|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 19, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 255171 | 6 | 警告 | レッドハット | - | Red Hat Enterprise Linux の gdm におけるアクセス制限を回避される脆弱性 |
CWE-DesignError
|
CVE-2007-5079 | 2010-09-15 17:18 | 2007-09-25 | Show | GitHub Exploit DB Packet Storm |
| 255172 | 9.3 | 危険 | ImageMagick GraphicsMagick レッドハット |
- | ImageMagick および GraphicsMagick の XMakeImage 関数における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-1882 | 2010-09-15 17:17 | 2009-06-2 | Show | GitHub Exploit DB Packet Storm |
| 255173 | 3.3 | 注意 | レッドハット | - | Firefox の SPICE プラグインにおける任意のファイルを上書きされる脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2010-2794 | 2010-09-15 17:17 | 2010-08-25 | Show | GitHub Exploit DB Packet Storm |
| 255174 | 3.3 | 注意 | レッドハット | - | Firefox の SPICE プラグインにおける重要な情報を取得される脆弱性 |
CWE-362
競合状態 |
CVE-2010-2792 | 2010-09-15 17:13 | 2010-08-25 | Show | GitHub Exploit DB Packet Storm |
| 255175 | 1.9 | 注意 | シトリックス・システムズ | - | Citrix XenServer におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-DesignError
|
CVE-2010-2619 | 2010-09-14 15:55 | 2010-06-17 | Show | GitHub Exploit DB Packet Storm |
| 255176 | 4.6 | 警告 | シトリックス・システムズ | - | Citrix XenServer における認証を回避され Xen API (XAPI) を実行される脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-0633 | 2010-09-14 15:54 | 2010-02-12 | Show | GitHub Exploit DB Packet Storm |
| 255177 | 4.3 | 警告 | シトリックス・システムズ | - | 複数の Citrix XenServer 製品の XenAPI HTTP インターフェイスにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-3253 | 2010-09-14 15:54 | 2008-07-16 | Show | GitHub Exploit DB Packet Storm |
| 255178 | 7.5 | 危険 | シトリックス・システムズ | - | Citrix XenCenterWeb の XenServer Resource Kit における PHP コードを挿入される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3760 | 2010-09-14 15:54 | 2009-10-22 | Show | GitHub Exploit DB Packet Storm |
| 255179 | 6 | 警告 | シトリックス・システムズ | - | Citrix XenCenterWeb の XenServer Resource Kit におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2009-3759 | 2010-09-14 15:54 | 2009-10-22 | Show | GitHub Exploit DB Packet Storm |
| 255180 | 7.5 | 危険 | シトリックス・システムズ | - | Citrix XenCenterWeb の XenServer Resource Kit における SQL インジェクションの脆弱性 |
CWE-89
SQLインジェクション |
CVE-2009-3758 | 2010-09-14 15:53 | 2009-10-22 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 20, 2026, 4:14 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 218761 | 6.5 |
MEDIUM
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Incorrect handling of a confusable character in Omnibox in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted domain name. |
NVD-CWE-noinfo
|
CVE-2019-5781 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 218762 | 7.8 |
HIGH
Local |
google redhat debian fedoraproject |
chrome enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation debian_linux fedora |
Insufficient restrictions on what can be done with Apple Events in Google Chrome on macOS prior to 72.0.3626.81 allowed a local attacker to execute JavaScript via Apple Events. |
CWE-20
Improper Input Validation |
CVE-2019-5780 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 218763 | 4.3 |
MEDIUM
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Insufficient policy validation in ServiceWorker in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to bypass navigation restrictions via a crafted HTML page. |
CWE-862
Missing Authorization |
CVE-2019-5779 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 218764 | 6.5 |
MEDIUM
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
A missing case for handling special schemes in permission request checks in Extensions in Google Chrome prior to 72.0.3626.81 allowed an attacker who convinced a user to install a malicious extension… |
CWE-79
Cross-site Scripting |
CVE-2019-5778 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 218765 | 6.5 |
MEDIUM
Network |
google redhat debian fedoraproject |
chrome enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation debian_linux fedora |
Incorrect handling of a confusable character in Omnibox in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted domain name. |
NVD-CWE-noinfo
|
CVE-2019-5777 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 218766 | 6.5 |
MEDIUM
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Incorrect handling of a confusable character in Omnibox in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted domain name. |
NVD-CWE-noinfo
|
CVE-2019-5776 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 218767 | 6.5 |
MEDIUM
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Incorrect handling of a confusable character in Omnibox in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to spoof the contents of the Omnibox (URL bar) via a crafted domain name. |
NVD-CWE-noinfo
|
CVE-2019-5775 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 218768 | 8.8 |
HIGH
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Omission of the .desktop filetype from the Safe Browsing checklist in SafeBrowsing in Google Chrome on Linux prior to 72.0.3626.81 allowed an attacker who convinced a user to download a .desktop file… |
CWE-862
Missing Authorization |
CVE-2019-5774 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 218769 | 6.5 |
MEDIUM
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Insufficient origin validation in IndexedDB in Google Chrome prior to 72.0.3626.81 allowed a remote attacker who had compromised the renderer process to bypass same origin policy via a crafted HTML p… |
CWE-346
Origin Validation Error |
CVE-2019-5773 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 218770 | 8.8 |
HIGH
Network |
google debian redhat fedoraproject |
chrome debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation fedora |
Sharing of objects over calls into JavaScript runtime in PDFium in Google Chrome prior to 72.0.3626.81 allowed a remote attacker to potentially exploit heap corruption via a crafted PDF file. |
CWE-787 CWE-416 Out-of-bounds Write Use After Free |
CVE-2019-5772 | 2024-11-21 13:45 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |