Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251041 4.3 警告 SolarWinds - SolarWinds Orion NPM におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4828 2012-03-27 18:42 2011-08-24 Show GitHub Exploit DB Packet Storm
251042 4.3 警告 Snitz - Snitz Forums の members.asp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4827 2012-03-27 18:42 2011-08-24 Show GitHub Exploit DB Packet Storm
251043 7.5 危険 Snitz - Snitz Forums の members.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4826 2012-03-27 18:42 2011-08-24 Show GitHub Exploit DB Packet Storm
251044 4.3 警告 WordPress.org
pleer
- WordPress 用の Twitter Feed プラグイン の magpie_debug.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4825 2012-03-27 18:42 2011-08-24 Show GitHub Exploit DB Packet Storm
251045 7.5 危険 bestsoftinc - BSI Advance Hotel Booking System における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4814 2012-03-27 18:42 2011-07-8 Show GitHub Exploit DB Packet Storm
251046 3.5 注意 Drupal
scheepers de bruin
- Drupal 用の Category Tokens モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4813 2012-03-27 18:42 2011-07-8 Show GitHub Exploit DB Packet Storm
251047 6.5 警告 6kbbs - 6kbbs における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4812 2012-03-27 18:42 2011-07-8 Show GitHub Exploit DB Packet Storm
251048 4.3 警告 6kbbs - 6kbbs の ajaxmember.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4811 2012-03-27 18:42 2011-07-8 Show GitHub Exploit DB Packet Storm
251049 7.5 危険 awcm - AWCM における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-4810 2012-03-27 18:42 2011-07-8 Show GitHub Exploit DB Packet Storm
251050 7.5 危険 liberologico - DBSite の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4809 2012-03-27 18:42 2011-07-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
248501 6.5 MEDIUM
Network
taglib
debian
taglib
debian_linux
The TagLib::Ogg::FLAC::File::scan function in oggflacfile.cpp in TagLib 1.11.1 allows remote attackers to cause information disclosure (heap-based buffer over-read) via a crafted audio file. CWE-125
Out-of-bounds Read
CVE-2018-11439 2024-11-21 12:43 2018-05-30 Show GitHub Exploit DB Packet Storm
248502 8.8 HIGH
Network
libmobi_project libmobi The mobi_decompress_lz77 function in compression.c in Libmobi 0.3 allows remote attackers to cause remote code execution (heap-based buffer overflow) via a crafted mobi file. CWE-787
 Out-of-bounds Write
CVE-2018-11438 2024-11-21 12:43 2018-05-30 Show GitHub Exploit DB Packet Storm
248503 6.5 MEDIUM
Network
libmobi_project libmobi The mobi_reconstruct_parts function in parse_rawml.c in Libmobi 0.3 allows remote attackers to cause information disclosure (read access violation) via a crafted mobi file. CWE-200
Information Exposure
CVE-2018-11437 2024-11-21 12:43 2018-05-30 Show GitHub Exploit DB Packet Storm
248504 6.5 MEDIUM
Network
libmobi_project libmobi The buffer_addraw function in buffer.c in Libmobi 0.3 allows remote attackers to cause information disclosure (heap-based buffer over-read) via a crafted mobi file. CWE-125
Out-of-bounds Read
CVE-2018-11436 2024-11-21 12:43 2018-05-30 Show GitHub Exploit DB Packet Storm
248505 8.1 HIGH
Network
hcltech legacy_ivr_firmware A vulnerability allows a phreaking attack on HCL legacy IVR systems that do not use VoIP. These IVR systems rely on various frequencies of audio signals; based on the frequency, certain commands and … CWE-20
 Improper Input Validation 
CVE-2018-11518 2024-11-21 12:43 2018-05-31 Show GitHub Exploit DB Packet Storm
248506 6.5 MEDIUM
Network
libmobi_project libmobi The mobi_decompress_huffman_internal function in compression.c in Libmobi 0.3 allows remote attackers to cause information disclosure (read access violation) via a crafted mobi file. CWE-200
Information Exposure
CVE-2018-11435 2024-11-21 12:43 2018-05-30 Show GitHub Exploit DB Packet Storm
248507 6.5 MEDIUM
Network
libmobi_project libmobi The buffer_fill64 function in compression.c in Libmobi 0.3 allows remote attackers to cause information disclosure (heap-based buffer over-read) via a crafted mobi file. CWE-125
Out-of-bounds Read
CVE-2018-11434 2024-11-21 12:43 2018-05-30 Show GitHub Exploit DB Packet Storm
248508 6.5 MEDIUM
Network
libmobi_project libmobi The mobi_get_kf8boundary_seqnumber function in util.c in Libmobi 0.3 allows remote attackers to cause information disclosure (heap-based buffer over-read) via a crafted mobi file. CWE-125
Out-of-bounds Read
CVE-2018-11433 2024-11-21 12:43 2018-05-30 Show GitHub Exploit DB Packet Storm
248509 6.5 MEDIUM
Network
libmobi_project libmobi The mobi_parse_mobiheader function in read.c in Libmobi 0.3 allows remote attackers to cause information disclosure (heap-based buffer over-read) via a crafted mobi file. CWE-125
Out-of-bounds Read
CVE-2018-11432 2024-11-21 12:43 2018-05-30 Show GitHub Exploit DB Packet Storm
248510 5.4 MEDIUM
Network
domainmod domainmod DomainMod 4.10.0 has Stored XSS in the "/settings/profile/index.php" new_last_name parameter. CWE-79
Cross-site Scripting
CVE-2018-11559 2024-11-21 12:43 2018-05-30 Show GitHub Exploit DB Packet Storm