Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251261 7.5 危険 crie sue - Crie seu PHPLojaFacil における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2615 2012-06-26 15:46 2007-05-11 Show GitHub Exploit DB Packet Storm
251262 6.8 警告 cgx - CGX における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2611 2012-06-26 15:46 2007-05-11 Show GitHub Exploit DB Packet Storm
251263 7.5 危険 gnuedu - gnuedu における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-2609 2012-06-26 15:46 2007-05-11 Show GitHub Exploit DB Packet Storm
251264 7.8 危険 Firebird Project - Firebird におけるバッファオーバーフローの脆弱性 - CVE-2007-2606 2012-06-26 15:46 2007-05-11 Show GitHub Exploit DB Packet Storm
251265 7.1 危険 brujula toolbar - Brujula Toolbar の BRUJULA4.NET.DLL におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2605 2012-06-26 15:46 2007-05-11 Show GitHub Exploit DB Packet Storm
251266 7.8 危険 brew city software - FlexLabel ActiveX コントロールにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2604 2012-06-26 15:46 2007-05-11 Show GitHub Exploit DB Packet Storm
251267 7.8 危険 audio cd tools - Audio CD Ripper OCX ActiveX コントロールの Init 関数におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-2603 2012-06-26 15:46 2007-05-11 Show GitHub Exploit DB Packet Storm
251268 9.3 危険 divx city - fix.dll の GDivX Zenith Player AviFixer クラスの ActiveX コントロールにおけるバッファオーバーフローの脆弱性 - CVE-2007-2601 2012-06-26 15:46 2007-05-11 Show GitHub Exploit DB Packet Storm
251269 7.5 危険 agner fog - aForum の common/func.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-2596 2012-06-26 15:46 2007-05-11 Show GitHub Exploit DB Packet Storm
251270 9.3 危険 BarCodeWiz, Inc. - BarCodeWiz ActiveX コントロールおよび BarcodeWiz.dll の Verify 関数におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-2585 2012-06-26 15:46 2007-05-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
254001 7.5 HIGH
Network
pexip pexip_infinity Pexip Infinity before 18 allows Remote Denial of Service (TLS handshakes in RTMP). CWE-400
 Uncontrolled Resource Consumption
CVE-2018-10432 2024-11-21 12:41 2020-09-25 Show GitHub Exploit DB Packet Storm
254002 7.8 HIGH
Local
transmissionbt
debian
fedoraproject
transmission
debian_linux
fedora
Use-after-free in libtransmission/variant.c in Transmission before 3.00 allows remote attackers to cause a denial of service (crash) or possibly execute arbitrary code via a crafted torrent file. CWE-416
 Use After Free
CVE-2018-10756 2024-11-21 12:41 2020-05-16 Show GitHub Exploit DB Packet Storm
254003 6.1 MEDIUM
Network
yii2cmf_project yii2cmf yidashi yii2cmf 2.0 has XSS via the /search q parameter. CWE-79
Cross-site Scripting
CVE-2018-10704 2024-11-21 12:41 2020-03-13 Show GitHub Exploit DB Packet Storm
254004 8.8 HIGH
Network
jamf jamf Jamf Pro 10.x before 10.3.0 has Incorrect Access Control. Jamf Pro user accounts and groups with access to log in to Jamf Pro had full access to endpoints in the Universal API (UAPI), regardless of a… NVD-CWE-noinfo
CVE-2018-10465 2024-11-21 12:41 2020-01-8 Show GitHub Exploit DB Packet Storm
254005 9.8 CRITICAL
Network
open_tftp_server_project open_tftp_server Format string vulnerability in the logMess function in TFTP Server MT 1.65 and earlier allows remote attackers to perform a denial of service or execute arbitrary code via format string sequences in … CWE-134
Use of Externally-Controlled Format String
CVE-2018-10389 2024-11-21 12:41 2019-12-24 Show GitHub Exploit DB Packet Storm
254006 9.8 CRITICAL
Network
open_tftp_server_project open_tftp_server Format string vulnerability in the logMess function in TFTP Server SP 1.66 and earlier allows remote attackers to perform a denial of service or execute arbitrary code via format string sequences in … CWE-134
Use of Externally-Controlled Format String
CVE-2018-10388 2024-11-21 12:41 2019-12-24 Show GitHub Exploit DB Packet Storm
254007 9.8 CRITICAL
Network
open_tftp_server_project open_tftp_server Heap-based overflow vulnerability in TFTP Server SP 1.66 and earlier allows remote attackers to perform a denial of service or possibly execute arbitrary code via a long TFTP error packet, a differen… CWE-787
 Out-of-bounds Write
CVE-2018-10387 2024-11-21 12:41 2019-12-24 Show GitHub Exploit DB Packet Storm
254008 6.1 MEDIUM
Network
fabrikar fabrik Reflected Cross-Site Scripting (XSS) vulnerability in the fabrik_referrer hidden field in the Fabrikar Fabrik component through v3.8.1 for Joomla! allows remote attackers to inject arbitrary web scri… CWE-79
Cross-site Scripting
CVE-2018-10727 2024-11-21 12:41 2019-10-30 Show GitHub Exploit DB Packet Storm
254009 7.5 HIGH
Network
americasarmy proving_grounds An issue was discovered in the America's Army Proving Grounds platform for the Unreal Engine. With a false packet sent via UDP, the application server responds with several bytes, giving the possibil… CWE-20
 Improper Input Validation 
CVE-2018-10531 2024-11-21 12:41 2019-07-11 Show GitHub Exploit DB Packet Storm
254010 6.7 MEDIUM
Local
infoblox nios A privilege escalation vulnerability in the "support access" feature on Infoblox NIOS 6.8 through 8.4.1 could allow a locally authenticated administrator to temporarily gain additional privileges on … CWE-264
Permissions, Privileges, and Access Controls
CVE-2018-10239 2024-11-21 12:41 2019-06-18 Show GitHub Exploit DB Packet Storm