Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254781 9.3 危険 日立 - XMAP3 における任意のコードが実行される脆弱性 CWE-noinfo
情報不足
- 2010-05-13 15:14 2010-04-12 Show GitHub Exploit DB Packet Storm
254782 4.3 警告 オラクル - Oracle Industry Product Suite の Retail - Oracle Retail Plan In-Season コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0863 2010-05-13 15:13 2010-04-13 Show GitHub Exploit DB Packet Storm
254783 4.3 警告 オラクル - Oracle Industry Product Suite の Retail - Oracle Retail Place In-Season コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0864 2010-05-13 15:13 2010-04-13 Show GitHub Exploit DB Packet Storm
254784 4.3 警告 オラクル - Oracle Industry Product Suite の Retail - Oracle Retail Markdown Optimization コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0862 2010-05-13 15:13 2010-04-13 Show GitHub Exploit DB Packet Storm
254785 4.3 警告 オラクル - Oracle Industry Product Suite の Life Sciences - Oracle Thesaurus Management System コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0875 2010-05-13 15:12 2010-04-13 Show GitHub Exploit DB Packet Storm
254786 4.3 警告 オラクル - Oracle Industry Product Suite の Life Sciences - Oracle Clinical Remote Data Capture Option コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0876 2010-05-13 15:12 2010-04-13 Show GitHub Exploit DB Packet Storm
254787 4.3 警告 オラクル - Oracle Industry Product Suite の Communications - Oracle Communications Unified Inventory Management コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0874 2010-05-13 15:12 2010-04-13 Show GitHub Exploit DB Packet Storm
254788 4 警告 オラクル - 複数の Oracle 製品の PeopleTools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0879 2010-05-13 15:12 2010-04-13 Show GitHub Exploit DB Packet Storm
254789 4 警告 オラクル - 複数の Oracle 製品の PeopleTools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0878 2010-05-13 15:11 2010-04-13 Show GitHub Exploit DB Packet Storm
254790 5 警告 オラクル - 複数の Oracle 製品の PeopleTools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0877 2010-05-13 15:11 2010-04-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224121 9.8 CRITICAL
Network
compassionuk compassion_switzerland The Compassion Switzerland addons 10.01.4 for Odoo allow SQL injection in models/partner_compassion.py. CWE-89
SQL Injection
CVE-2019-15564 2024-11-21 13:29 2019-08-27 Show GitHub Exploit DB Packet Storm
224122 9.8 CRITICAL
Network
ohdsi webapi Observational Health Data Sciences and Informatics (OHDSI) WebAPI before 2.7.2 allows SQL injection in FeatureExtractionService.java. CWE-89
SQL Injection
CVE-2019-15563 2024-11-21 13:29 2019-08-27 Show GitHub Exploit DB Packet Storm
224123 9.8 CRITICAL
Network
servo smallvec An issue was discovered in the smallvec crate before 0.6.10 for Rust. There is memory corruption for certain grow attempts with less than the current capacity. CWE-787
 Out-of-bounds Write
CVE-2019-15554 2024-11-21 13:29 2019-08-27 Show GitHub Exploit DB Packet Storm
224124 9.8 CRITICAL
Network
gorm gorm GORM before 1.9.10 allows SQL injection via incomplete parentheses. NOTE: Misusing Gorm by passing untrusted user input where Gorm expects trusted SQL fragments is a vulnerability in the application,… CWE-89
SQL Injection
CVE-2019-15562 2024-11-21 13:29 2019-08-26 Show GitHub Exploit DB Packet Storm
224125 9.8 CRITICAL
Network
flashlingo_project flashlingo FlashLingo before 2019-06-12 allows SQL injection, related to flashlingo.js and db.js. CWE-89
SQL Injection
CVE-2019-15561 2024-11-21 13:29 2019-08-26 Show GitHub Exploit DB Packet Storm
224126 9.8 CRITICAL
Network
social_network_project social_network Pvanloon1983 social_network before 2019-07-03 allows SQL injection in includes/form_handlers/register_handler.php. CWE-89
SQL Injection
CVE-2019-15556 2024-11-21 13:29 2019-08-26 Show GitHub Exploit DB Packet Storm
224127 9.1 CRITICAL
Network
tcpdump tcpdump The VRRP parser in tcpdump before 4.9.3 has a buffer over-read in print-vrrp.c:vrrp_print() for VRRP version 3, a different vulnerability than CVE-2018-14463. CWE-125
Out-of-bounds Read
CVE-2019-15167 2024-11-21 13:28 2022-08-27 Show GitHub Exploit DB Packet Storm
224128 5.3 MEDIUM
Network
linbit
debian
csync2
debian_linux
An issue was discovered in LINBIT csync2 through 2.0. It does not correctly check for the return value GNUTLS_E_WARNING_ALERT_RECEIVED of the gnutls_handshake() function. It neglects to call this fun… CWE-252
 Unchecked Return Value
CVE-2019-15523 2024-11-21 13:28 2020-12-31 Show GitHub Exploit DB Packet Storm
224129 7.5 HIGH
Network
morph_project morph An issue was discovered in a smart contract implementation for MORPH Token through 2019-06-05, an Ethereum token. A typo in the constructor of the Owned contract (which is inherited by MORPH Token) a… NVD-CWE-noinfo
CVE-2019-15080 2024-11-21 13:28 2020-12-31 Show GitHub Exploit DB Packet Storm
224130 7.5 HIGH
Network
eai_project eai A typo exists in the constructor of a smart contract implementation for EAI through 2019-06-05, an Ethereum token. This vulnerability could be used by an attacker to acquire EAI tokens for free. NVD-CWE-noinfo
CVE-2019-15079 2024-11-21 13:28 2020-12-31 Show GitHub Exploit DB Packet Storm