|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 20, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 258461 | 7.5 | 危険 | アップル サイバートラスト株式会社 ターボリナックス サン・マイクロシステムズ レッドハット |
- | FreeType2 におけるヒープベースのバッファオーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2008-1806 | 2010-10-19 15:15 | 2008-06-17 | Show | GitHub Exploit DB Packet Storm |
| 258462 | 2.6 | 注意 | The PHP Group サイバートラスト株式会社 ターボリナックス レッドハット |
- | PHP におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2008-5814 | 2010-10-19 15:14 | 2008-12-19 | Show | GitHub Exploit DB Packet Storm |
| 258463 | 9.3 | 危険 | - | Google Chrome の Gears プラグインにおける任意のコードを実行される脆弱性 |
CWE-Other
その他 |
CVE-2009-3932 | 2010-10-19 15:02 | 2009-11-5 | Show | GitHub Exploit DB Packet Storm | |
| 258464 | 4.3 | 警告 | - | Google Chrome の src/webkit/glue/webframeloaderclient_impl.cc におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2009-3934 | 2010-10-19 15:02 | 2009-11-5 | Show | GitHub Exploit DB Packet Storm | |
| 258465 | 9.3 | 危険 | - | Google Chrome のブラックリストにおける危険なファイルのダウンロードを強制される脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2009-3931 | 2010-10-19 15:01 | 2009-11-5 | Show | GitHub Exploit DB Packet Storm | |
| 258466 | 7.5 | 危険 | - | Google Chrome における X.509 証明書の処理に関する任意の SSL サーバになりすまされる脆弱性 |
CWE-310
暗号の問題 |
CVE-2009-3456 | 2010-10-19 15:01 | 2009-09-29 | Show | GitHub Exploit DB Packet Storm | |
| 258467 | 5 | 警告 | - | Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2008-7246 | 2010-10-19 15:01 | 2008-09-8 | Show | GitHub Exploit DB Packet Storm | |
| 258468 | 5 | 警告 | - | Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-3268 | 2010-10-19 15:00 | 2009-02-3 | Show | GitHub Exploit DB Packet Storm | |
| 258469 | 4.3 | 警告 | - | Google Chrome の getSVGDocument メソッドにおけるクロスサイトスクリプティングの脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2009-3264 | 2010-10-19 15:00 | 2009-09-15 | Show | GitHub Exploit DB Packet Storm | |
| 258470 | 4.3 | 警告 | - | Google Chrome におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2009-3263 | 2010-10-19 14:59 | 2009-09-15 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 21, 2026, 4:01 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 198721 | 7.2 |
HIGH
Network |
contact_form_submissions_project | contact_form_submissions | Unvalidated input in the Contact Form Submissions WordPress plugin before 1.7.1, could lead to SQL injection in the wpcf7_contact_form GET parameter when submitting a filter request as a high privile… |
CWE-89
SQL Injection |
CVE-2021-24125 | 2024-11-21 14:52 | 2021-03-19 | Show | GitHub Exploit DB Packet Storm |
| 198722 | 6.1 |
MEDIUM
Network |
terryl | wp_shieldon | Unvalidated input and lack of output encoding in the WP Shieldon WordPress plugin, version 1.6.3 and below, leads to Unauthenticated Reflected Cross-Site Scripting (XSS) when the CAPTCHA page is show… |
CWE-79
Cross-site Scripting |
CVE-2021-24124 | 2024-11-21 14:52 | 2021-03-19 | Show | GitHub Exploit DB Packet Storm |
| 198723 | 7.2 |
HIGH
Network |
blubrry | powerpress | Arbitrary file upload in the PowerPress WordPress plugin, versions before 8.3.8, did not verify some of the uploaded feed images (such as the ones from Podcast Artwork section), allowing high privile… |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2021-24123 | 2024-11-21 14:52 | 2021-03-19 | Show | GitHub Exploit DB Packet Storm |
| 198724 | 7.5 |
HIGH
Network |
proxygen mvfst |
A packet of death scenario is possible in mvfst via a specially crafted message during a QUIC session, which causes a crash via a failed assertion. Per QUIC specification, this particular message sho… |
CWE-617
Reachable Assertion |
CVE-2021-24029 | 2024-11-21 14:52 | 2021-03-16 | Show | GitHub Exploit DB Packet Storm | |
| 198725 | 7.8 |
HIGH
Local |
microsoft | high_efficiency_video_coding | HEVC Video Extensions Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24110 | 2024-11-21 14:52 | 2021-03-12 | Show | GitHub Exploit DB Packet Storm |
| 198726 | 7.8 |
HIGH
Local |
microsoft |
office 365_apps |
Microsoft Office Remote Code Execution Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24108 | 2024-11-21 14:52 | 2021-03-12 | Show | GitHub Exploit DB Packet Storm |
| 198727 | 5.5 |
MEDIUM
Local |
microsoft |
windows_server_2008 windows_server_2012 windows_10 windows_8.1 windows_server_2016 windows_7 windows_rt_8.1 windows_server_2019 |
Windows Event Tracing Information Disclosure Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24107 | 2024-11-21 14:52 | 2021-03-12 | Show | GitHub Exploit DB Packet Storm |
| 198728 | 4.6 |
MEDIUM
Local |
microsoft |
sharepoint_foundation sharepoint_enterprise_server sharepoint_server |
Microsoft SharePoint Server Spoofing Vulnerability |
NVD-CWE-noinfo
|
CVE-2021-24104 | 2024-11-21 14:52 | 2021-03-12 | Show | GitHub Exploit DB Packet Storm |
| 198729 | 7.0 |
HIGH
Local |
microsoft |
windows_10 windows_server_2019 windows_server_2016 |
DirectX Elevation of Privilege Vulnerability |
CWE-269
Improper Privilege Management |
CVE-2021-24095 | 2024-11-21 14:52 | 2021-03-12 | Show | GitHub Exploit DB Packet Storm |
| 198730 | 7.8 |
HIGH
Local |
microsoft |
windows_server_2016 windows_10 |
Windows Error Reporting Elevation of Privilege Vulnerability |
CWE-269
Improper Privilege Management |
CVE-2021-24090 | 2024-11-21 14:52 | 2021-03-12 | Show | GitHub Exploit DB Packet Storm |