Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
260401 5 警告 VMware - 複数の VMware 製品の仮想ネットワークスタックにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-1138 2010-05-7 17:25 2010-04-9 Show GitHub Exploit DB Packet Storm
260402 8.5 危険 VMware - 複数の VMware 製品の VMware Tools における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1142 2010-05-7 17:24 2010-04-9 Show GitHub Exploit DB Packet Storm
260403 8.5 危険 VMware - 複数の VMware 製品の VMware Tools における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1141 2010-05-7 17:24 2010-04-9 Show GitHub Exploit DB Packet Storm
260404 5 警告 アップル
サイバートラスト株式会社
レッドハット
ターボリナックス
CUPS
- CUPS の ippReadIO 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-0949 2010-05-7 16:55 2009-06-3 Show GitHub Exploit DB Packet Storm
260405 6.8 警告 レッドハット
サイバートラスト株式会社
ターボリナックス
CUPS
- CUPS の TIFF イメージデコーディングルーチンにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-0163 2010-05-7 16:51 2009-04-16 Show GitHub Exploit DB Packet Storm
260406 4.6 警告 GNU Project
サイバートラスト株式会社
レッドハット
- GNU cpio における大きなサイズのファイル処理によるバッファーオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2005-4268 2010-05-7 16:51 2005-12-15 Show GitHub Exploit DB Packet Storm
260407 4.3 警告 日本電気
Apache Software Foundation
- Apache Xerces C++ におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2009-1885 2010-05-6 13:47 2009-08-6 Show GitHub Exploit DB Packet Storm
260408 6.4 警告 アップル
ターボリナックス
CUPS
- CUPS における DNS リバインド攻撃を誘導される脆弱性 CWE-20
不適切な入力確認
CVE-2009-0164 2010-05-6 13:46 2009-04-24 Show GitHub Exploit DB Packet Storm
260409 5 警告 freedesktop.org
日本電気
サイバートラスト株式会社
レッドハット
- JBIG2 デコーダにおける SplashBitmap に関連する整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-1188 2010-05-6 13:46 2009-04-23 Show GitHub Exploit DB Packet Storm
260410 5 警告 freedesktop.org
日本電気
サイバートラスト株式会社
レッドハット
- JBIG2 デコーダにおける CairoOutputDev に関連する整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-1187 2010-05-6 13:46 2009-04-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 28, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197861 6.1 MEDIUM
Network
ougc_feedback_project ougc_feedback The OUGC Feedback plugin before 1.8.23 for MyBB allows XSS via the comment field of feedback during an edit operation. CWE-79
Cross-site Scripting
CVE-2021-28115 2024-11-21 14:59 2021-03-10 Show GitHub Exploit DB Packet Storm
197862 7.8 HIGH
Local
deutschepost mailoptimizer Deutsche Post Mailoptimizer 4.3 before 2020-11-09 allows Directory Traversal via a crafted ZIP archive to the Upload feature or the MO Connect component. This can lead to remote code execution. CWE-22
Path Traversal
CVE-2021-28042 2024-11-21 14:59 2021-03-6 Show GitHub Exploit DB Packet Storm
197863 7.1 HIGH
Network
openbsd
fedoraproject
netapp
oracle
openssh
fedora
cloud_backup
solidfire
hci_management_node
hci_compute_node_firmware
hci_storage_node_firmware
zfs_storage_appliance
communications_offline_mediation_controller
ssh-agent in OpenSSH before 8.5 has a double free that may be relevant in a few less-common scenarios, such as unconstrained agent-socket access on a legacy operating system, or the forwarding of an … CWE-415
 Double Free
CVE-2021-28041 2024-11-21 14:59 2021-03-6 Show GitHub Exploit DB Packet Storm
197864 7.5 HIGH
Network
ossec ossec An issue was discovered in OSSEC 3.6.0. An uncontrolled recursion vulnerability in os_xml.c occurs when a large number of opening and closing XML tags is used. Because recursion is used in _ReadElem … CWE-674
 Uncontrolled Recursion
CVE-2021-28040 2024-11-21 14:59 2021-03-6 Show GitHub Exploit DB Packet Storm
197865 6.5 MEDIUM
Local
netapp cloud_backup
solidfire_baseboard_management_controller_firmware
An issue was discovered in the Linux kernel 5.9.x through 5.11.3, as used with Xen. In some less-common configurations, an x86 PV guest OS user can crash a Dom0 or driver domain via a large amount of… CWE-131
Incorrect Calculation of Buffer Size
CVE-2021-28039 2024-11-21 14:59 2021-03-6 Show GitHub Exploit DB Packet Storm
197866 6.5 MEDIUM
Local
linux
debian
netapp
linux_kernel
debian_linux
cloud_backup
solidfire_baseboard_management_controller_firmware
An issue was discovered in the Linux kernel through 5.11.3, as used with Xen PV. A certain part of the netback driver lacks necessary treatment of errors such as failed memory allocations (as a resul… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2021-28038 2024-11-21 14:59 2021-03-6 Show GitHub Exploit DB Packet Storm
197867 9.8 CRITICAL
Network
internment_project internment An issue was discovered in the internment crate before 0.4.2 for Rust. There is a data race that can cause memory corruption because of the unconditional implementation of Sync for Intern<T>. NVD-CWE-noinfo
CVE-2021-28037 2024-11-21 14:59 2021-03-5 Show GitHub Exploit DB Packet Storm
197868 7.5 HIGH
Network
quinn_project quinn An issue was discovered in the quinn crate before 0.7.0 for Rust. It may have invalid memory access for certain versions of the standard library because it relies on a direct cast of std::net::Socket… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2021-28036 2024-11-21 14:59 2021-03-5 Show GitHub Exploit DB Packet Storm
197869 9.8 CRITICAL
Network
stack_dst_project stack_dst An issue was discovered in the stack_dst crate before 0.6.1 for Rust. Because of the push_inner behavior, a drop of uninitialized memory can occur upon a val.clone() panic. CWE-908
 Use of Uninitialized Resource
CVE-2021-28035 2024-11-21 14:59 2021-03-5 Show GitHub Exploit DB Packet Storm
197870 9.8 CRITICAL
Network
stack_dst_project stack_dst An issue was discovered in the stack_dst crate before 0.6.1 for Rust. Because of the push_inner behavior, a double free can occur upon a val.clone() panic. CWE-415
 Double Free
CVE-2021-28034 2024-11-21 14:59 2021-03-5 Show GitHub Exploit DB Packet Storm