Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 20, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
3271 6.5 警告
Network
getkirby kirby getkirbyのkirbyにおける複数の脆弱性 CWE-862
CWE-863
CVE-2026-42137 2026-05-20 13:30 2026-05-9 Show GitHub Exploit DB Packet Storm
3272 7.8 重要
Local
Nullsoft Nullsoft Scriptable Install System NullsoftのNullsoft Scriptable Install Systemにおける制御されていない検索パスの要素に関する脆弱性 CWE-427
制御されていない検索パスの要素
CVE-2026-42171 2026-05-20 13:30 2026-04-24 Show GitHub Exploit DB Packet Storm
3273 4.3 警告
Network
getkirby kirby getkirbyのkirbyにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2026-42174 2026-05-20 13:30 2026-05-9 Show GitHub Exploit DB Packet Storm
3274 7.5 重要
Network
OpenBao OpenBao OpenBaoにおける保存または転送前の重要な情報の削除に関する脆弱性 CWE-212
保存または転送前の重要な情報の不適切な削除
CVE-2026-42186 2026-05-20 13:30 2026-05-14 Show GitHub Exploit DB Packet Storm
3275 7.5 重要
Network
Ruby-lang.org Net::IMAP Ruby-lang.orgのNet::IMAPにおけるアルゴリズムの複雑さに関する脆弱性 CWE-407
アルゴリズムの複雑性
CVE-2026-42245 2026-05-20 13:30 2026-05-9 Show GitHub Exploit DB Packet Storm
3276 7.4 重要
Network
Ruby-lang.org Net::IMAP Ruby-lang.orgのNet::IMAPにおける複数の脆弱性 CWE-392
CWE-393
CWE-636
CWE-754
CWE-841
CVE-2026-42246 2026-05-20 13:30 2026-05-9 Show GitHub Exploit DB Packet Storm
3277 9.8 緊急
Network
ollama ollama Ollamaにおけるダウンロードしたコードの完全性検証不備に関する脆弱性 CWE-494
ダウンロードしたコードの完全性検証不備
CVE-2026-42248 2026-05-20 13:30 2026-04-29 Show GitHub Exploit DB Packet Storm
3278 9.8 緊急
Network
ollama ollama Ollamaにおける複数の脆弱性 CWE-22
CWE-494
CVE-2026-42249 2026-05-20 13:30 2026-04-29 Show GitHub Exploit DB Packet Storm
3279 9.8 緊急
Network
Ruby-lang.org Net::IMAP Ruby-lang.orgのNet::IMAPにおける複数の脆弱性 CWE-77
CWE-93
CVE-2026-42257 2026-05-20 13:30 2026-05-9 Show GitHub Exploit DB Packet Storm
3280 9.8 緊急
Network
Ruby-lang.org Net::IMAP Ruby-lang.orgのNet::IMAPにおける複数の脆弱性 CWE-77
CWE-93
CVE-2026-42258 2026-05-20 13:30 2026-05-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
311741 - microsoft windows_xp
windows_server_2003
windows_2003_server
The OpenType Font (OTF) format driver in Microsoft Windows XP SP2 and SP3 and Server 2003 SP2 does not properly perform memory allocation during font parsing, which allows local users to gain privile… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-2740 2024-11-21 10:17 2010-10-14 Show GitHub Exploit DB Packet Storm
311742 - microsoft windows_server_2008
windows_xp
windows_7
windows_vista
windows_server_2003
windows_2003_server
The kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP1 and SP2, Windows Server 2008 Gold, SP2, and R2, and Windows 7 do not properly manage a window c… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-2744 2024-11-21 10:17 2010-10-14 Show GitHub Exploit DB Packet Storm
311743 - apache
redhat
qpid
enterprise_mrg
sys/ssl/SslSocket.cpp in qpidd in Apache Qpid, as used in Red Hat Enterprise MRG before 1.2.2 and other products, when SSL is enabled, allows remote attackers to cause a denial of service (daemon out… NVD-CWE-Other
CVE-2010-3083 2024-11-21 10:17 2010-10-13 Show GitHub Exploit DB Packet Storm
311744 - squid-cache squid dns_internal.cc in Squid 3.1.6, when IPv6 DNS resolution is not enabled, accesses an invalid socket during an IPv4 TCP DNS query, which allows remote attackers to cause a denial of service (assertion… NVD-CWE-Other
CVE-2010-2951 2024-11-21 10:17 2010-10-13 Show GitHub Exploit DB Packet Storm
311745 - linux linux_kernel arch/x86/hvm/vmx/vmcs.c in the virtual-machine control structure (VMCS) implementation in the Linux kernel 2.6.18 on Red Hat Enterprise Linux (RHEL) 5, when an Intel platform without Extended Page Ta… CWE-399
 Resource Management Errors
CVE-2010-2938 2024-11-21 10:17 2010-10-9 Show GitHub Exploit DB Packet Storm
311746 - cmsmadesimple cms_made_simple Directory traversal vulnerability in lib/translation.functions.php in CMS Made Simple before 1.8.1 allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the defau… CWE-22
Path Traversal
CVE-2010-2797 2024-11-21 10:17 2010-10-9 Show GitHub Exploit DB Packet Storm
311747 - adobe acrobat
acrobat_reader
Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allow attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vecto… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2010-2890 2024-11-21 10:17 2010-10-7 Show GitHub Exploit DB Packet Storm
311748 - adobe acrobat
acrobat_reader
Unspecified vulnerability in Adobe Reader and Acrobat 9.x before 9.4, and 8.x before 8.2.5 on Windows and Mac OS X, allows attackers to execute arbitrary code via a crafted font, a different vulnerab… CWE-20
 Improper Input Validation 
CVE-2010-2889 2024-11-21 10:17 2010-10-7 Show GitHub Exploit DB Packet Storm
311749 - adobe acrobat
acrobat_reader
Multiple unspecified vulnerabilities in an ActiveX control in Adobe Reader and Acrobat 8.x before 8.2.5 and 9.x before 9.4 on Windows allow attackers to execute arbitrary code via unknown vectors. CWE-20
 Improper Input Validation 
CVE-2010-2888 2024-11-21 10:17 2010-10-7 Show GitHub Exploit DB Packet Storm
311750 - adobe acrobat_reader
acrobat
Multiple unspecified vulnerabilities in Adobe Reader and Acrobat 9.x before 9.4 on Linux allow attackers to gain privileges via unknown vectors. NVD-CWE-noinfo
CVE-2010-2887 2024-11-21 10:17 2010-10-7 Show GitHub Exploit DB Packet Storm