Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
255381 3 注意 オラクル - Oracle PeopleSoft and JDEdwards Suite の PeopleSoft Enterprise CRM コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2378 2010-08-6 18:29 2010-07-13 Show GitHub Exploit DB Packet Storm
255382 4 警告 オラクル - Oracle PeopleSoft and JDEdwards Suite の PeopleSoft Enterprise PeopleTools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2377 2010-08-6 18:29 2010-07-13 Show GitHub Exploit DB Packet Storm
255383 4 警告 オラクル - Oracle PeopleSoft and JDEdwards Suite の PeopleSoft Enterprise HCM - Time & Labor コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2379 2010-08-6 18:29 2010-07-13 Show GitHub Exploit DB Packet Storm
255384 4 警告 オラクル - Oracle PeopleSoft and JDEdwards Suite の PeopleSoft Enterprise HCM コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2398 2010-08-6 18:28 2010-07-13 Show GitHub Exploit DB Packet Storm
255385 4.3 警告 オラクル - Oracle PeopleSoft and JDEdwards Suite の PeopleSoft Enterprise FSCM コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2380 2010-08-6 18:28 2010-07-13 Show GitHub Exploit DB Packet Storm
255386 5.5 警告 オラクル - Oracle PeopleSoft and JDEdwards Suite の PeopleSoft Enterprise PeopleTools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2402 2010-08-6 18:28 2010-07-13 Show GitHub Exploit DB Packet Storm
255387 5.5 警告 オラクル - Oracle PeopleSoft and JDEdwards Suite の PeopleSoft Enterprise HCM - eProfile Mgr コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2401 2010-08-6 18:28 2010-07-13 Show GitHub Exploit DB Packet Storm
255388 1.9 注意 オラクル - Oracle Supply Chain Products Suite の Oracle Transportation Management コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2371 2010-08-6 18:27 2010-07-13 Show GitHub Exploit DB Packet Storm
255389 4.3 警告 オラクル - Oracle Supply Chain Products Suite の Oracle Transportation Management コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2372 2010-08-6 18:27 2010-07-13 Show GitHub Exploit DB Packet Storm
255390 10 危険 アップル
サイバートラスト株式会社
サン・マイクロシステムズ
レッドハット
- 複数の Oracle 製品 の New Java Plug-in コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0887 2010-08-5 17:16 2010-04-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
273601 5.4 MEDIUM
Network
phpvibe phpvibe Cross-site scripting (XSS) vulnerability in PHPVibe before 4.21 allows remote authenticated users to inject arbitrary web script or HTML via a comment. CWE-79
Cross-site Scripting
CVE-2015-5399 2024-11-21 11:32 2016-08-27 Show GitHub Exploit DB Packet Storm
273602 7.1 HIGH
Local
canonical
redhat
debian
spice_project
ubuntu_linux
enterprise_linux_server_eus
enterprise_linux_hpc_node
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
enterprise_linux_hpc_node_eus
deb…
Heap-based buffer overflow in SPICE before 0.12.6 allows guest OS users to read and write to arbitrary memory locations on the host via guest QXL commands related to surface creation. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2015-5261 2024-11-21 11:32 2016-06-7 Show GitHub Exploit DB Packet Storm
273603 7.8 HIGH
Local
redhat
debian
canonical
spice_project
enterprise_linux_server_eus
enterprise_linux_hpc_node
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
debian_linux
ubuntu_linux
spice
enterprise_…
Heap-based buffer overflow in SPICE before 0.12.6 allows guest OS users to cause a denial of service (heap-based memory corruption and QEMU-KVM crash) or possibly execute arbitrary code on the host v… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2015-5260 2024-11-21 11:32 2016-06-7 Show GitHub Exploit DB Packet Storm
273604 5.5 MEDIUM
Local
criu
opensuse
checkpoint\/restore_in_userspace
opensuse
The service daemon in CRIU does not properly restrict access to non-dumpable processes, which allows local users to obtain sensitive information via (1) process dumps or (2) ptrace access. CWE-200
Information Exposure
CVE-2015-5231 2024-11-21 11:32 2016-06-7 Show GitHub Exploit DB Packet Storm
273605 7.8 HIGH
Local
opensuse
criu
opensuse
checkpoint\/restore_in_userspace
The service daemon in CRIU creates log and dump files insecurely, which allows local users to create arbitrary files and take ownership of existing files via unspecified vectors related to a director… CWE-264
Permissions, Privileges, and Access Controls
CVE-2015-5228 2024-11-21 11:32 2016-06-7 Show GitHub Exploit DB Packet Storm
273606 9.1 CRITICAL
Network
ibm
suse
redhat
java_sdk
linux_enterprise_server
linux_enterprise_software_development_kit
suse_linux_enterprise_server
websphere_application_server
satellite
The J9 JVM in IBM SDK, Java Technology Edition 6 before SR16 FP20, 6 R1 before SR8 FP20, 7 before SR9 FP30, and 7 R1 before SR3 FP30 allows remote attackers to obtain sensitive information or inject … CWE-200
Information Exposure
CVE-2015-5041 2024-11-21 11:32 2016-06-7 Show GitHub Exploit DB Packet Storm
273607 4.4 MEDIUM
Local
apache cordova Apache Cordova iOS before 4.0.0 allows remote attackers to execute arbitrary plugins via a link. CWE-20
 Improper Input Validation 
CVE-2015-5208 2024-11-21 11:32 2016-05-10 Show GitHub Exploit DB Packet Storm
273608 5.3 MEDIUM
Local
apache cordova Apache Cordova iOS before 4.0.0 might allow attackers to bypass a URL whitelist protection mechanism in an app and load arbitrary resources by leveraging unspecified methods. CWE-254
CWE-284
 7PK - Security Features
Improper Access Control
CVE-2015-5207 2024-11-21 11:32 2016-05-10 Show GitHub Exploit DB Packet Storm
273609 5.9 MEDIUM
Network
samba
canonical
samba
ubuntu_linux
Samba 3.x and 4.x before 4.2.11, 4.3.x before 4.3.8, and 4.4.x before 4.4.2 does not properly implement the DCE-RPC layer, which allows remote attackers to perform protocol-downgrade attacks, cause a… NVD-CWE-noinfo
CVE-2015-5370 2024-11-21 11:32 2016-04-25 Show GitHub Exploit DB Packet Storm
273610 7.5 HIGH
Network
redhat
openstack
openstack
tripleo_heat_templates
The TripleO Heat templates (tripleo-heat-templates) do not properly order the Identity Service (keystone) before the OpenStack Object Storage (Swift) staticweb middleware in the swiftproxy pipeline w… CWE-200
Information Exposure
CVE-2015-5271 2024-11-21 11:32 2016-04-16 Show GitHub Exploit DB Packet Storm