|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 8, 2026, 2:12 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 257621 | 7.5 | 危険 | アップル VMware サン・マイクロシステムズ ヒューレット・パッカード レッドハット |
- | JDK および JRE の Java プラグインにおける古い JRE バージョンで動作可能な脆弱性 |
CWE-DesignError
|
CVE-2009-1105 | 2010-06-4 15:54 | 2009-03-24 | Show | GitHub Exploit DB Packet Storm |
| 257622 | 10 | 危険 | 日立 | - | Collaboration - Common Utility におけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
- | 2010-06-3 15:19 | 2010-05-12 | Show | GitHub Exploit DB Packet Storm |
| 257623 | 10 | 危険 | 日立 CA Technologies |
- | CA ARCserve Backup および BrightStor ARCserve Backup における任意のコードを実行される脆弱性 |
CWE-noinfo
情報不足 |
- | 2010-06-3 15:19 | 2010-03-18 | Show | GitHub Exploit DB Packet Storm |
| 257624 | 6.4 | 警告 | サイバートラスト株式会社 MySQL AB ターボリナックス レッドハット |
- | MySQL における SSL サーバになりすまされる脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2009-4028 | 2010-06-3 14:57 | 2009-11-4 | Show | GitHub Exploit DB Packet Storm |
| 257625 | 4 | 警告 | 富士通九州システムズ | - | e-Pares におけるセッション固定の脆弱性 |
CWE-Other
その他 |
CVE-2010-2149 | 2010-06-2 15:05 | 2010-06-2 | Show | GitHub Exploit DB Packet Storm |
| 257626 | 2.6 | 注意 | 富士通九州システムズ | - | e-Pares におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2010-2151 | 2010-06-2 15:04 | 2010-06-2 | Show | GitHub Exploit DB Packet Storm |
| 257627 | 4.3 | 警告 | 富士通九州システムズ | - | e-Pares におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-2150 | 2010-06-2 15:02 | 2010-06-2 | Show | GitHub Exploit DB Packet Storm |
| 257628 | 2.1 | 注意 | アドビシステムズ | - | Adobe ColdFusion における重要な情報を取得される脆弱性 |
CWE-200 CWE-noinfo |
CVE-2010-1294 | 2010-06-2 12:14 | 2010-05-11 | Show | GitHub Exploit DB Packet Storm |
| 257629 | 4.3 | 警告 | アドビシステムズ | - | Adobe ColdFusion の Administrator ページにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2010-1293 | 2010-06-2 12:14 | 2010-05-11 | Show | GitHub Exploit DB Packet Storm |
| 257630 | 4.3 | 警告 | アドビシステムズ | - | Adobe ColdFusion におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3467 | 2010-06-2 12:13 | 2010-05-11 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 8, 2026, 4:09 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 222271 | 7.5 |
HIGH
Network |
imagemagick opensuse debian canonical |
imagemagick leap debian_linux ubuntu_linux |
In ImageMagick before 7.0.8-25, some memory leaks exist in DecodeImage in coders/pcd.c. |
CWE-401
Missing Release of Memory after Effective Lifetime |
CVE-2019-7175 | 2024-11-21 13:47 | 2019-03-8 | Show | GitHub Exploit DB Packet Storm |
| 222272 | 5.5 |
MEDIUM
Local |
avaya | one-x_communicator | Avaya one-X Communicator uses weak cryptographic algorithms in the client authentication component that could allow a local attacker to decrypt sensitive information. Affected versions include all 6.… |
CWE-327
Use of a Broken or Risky Cryptographic Algorithm |
CVE-2019-7006 | 2024-11-21 13:47 | 2019-02-27 | Show | GitHub Exploit DB Packet Storm |
| 222273 | 9.8 |
CRITICAL
Network |
sqlalchemy debian opensuse redhat oracle |
sqlalchemy debian_linux leap backports_sle enterprise_linux_eus enterprise_linux_server_tus enterprise_linux_server_aus enterprise_linux communications_operations_monitor |
SQLAlchemy through 1.2.17 and 1.3.x through 1.3.0b2 allows SQL Injection via the order_by parameter. |
