Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 22, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253311 6.8 警告 Zikula Foundation - Zikula の Users モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2011-0535 2012-03-27 18:42 2011-02-8 Show GitHub Exploit DB Packet Storm
253312 6.2 警告 Fedora Project
レッドハット
- 389 Directory Server のバックアップおよび復旧スクリプトにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-0532 2012-03-27 18:42 2011-02-23 Show GitHub Exploit DB Packet Storm
253313 9.3 危険 VideoLAN - VideoLAN VLC media player の demux/mkv/mkv.hpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2011-0531 2012-03-27 18:42 2011-01-26 Show GitHub Exploit DB Packet Storm
253314 7.5 危険 Wouter Verhelst - nbd の nbd-server.c におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-0530 2012-03-27 18:42 2011-02-22 Show GitHub Exploit DB Packet Storm
253315 5 警告 VMware - VMware の vFabric tc Server におけるアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2011-0527 2012-03-27 18:42 2011-08-11 Show GitHub Exploit DB Packet Storm
253316 4.3 警告 Vanilla Forums - Vanilla Forums の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-0526 2012-03-27 18:42 2011-02-8 Show GitHub Exploit DB Packet Storm
253317 6.8 警告 VideoLAN - VideoLAN VLC メディアプレイヤーの StripTags 関数 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-0522 2012-03-27 18:42 2011-02-7 Show GitHub Exploit DB Packet Storm
253318 7.5 危険 MaraDNS - MaraDNS の compress_add_dlabel_points 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2011-0520 2012-03-27 18:42 2011-01-28 Show GitHub Exploit DB Packet Storm
253319 7.5 危険 gallarific - Gallarific PHP Photo Gallery script の gallery.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-0519 2012-03-27 18:42 2011-01-20 Show GitHub Exploit DB Packet Storm
253320 5.1 警告 lotuscms - LotusCMS Fraise の core/lib/router.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-0518 2012-03-27 18:42 2011-01-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
245591 7.5 HIGH
Network
bestpractical
fedoraproject
canonical
debian
request_tracker
fedora
ubuntu_linux
debian_linux
The email-ingestion feature in Best Practical Request Tracker 4.1.13 through 4.4 allows denial of service by remote attackers via an algorithmic complexity attack on email address parsing. CWE-400
 Uncontrolled Resource Consumption
CVE-2018-18898 2024-11-21 12:56 2019-03-22 Show GitHub Exploit DB Packet Storm
245592 5.4 MEDIUM
Network
controlbyweb x-320m-i_firmware A stored cross-site scripting (XSS) issue was discovered in ControlByWeb X-320M-I Web-Enabled Instrumentation-Grade Data Acquisition module 1.05 with firmware revision v1.05. An authenticated user ca… CWE-79
Cross-site Scripting
CVE-2018-18882 2024-11-21 12:56 2019-03-22 Show GitHub Exploit DB Packet Storm
245593 6.5 MEDIUM
Network
controlbyweb x-320m-i_firmware A Denial of Service (DOS) issue was discovered in ControlByWeb X-320M-I Web-Enabled Instrumentation-Grade Data Acquisition module 1.05 with firmware revision v1.05. An authenticated user can configur… NVD-CWE-noinfo
CVE-2018-18881 2024-11-21 12:56 2019-03-22 Show GitHub Exploit DB Packet Storm
245594 8.8 HIGH
Network
bmc remedy_mid-tier
remedy_action_request_system
BMC Remedy Mid-Tier 7.1.00 and 9.1.02.003 for BMC Remedy AR System has Incorrect Access Control in ITAM forms, as demonstrated by TLS%3APLR-Configuration+Details/Default+Admin+View/, AST%3AARServerCo… CWE-425
 Direct Request ('Forced Browsing')
CVE-2018-18862 2024-11-21 12:56 2019-03-22 Show GitHub Exploit DB Packet Storm
245595 5.5 MEDIUM
Local
qemu
opensuse
fedoraproject
canonical
qemu
leap
fedora
ubuntu_linux
In Qemu 3.0.0, lsi_do_msgin in hw/scsi/lsi53c895a.c allows out-of-bounds access by triggering an invalid msg_len value. CWE-125
Out-of-bounds Read
CVE-2018-18849 2024-11-21 12:56 2019-03-22 Show GitHub Exploit DB Packet Storm
245596 6.1 MEDIUM
Network
advanced_comment_system_project advanced_comment_system internal/advanced_comment_system/index.php and internal/advanced_comment_system/admin.php in Advanced Comment System, version 1.0, contain a reflected cross-site scripting vulnerability via ACS_path.… CWE-79
Cross-site Scripting
CVE-2018-18845 2024-11-21 12:56 2019-03-22 Show GitHub Exploit DB Packet Storm
245597 9.8 CRITICAL
Network
school_attendance_monitoring_system_project school_attendance_monitoring_system Attendance Monitoring System 1.0 has SQL Injection via the 'id' parameter to student/index.php?view=view, event/index.php?view=view, and user/index.php?view=view. CWE-89
SQL Injection
CVE-2018-18798 2024-11-21 12:56 2019-03-22 Show GitHub Exploit DB Packet Storm
245598 6.5 MEDIUM
Network
saltos saltos SaltOS 3.1 r8126 contains a database download vulnerability. CWE-200
Information Exposure
CVE-2018-18762 2024-11-21 12:56 2019-03-22 Show GitHub Exploit DB Packet Storm
245599 5.4 MEDIUM
Network
tibco jasperreports_server
jaspersoft_reporting_and_analytics
jaspersoft
The repository component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO JasperReports Server for ActiveMatrix BPM, TIBCO Jaspersoft for AWS w… CWE-79
Cross-site Scripting
CVE-2018-18816 2024-11-21 12:56 2019-03-8 Show GitHub Exploit DB Packet Storm
245600 9.8 CRITICAL
Network
tibco jasperreports_server
jaspersoft_reporting_and_analytics
jaspersoft
The REST API component of TIBCO Software Inc.'s TIBCO JasperReports Server, TIBCO JasperReports Server Community Edition, TIBCO JasperReports Server for ActiveMatrix BPM, TIBCO Jaspersoft for AWS wit… CWE-863
 Incorrect Authorization
CVE-2018-18815 2024-11-21 12:56 2019-03-8 Show GitHub Exploit DB Packet Storm