Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
250681 10 危険 SUSE
centre for speech technology research
- Gentoo Linux などの CSTR Festival のディフォルト設定における任意のコマンドを実行される脆弱性 CWE-16
環境設定
CVE-2007-4074 2012-06-26 15:54 2007-07-30 Show GitHub Exploit DB Packet Storm
250682 9.3 危険 clever components - Clever Internet ActiveX Suite の CLINETSUITEX6.OCX の clInetSuiteX6.clWebDav ActiveX コントロールにおける絶対パストラバーサルの脆弱性 - CVE-2007-4067 2012-06-26 15:54 2007-07-30 Show GitHub Exploit DB Packet Storm
250683 4.3 警告 Drupal - Drupal におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4064 2012-06-26 15:54 2007-07-26 Show GitHub Exploit DB Packet Storm
250684 4.3 警告 Drupal - Drupal におけるクロスサイトリクエストフォージェリの脆弱性 - CVE-2007-4063 2012-06-26 15:54 2007-07-26 Show GitHub Exploit DB Packet Storm
250685 9 危険 frank yaul - Frank Yaul corehttp の http.c の HttpSprockMake 関数におけるバッファオーバーフローの脆弱性 - CVE-2007-4060 2012-06-26 15:54 2007-07-30 Show GitHub Exploit DB Packet Storm
250686 4.3 警告 DELL EMC (旧 EMC Corporation) - EMC VMware の vielib.dll の特定の ActiveX コントロール における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-4058 2012-06-26 15:54 2007-07-30 Show GitHub Exploit DB Packet Storm
250687 7.5 危険 adult directory - Prozilla Adult Directory の Directory.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2007-4056 2012-06-26 15:54 2007-07-30 Show GitHub Exploit DB Packet Storm
250688 7.5 危険 8pixel - SimpleBlog の comments_get.asp における SQL インジェクションの脆弱性 - CVE-2007-4055 2012-06-26 15:54 2007-07-30 Show GitHub Exploit DB Packet Storm
250689 10 危険 adempiere - ADempiere Bazaar の WebUI におけるシステムレベルのウインドウにアクセスされる脆弱性 - CVE-2007-4050 2012-06-26 15:54 2007-07-30 Show GitHub Exploit DB Packet Storm
250690 6.4 警告 geoblog - geoBlog における任意のブログを削除される脆弱性 - CVE-2007-4047 2012-06-26 15:54 2007-07-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
247661 5.5 MEDIUM
Local
artifex
debian
ghostscript
debian_linux
In Artifex Ghostscript before 9.26, a carefully crafted PDF file can trigger an extremely long running computation when parsing the file. CWE-20
 Improper Input Validation 
CVE-2018-19478 2024-11-21 12:57 2019-01-3 Show GitHub Exploit DB Packet Storm
247662 6.5 MEDIUM
Network
sdl web_content_manager The SaveUserSettings service in Content Manager in SDL Web 8.5.0 has an XXE Vulnerability that allows reading sensitive files from the system. CWE-611
XXE
CVE-2018-19371 2024-11-21 12:57 2019-01-3 Show GitHub Exploit DB Packet Storm
247663 9.8 CRITICAL
Network
fasterxml
debian
oracle
redhat
jackson-databind
debian_linux
primavera_unifier
primavera_p6_enterprise_project_portfolio_management
webcenter_portal
business_process_management_suite
retail_workforce_management_s…
FasterXML jackson-databind 2.x before 2.9.8 might allow attackers to have unspecified impact by leveraging failure to block the jboss-common-core class from polymorphic deserialization. CWE-502
 Deserialization of Untrusted Data
CVE-2018-19362 2024-11-21 12:57 2019-01-3 Show GitHub Exploit DB Packet Storm
247664 9.8 CRITICAL
Network
fasterxml
debian
oracle
redhat
jackson-databind
debian_linux
primavera_unifier
primavera_p6_enterprise_project_portfolio_management
webcenter_portal
business_process_management_suite
retail_workforce_management_s…
FasterXML jackson-databind 2.x before 2.9.8 might allow attackers to have unspecified impact by leveraging failure to block the openjpa class from polymorphic deserialization. CWE-502
 Deserialization of Untrusted Data
CVE-2018-19361 2024-11-21 12:57 2019-01-3 Show GitHub Exploit DB Packet Storm
247665 9.8 CRITICAL
Network
fasterxml
debian
oracle
redhat
jackson-databind
debian_linux
primavera_unifier
primavera_p6_enterprise_project_portfolio_management
webcenter_portal
business_process_management_suite
retail_workforce_management_s…
FasterXML jackson-databind 2.x before 2.9.8 might allow attackers to have unspecified impact by leveraging failure to block the axis2-transport-jms class from polymorphic deserialization. CWE-502
 Deserialization of Untrusted Data
CVE-2018-19360 2024-11-21 12:57 2019-01-3 Show GitHub Exploit DB Packet Storm
247666 8.8 HIGH
Network
engelsystem engelsystem Engelsystem before commit hash 2e28336 allows CSRF. CWE-352
 Origin Validation Error
CVE-2018-19182 2024-11-21 12:57 2018-12-27 Show GitHub Exploit DB Packet Storm
247667 9.1 CRITICAL
Network
epson epson_workforce_wf-2861_firmware The web service on Epson WorkForce WF-2861 10.48 LQ22I3(Recovery-mode), WF-2861 10.51.LQ20I6, and WF-2861 10.52.LQ17IA devices allows remote attackers to upload a firmware file and reset the printer … CWE-306
Missing Authentication for Critical Function
CVE-2018-19248 2024-11-21 12:57 2018-12-25 Show GitHub Exploit DB Packet Storm
247668 7.5 HIGH
Network
epson epson_workforce_wf-2861_firmware The web service on Epson WorkForce WF-2861 10.48 LQ22I3(Recovery-mode), WF-2861 10.51.LQ20I6, and WF-2861 10.52.LQ17IA devices allows remote attackers to cause a denial of service via a FIRMWAREUPDAT… NVD-CWE-noinfo
CVE-2018-19232 2024-11-21 12:57 2018-12-25 Show GitHub Exploit DB Packet Storm
247669 7.8 HIGH
Local
xmplay xmplay XMPlay 3.8.3 allows remote attackers to execute arbitrary code or cause a denial of service (stack-based buffer overflow) via a crafted http:// URL in a .m3u file. CWE-787
 Out-of-bounds Write
CVE-2018-19357 2024-11-21 12:57 2018-12-24 Show GitHub Exploit DB Packet Storm
247670 9.8 CRITICAL
Network
gigabyte oc_guru_ii
gigabyte_app_center
aorus_graphics_engine
xtreme_gaming_engine
The GDrv low-level driver in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before 1.26, and OC GURU II v2.08 exposes functionality to read and writ… NVD-CWE-noinfo
CVE-2018-19323 2024-11-21 12:57 2018-12-22 Show GitHub Exploit DB Packet Storm