|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 14, 2026, 12:08 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 254931 | 6.8 | 警告 | サイバートラスト株式会社 レッドハット |
- | teTeX および TeXlive 2007 の hpc.c における任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2007-5935 | 2010-05-27 17:40 | 2007-11-13 | Show | GitHub Exploit DB Packet Storm |
| 254932 | 4.3 | 警告 | サイバートラスト株式会社 レッドハット |
- | dvipng および teTeX の set.c における任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2010-0829 | 2010-05-27 17:40 | 2010-05-6 | Show | GitHub Exploit DB Packet Storm |
| 254933 | 1.9 | 注意 | IBM | - | IBM WebSphere Application Server における KeyRingPassword のパスワード情報が漏えいする脆弱性 |
CWE-255
証明書・パスワード管理 |
CVE-2010-0769 | 2010-05-27 17:25 | 2010-04-1 | Show | GitHub Exploit DB Packet Storm |
| 254934 | 4.3 | 警告 | IBM | - | IBM WebSphere Application Server の管理コンソールにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-0768 | 2010-05-27 17:25 | 2010-04-1 | Show | GitHub Exploit DB Packet Storm |
| 254935 | 4 | 警告 | IBM | - | IBM WebSphere Application Server におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2010-0770 | 2010-05-27 17:25 | 2010-04-1 | Show | GitHub Exploit DB Packet Storm |
| 254936 | 5 | 警告 | IBM | - | IBM WebSphere Application Server (WAS) の Administrative Console コンポーネントにおける WAS セッションの内容を読まれる脆弱性 |
CWE-200
情報漏えい |
CVE-2009-1898 | 2010-05-27 17:24 | 2009-06-3 | Show | GitHub Exploit DB Packet Storm |
| 254937 | 6.8 | 警告 | サイバートラスト株式会社 レッドハット |
- | TeX Live 2009 および teTeX の dvipsk/dospecial.c における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2010-1440 | 2010-05-26 16:33 | 2010-05-6 | Show | GitHub Exploit DB Packet Storm |
| 254938 | 6.8 | 警告 | サイバートラスト株式会社 レッドハット |
- | TeX Live および teTeX の predospecial 関数における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2010-0739 | 2010-05-26 16:32 | 2010-04-16 | Show | GitHub Exploit DB Packet Storm |
| 254939 | 9.3 | 危険 | アドビシステムズ | - | Adobe Photoshop CS4 における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-1279 | 2010-05-26 16:32 | 2010-04-30 | Show | GitHub Exploit DB Packet Storm |
| 254940 | 9.3 | 危険 | レッドハット freedesktop.org サイバートラスト株式会社 Glyph & Cog, LLC |
- | Xpdf および Poppler の ObjectStream::ObjectStream 関数における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-3608 | 2010-05-26 16:31 | 2009-10-15 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 14, 2026, 4 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 201081 | 5.3 |
MEDIUM
Network |
mantisbt | source_integration | An issue was discovered in the Source Integration plugin before 2.4.1 for MantisBT. An attacker can gain access to the Summary field of private Issues (either marked as Private, or part of a private … |
NVD-CWE-noinfo
|
CVE-2020-36192 | 2024-11-21 14:28 | 2021-01-19 | Show | GitHub Exploit DB Packet Storm |
| 201082 | 4.5 |
MEDIUM
Network |
jupyter | jupyterhub | JupyterHub 1.1.0 allows CSRF in the admin panel via a request that lacks an _xsrf field, as demonstrated by a /hub/api/user request (to add or remove a user account). |
CWE-352
Origin Validation Error |
CVE-2020-36191 | 2024-11-21 14:28 | 2021-01-13 | Show | GitHub Exploit DB Packet Storm |
| 201083 | 6.1 |
MEDIUM
Network |
rails_admin_project | rails_admin | RailsAdmin (aka rails_admin) before 1.4.3 and 2.x before 2.0.2 allows XSS via nested forms. |
CWE-79
Cross-site Scripting |
CVE-2020-36190 | 2024-11-21 14:28 | 2021-01-13 | Show | GitHub Exploit DB Packet Storm |
| 201084 | 7.5 |
HIGH
Network |
socket | socket.io-parser | socket.io-parser before 3.4.1 allows attackers to cause a denial of service (memory consumption) via a large packet because a concatenation approach is used. |
CWE-770
Allocation of Resources Without Limits or Throttling |
CVE-2020-36049 | 2024-11-21 14:28 | 2021-01-8 | Show | GitHub Exploit DB Packet Storm |
| 201085 | 7.5 |
HIGH
Network |
socket | engine.io | Engine.IO before 4.0.0 allows attackers to cause a denial of service (resource consumption) via a POST request to the long polling transport. |
CWE-400
Uncontrolled Resource Consumption |
CVE-2020-36048 | 2024-11-21 14:28 | 2021-01-8 | Show | GitHub Exploit DB Packet Storm |
| 201086 | 8.1 |
HIGH
Network |
fasterxml netapp debian oracle |
jackson-databind cloud_backup service_level_manager debian_linux webcenter_portal primavera_unifier application_testing_suite agile_plm communications_policy_management com… |
FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.docx4j.org.apache.xalan.lib.sql.JNDIConnectionPool. |
CWE-502
Deserialization of Untrusted Data |
CVE-2020-36183 | 2024-11-21 14:28 | 2021-01-7 | Show | GitHub Exploit DB Packet Storm |
| 201087 | 8.1 |
HIGH
Network |
fasterxml netapp debian oracle |
jackson-databind cloud_backup service_level_manager debian_linux webcenter_portal primavera_unifier application_testing_suite agile_plm communications_policy_management com… |
FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.apache.tomcat.dbcp.dbcp2.cpdsadapter.DriverAdapterCPDS. |
CWE-502
Deserialization of Untrusted Data |
CVE-2020-36182 | 2024-11-21 14:28 | 2021-01-7 | Show | GitHub Exploit DB Packet Storm |
| 201088 | 8.1 |
HIGH
Network |
netapp debian oracle fasterxml |
cloud_backup service_level_manager debian_linux webcenter_portal primavera_unifier application_testing_suite agile_plm communications_policy_management communications_billing_… |
FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to org.apache.commons.dbcp2.cpdsadapter.DriverAdapterCPDS. |
CWE-502
Deserialization of Untrusted Data |
CVE-2020-36180 | 2024-11-21 14:28 | 2021-01-7 | Show | GitHub Exploit DB Packet Storm |
| 201089 | 8.1 |
HIGH
Network |
netapp debian oracle fasterxml |
cloud_backup service_level_manager debian_linux webcenter_portal application_testing_suite primavera_unifier agile_plm communications_policy_management communications_billing_… |
FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to oadd.org.apache.commons.dbcp.cpdsadapter.DriverAdapterCPDS. |
CWE-502
Deserialization of Untrusted Data |
CVE-2020-36179 | 2024-11-21 14:28 | 2021-01-7 | Show | GitHub Exploit DB Packet Storm |
| 201090 | 8.1 |
HIGH
Network |
fasterxml netapp debian oracle |
jackson-databind cloud_backup service_level_manager debian_linux webcenter_portal application_testing_suite banking_platform primavera_unifier agile_plm communications_bill… |
FasterXML jackson-databind 2.x before 2.9.10.8 mishandles the interaction between serialization gadgets and typing, related to com.newrelic.agent.deps.ch.qos.logback.core.db.DriverManagerConnectionSo… |
CWE-502
Deserialization of Untrusted Data |
CVE-2020-36189 | 2024-11-21 14:28 | 2021-01-7 | Show | GitHub Exploit DB Packet Storm |