Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 12:16 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254471 10 危険 日立
CA Technologies
- CA XOsoft におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1223 2010-06-14 16:23 2010-04-6 Show GitHub Exploit DB Packet Storm
254472 5 警告 日立
CA Technologies
- CA XOsoft における重要な情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2010-1222 2010-06-14 16:23 2010-04-6 Show GitHub Exploit DB Packet Storm
254473 5 警告 日立
CA Technologies
- CA XOsoft におけるユーザ名を列挙される脆弱性 CWE-287
不適切な認証
CVE-2010-1221 2010-06-14 16:23 2010-04-6 Show GitHub Exploit DB Packet Storm
254474 6.8 警告 フェンリル株式会社 - ActiveGeckoBrowser における複数の脆弱性 CWE-Other
その他
CVE-2010-2420 2010-06-14 12:01 2010-06-14 Show GitHub Exploit DB Packet Storm
254475 6.8 警告 サン・マイクロシステムズ
GNU Project
ターボリナックス
サイバートラスト株式会社
レッドハット
- GNU tar および GNU cpio の rmt_read__ 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0624 2010-06-11 18:45 2010-03-15 Show GitHub Exploit DB Packet Storm
254476 3.5 注意 PostgreSQL.org
サイバートラスト株式会社
レッドハット
- PostgreSQL における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-0733 2010-06-9 16:54 2010-03-19 Show GitHub Exploit DB Packet Storm
254477 6.5 警告 PostgreSQL.org
サイバートラスト株式会社
レッドハット
- PostgreSQL の bitsubstr 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2010-0442 2010-06-9 16:54 2010-02-2 Show GitHub Exploit DB Packet Storm
254478 6.8 警告 アップル - Java の window drawing 実装における任意のコードを実行される脆弱性 CWE-189
数値処理の問題
CVE-2010-0539 2010-06-7 17:58 2010-05-18 Show GitHub Exploit DB Packet Storm
254479 6.8 警告 アップル - Apple Mac OS X 上で稼働する Java における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2010-0538 2010-06-7 17:58 2010-05-18 Show GitHub Exploit DB Packet Storm
254480 6.5 警告 PostgreSQL.org
サイバートラスト株式会社
ターボリナックス
サン・マイクロシステムズ
レッドハット
- PostgreSQL におけるインデックスの処理に関する権限を取得される脆弱性 CWE-Other
その他
CVE-2009-4136 2010-06-7 16:48 2009-12-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222511 9.8 CRITICAL
Network
linux
debian
canonical
fedoraproject
opensuse
linux_kernel
debian_linux
ubuntu_linux
fedora
leap
An issue was discovered in net/wireless/nl80211.c in the Linux kernel through 5.2.17. It does not check the length of variable elements in a beacon head, leading to a buffer overflow. CWE-120
Classic Buffer Overflow
CVE-2019-16746 2024-11-21 13:31 2019-09-24 Show GitHub Exploit DB Packet Storm
222512 7.8 HIGH
Local
pam-python_project
debian
canonical
pam-python
debian_linux
ubuntu_linux
pam-python before 1.0.7-1 has an issue in regard to the default environment variable handling of Python, which could allow for local root escalation in certain PAM setups. NVD-CWE-noinfo
CVE-2019-16729 2024-11-21 13:31 2019-09-24 Show GitHub Exploit DB Packet Storm
222513 6.1 MEDIUM
Network
cure53
debian
dompurify
debian_linux
DOMPurify before 2.0.1 allows XSS because of innerHTML mutation XSS (mXSS) for an SVG element or a MATH element, as demonstrated by Chrome and Safari. CWE-79
Cross-site Scripting
CVE-2019-16728 2024-11-21 13:31 2019-09-24 Show GitHub Exploit DB Packet Storm
222514 4.3 MEDIUM
Network
cacti cacti In Cacti through 1.2.6, authenticated users may bypass authorization checks (for viewing a graph) via a direct graph_json.php request with a modified local_graph_id parameter. CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2019-16723 2024-11-21 13:31 2019-09-24 Show GitHub Exploit DB Packet Storm
222515 9.8 CRITICAL
Network
zzzcms zzzphp ZZZCMS zzzphp v1.7.2 has an insufficient protection mechanism against PHP Code Execution, because passthru bypasses an str_ireplace operation. NVD-CWE-noinfo
CVE-2019-16722 2024-11-21 13:31 2019-09-23 Show GitHub Exploit DB Packet Storm
222516 6.5 MEDIUM
Network
5none nonecms NoneCMS v1.3 has CSRF in public/index.php/admin/admin/dele.html, as demonstrated by deleting the admin user. CWE-352
 Origin Validation Error
CVE-2019-16721 2024-11-21 13:31 2019-09-23 Show GitHub Exploit DB Packet Storm
222517 7.5 HIGH
Network
zzzcms zzzphp ZZZCMS zzzphp v1.7.2 does not properly restrict file upload in plugins/ueditor/php/controller.php?upfolder=news&action=catchimage, as demonstrated by uploading a .htaccess or .php5 file. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2019-16720 2024-11-21 13:31 2019-09-23 Show GitHub Exploit DB Packet Storm
222518 6.5 MEDIUM
Network
wtcms_project wtcms WTCMS 1.0 allows index.php?g=admin&m=index&a=index CSRF with resultant XSS. CWE-352
CWE-79
 Origin Validation Error
Cross-site Scripting
CVE-2019-16719 2024-11-21 13:31 2019-09-23 Show GitHub Exploit DB Packet Storm
222519 7.8 HIGH
Local
radare radare2 In radare2 before 3.9.0, a command injection vulnerability exists in bin_symbols() in libr/core/cbin.c. By using a crafted executable file, it's possible to execute arbitrary shell commands with the … CWE-78
OS Command 
CVE-2019-16718 2024-11-21 13:31 2019-09-23 Show GitHub Exploit DB Packet Storm
222520 7.5 HIGH
Network
linux
canonical
f5
linux_kernel
ubuntu_linux
traffix_signaling_delivery_controller
In the Linux kernel before 5.2.14, rds6_inc_info_copy in net/rds/recv.c allows attackers to obtain sensitive information from kernel stack memory because tos and flags fields are not initialized. CWE-909
 Missing Initialization of Resource
CVE-2019-16714 2024-11-21 13:31 2019-09-23 Show GitHub Exploit DB Packet Storm