Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 3, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253041 4.3 警告 アップル - Apple Safari におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1778 2010-08-20 18:24 2010-07-30 Show GitHub Exploit DB Packet Storm
253042 7.5 危険 金子 勇 - Winny におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-2360 2010-08-20 12:02 2010-08-20 Show GitHub Exploit DB Packet Storm
253043 7.5 危険 金子 勇 - Winny におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-2360 2010-08-20 12:02 2010-08-20 Show GitHub Exploit DB Packet Storm
253044 5 警告 金子 勇 - Winny におけるノード情報の処理に関する脆弱性 CWE-Other
その他
CVE-2010-2362 2010-08-20 12:01 2010-08-20 Show GitHub Exploit DB Packet Storm
253045 5 警告 金子 勇 - Winny における BBS 情報の処理に関する脆弱性 CWE-Other
その他
CVE-2010-2361 2010-08-20 12:01 2010-08-20 Show GitHub Exploit DB Packet Storm
253046 10 危険 シマンテック
IBM
- Autonomy KeyView Filter SDK の kvolefio.dll における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-3032 2010-08-19 18:22 2010-03-5 Show GitHub Exploit DB Packet Storm
253047 5 警告 The PHP Group - PHP の phar 拡張における重要な情報を取得される脆弱性 CWE-134
書式文字列の問題
CVE-2010-2094 2010-08-18 18:26 2010-05-14 Show GitHub Exploit DB Packet Storm
253048 7.5 危険 The PHP Group - PHP の sqlite_single_query および sqlite_array_query 関数における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-1868 2010-08-18 18:26 2010-05-7 Show GitHub Exploit DB Packet Storm
253049 7.5 危険 The PHP Group - PHP の dechunk フィルタにおけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2010-1866 2010-08-18 18:26 2010-05-2 Show GitHub Exploit DB Packet Storm
253050 5 警告 The PHP Group - PHP の chunk_split 関数における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-1862 2010-08-18 18:25 2010-05-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 3, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
252791 5.9 MEDIUM
Network
fortinet fortiweb An Improper Access Control vulnerability in Fortinet FortiWeb 5.6.0 up to but not including 6.1.0 under "Signed Security Mode", allows attacker to bypass the signed user cookie protection by removing… NVD-CWE-noinfo
CVE-2017-14191 2024-11-21 12:12 2018-03-20 Show GitHub Exploit DB Packet Storm
252792 6.5 MEDIUM
Network
dell storage_manager In Dell Storage Manager versions earlier than 16.3.20, the EMConfigMigration service is affected by a directory traversal vulnerability. A remote malicious user could potentially exploit this vulnera… CWE-22
Path Traversal
CVE-2017-14384 2024-11-21 12:12 2018-03-17 Show GitHub Exploit DB Packet Storm
252793 7.1 HIGH
Network
dovecot
debian
ubuntu
dovecot
debian_linux
ubuntu
A specially crafted email delivered over SMTP and passed on to Dovecot by MTA can trigger an out of bounds read resulting in potential sensitive information disclosure and denial of service. In order… CWE-200
CWE-125
Information Exposure
Out-of-bounds Read
CVE-2017-14461 2024-11-21 12:12 2018-03-3 Show GitHub Exploit DB Packet Storm
252794 7.8 HIGH
Local
apport_project
canonical
apport
ubuntu_linux
Apport 2.13 through 2.20.7 does not properly handle crashes originating from a PID namespace allowing local users to create certain files as root which an attacker could leverage to perform a denial … CWE-400
 Uncontrolled Resource Consumption
CVE-2017-14180 2024-11-21 12:12 2018-02-2 Show GitHub Exploit DB Packet Storm
252795 7.8 HIGH
Local
apport_project
canonical
apport
ubuntu_linux
Apport before 2.13 does not properly handle crashes originating from a PID namespace allowing local users to create certain files as root which an attacker could leverage to perform a denial of servi… CWE-400
 Uncontrolled Resource Consumption
CVE-2017-14179 2024-11-21 12:12 2018-02-2 Show GitHub Exploit DB Packet Storm
252796 7.5 HIGH
Network
snapcraft snapd In snapd 2.27 through 2.29.2 the 'snap logs' command could be made to call journalctl without match arguments and therefore allow unprivileged, unauthenticated users to bypass systemd-journald's acce… CWE-755
 Improper Handling of Exceptional Conditions
CVE-2017-14178 2024-11-21 12:12 2018-02-2 Show GitHub Exploit DB Packet Storm
252797 7.8 HIGH
Local
apport_project
canonical
apport
ubuntu_linux
Apport through 2.20.7 does not properly handle core dumps from setuid binaries allowing local users to create certain files as root which an attacker could leverage to perform a denial of service via… CWE-400
 Uncontrolled Resource Consumption
CVE-2017-14177 2024-11-21 12:12 2018-02-2 Show GitHub Exploit DB Packet Storm
252798 6.1 MEDIUM
Network
fortinet fortios A Cross-site Scripting vulnerability in Fortinet FortiOS 5.6.0 to 5.6.2, 5.4.0 to 5.4.7, 5.2 and earlier, allows attacker to inject arbitrary web script or HTML via maliciously crafted "Host" header … CWE-79
Cross-site Scripting
CVE-2017-14190 2024-11-21 12:12 2018-01-30 Show GitHub Exploit DB Packet Storm
252799 7.5 HIGH
Network
wondercms wondercms WonderCMS 2.3.1 is vulnerable to an HTTP Host header injection attack. It uses user-entered values to redirect pages. NOTE: the vendor reports that exploitation is unlikely because the attack can onl… CWE-74
Injection
CVE-2017-14523 2024-11-21 12:12 2018-01-27 Show GitHub Exploit DB Packet Storm
252800 6.1 MEDIUM
Network
wondercms wondercms In WonderCMS 2.3.1, the application's input fields accept arbitrary user input resulting in execution of malicious JavaScript. NOTE: the vendor disputes this issue stating that this is a feature that… CWE-79
Cross-site Scripting
CVE-2017-14522 2024-11-21 12:12 2018-01-27 Show GitHub Exploit DB Packet Storm