Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253431 5.8 警告 サン・マイクロシステムズ
GNOME Project
レッドハット
- Evolution Data Server (別名 evolution-data-server) の ntlm_challenge 関数におけるプロセスメモリ情報の漏洩またはサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2009-0582 2010-05-14 18:37 2009-03-14 Show GitHub Exploit DB Packet Storm
253432 1.2 注意 日本電気
サイバートラスト株式会社
サン・マイクロシステムズ
ターボリナックス
OpenSSL Project
レッドハット
- RSA key reconstruction vulnerability - CVE-2007-3108 2010-05-14 18:37 2007-08-16 Show GitHub Exploit DB Packet Storm
253433 5 警告 ヒューレット・パッカード
サイバートラスト株式会社
OpenSSL Project
ターボリナックス
レッドハット
- OpenSSL の zlib_stateful_finish 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-4355 2010-05-13 17:21 2010-01-13 Show GitHub Exploit DB Packet Storm
253434 9.3 危険 日立 - XMAP3 における任意のコードが実行される脆弱性 CWE-noinfo
情報不足
- 2010-05-13 15:14 2010-04-12 Show GitHub Exploit DB Packet Storm
253435 4.3 警告 オラクル - Oracle Industry Product Suite の Retail - Oracle Retail Plan In-Season コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0863 2010-05-13 15:13 2010-04-13 Show GitHub Exploit DB Packet Storm
253436 4.3 警告 オラクル - Oracle Industry Product Suite の Retail - Oracle Retail Place In-Season コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0864 2010-05-13 15:13 2010-04-13 Show GitHub Exploit DB Packet Storm
253437 4.3 警告 オラクル - Oracle Industry Product Suite の Retail - Oracle Retail Markdown Optimization コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0862 2010-05-13 15:13 2010-04-13 Show GitHub Exploit DB Packet Storm
253438 4.3 警告 オラクル - Oracle Industry Product Suite の Life Sciences - Oracle Thesaurus Management System コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0875 2010-05-13 15:12 2010-04-13 Show GitHub Exploit DB Packet Storm
253439 4.3 警告 オラクル - Oracle Industry Product Suite の Life Sciences - Oracle Clinical Remote Data Capture Option コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0876 2010-05-13 15:12 2010-04-13 Show GitHub Exploit DB Packet Storm
253440 4.3 警告 オラクル - Oracle Industry Product Suite の Communications - Oracle Communications Unified Inventory Management コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0874 2010-05-13 15:12 2010-04-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 2, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
256481 7.5 HIGH
Network
phpmyadmin phpmyadmin phpMyAdmin 4.0, 4.4., and 4.6 are vulnerable to a DOS attack in the replication status by using a specially crafted table name CWE-20
 Improper Input Validation 
CVE-2017-1000018 2024-11-21 12:03 2017-07-17 Show GitHub Exploit DB Packet Storm
256482 8.8 HIGH
Network
phpmyadmin phpmyadmin phpMyAdmin 4.0, 4.4 and 4.6 are vulnerable to a weakness where a user with appropriate permissions is able to connect to an arbitrary MySQL server CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2017-1000017 2024-11-21 12:03 2017-07-17 Show GitHub Exploit DB Packet Storm
256483 7.5 HIGH
Network
phpmyadmin phpmyadmin A weakness was discovered where an attacker can inject arbitrary values in to the browser cookies. This is a re-issue of an incomplete fix from PMASA-2016-18. CWE-20
 Improper Input Validation 
CVE-2017-1000016 2024-11-21 12:03 2017-07-17 Show GitHub Exploit DB Packet Storm
256484 6.1 MEDIUM
Network
phpmyadmin phpmyadmin phpMyAdmin 4.0, 4.4, and 4.6 are vulnerable to a CSS injection attack through crafted cookie parameters CWE-79
Cross-site Scripting
CVE-2017-1000015 2024-11-21 12:03 2017-07-17 Show GitHub Exploit DB Packet Storm
256485 7.5 HIGH
Network
phpmyadmin phpmyadmin phpMyAdmin 4.0, 4.4, and 4.6 are vulnerable to a DOS weakness in the table editing functionality CWE-20
 Improper Input Validation 
CVE-2017-1000014 2024-11-21 12:03 2017-07-17 Show GitHub Exploit DB Packet Storm
256486 6.1 MEDIUM
Network
phpmyadmin phpmyadmin phpMyAdmin 4.0, 4.4, and 4.6 are vulnerable to an open redirect weakness CWE-601
Open Redirect
CVE-2017-1000013 2024-11-21 12:03 2017-07-17 Show GitHub Exploit DB Packet Storm
256487 6.1 MEDIUM
Network
mysqldumper mysqldumper MySQL Dumper version 1.24 is vulnerable to stored XSS when displaying the data in the database to the user CWE-79
Cross-site Scripting
CVE-2017-1000012 2024-11-21 12:03 2017-07-17 Show GitHub Exploit DB Packet Storm
256488 6.1 MEDIUM
Network
mywebsql mywebsql MyWebSQL version 3.6 is vulnerable to stored XSS in the database manager component resulting in account takeover or stealing of information CWE-79
Cross-site Scripting
CVE-2017-1000011 2024-11-21 12:03 2017-07-17 Show GitHub Exploit DB Packet Storm
256489 7.8 HIGH
Local
audacityteam audacity Audacity 2.1.2 through 2.3.2 is vulnerable to Dll HIjacking in the avformat-55.dll resulting arbitrary code execution. CWE-427
 Uncontrolled Search Path Element
CVE-2017-1000010 2024-11-21 12:03 2017-07-17 Show GitHub Exploit DB Packet Storm
256490 9.8 CRITICAL
Network
akeneo product_information_management Akeneo PIM CE and EE <1.6.6, <1.5.15, <1.4.28 are vulnerable to shell injection in the mass edition, resulting in remote execution. CWE-78
OS Command 
CVE-2017-1000009 2024-11-21 12:03 2017-07-17 Show GitHub Exploit DB Packet Storm