Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251371 5 警告 IBM - IBM WebSphere Commerce Enterprise における他人のメッセージを読まれる脆弱性 CWE-200
情報漏えい
CVE-2010-2639 2012-03-27 18:42 2010-12-6 Show GitHub Exploit DB Packet Storm
251372 4 警告 IBM - IBM WebSphere におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-2638 2012-03-27 18:42 2010-11-15 Show GitHub Exploit DB Packet Storm
251373 4.3 警告 IBM - IBM WebSphere MQ における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2010-2637 2012-03-27 18:42 2010-11-12 Show GitHub Exploit DB Packet Storm
251374 4.3 警告 IBM - IBM WebSphere Commerce におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2636 2012-03-27 18:42 2010-11-9 Show GitHub Exploit DB Packet Storm
251375 6.5 警告 IBM - IBM WebSphere Commerce における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-2635 2012-03-27 18:42 2010-11-9 Show GitHub Exploit DB Packet Storm
251376 9.3 危険 SAP - SAP Crystal Reports の CrystalPrintControl ActiveX コントロールにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-2590 2012-03-27 18:42 2010-12-21 Show GitHub Exploit DB Packet Storm
251377 9.3 危険 Nullsoft - Winamp の in_nsv.dll における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-2586 2012-03-27 18:42 2010-11-27 Show GitHub Exploit DB Packet Storm
251378 10 危険 realpage - RealPage Module の Upload ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-2585 2012-03-27 18:42 2010-10-26 Show GitHub Exploit DB Packet Storm
251379 5 警告 realpage - RealPage Module ActiveX コントロールの Upload メソッドにおける任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-2584 2012-03-27 18:42 2010-10-26 Show GitHub Exploit DB Packet Storm
251380 5.1 警告 daniel friesel - feh における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-2246 2012-03-27 18:42 2011-05-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
247361 6.6 MEDIUM
Physics
linux
canonical
redhat
linux_kernel
ubuntu_linux
enterprise_linux
Linux kernel is vulnerable to a heap-based buffer overflow in the fs/ext4/xattr.c:ext4_xattr_set_entry() function. An attacker could exploit this by operating on a mounted crafted ext4 image. - CVE-2018-10840 2024-11-21 12:42 2018-07-17 Show GitHub Exploit DB Packet Storm
247362 7.5 HIGH
Network
git-annex_project
debian
git-annex
debian_linux
git-annex is vulnerable to an Information Exposure when decrypting files. A malicious server for a special remote could trick git-annex into decrypting a file that was encrypted to the user's gpg key… CWE-200
Information Exposure
CVE-2018-10859 2024-11-21 12:42 2018-07-17 Show GitHub Exploit DB Packet Storm
247363 7.8 HIGH
Local
redhat
debian
suse
canonical
openshift
virtualization_host
virtualization
ceph_storage
ansible_engine
openstack
gluster_storage
debian_linux
package_hub
ubuntu_linux
A flaw was found in ansible. ansible.cfg is read from the current working directory which can be altered to make it point to a plugin or a module path under the control of an attacker, thus allowing … CWE-426
 Untrusted Search Path
CVE-2018-10875 2024-11-21 12:42 2018-07-14 Show GitHub Exploit DB Packet Storm
247364 8.8 HIGH
Network
qutebrowser qutebrowser qutebrowser before version 1.4.1 is vulnerable to a cross-site request forgery flaw that allows websites to access 'qute://*' URLs. A malicious website could exploit this to load a 'qute://settings/s… CWE-352
 Origin Validation Error
CVE-2018-10895 2024-11-21 12:42 2018-07-12 Show GitHub Exploit DB Packet Storm
247365 7.3 HIGH
Local
emc
rsa
rsa_identity_management_and_governance
rsa_identity_governance_and_lifecycle
rsa_via_lifecycle_and_governance
RSA Identity Governance and Lifecycle, RSA Via Lifecycle and Governance, and RSA IMG releases have an uncontrolled search vulnerability. The installation scripts set an environment variable in an uni… CWE-427
 Uncontrolled Search Path Element
CVE-2018-11049 2024-11-21 12:42 2018-07-12 Show GitHub Exploit DB Packet Storm
247366 5.9 MEDIUM
Network
pivotal_software operations_manager Pivotal Operations Manager, versions 2.1 prior to 2.1.6 and 2.0 prior to 2.0.15 and 1.12 prior to 1.12.22, contains a static Linux Random Number Generator (LRNG) seed file embedded in the appliance i… CWE-330
 Use of Insufficiently Random Values
CVE-2018-11045 2024-11-21 12:42 2018-07-12 Show GitHub Exploit DB Packet Storm
247367 5.5 MEDIUM
Local
redhat enterprise_linux
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
A flaw was found in the way the Linux kernel handled exceptions delivered after a stack switch operation via Mov SS or Pop SS instructions. During the stack switch operation, processor does not deliv… - CVE-2018-10872 2024-11-21 12:42 2018-07-11 Show GitHub Exploit DB Packet Storm
247368 7.3 HIGH
Network
moodle moodle A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7, 3.1.13. When a quiz question bank is imported, it was possible for the question preview that is displayed to execute JavaScript that is… NVD-CWE-noinfo
CVE-2018-10891 2024-11-21 12:42 2018-07-11 Show GitHub Exploit DB Packet Storm
247369 5.3 MEDIUM
Network
moodle moodle A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7, 3.1.13. It was possible for the core_course_get_categories web service to return hidden categories, which should be omitted when fetchi… CWE-200
Information Exposure
CVE-2018-10890 2024-11-21 12:42 2018-07-11 Show GitHub Exploit DB Packet Storm
247370 5.3 MEDIUM
Network
moodle moodle A flaw was found in moodle before versions 3.5.1, 3.4.4, 3.3.7. No option existed to omit logs from data privacy exports, which may contain details of other users who interacted with the requester. CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2018-10889 2024-11-21 12:42 2018-07-11 Show GitHub Exploit DB Packet Storm