Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254511 4.1 警告 Linux
レッドハット
- KVM の x86 エミュレータにおける権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0306 2010-03-4 13:41 2010-02-9 Show GitHub Exploit DB Packet Storm
254512 5 警告 レッドハット
リアルネットワークス
- RealNetworks HelixPlayer および RealPlayer におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0417 2010-03-4 13:40 2010-02-18 Show GitHub Exploit DB Packet Storm
254513 7.5 危険 レッドハット
リアルネットワークス
- RealNetworks HelixPlayer および RealPlayer の Unescape 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0416 2010-03-4 13:40 2010-02-18 Show GitHub Exploit DB Packet Storm
254514 9.3 危険 マイクロソフト - Microsoft Windows の Microsoft Paint における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-0028 2010-03-3 11:54 2010-02-9 Show GitHub Exploit DB Packet Storm
254515 7.2 危険 マイクロソフト - Microsoft Windows の kernel における権限昇格の脆弱性 CWE-Other
その他
CVE-2010-0233 2010-03-3 11:54 2010-02-9 Show GitHub Exploit DB Packet Storm
254516 6.3 警告 マイクロソフト - Microsoft Windows の KDC におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2010-0035 2010-03-3 11:54 2010-02-9 Show GitHub Exploit DB Packet Storm
254517 7.1 危険 マイクロソフト - Microsoft Windows の SMB 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-362
競合状態
CVE-2010-0021 2010-03-3 11:54 2010-02-9 Show GitHub Exploit DB Packet Storm
254518 10 危険 マイクロソフト - Microsoft Windows の SMB 実装におけるアクセス権を取得される脆弱性 CWE-264
CWE-310
CVE-2010-0231 2010-03-3 11:54 2010-02-9 Show GitHub Exploit DB Packet Storm
254519 7.8 危険 マイクロソフト - Microsoft Windows の SMB 実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-0022 2010-03-3 11:53 2010-02-9 Show GitHub Exploit DB Packet Storm
254520 9 危険 マイクロソフト - Microsoft Windows の SMB 実装における任意のコードを実行される脆弱性 CWE-20
CWE-94
CVE-2010-0020 2010-03-3 11:53 2010-02-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223951 5.4 MEDIUM
Network
najeebmedia ppom_for_woocommerce The woocommerce-product-addon plugin before 18.4 for WordPress has XSS via an import of a new meta data structure. CWE-79
Cross-site Scripting
CVE-2019-14948 2024-11-21 13:27 2019-08-13 Show GitHub Exploit DB Packet Storm
223952 7.5 HIGH
Network
humanica humatrix_7 The Recruitment module in Humanica Humatrix 7 1.0.0.681 and 1.0.0.203 allows remote attackers to access all candidates' information on the website via a modified selApp variable to personalData/resum… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2019-14932 2024-11-21 13:27 2019-08-12 Show GitHub Exploit DB Packet Storm
223953 6.5 MEDIUM
Network
spdk storage_performance_development_kit In Storage Performance Development Kit (SPDK) before 19.07, a user of a vhost can cause a crash if the target is sent invalid input. NVD-CWE-noinfo
CVE-2019-14940 2024-11-21 13:27 2019-08-12 Show GitHub Exploit DB Packet Storm
223954 5.5 MEDIUM
Local
mysql_project mysql An issue was discovered in the mysql (aka mysqljs) module 2.17.1 for Node.js. The LOAD DATA LOCAL INFILE option is open by default. NVD-CWE-noinfo
CVE-2019-14939 2024-11-21 13:27 2019-08-12 Show GitHub Exploit DB Packet Storm
223955 7.8 HIGH
Local
3cx 3cx 3CX Phone 15 on Windows has insecure permissions on the "%PROGRAMDATA%\3CXPhone for Windows\PhoneApp" installation directory, allowing Full Control access for Everyone, and leading to privilege escal… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2019-14935 2024-11-21 13:27 2019-08-12 Show GitHub Exploit DB Packet Storm
223956 7.8 HIGH
Local
pdfresurrect_project
fedoraproject
debian
pdfresurrect
fedora
debian_linux
An issue was discovered in PDFResurrect before 0.18. pdf_load_pages_kids in pdf.c doesn't validate a certain size value, which leads to a malloc failure and out-of-bounds write. CWE-787
 Out-of-bounds Write
CVE-2019-14934 2024-11-21 13:27 2019-08-12 Show GitHub Exploit DB Packet Storm
223957 8.8 HIGH
Network
webkul bagisto Bagisto 0.1.5 allows CSRF under /admin URIs. CWE-352
 Origin Validation Error
CVE-2019-14933 2024-11-21 13:27 2019-08-12 Show GitHub Exploit DB Packet Storm
223958 7.5 HIGH
Network
gcdwebserver_project gcdwebserver An issue was discovered in GCDWebServer before 3.5.3. The method moveItem in the GCDWebUploader class checks the FileExtension of newAbsolutePath but not oldAbsolutePath. By leveraging this vulnerabi… CWE-863
 Incorrect Authorization
CVE-2019-14924 2024-11-21 13:27 2019-08-11 Show GitHub Exploit DB Packet Storm
223959 6.1 MEDIUM
Network
mediawiki mobilefrontend In the MobileFrontend extension 1.31 through 1.33 for MediaWiki, XSS exists within the edit summary field in includes/specials/MobileSpecialPageFeed.php. CWE-79
Cross-site Scripting
CVE-2019-14807 2024-11-21 13:27 2019-08-10 Show GitHub Exploit DB Packet Storm
223960 7.5 HIGH
Network
palletsprojects
opensuse
werkzeug
leap
Pallets Werkzeug before 0.15.3, when used with Docker, has insufficient debugger PIN randomness because Docker containers share the same machine id. CWE-331
 Insufficient Entropy
CVE-2019-14806 2024-11-21 13:27 2019-08-10 Show GitHub Exploit DB Packet Storm