Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252331 6.2 警告 オラクル - Oracle VM VirtualBox の脆弱性 CWE-noinfo
情報不足
CVE-2011-2305 2011-09-9 09:54 2011-07-19 Show GitHub Exploit DB Packet Storm
252332 3.5 注意 オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2011-2274 2011-09-9 09:52 2011-07-19 Show GitHub Exploit DB Packet Storm
252333 3.5 注意 オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2011-2282 2011-09-9 09:51 2011-07-19 Show GitHub Exploit DB Packet Storm
252334 4 警告 オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2011-2280 2011-09-9 09:50 2011-07-19 Show GitHub Exploit DB Packet Storm
252335 4.3 警告 オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise PeopleTools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2011-2275 2011-09-9 09:49 2011-07-19 Show GitHub Exploit DB Packet Storm
252336 4.3 警告 リアルネットワークス - RealNetworks RealPlayer の ActiveX コントロールにおけるクロスゾーンスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2947 2011-09-8 13:36 2011-08-16 Show GitHub Exploit DB Packet Storm
252337 10 危険 リアルネットワークス - RealNetworks RealPlayer および RealPlayer Enterprise の ActiveX コントロールにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2011-2946 2011-09-8 13:35 2011-08-16 Show GitHub Exploit DB Packet Storm
252338 9.3 危険 リアルネットワークス - RealNetworks RealPlayer におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-2945 2011-09-8 13:34 2011-08-16 Show GitHub Exploit DB Packet Storm
252339 10 危険 Mozilla Foundation
レッドハット
- 複数の Mozilla 製品における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2011-0084 2011-09-8 13:33 2011-08-16 Show GitHub Exploit DB Packet Storm
252340 4.3 警告 Mozilla Foundation
レッドハット
- 複数の Mozilla 製品における同一生成元ポリシーを回避される脆弱性 CWE-200
情報漏えい
CVE-2011-2983 2011-09-8 13:32 2011-08-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
247571 5.5 MEDIUM
Local
linux linux_kernel The handle_invept function in arch/x86/kvm/vmx.c in the Linux kernel 3.12 through 3.15 allows privileged KVM guest OS users to cause a denial of service (NULL pointer dereference and host OS crash) v… CWE-476
 NULL Pointer Dereference
CVE-2017-8106 2024-11-21 12:33 2017-04-25 Show GitHub Exploit DB Packet Storm
247572 9.8 CRITICAL
Network
freetype
debian
freetype
debian_linux
FreeType 2 before 2017-03-24 has an out-of-bounds write caused by a heap-based buffer overflow related to the t1_decoder_parse_charstrings function in psaux/t1decode.c. CWE-787
 Out-of-bounds Write
CVE-2017-8105 2024-11-21 12:33 2017-04-25 Show GitHub Exploit DB Packet Storm
247573 5.3 MEDIUM
Network
mybb mybb In MyBB before 1.8.11, the smilie module allows Directory Traversal via the pathfolder parameter. CWE-22
Path Traversal
CVE-2017-8104 2024-11-21 12:33 2017-04-25 Show GitHub Exploit DB Packet Storm
247574 6.1 MEDIUM
Network
mybb mybb In MyBB before 1.8.11, the Email MyCode component allows XSS, as demonstrated by an onmouseover event. CWE-79
Cross-site Scripting
CVE-2017-8103 2024-11-21 12:33 2017-04-25 Show GitHub Exploit DB Packet Storm
247575 5.4 MEDIUM
Network
s9y serendipity Stored XSS in Serendipity v2.1-rc1 allows an attacker to steal an admin's cookie and other information by composing a new entry as an editor user. This is related to lack of the serendipity_event_xss… CWE-79
Cross-site Scripting
CVE-2017-8102 2024-11-21 12:33 2017-04-25 Show GitHub Exploit DB Packet Storm
247576 8.8 HIGH
Network
s9y serendipity There is CSRF in Serendipity 2.0.5, allowing attackers to install any themes via a GET request. CWE-352
 Origin Validation Error
CVE-2017-8101 2024-11-21 12:33 2017-04-25 Show GitHub Exploit DB Packet Storm
247577 6.5 MEDIUM
Network
artistscope copysafe_web_protection There is CSRF in the CopySafe Web Protection plugin before 2.6 for WordPress, allowing attackers to change plugin settings. CWE-352
 Origin Validation Error
CVE-2017-8100 2024-11-21 12:33 2017-04-25 Show GitHub Exploit DB Packet Storm
247578 8.1 HIGH
Network
browserweb_inc whizz There is CSRF in the WHIZZ plugin before 1.1.1 for WordPress, allowing attackers to delete any WordPress users and change the plugin's status via a GET request. CWE-352
 Origin Validation Error
CVE-2017-8099 2024-11-21 12:33 2017-04-25 Show GitHub Exploit DB Packet Storm
247579 6.5 MEDIUM
Network
e107 e107 e107 2.1.4 is vulnerable to cross-site request forgery in plugin-installing, meta-changing, and settings-changing. A malicious web page can use forged requests to make e107 download and install a plu… CWE-352
 Origin Validation Error
CVE-2017-8098 2024-11-21 12:33 2017-04-25 Show GitHub Exploit DB Packet Storm
247580 6.1 MEDIUM
Network
exponentcms exponent_cms In Exponent CMS before 2.4.1 Patch #5, XSS in elFinder is possible in framework/modules/file/connector/elfinder.php. CWE-79
Cross-site Scripting
CVE-2017-8085 2024-11-21 12:33 2017-04-24 Show GitHub Exploit DB Packet Storm