Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254641 9 危険 オラクル - Oracle Database の Oracle OLAP コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3415 2010-02-12 12:20 2010-01-12 Show GitHub Exploit DB Packet Storm
254642 10 危険 オラクル - Oracle Database の Listener コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0071 2010-02-12 12:20 2010-01-12 Show GitHub Exploit DB Packet Storm
254643 5 警告 Pidgin
Adium
レッドハット
- Pidgin および Adium の MSN プロトコルプラグインにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0013 2010-02-10 13:39 2010-01-8 Show GitHub Exploit DB Packet Storm
254644 10 危険 アドビシステムズ
レッドハット
- Adobe Reader および Acrobat の U3D 実装における任意のコードを実行される脆弱性 CWE-189
数値処理の問題
CVE-2009-3959 2010-02-10 13:39 2010-01-12 Show GitHub Exploit DB Packet Storm
254645 10 危険 アドビシステムズ - Adobe Reader および Acrobat のダウンロードマネージャーにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2009-3958 2010-02-10 13:39 2010-01-12 Show GitHub Exploit DB Packet Storm
254646 5 警告 アドビシステムズ - Adobe Reader および Acrobat におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2009-3957 2010-02-10 13:39 2010-01-12 Show GitHub Exploit DB Packet Storm
254647 10 危険 アドビシステムズ
レッドハット
- Adobe Reader および Acrobat におけるスクリプトインジェクションの脆弱性に関連した脆弱性 CWE-16
環境設定
CVE-2009-3956 2010-02-10 13:39 2010-01-12 Show GitHub Exploit DB Packet Storm
254648 10 危険 アドビシステムズ
レッドハット
- Adobe Reader および Acrobat における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2009-3955 2010-02-10 13:38 2010-01-12 Show GitHub Exploit DB Packet Storm
254649 10 危険 アドビシステムズ
レッドハット
- Adobe Reader および Acrobat の 3D 実装における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-3954 2010-02-10 13:38 2010-01-12 Show GitHub Exploit DB Packet Storm
254650 6.8 警告 サン・マイクロシステムズ - Sun Solaris の Trusted Extensions における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0310 2010-02-10 13:38 2010-01-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
257071 6.1 MEDIUM
Network
flatcore flatcore-cms flatCore-CMS 1.4.6 is vulnerable to reflected XSS in user_management.php due to the use of $_SERVER['PHP_SELF'] to build links and a stored XSS in the admin log panel by specifying a malformed User-A… CWE-79
Cross-site Scripting
CVE-2017-1000428 2024-11-21 12:04 2018-01-10 Show GitHub Exploit DB Packet Storm
257072 5.4 MEDIUM
Network
sulu sulu-standard Sulu-standard version 1.6.6 is vulnerable to stored cross-site scripting vulnerability, within the page creation page, which can result in disruption of service and execution of javascript code. CWE-79
Cross-site Scripting
CVE-2017-1000465 2024-11-21 12:04 2018-01-10 Show GitHub Exploit DB Packet Storm
257073 6.1 MEDIUM
Network
finecms_project finecms rui Li finecms 5.0.10 is vulnerable to a reflected XSS in the file Weixin.php. CWE-79
Cross-site Scripting
CVE-2017-1000429 2024-11-21 12:04 2018-01-10 Show GitHub Exploit DB Packet Storm
257074 5.9 MEDIUM
Network
matrixssl matrixssl MatrixSSL version 3.7.2 has an incorrect UTCTime date range validation in its X.509 certificate validation process resulting in some certificates have their expiration (beginning) year extended (dela… CWE-295
Improper Certificate Validation 
CVE-2017-1000415 2024-11-21 12:04 2018-01-10 Show GitHub Exploit DB Packet Storm
257075 9.8 CRITICAL
Network
codehaus-plexus
debian
plexus-utils
debian_linux
Plexus-utils before 3.0.16 is vulnerable to command injection because it does not correctly process the contents of double quoted strings. CWE-78
OS Command 
CVE-2017-1000487 2024-11-21 12:04 2018-01-4 Show GitHub Exploit DB Packet Storm
257076 9.8 CRITICAL
Network
primetek primefaces Primetek Primefaces 5.x is vulnerable to a weak encryption flaw resulting in remote code execution CWE-326
Inadequate Encryption Strength
CVE-2017-1000486 2024-11-21 12:04 2018-01-4 Show GitHub Exploit DB Packet Storm
257077 7.8 HIGH
Local
nylas_mail_lives_project nylas_mail Nylas Mail Lives 2.2.2 uses 0755 permissions for $HOME/.nylas-mail, which allows local users to obtain sensitive authentication information via standard filesystem operations. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2017-1000485 2024-11-21 12:04 2018-01-4 Show GitHub Exploit DB Packet Storm
257078 6.1 MEDIUM
Network
plone plone By linking to a specific url in Plone 2.5-5.1rc1 with a parameter, an attacker could send you to his own website. On its own this is not so bad: the attacker could more easily link directly to his ow… CWE-601
Open Redirect
CVE-2017-1000484 2024-11-21 12:04 2018-01-4 Show GitHub Exploit DB Packet Storm
257079 7.8 HIGH
Local
linux-dash_project linux-dash Linux Dash up to version v2 is vulnerable to multiple command injection vulnerabilities in the way module names are parsed and then executed resulting in code execution on the server, potentially as … CWE-78
OS Command 
CVE-2017-1000473 2024-11-21 12:04 2018-01-4 Show GitHub Exploit DB Packet Storm
257080 6.5 MEDIUM
Network
pocoproject
debian
poco
debian_linux
The ZipCommon::isValidPath() function in Zip/src/ZipCommon.cpp in POCO C++ Libraries before 1.8 does not properly restrict the filename value in the ZIP header, which allows attackers to conduct abso… CWE-22
Path Traversal
CVE-2017-1000472 2024-11-21 12:04 2018-01-4 Show GitHub Exploit DB Packet Storm