcode previews. CWE-79
Cross-site Scripting
CVE-2019-16219 2024-11-21 13:30 2019-09-11 Show GitHub Exploit DB Packet Storm
222206 6.1 MEDIUM
Network
wordpress
debian
wordpress
debian_linux
WordPress before 5.2.3 allows XSS in stored comments. CWE-79
Cross-site Scripting
CVE-2019-16218 2024-11-21 13:30 2019-09-11 Show GitHub Exploit DB Packet Storm
222207 6.1 MEDIUM
Network
wordpress
debian
wordpress
debian_linux
WordPress before 5.2.3 allows XSS in media uploads because wp_ajax_upload_attachment is mishandled. CWE-79
Cross-site Scripting
CVE-2019-16217 2024-11-21 13:30 2019-09-11 Show GitHub Exploit DB Packet Storm
222208 5.4 MEDIUM
Network
esri arcgis_enterprise In ArcGIS Enterprise 10.6.1, a crafted IFRAME element can be used to trigger a Cross Frame Scripting (XFS) attack through the EDIT MY PROFILE feature. CWE-79
Cross-site Scripting
CVE-2019-16193 2024-11-21 13:30 2019-09-11 Show GitHub Exploit DB Packet Storm
222209 5.7 MEDIUM
Network
libra libra_core Libra Core before 2019-09-03 has an erroneous regular expression for inline comments, which makes it easier for attackers to interfere with code auditing by using a nonstandard line-break character f… NVD-CWE-noinfo
CVE-2019-16214 2024-11-21 13:30 2019-09-11 Show GitHub Exploit DB Packet Storm
222210 7.5 HIGH
Network
humanica humatrix The Recruitment module in Humanica Humatrix 7 1.0.0.203 and 1.0.0.681 allows an unauthenticated attacker to change the password of any user via the recruitment_online/personalData/act_acounttab.cfm t… CWE-276
Incorrect Default Permissions 
CVE-2019-16106 2024-11-21 13:30 2019-09-11 Show GitHub Exploit DB Packet Storm