Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253151 7.2 危険 Google - T-Mobile G1 phone 上で稼働する Open Handset Alliance Android の link_image 関数における任意のファイルを作成される脆弱性 CWE-20
不適切な入力確認
CVE-2009-0606 2011-02-25 14:11 2009-02-17 Show GitHub Exploit DB Packet Storm
253152 5 警告 シスコシステムズ - Cisco IOS 上で稼働する STCAPP におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2010-4687 2011-02-25 14:07 2011-01-7 Show GitHub Exploit DB Packet Storm
253153 7.8 危険 シスコシステムズ - Cisco IOS 上で稼働する CallManager Express におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-4686 2011-02-25 14:05 2011-01-7 Show GitHub Exploit DB Packet Storm
253154 4 警告 シスコシステムズ - Cisco IOS における証明書マップによる制限を回避される脆弱性 CWE-310
暗号の問題
CVE-2010-4685 2011-02-25 14:03 2011-01-7 Show GitHub Exploit DB Packet Storm
253155 7.1 危険 シスコシステムズ - Cisco IOS におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-4684 2011-02-25 14:00 2011-01-7 Show GitHub Exploit DB Packet Storm
253156 6.8 警告 シスコシステムズ - Cisco IOS 上で稼働する CallManager Express におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-5040 2011-02-25 13:55 2011-01-7 Show GitHub Exploit DB Packet Storm
253157 9.3 危険 アップル
アドビシステムズ
レッドハット
ターボリナックス
オラクル
- Adobe Flash に脆弱性 CWE-119
バッファエラー
CVE-2010-3654 2011-02-25 13:50 2010-10-29 Show GitHub Exploit DB Packet Storm
253158 4 警告 サイバートラスト株式会社
MySQL AB
ターボリナックス
レッドハット
- MySQL の sql/spatial.cc におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2010-3840 2011-02-25 13:48 2010-09-10 Show GitHub Exploit DB Packet Storm
253159 7.8 危険 シスコシステムズ - Cisco IOS の H.323 実装の gk_circuit_info_do_in_acf 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-5039 2011-02-24 16:39 2011-01-7 Show GitHub Exploit DB Packet Storm
253160 7.8 危険 シスコシステムズ - Cisco IOS におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-5038 2011-02-24 16:37 2011-01-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
258711 8.8 HIGH
Network
jenkins pipeline\ Arbitrary code execution due to incomplete sandbox protection: Constructors, instance variable initializers, and instance initializers in Pipeline scripts were not subject to sandbox protection, and … CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2017-1000096 2024-11-21 12:04 2017-10-5 Show GitHub Exploit DB Packet Storm
258712 6.5 MEDIUM
Network
jenkins docker_commons Docker Commons Plugin provides a list of applicable credential IDs to allow users configuring a job to select the one they'd like to use to authenticate with a Docker Registry. This functionality did… CWE-200
Information Exposure
CVE-2017-1000094 2024-11-21 12:04 2017-10-5 Show GitHub Exploit DB Packet Storm
258713 6.5 MEDIUM
Network
jenkins script_security The default whitelist included the following unsafe entries: DefaultGroovyMethods.putAt(Object, String, Object); DefaultGroovyMethods.getAt(Object, String). These allowed circumventing many of the ac… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2017-1000095 2024-11-21 12:04 2017-10-5 Show GitHub Exploit DB Packet Storm
258714 8.8 HIGH
Network
jenkins poll_scm Poll SCM Plugin was not requiring requests to its API be sent via POST, thereby opening itself to Cross-Site Request Forgery attacks. This allowed attackers to initiate polling of projects with a kno… CWE-352
 Origin Validation Error
CVE-2017-1000093 2024-11-21 12:04 2017-10-5 Show GitHub Exploit DB Packet Storm
258715 7.5 HIGH
Network
jenkins git Git Plugin connects to a user-specified Git repository as part of form validation. An attacker with no direct access to Jenkins but able to guess at a username/password credentials ID could trick a d… CWE-352
 Origin Validation Error
CVE-2017-1000092 2024-11-21 12:04 2017-10-5 Show GitHub Exploit DB Packet Storm
258716 6.3 MEDIUM
Network
jenkins github_branch_source GitHub Branch Source Plugin connects to a user-specified GitHub API URL (e.g. GitHub Enterprise) as part of form validation and completion (e.g. to verify Scan Credentials are correct). This function… CWE-352
 Origin Validation Error
CVE-2017-1000091 2024-11-21 12:04 2017-10-5 Show GitHub Exploit DB Packet Storm
258717 8.8 HIGH
Network
jenkins role-based_authorization_strategy Role-based Authorization Strategy Plugin was not requiring requests to its API be sent via POST, thereby opening itself to Cross-Site Request Forgery attacks. This allowed attackers to add administra… CWE-352
 Origin Validation Error
CVE-2017-1000090 2024-11-21 12:04 2017-10-5 Show GitHub Exploit DB Packet Storm
258718 5.3 MEDIUM
Network
jenkins pipeline\ Builds in Jenkins are associated with an authentication that controls the permissions that the build has to interact with other elements in Jenkins. The Pipeline: Build Step Plugin did not check the … CWE-276
Incorrect Default Permissions 
CVE-2017-1000089 2024-11-21 12:04 2017-10-5 Show GitHub Exploit DB Packet Storm
258719 5.4 MEDIUM
Network
jenkins sidebar_link The Sidebar Link plugin allows users able to configure jobs, views, and agents to add entries to the sidebar of these objects. There was no input validation, which meant users were able to use javasc… CWE-79
Cross-site Scripting
CVE-2017-1000088 2024-11-21 12:04 2017-10-5 Show GitHub Exploit DB Packet Storm
258720 4.3 MEDIUM
Network
jenkins github_branch_source GitHub Branch Source provides a list of applicable credential IDs to allow users configuring a job to select the one they'd like to use. This functionality did not check permissions, allowing any use… CWE-200
Information Exposure
CVE-2017-1000087 2024-11-21 12:04 2017-10-5 Show GitHub Exploit DB Packet Storm