Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
255761 6 警告 シトリックス・システムズ - Citrix XenCenterWeb の XenServer Resource Kit におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-3759 2010-09-14 15:54 2009-10-22 Show GitHub Exploit DB Packet Storm
255762 7.5 危険 シトリックス・システムズ - Citrix XenCenterWeb の XenServer Resource Kit における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3758 2010-09-14 15:53 2009-10-22 Show GitHub Exploit DB Packet Storm
255763 4.3 警告 シトリックス・システムズ - Citrix XenCenterWeb の XenServer Resource Kit におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3757 2010-09-14 15:53 2009-10-22 Show GitHub Exploit DB Packet Storm
255764 7.2 危険 シトリックス・システムズ - Xen の xend におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-5716 2010-09-14 15:53 2008-12-24 Show GitHub Exploit DB Packet Storm
255765 6 警告 VMware - VMware Studio の Virtual Appliance Management Infrastructure における任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2010-2667 2010-09-13 16:05 2010-07-13 Show GitHub Exploit DB Packet Storm
255766 4.4 警告 VMware - VMware Studio における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-2427 2010-09-13 16:05 2010-07-13 Show GitHub Exploit DB Packet Storm
255767 6.8 警告 VMware - VMware SpringSource tc Server Runtime における JMX インターフェイスへのアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2010-1454 2010-09-13 16:05 2010-05-13 Show GitHub Exploit DB Packet Storm
255768 4.3 警告 VMware - VMware View におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1143 2010-09-13 16:04 2010-05-5 Show GitHub Exploit DB Packet Storm
255769 4.9 警告 VMware - 複数の VMware 製品の hcmon.sys におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-3761 2010-09-13 16:04 2008-08-21 Show GitHub Exploit DB Packet Storm
255770 2.1 注意 VMware - VMware VirtualCenter におけるパスワードを盗まれる脆弱性 CWE-200
情報漏えい
CVE-2008-4278 2010-09-13 16:04 2008-10-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
221171 4.7 MEDIUM
Local
google android In several functions of NotificationManagerService.java and related files, there is a possible way to record audio from the background without notification to the user due to a permission bypass. Thi… CWE-362
Race Condition
CVE-2019-2219 2024-11-21 13:40 2019-12-7 Show GitHub Exploit DB Packet Storm
221172 7.8 HIGH
Local
google android In createSessionInternal of PackageInstallerService.java, there is a possible improper permission grant due to a missing permission check. This could lead to local escalation of privilege by installi… CWE-862
 Missing Authorization
CVE-2019-2218 2024-11-21 13:40 2019-12-7 Show GitHub Exploit DB Packet Storm
221173 7.8 HIGH
Local
google android In setCpuVulkanInUse of GpuStats.cpp, there is possible memory corruption due to a use after free. This could lead to local escalation of privilege with no additional execution privileges needed. Use… CWE-787
CWE-416
 Out-of-bounds Write
 Use After Free
CVE-2019-2217 2024-11-21 13:40 2019-12-7 Show GitHub Exploit DB Packet Storm
221174 7.8 HIGH
Local
qualcomm mdm9205_firmware
qcs404_firmware
qcs605_firmware
sda845_firmware
sdm670_firmware
sdm710_firmware
sdm845_firmware
sdm850_firmware
sdx24_firmware
sdx55_firmware
sm6150_fir…
Out of bound access due to lack of check of whiltelist array size while reading the image elf segments. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapd… CWE-129
 Improper Validation of Array Index
CVE-2019-2339 2024-11-21 13:40 2019-11-22 Show GitHub Exploit DB Packet Storm
221175 5.5 MEDIUM
Local
qualcomm mdm9205_firmware
qcs404_firmware
sdx55_firmware
sm6150_firmware
sm7150_firmware
sm8150_firmware
sxr2130_firmware
Subsequent use of the CBO listener may result in further memory corruption due to use after free issue. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapd… CWE-787
CWE-416
 Out-of-bounds Write
 Use After Free
CVE-2019-2336 2024-11-21 13:40 2019-11-22 Show GitHub Exploit DB Packet Storm
221176 7.5 HIGH
Network
qualcomm apq8009_firmware
apq8017_firmware
apq8053_firmware
apq8096au_firmware
apq8098_firmware
mdm9150_firmware
mdm9205_firmware
mdm9206_firmware
mdm9607_firmware
mdm9615_firmware<…
While processing Attach Reject message, Valid exit condition is not met resulting into an infinite loop in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Sna… CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2019-2335 2024-11-21 13:40 2019-11-22 Show GitHub Exploit DB Packet Storm
221177 7.8 HIGH
Local
qualcomm mdm9205_firmware
qcs404_firmware
qcs605_firmware
sda845_firmware
sdm670_firmware
sdm710_firmware
sdm845_firmware
sdx55_firmware
sm6150_firmware
sm7150_firmware
sm8150_fi…
Use after free issue in cleanup routine due to missing pointer sanitization for a failed start of a trusted application. in Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Sna… CWE-416
 Use After Free
CVE-2019-2329 2024-11-21 13:40 2019-11-22 Show GitHub Exploit DB Packet Storm
221178 5.5 MEDIUM
Local
qualcomm apq8017_firmware
apq8053_firmware
apq8096_firmware
apq8096au_firmware
ipq8074_firmware
msm8917_firmware
msm8920_firmware
msm8937_firmware
msm8940_firmware
msm8953_firmware<…
Non Secure Kernel can cause Trustzone to do an arbitrary memory read which will result into DOS in Snapdragon Auto, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdr… CWE-125
Out-of-bounds Read
CVE-2019-2318 2024-11-21 13:40 2019-11-22 Show GitHub Exploit DB Packet Storm
221179 7.8 HIGH
Local
qualcomm apq8009_firmware
apq8017_firmware
apq8053_firmware
apq8096_firmware
apq8096au_firmware
apq8098_firmware
mdm9150_firmware
mdm9205_firmware
mdm9206_firmware
mdm9607_firmware<…
While invoking the API to copy from fd or local buffer to the secure buffer, Parameters being populated are from non secure environment. in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivit… NVD-CWE-noinfo
CVE-2019-2315 2024-11-21 13:40 2019-11-22 Show GitHub Exploit DB Packet Storm
221180 9.8 CRITICAL
Network
qualcomm apq8009_firmware
apq8017_firmware
apq8053_firmware
apq8096au_firmware
apq8098_firmware
mdm9150_firmware
mdm9205_firmware
mdm9206_firmware
mdm9607_firmware
mdm9615_firmware<…
SNDCP module may access array out side its boundary when it receives malformed XID message. in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT,… CWE-125
Out-of-bounds Read
CVE-2019-2303 2024-11-21 13:40 2019-11-22 Show GitHub Exploit DB Packet Storm