CWE-89
SQL Injection |
CVE-2019-7164 | 2024-11-21 13:47 | 2019-02-20 | Show | GitHub Exploit DB Packet Storm |
| 222274 | 8.1 |
HIGH
Network |
linux debian canonical f5 redhat |
linux_kernel debian_linux ubuntu_linux big-ip_local_traffic_manager big-ip_application_acceleration_manager big-ip_advanced_firewall_manager big-ip_analytics big-ip_access_policy… |
In the Linux kernel before 4.20.8, kvm_ioctl_create_device in virt/kvm/kvm_main.c mishandles reference counting because of a race condition, leading to a use-after-free. |
CWE-362 CWE-416 Race Condition Use After Free |
CVE-2019-6974 | 2024-11-21 13:47 | 2019-02-16 | Show | GitHub Exploit DB Packet Storm |
| 222275 | 7.5 |
HIGH
Network |
djangoproject canonical fedoraproject |
django ubuntu_linux fedora |
Django 1.11.x before 1.11.19, 2.0.x before 2.0.11, and 2.1.x before 2.1.6 allows Uncontrolled Memory Consumption via a malicious attacker-supplied value to the django.utils.numberformat.format() func… |
CWE-770
Allocation of Resources Without Limits or Throttling |
CVE-2019-6975 | 2024-11-21 13:47 | 2019-02-11 | Show | GitHub Exploit DB Packet Storm |
| 222276 | 9.8 |
CRITICAL
Network |
css-tricks | chat2 | An issue was discovered in CSS-TRICKS Chat2 through 2015-05-05. The userid parameter in jumpin.php has a SQL injection vulnerability. |
CWE-89
SQL Injection |
CVE-2019-7316 | 2024-11-21 13:47 | 2019-02-4 | Show | GitHub Exploit DB Packet Storm |
| 222277 | 9.8 |
CRITICAL
Network |
live555 debian |
streaming_media debian_linux |
liblivemedia in Live555 before 2019.02.03 mishandles the termination of an RTSP stream after RTP/RTCP-over-RTSP has been set up, which could lead to a Use-After-Free error that causes the RTSP server… |
CWE-416
Use After Free |
CVE-2019-7314 | 2024-11-21 13:47 | 2019-02-4 | Show | GitHub Exploit DB Packet Storm |
| 222278 | 6.1 |
MEDIUM
Network |
buildbot | buildbot | www/resource.py in Buildbot before 1.8.1 allows CRLF injection in the Location header of /auth/login and /auth/logout via the redirect parameter. This affects other web sites in the same domain. |
CWE-93
CRLF Injection |
CVE-2019-7313 | 2024-11-21 13:47 | 2019-02-3 | Show | GitHub Exploit DB Packet Storm |
| 222279 | 5.3 |
MEDIUM
Network |
primx |
zed zedmail zonecentral |
Limited plaintext disclosure exists in PRIMX Zed Entreprise for Windows before 6.1.2240, Zed Entreprise for Windows (ANSSI qualification submission) before 6.1.2150, Zed Entreprise for Mac before 2.0… |
CWE-200
Information Exposure |
CVE-2019-7312 | 2024-11-21 13:47 | 2019-02-3 | Show | GitHub Exploit DB Packet Storm |
| 222280 | 7.8 |
HIGH
Local |
freedesktop canonical debian fedoraproject redhat |
poppler ubuntu_linux debian_linux fedora enterprise_linux_desktop enterprise_linux_workstation enterprise_linux_server enterprise_linux enterprise_linux_eus enterprise_linu… |
In Poppler 0.73.0, a heap-based buffer over-read (due to an integer signedness error in the XRef::getEntry function in XRef.cc) allows remote attackers to cause a denial of service (application crash… |
CWE-125 CWE-681 Out-of-bounds Read Incorrect Conversion between Numeric Types |
CVE-2019-7310 | 2024-11-21 13:47 | 2019-02-3 | Show | GitHub Exploit DB Packet Storm |