|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":July 22, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 265341 | 10 | 危険 | オラクル | - | Oracle Database の Listener コンポーネントにおける脆弱性 |
CWE-noinfo
情報不足 |
CVE-2010-0071 | 2010-02-12 12:20 | 2010-01-12 | Show | GitHub Exploit DB Packet Storm |
| 265342 | 5 | 警告 | Pidgin Adium レッドハット |
- | Pidgin および Adium の MSN プロトコルプラグインにおけるディレクトリトラバーサルの脆弱性 |
CWE-22
パス・トラバーサル |
CVE-2010-0013 | 2010-02-10 13:39 | 2010-01-8 | Show | GitHub Exploit DB Packet Storm |
| 265343 | 10 | 危険 | アドビシステムズ レッドハット |
- | Adobe Reader および Acrobat の U3D 実装における任意のコードを実行される脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-3959 | 2010-02-10 13:39 | 2010-01-12 | Show | GitHub Exploit DB Packet Storm |
| 265344 | 10 | 危険 | アドビシステムズ | - | Adobe Reader および Acrobat のダウンロードマネージャーにおける任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2009-3958 | 2010-02-10 13:39 | 2010-01-12 | Show | GitHub Exploit DB Packet Storm |
| 265345 | 5 | 警告 | アドビシステムズ | - | Adobe Reader および Acrobat におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-Other
その他 |
CVE-2009-3957 | 2010-02-10 13:39 | 2010-01-12 | Show | GitHub Exploit DB Packet Storm |
| 265346 | 10 | 危険 | アドビシステムズ レッドハット |
- | Adobe Reader および Acrobat におけるスクリプトインジェクションの脆弱性に関連した脆弱性 |
CWE-16
環境設定 |
CVE-2009-3956 | 2010-02-10 13:39 | 2010-01-12 | Show | GitHub Exploit DB Packet Storm |
| 265347 | 10 | 危険 | アドビシステムズ レッドハット |
- | Adobe Reader および Acrobat における任意のコードを実行される脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2009-3955 | 2010-02-10 13:38 | 2010-01-12 | Show | GitHub Exploit DB Packet Storm |
| 265348 | 10 | 危険 | アドビシステムズ レッドハット |
- | Adobe Reader および Acrobat の 3D 実装における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2009-3954 | 2010-02-10 13:38 | 2010-01-12 | Show | GitHub Exploit DB Packet Storm |
| 265349 | 6.8 | 警告 | サン・マイクロシステムズ | - | Sun Solaris の Trusted Extensions における権限昇格の脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2010-0310 | 2010-02-10 13:38 | 2010-01-11 | Show | GitHub Exploit DB Packet Storm |
| 265350 | 7.1 | 危険 | アップル アドビシステムズ |
- | Windows 上で稼動する Adobe Flash Player および Adobe AIR の Flash Player の ActiveX コントロールにおけるローカルファイルのファイル名を取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2009-3951 | 2010-02-10 13:36 | 2009-12-8 | Show | GitHub Exploit DB Packet Storm |
Update Date:July 22, 2026, 4:02 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 61 | 8.1 |
HIGH
Network |
langflow | langflow | IBM Langflow OSS 1.0.0 through 1.10.1 can allow an authenticated attacker to exploit the SaveToFile component to read and modify another user's uploaded files by specifying absolute paths pointing to… Update |
CWE-639
Authorization Bypass Through User-Controlled Key |
CVE-2026-13445 | 2026-07-21 02:53 | 2026-07-18 | Show | GitHub Exploit DB Packet Storm |
| 62 | 6.5 |
MEDIUM
Network |
microsoft |
windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2012 windows_server_2016 windows_server_2019<… |
Use of uninitialized resource in Windows RDP allows an unauthorized attacker to disclose information over a network. Update |
CWE-908
Use of Uninitialized Resource |
CVE-2026-50376 | 2026-07-21 02:48 | 2026-07-15 | Show | GitHub Exploit DB Packet Storm |
| 63 | 7.0 |
HIGH
Local |
microsoft |
windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2019 windows_server_2022 windows_server_2025 |
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Key Guard allows an authorized attacker to elevate privileges locally. Update |
CWE-362
Race Condition |
CVE-2026-50378 | 2026-07-21 02:48 | 2026-07-15 | Show | GitHub Exploit DB Packet Storm |
| 64 | 9.9 |
CRITICAL
Network |
langflow | langflow | IBM Langflow OSS 1.0.0 through 1.10.0 allows authenticated users to escalate privileges to superuser by directly manipulating the database, execute arbitrary system commands, and achieve full system … Update |
CWE-94
Code Injection |
CVE-2026-8635 | 2026-07-21 02:48 | 2026-07-18 | Show | GitHub Exploit DB Packet Storm |
| 65 | 7.5 |
HIGH
Network |
microsoft |
windows_11_24h2 windows_11_25h2 windows_11_26h1 |
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Media allows an authorized attacker to elevate privileges over a network. Update |
CWE-362 CWE-416 Race Condition Use After Free |
CVE-2026-50379 | 2026-07-21 02:48 | 2026-07-15 | Show | GitHub Exploit DB Packet Storm |
| 66 | 9.6 |
CRITICAL
Network |
microsoft |
windows_10_1607 windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2012 windows_server_2016 windows_server_2019<… |
Heap-based buffer overflow in Windows GDI+ allows an unauthorized attacker to execute code over a network. Update |
CWE-122
Heap-based Buffer Overflow |
CVE-2026-50380 | 2026-07-21 02:48 | 2026-07-15 | Show | GitHub Exploit DB Packet Storm |
| 67 | 5.5 |
MEDIUM
Local |
microsoft |
windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2019 windows_server_2022 windows_server_2025 |
Buffer over-read in Windows Print Spooler Components allows an authorized attacker to disclose information locally. Update |
CWE-126
Buffer Over-read |
CVE-2026-50383 | 2026-07-21 02:47 | 2026-07-15 | Show | GitHub Exploit DB Packet Storm |
| 68 | 9.9 |
CRITICAL
Network |
langflow | langflow | IBM Langflow OSS 1.0.0 through 1.10.0 Langflow could allow an attacker to write arbitrary files to unintended locations due to improper input validation in the APIRequest component. A path traversal … Update |
CWE-22
Path Traversal |
CVE-2026-8859 | 2026-07-21 02:47 | 2026-07-18 | Show | GitHub Exploit DB Packet Storm |
| 69 | 8.8 |
HIGH
Local |
microsoft |
windows_10_1809 windows_10_21h2 windows_10_22h2 windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2019 windows_server_2022 windows_server_2025 |
Untrusted pointer dereference in Windows DirectX allows an authorized attacker to execute code locally. Update |
CWE-822
Untrusted Pointer Dereference |
CVE-2026-50382 | 2026-07-21 02:46 | 2026-07-15 | Show | GitHub Exploit DB Packet Storm |
| 70 | 8.8 |
HIGH
Local |
microsoft |
windows_11_24h2 windows_11_25h2 windows_11_26h1 windows_server_2025 |
Concurrent execution using shared resource with improper synchronization ('race condition') in Windows Runtime allows an authorized attacker to elevate privileges locally. Update |
CWE-362 CWE-416 Race Condition Use After Free |
CVE-2026-50385 | 2026-07-21 02:45 | 2026-07-15 | Show | GitHub Exploit DB Packet Storm |