Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 22, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
210861 4.3 警告 WordPress.org - WordPress の wp-includes/default-widgets.php の WP_Nav_Menu_Widget クラスの form 関数におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-5732 2015-11-10 15:58 2015-08-4 Show GitHub Exploit DB Packet Storm
210862 6.8 警告 WordPress.org - WordPress の wp-admin/post.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2015-5731 2015-11-10 15:58 2015-08-4 Show GitHub Exploit DB Packet Storm
210863 5 警告 WordPress.org - WordPress の wp-includes/class-wp-customize-widgets.php 内の sanitize_widget_instance 関数におけるタイミングサイドチャネル攻撃を実行される脆弱性 CWE-200
情報漏えい
CVE-2015-5730 2015-11-10 15:58 2015-08-4 Show GitHub Exploit DB Packet Storm
210864 7.5 危険 WordPress.org - WordPress の wp-includes/post.php 内の wp_untrash_post_comments 関数における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-2213 2015-11-10 15:58 2015-08-4 Show GitHub Exploit DB Packet Storm
210865 10 危険 Debian
Fabrice Bellard
Novell
Fedora Project
- QEMU の hw/ide/core.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-6855 2015-11-10 15:43 2015-09-9 Show GitHub Exploit DB Packet Storm
210866 7.2 危険 Fabrice Bellard
Fedora Project
レッドハット
- QEMU の VNC ディスプレイドライバの vnc_refresh_server_surface 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-5225 2015-11-10 15:43 2015-08-21 Show GitHub Exploit DB Packet Storm
210867 7.5 危険 Login Disable project - Drupal 用 Login Disable モジュールにおけるログアウト保護メカニズムを回避される脆弱性 CWE-Other
その他
CVE-2015-8082 2015-11-10 15:41 2015-10-12 Show GitHub Exploit DB Packet Storm
210868 5 警告 Field as Block project - Drupal 用 Field as Block モジュールにおける重要なフィールド情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-8081 2015-11-10 15:41 2015-10-28 Show GitHub Exploit DB Packet Storm
210869 5 警告 Huawei - Huawei HG532 シリーズルータにディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2015-7254 2015-11-10 15:39 2015-11-6 Show GitHub Exploit DB Packet Storm
210870 4 警告 Squid-cache.org
Novell
- Squid におけるアクセスを保持される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9749 2015-11-10 14:58 2014-06-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
344761 - graphicsmagick
imagemagick
graphicsmagick
imagemagick
The XWD Decoder in ImageMagick before 6.2.2.3, and GraphicsMagick before 1.1.6-r1, allows remote attackers to cause a denial of service (infinite loop) via an image with a zero color mask. NVD-CWE-Other
CVE-2005-1739 2018-10-4 06:30 2005-05-24 Show GitHub Exploit DB Packet Storm
344762 - linux linux_kernel syscall in the Linux kernel 2.6.8.1 and 2.6.10 for the AMD64 platform, when running in 32-bit compatibility mode, allows local users to cause a denial of service (kernel hang) via crafted arguments. NVD-CWE-Other
CVE-2005-1765 2018-10-4 06:30 2005-05-31 Show GitHub Exploit DB Packet Storm
344763 - mozilla thunderbird run-mozilla.sh in Thunderbird, with debugging enabled, allows local users to create or overwrite arbitrary files via a symlink attack on temporary files. NVD-CWE-Other
CVE-2005-2353 2018-10-4 06:30 2005-08-5 Show GitHub Exploit DB Packet Storm
344764 - libtiff libtiff libtiff up to 3.7.0 allows remote attackers to cause a denial of service (application crash) via a TIFF image header with a zero "YCbCr subsampling" value, which causes a divide-by-zero error in (1) … NVD-CWE-Other
CVE-2005-2452 2018-10-4 06:30 2005-08-3 Show GitHub Exploit DB Packet Storm
344765 - linux linux_kernel vlan_dev.c in the VLAN code for Linux kernel 2.6.8 allows remote attackers to cause a denial of service (kernel oops from null dereference) via certain UDP packets that lead to a function call with t… CWE-399
 Resource Management Errors
CVE-2005-2548 2018-10-4 06:30 2005-08-12 Show GitHub Exploit DB Packet Storm
344766 - gnome evolution Multiple format string vulnerabilities in Evolution 1.5 through 2.3.6.1 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via (1) full vCard data, (2) co… NVD-CWE-Other
CVE-2005-2549 2018-10-4 06:30 2005-08-12 Show GitHub Exploit DB Packet Storm
344767 - ubuntu ubuntu_linux SSLeay.pm in libnet-ssleay-perl before 1.25 uses the /tmp/entropy file for entropy if a source is not set in the EGD_PATH variable, which allows local users to reduce the cryptographic strength of ce… NVD-CWE-Other
CVE-2005-0106 2018-10-4 06:29 2005-05-3 Show GitHub Exploit DB Packet Storm
344768 - d-bus d-bus D-BUS (dbus) before 0.22 does not properly restrict access to a socket, if the socket address is known, which allows local users to listen or send arbitrary messages on another user's per-user sessio… NVD-CWE-Other
CVE-2005-0201 2018-10-4 06:29 2005-06-29 Show GitHub Exploit DB Packet Storm
344769 - redhat
suse
trustix
ubuntu
enterprise_linux
suse_linux
secure_linux
ubuntu_linux
Unknown vulnerability in the PPP driver for the Linux kernel 2.6.8.1 allows remote attackers to cause a denial of service (kernel crash) via a pppd client. NVD-CWE-Other
CVE-2005-0384 2018-10-4 06:29 2005-03-15 Show GitHub Exploit DB Packet Storm
344770 - linux linux_kernel The ext2_make_empty function call in the Linux kernel before 2.6.11.6 does not properly initialize memory when creating a block for a new directory entry, which allows local users to obtain potential… NVD-CWE-Other
CVE-2005-0400 2018-10-4 06:29 2005-05-2 Show GitHub Exploit DB Packet Storm