Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254111 3.5 注意 シスコシステムズ - Cisco Unified CCX サーバの CRS 内にある管理インターフェイスにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2048 2011-06-14 10:02 2009-07-15 Show GitHub Exploit DB Packet Storm
254112 6.8 警告 The GIMP Team
レッドハット
- GIMP の PCX プラグインにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2011-1178 2011-06-14 09:55 2011-05-31 Show GitHub Exploit DB Packet Storm
254113 3.3 注意 サイバートラスト株式会社
レッドハット
- libvirt の libvirtd におけるサービス運用妨害 (クラッシュ) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-1486 2011-06-14 09:55 2011-05-2 Show GitHub Exploit DB Packet Storm
254114 6.9 警告 レッドハット - PolicyKit の pkexec ユーティリティおよび polkitd デーモンにおける権限を取得される脆弱性 CWE-362
競合状態
CVE-2011-1485 2011-06-14 09:54 2011-04-19 Show GitHub Exploit DB Packet Storm
254115 9 危険 シスコシステムズ - Cisco Unified CCX サーバの CRS 内にある管理インターフェイスにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-2047 2011-06-13 14:51 2009-07-15 Show GitHub Exploit DB Packet Storm
254116 6.8 警告 シスコシステムズ - Cisco Video Surveillance 2500 Series IP Camera 上の組込み Web サーバにおける任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2009-2046 2011-06-13 14:49 2009-06-24 Show GitHub Exploit DB Packet Storm
254117 7.8 危険 シスコシステムズ - Cisco Video Surveillance Stream Manager におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-2045 2011-06-13 14:47 2009-06-24 Show GitHub Exploit DB Packet Storm
254118 7.5 危険 The GIMP Team
レッドハット
- GIMP の PSP プラグインにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-4543 2011-06-13 14:44 2011-01-7 Show GitHub Exploit DB Packet Storm
254119 6.8 警告 The GIMP Team
レッドハット
- GIMP の GFIG プラグインにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-4542 2011-06-13 14:43 2011-01-7 Show GitHub Exploit DB Packet Storm
254120 9.3 危険 The GIMP Team
レッドハット
- GIMP の SPHERE DESIGNER プラグインにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-4541 2011-06-13 14:42 2011-01-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
225631 6.1 MEDIUM
Network
pfsense pfsense-pkg-freeradius3 /usr/local/www/freeradius_view_config.php in the freeradius3 package before 0.15.7_3 for pfSense on FreeBSD allows a user with an XSS payload as password or username to execute arbitrary javascript c… CWE-79
Cross-site Scripting
CVE-2019-18667 2024-11-21 13:33 2019-11-3 Show GitHub Exploit DB Packet Storm
225632 7.5 HIGH
Network
secudos domos The Log module in SECUDOS DOMOS before 5.6 allows local file inclusion. CWE-22
Path Traversal
CVE-2019-18665 2024-11-21 13:33 2019-11-3 Show GitHub Exploit DB Packet Storm
225633 5.4 MEDIUM
Network
secudos domos The Log module in SECUDOS DOMOS before 5.6 allows XSS. CWE-79
Cross-site Scripting
CVE-2019-18664 2024-11-21 13:33 2019-11-3 Show GitHub Exploit DB Packet Storm
225634 7.5 HIGH
Network
fastweb fastgate_firmware Fastweb FASTGate 1.0.1b devices allow partial authentication bypass by changing a certain check_pwd return value from 0 to 1. An attack does not achieve administrative control of a device; however, t… CWE-287
Improper Authentication
CVE-2019-18661 2024-11-21 13:33 2019-11-2 Show GitHub Exploit DB Packet Storm
225635 5.3 MEDIUM
Network
ready wireless_emergency_alerts The Wireless Emergency Alerts (WEA) protocol allows remote attackers to spoof a Presidential Alert because cryptographic authentication is not used, as demonstrated by MessageIdentifier 4370 in LTE S… CWE-290
 Authentication Bypass by Spoofing
CVE-2019-18659 2024-11-21 13:33 2019-11-2 Show GitHub Exploit DB Packet Storm
225636 6.5 MEDIUM
Network
wpwham currency_switcher_for_woocommerce An issue was discovered in the Currency Switcher addon before 2.11.2 for WooCommerce if a user provides a currency that was not added by the administrator. In this case, even though the currency does… CWE-755
 Improper Handling of Exceptional Conditions
CVE-2019-18668 2024-11-21 13:33 2019-11-3 Show GitHub Exploit DB Packet Storm
225637 9.8 CRITICAL
Network
youphptube youphptube An issue was discovered in YouPHPTube through 7.7. User input passed through the live_stream_code POST parameter to /plugin/LiveChat/getChat.json.php is not properly sanitized (in getFromChat in plug… CWE-89
SQL Injection
CVE-2019-18662 2024-11-21 13:33 2019-11-3 Show GitHub Exploit DB Packet Storm
225638 6.1 MEDIUM
Network
avg anti-virus A Cross Site Scripting (XSS) issue exists in AVG AntiVirus (Internet Security Edition) 19.3.3084 build 19.3.4241.440 in the Network Notification Popup, allowing an attacker to execute JavaScript code… CWE-79
Cross-site Scripting
CVE-2019-18654 2024-11-21 13:33 2019-11-2 Show GitHub Exploit DB Packet Storm
225639 6.1 MEDIUM
Network
avast antivirus A Cross Site Scripting (XSS) issue exists in Avast AntiVirus (Free, Internet Security, and Premiere Edition) 19.3.2369 build 19.3.4241.440 in the Network Notification Popup, allowing an attacker to e… CWE-79
Cross-site Scripting
CVE-2019-18653 2024-11-21 13:33 2019-11-2 Show GitHub Exploit DB Packet Storm
225640 5.4 MEDIUM
Network
jitbit .net_forum A cross-site scripting (XSS) vulnerability in Jitbit .NET Forum (aka ASP.NET forum) 8.3.8 allows remote attackers to inject arbitrary web script or HTML via the gravatar URL parameter. CWE-79
Cross-site Scripting
CVE-2019-18636 2024-11-21 13:33 2019-11-1 Show GitHub Exploit DB Packet Storm