Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 6:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
250981 7.5 危険 Joomla! - Joomla! における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4696 2012-03-27 18:42 2010-11-4 Show GitHub Exploit DB Packet Storm
250982 4.3 警告 XWiki - XWiki Enterprise におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4642 2012-03-27 18:42 2010-12-30 Show GitHub Exploit DB Packet Storm
250983 7.5 危険 XWiki - XWiki Enterprise における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4641 2012-03-27 18:42 2010-12-30 Show GitHub Exploit DB Packet Storm
250984 4.3 警告 XWiki - XWiki Watch におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4640 2012-03-27 18:42 2010-12-30 Show GitHub Exploit DB Packet Storm
250985 7.5 危険 intendance - MySource Matrix の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4639 2012-03-27 18:42 2010-12-30 Show GitHub Exploit DB Packet Storm
250986 6.8 警告 iptechinside - JQuarks4s コンポーネントの submitSurvey 関数における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4638 2012-03-27 18:42 2010-12-30 Show GitHub Exploit DB Packet Storm
250987 4.3 警告 finalcut - WordPress の FeedList プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4637 2012-03-27 18:42 2010-12-30 Show GitHub Exploit DB Packet Storm
250988 7.5 危険 site2nite - Site2Nite Business e-Listings の detail.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4636 2012-03-27 18:42 2010-12-30 Show GitHub Exploit DB Packet Storm
250989 7.5 危険 site2nite - Site2Nite VRBO Listings の detail.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4635 2012-03-27 18:42 2010-12-30 Show GitHub Exploit DB Packet Storm
250990 7.5 危険 sumeffect - digiSHOP の cart.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4633 2012-03-27 18:42 2010-12-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
247931 6.5 MEDIUM
Network
libtiff libtiff TIFFClientOpen in tif_unix.c in LibTIFF 3.8.2 has memory leaks, as demonstrated by bmp2tiff. CWE-772
 Missing Release of Resource after Effective Lifetime
CVE-2018-10801 2024-11-21 12:42 2018-05-8 Show GitHub Exploit DB Packet Storm
247932 6.5 MEDIUM
Network
brave brave A hang issue was discovered in Brave before 0.14.0 (on, for example, Linux). This vulnerability is caused by the mishandling of a long URL formed by window.location+='?\u202a\uFEFF\u202b'; concatenat… CWE-20
 Improper Input Validation 
CVE-2018-10799 2024-11-21 12:42 2018-05-8 Show GitHub Exploit DB Packet Storm
247933 6.5 MEDIUM
Network
brave brave A hang issue was discovered in Brave before 0.14.0 (on, for example, Linux). The vulnerability is caused by mishandling of JavaScript code that triggers the reload of a page continuously with an inte… CWE-20
 Improper Input Validation 
CVE-2018-10798 2024-11-21 12:42 2018-05-8 Show GitHub Exploit DB Packet Storm
247934 7.8 HIGH
Local
2345_security_guard_project 2345_security_guard In 2345 Security Guard 3.7, the driver file (2345NetFirewall.sys) allows local users to cause a denial of service (BSOD) or possibly have unspecified other impact because of not validating input valu… CWE-20
 Improper Input Validation 
CVE-2018-10796 2024-11-21 12:42 2018-05-8 Show GitHub Exploit DB Packet Storm
247935 8.8 HIGH
Network
liferay liferay_portal Liferay 6.2.x and before has an FCKeditor configuration that allows an attacker to upload or transfer files of dangerous types that can be automatically processed within the product's environment via… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2018-10795 2024-11-21 12:42 2018-05-7 Show GitHub Exploit DB Packet Storm
247936 6.5 MEDIUM
Network
exiv2 exiv2 Exiv2::Image::byteSwap2 in image.cpp in Exiv2 0.26 has a heap-based buffer over-read. CWE-125
Out-of-bounds Read
CVE-2018-10780 2024-11-21 12:42 2018-05-7 Show GitHub Exploit DB Packet Storm
247937 6.5 MEDIUM
Network
libtiff
canonical
libtiff
ubuntu_linux
TIFFWriteScanline in tif_write.c in LibTIFF 3.8.2 has a heap-based buffer over-read, as demonstrated by bmp2tiff. CWE-125
Out-of-bounds Read
CVE-2018-10779 2024-11-21 12:42 2018-05-7 Show GitHub Exploit DB Packet Storm
247938 7.8 HIGH
Local
mp3gain mp3gain Read access violation in the III_dequantize_sample function in mpglibDBL/layer3.c in mp3gain through 1.5.2-r2 allows remote attackers to cause a denial of service (application crash) or possibly have… CWE-125
Out-of-bounds Read
CVE-2018-10778 2024-11-21 12:42 2018-05-7 Show GitHub Exploit DB Packet Storm
247939 7.8 HIGH
Local
mp3gain mp3gain Buffer overflow in the WriteMP3GainAPETag function in apetag.c in mp3gain through 1.5.2-r2 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2018-10777 2024-11-21 12:42 2018-05-7 Show GitHub Exploit DB Packet Storm
247940 7.8 HIGH
Local
mp3gain mp3gain The getbits function in mpglibDBL/common.c in mp3gain through 1.5.2-r2 allows remote attackers to cause a denial of service (segmentation fault and application crash) or possibly have unspecified oth… CWE-20
 Improper Input Validation 
CVE-2018-10776 2024-11-21 12:42 2018-05-7 Show GitHub Exploit DB Packet Storm