Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254581 9.3 危険 マイクロソフト - Microsoft Internet Explorer における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-0244 2010-02-22 12:15 2010-01-21 Show GitHub Exploit DB Packet Storm
254582 9.3 危険 マイクロソフト - Microsoft Internet Explorer の URL 検証における任意のローカルプログラムを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-0027 2010-02-22 12:15 2010-01-21 Show GitHub Exploit DB Packet Storm
254583 9.3 危険 マイクロソフト - Microsoft Internet Explorer における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-0247 2010-02-22 12:14 2010-01-21 Show GitHub Exploit DB Packet Storm
254584 9.3 危険 マイクロソフト - Microsoft Internet Explorer における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-0246 2010-02-22 12:14 2010-01-21 Show GitHub Exploit DB Packet Storm
254585 9.3 危険 マイクロソフト - Microsoft Internet Explorer における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-0245 2010-02-22 12:13 2010-01-21 Show GitHub Exploit DB Packet Storm
254586 4.3 警告 マイクロソフト - Microsoft Internet Explorer の XSS フィルタにおけるクロスサイトスクリプティングの脆弱性 CWE-DesignError
CVE-2009-4074 2010-02-22 12:13 2009-11-25 Show GitHub Exploit DB Packet Storm
254587 6.6 警告 マイクロソフト - Microsoft Windows の kernel における権限昇格の脆弱性 CWE-20
不適切な入力確認
CVE-2010-0232 2010-02-22 12:12 2010-01-20 Show GitHub Exploit DB Packet Storm
254588 10 危険 Rockwell Automation - Rockwell Automation Allen-Bradley MicroLogix PLC に複数の脆弱性 CWE-noinfo
情報不足
CVE-2009-3739 2010-02-19 14:22 2010-01-21 Show GitHub Exploit DB Packet Storm
254589 9.3 危険 マイクロソフト - Microsoft Internet Explorer において任意のコードが実行される脆弱性 CWE-399
リソース管理の問題
CVE-2010-0249 2010-02-19 14:21 2010-01-15 Show GitHub Exploit DB Packet Storm
254590 7.5 危険 アップル
MySQL AB
- MySQL で使用される yaSSL におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2008-0227 2010-02-19 11:37 2008-01-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223071 9.8 CRITICAL
Network
srtalliance secure_reliable_transport Secure Reliable Transport (SRT) through 1.3.4 has a CSndUList array overflow if there are many SRT connections. CWE-129
 Improper Validation of Array Index
CVE-2019-15784 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223072 8.8 HIGH
Network
weblizar social_likebox_\&_feed The facebook-by-weblizar plugin before 2.8.5 for WordPress has CSRF. CWE-352
 Origin Validation Error
CVE-2019-15781 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223073 8.8 HIGH
Network
quadlayers wp_social_feed_gallery The insta-gallery plugin before 2.4.8 for WordPress has no nonce validation for qligg_dismiss_notice or qligg_form_item_delete. CWE-352
 Origin Validation Error
CVE-2019-15779 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223074 5.4 MEDIUM
Network
getwooplugins additional_variation_images_for_woocommerce The woo-variation-gallery plugin before 1.1.29 for WordPress has XSS. CWE-79
Cross-site Scripting
CVE-2019-15778 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223075 6.1 MEDIUM
Network
components_for_wp_bakery_page_builder_project components_for_wp_bakery_page_builder The nd-shortcodes plugin before 6.0 for WordPress has a nopriv_ AJAX action that allows modification of the siteurl setting. CWE-601
Open Redirect
CVE-2019-15771 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223076 8.8 HIGH
Adjacent
equeshome elf_smart_plug_firmware The Eques elf smart plug and the mobile app use a hardcoded AES 256 bit key to encrypt the commands and responses between the device and the app. The communication happens over UDP port 27431. An att… CWE-798
 Use of Hard-coded Credentials
CVE-2019-15745 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223077 7.5 HIGH
Network
libzetta-rs_project libzetta-rs libZetta.rs through 0.1.2 has an integer overflow in the zpool parser (for error stats) that leads to a panic. CWE-190
 Integer Overflow or Wraparound
CVE-2019-15787 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223078 9.8 CRITICAL
Network
lute-tab_project lute-tab Lute-Tab before 2019-08-23 has a buffer overflow in pdf_print.cc. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2019-15783 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223079 6.1 MEDIUM
Network
webtorrent webtorrent WebTorrent before 0.107.6 allows XSS in the HTTP server via a title or file name. CWE-79
Cross-site Scripting
CVE-2019-15782 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm
223080 9.8 CRITICAL
Network
strategy11 formidable_form_builder The formidable plugin before 4.02.01 for WordPress has unsafe deserialization. CWE-502
 Deserialization of Untrusted Data
CVE-2019-15780 2024-11-21 13:29 2019-08-29 Show GitHub Exploit DB Packet Storm