|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 9, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 254321 | 10 | 危険 | Google サムスン 日本エイサー |
- | Chromebook プラットフォームで稼働する Google Chrome における詳細不明な脆弱性 |
CWE-noinfo
情報不足 |
CVE-2011-3421 | 2011-11-22 10:54 | 2011-09-1 | Show | GitHub Exploit DB Packet Storm |
| 254322 | 7.5 | 危険 | - | Google Chrome の PDF 実装におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-2839 | 2011-11-22 10:54 | 2011-08-22 | Show | GitHub Exploit DB Packet Storm | |
| 254323 | 7.5 | 危険 | - | Google Chrome における整数オーバーフローの脆弱性 |
CWE-189
数値処理の問題 |
CVE-2011-2829 | 2011-11-22 10:53 | 2011-08-22 | Show | GitHub Exploit DB Packet Storm | |
| 254324 | 7.5 | 危険 | - | Google Chrome で使用される Google V8 におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-119
バッファエラー |
CVE-2011-2828 | 2011-11-22 10:52 | 2011-08-22 | Show | GitHub Exploit DB Packet Storm | |
| 254325 | 7.5 | 危険 | アップル |
- | Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2011-2827 | 2011-11-22 10:52 | 2011-08-22 | Show | GitHub Exploit DB Packet Storm |
| 254326 | 7.5 | 危険 | - | Google Chrome における同一生成元ポリシーを回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2011-2826 | 2011-11-22 10:51 | 2011-08-22 | Show | GitHub Exploit DB Packet Storm | |
| 254327 | 7.5 | 危険 | - | Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2011-2824 | 2011-11-22 10:50 | 2011-08-22 | Show | GitHub Exploit DB Packet Storm | |
| 254328 | 7.5 | 危険 | アップル |
- | Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2011-2823 | 2011-11-22 10:49 | 2011-08-22 | Show | GitHub Exploit DB Packet Storm |
| 254329 | 10 | 危険 | - | Google Chrome における詳細不明な脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2011-2822 | 2011-11-22 10:48 | 2011-08-22 | Show | GitHub Exploit DB Packet Storm | |
| 254330 | 10 | 危険 | - | Windows 上の Google Chrome における任意のコードを実行される脆弱性 |
CWE-119
バッファエラー |
CVE-2011-2806 | 2011-11-22 10:46 | 2011-08-22 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 9, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 246221 | 8.8 |
HIGH
Network |
mybb | trash_bin | Trash Bin plugin 1.1.3 for MyBB has cross-site scripting (XSS) via a thread subject and a cross-site request forgery (CSRF) via a post subject. |
CWE-352 CWE-79 Origin Validation Error Cross-site Scripting |
CVE-2018-14575 | 2024-11-21 12:49 | 2019-03-22 | Show | GitHub Exploit DB Packet Storm |
| 246222 | 6.1 |
MEDIUM
Network |
dnnsoftware | dotnetnuke | DNN (formerly DotNetNuke) 9.1.1 allows cross-site scripting (XSS) via XML. |
CWE-79
Cross-site Scripting |
CVE-2018-14486 | 2024-11-21 12:49 | 2019-03-22 | Show | GitHub Exploit DB Packet Storm |
| 246223 | 6.1 |
MEDIUM
Network |
hyphp | hybbs | An issue was found in HYBBS through 2016-03-08. There is an XSS vulnerablity via an article title to post.html. |
CWE-79
Cross-site Scripting |
CVE-2018-14499 | 2024-11-21 12:49 | 2019-03-8 | Show | GitHub Exploit DB Packet Storm |
| 246224 | 6.5 |
MEDIUM
Network |
mozilla libjpeg-turbo fedoraproject debian opensuse |
mozjpeg libjpeg-turbo fedora debian_linux leap |
get_8bit_row in rdbmp.c in libjpeg-turbo through 1.5.90 and MozJPEG through 3.3.1 allows attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted 8-bit… |
CWE-125
Out-of-bounds Read |
CVE-2018-14498 | 2024-11-21 12:49 | 2019-03-8 | Show | GitHub Exploit DB Packet Storm |
| 246225 | 7.2 |
HIGH
Network |
redhat | satellite | An improper authorization flaw was found in the Smart Class feature of Foreman. An attacker can use it to change configuration of any host registered in Red Hat Satellite, independent of the organiza… |
CWE-863
Incorrect Authorization |
CVE-2018-14666 | 2024-11-21 12:49 | 2019-01-23 | Show | GitHub Exploit DB Packet Storm |
| 246226 | 5.7 |
MEDIUM
Adjacent |
redhat debian opensuse canonical |
ceph debian_linux leap enterprise_linux_server ceph_storage ubuntu_linux |
It was found Ceph versions before 13.2.4 that authenticated ceph users with read only permissions could steal dm-crypt encryption keys used in ceph disk encryption. | - | CVE-2018-14662 | 2024-11-21 12:49 | 2019-01-16 | Show | GitHub Exploit DB Packet Storm |
| 246227 | 6.1 |
MEDIUM
Network |
osclass | osclass | Osclass 3.7.4 has XSS via the query string to index.php, a different vulnerability than CVE-2014-6280. |
CWE-79
Cross-site Scripting |
CVE-2018-14481 | 2024-11-21 12:49 | 2019-01-4 | Show | GitHub Exploit DB Packet Storm |
| 246228 | 10.0 |
CRITICAL
Network |
fasterxml debian oracle redhat |
jackson-databind debian_linux primavera_unifier banking_platform jdeveloper retail_merchandising_system webcenter_portal communications_billing_and_revenue_management financia… |
FasterXML jackson-databind 2.x before 2.9.7 might allow remote attackers to conduct server-side request forgery (SSRF) attacks by leveraging failure to block the axis2-jaxws class from polymorphic de… |
CWE-918
Server-Side Request Forgery (SSRF) |
CVE-2018-14721 | 2024-11-21 12:49 | 2019-01-3 | Show | GitHub Exploit DB Packet Storm |
| 246229 | 9.8 |
CRITICAL
Network |
fasterxml debian oracle redhat |
jackson-databind debian_linux primavera_unifier banking_platform jdeveloper retail_merchandising_system webcenter_portal communications_billing_and_revenue_management financia… |
FasterXML jackson-databind 2.x before 2.9.7 might allow attackers to conduct external XML entity (XXE) attacks by leveraging failure to block unspecified JDK classes from polymorphic deserialization. |
CWE-611 CWE-502 XXE Deserialization of Untrusted Data |
CVE-2018-14720 | 2024-11-21 12:49 | 2019-01-3 | Show | GitHub Exploit DB Packet Storm |
| 246230 | 9.8 |
CRITICAL
Network |
fasterxml debian oracle redhat netapp |
jackson-databind debian_linux primavera_unifier primavera_p6_enterprise_project_portfolio_management database_server banking_platform jdeveloper retail_merchandising_system we… |
FasterXML jackson-databind 2.x before 2.9.7 might allow remote attackers to execute arbitrary code by leveraging failure to block the blaze-ds-opt and blaze-ds-core classes from polymorphic deseriali… |
CWE-502
Deserialization of Untrusted Data |
CVE-2018-14719 | 2024-11-21 12:49 | 2019-01-3 | Show | GitHub Exploit DB Packet Storm |