Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
257791 9.3 危険 アドビシステムズ - Adobe Reader および Acrobat における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2011-2442 2011-10-20 16:14 2011-09-13 Show GitHub Exploit DB Packet Storm
257792 9.3 危険 アドビシステムズ - Adobe Reader および Acrobat の CoolType.dll におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-2441 2011-10-20 16:14 2011-09-13 Show GitHub Exploit DB Packet Storm
257793 9.3 危険 アドビシステムズ - Adobe Reader および Acrobat における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2011-2440 2011-10-20 16:13 2011-09-13 Show GitHub Exploit DB Packet Storm
257794 9.3 危険 アドビシステムズ - Adobe Reader および Acrobat における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2011-2439 2011-10-20 16:12 2011-09-13 Show GitHub Exploit DB Packet Storm
257795 - - BlueZ Project - BlueZ-hcidump におけるヒープオーバーフローの脆弱性 - CVE-2011-3334 2011-10-19 11:23 2011-10-13 Show GitHub Exploit DB Packet Storm
257796 - - VideoLAN - VLC Media Player に脆弱性 - CVE-2011-3333 2011-10-19 11:22 2011-10-13 Show GitHub Exploit DB Packet Storm
257797 6.4 警告 ヒューレット・パッカード - HP Onboard Administrator におけるアクセス制限を回避される脆弱性 CWE-noinfo
情報不足
CVE-2011-3155 2011-10-19 11:20 2011-10-10 Show GitHub Exploit DB Packet Storm
257798 7.6 危険 アップル - Apple iTunes で使用される WebKit における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-3241 2011-10-19 11:19 2011-10-12 Show GitHub Exploit DB Packet Storm
257799 7.6 危険 アップル - Apple iTunes で使用される WebKit における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-3239 2011-10-19 11:19 2011-10-12 Show GitHub Exploit DB Packet Storm
257800 7.6 危険 アップル - Apple iTunes で使用される WebKit における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-3238 2011-10-19 11:19 2011-10-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
246921 7.2 HIGH
Network
pivotal_software
cloudfoundry
cloud_foundry_uaa
cloud_foundry_uaa-release
cf-deployment
Cloud Foundry Foundation UAA, versions 4.12.X and 4.13.X, introduced a feature which could allow privilege escalation across identity zones for clients performing offline validation. A zone administr… NVD-CWE-noinfo
CVE-2018-1262 2024-11-21 12:59 2018-05-16 Show GitHub Exploit DB Packet Storm
246922 8.8 HIGH
Network
infinispan
redhat
infinispan
jboss_data_grid
Infinispan permits improper deserialization of trusted data via XML and JSON transcoders under certain server configurations. A user with authenticated access to the server could send a malicious obj… CWE-502
 Deserialization of Untrusted Data
CVE-2018-1131 2024-11-21 12:59 2018-05-15 Show GitHub Exploit DB Packet Storm
246923 7.8 HIGH
Local
linux
canonical
debian
redhat
linux_kernel
ubuntu_linux
debian_linux
enterprise_linux_desktop
enterprise_linux_server_aus
enterprise_linux_workstation
enterprise_linux
enterprise_linux_server_tus
enterpris…
kernel KVM before versions kernel 4.16, kernel 4.16-rc7, kernel 4.17-rc1, kernel 4.17-rc2 and kernel 4.17-rc3 is vulnerable to a flaw in the way the Linux kernel's KVM hypervisor handled exceptions d… NVD-CWE-noinfo
CVE-2018-1087 2024-11-21 12:59 2018-05-16 Show GitHub Exploit DB Packet Storm
246924 7.5 HIGH
Network
pivotal_software greenplum_command_center Pivotal Greenplum Command Center versions 2.x prior to 2.5.1 contains a blind SQL injection vulnerability. An unauthenticated user can perform a SQL injection in the command center which results in d… CWE-89
SQL Injection
CVE-2018-1280 2024-11-21 12:59 2018-05-12 Show GitHub Exploit DB Packet Storm
246925 6.5 MEDIUM
Network
pivotal_software pivotal_application_service Apps Manager included in Pivotal Application Service, versions 1.12.x prior to 1.12.22, 2.0.x prior to 2.0.13, and 2.1.x prior to 2.1.4 contains an authorization enforcement vulnerability. A member o… CWE-863
 Incorrect Authorization
CVE-2018-1278 2024-11-21 12:59 2018-05-12 Show GitHub Exploit DB Packet Storm
246926 4.7 MEDIUM
Local
vmware spring_integration_zip Spring-integration-zip versions prior to 1.0.1 exposes an arbitrary file write vulnerability, which can be achieved using a specially crafted zip archive (affects other archives as well, bzip2, tar, … CWE-22
Path Traversal
CVE-2018-1261 2024-11-21 12:59 2018-05-12 Show GitHub Exploit DB Packet Storm
246927 9.8 CRITICAL
Network
pivotal_software spring_security_oauth Spring Security OAuth, versions 2.3 prior to 2.3.3, 2.2 prior to 2.2.2, 2.1 prior to 2.1.2, 2.0 prior to 2.0.15 and older unsupported versions contains a remote code execution vulnerability. A malici… CWE-94
Code Injection
CVE-2018-1260 2024-11-21 12:59 2018-05-12 Show GitHub Exploit DB Packet Storm
246928 7.5 HIGH
Network
pivotal_software
xmlbeam
spring_data_commons
spring_data_rest
xmlbeam
Spring Data Commons, versions 1.13 prior to 1.13.12 and 2.0 prior to 2.0.7, used in combination with XMLBeam 1.4.14 or earlier versions, contains a property binder vulnerability caused by improper re… CWE-611
XXE
CVE-2018-1259 2024-11-21 12:59 2018-05-12 Show GitHub Exploit DB Packet Storm
246929 8.8 HIGH
Network
oracle
netapp
redhat
weblogic_server
enterprise_manager_ops_center
enterprise_repository
application_testing_suite
retail_back_office
hospitality_guest_access
endeca_information_discovery_integrator
Spring Framework version 5.0.5 when used in combination with any versions of Spring Security contains an authorization bypass when using method security. An unauthorized malicious user can gain unaut… CWE-863
 Incorrect Authorization
CVE-2018-1258 2024-11-21 12:59 2018-05-12 Show GitHub Exploit DB Packet Storm
246930 6.5 MEDIUM
Network
vmware
redhat
oracle
spring_framework
openshift
flexcube_private_banking
weblogic_server
primavera_gateway
application_testing_suite
hospitality_guest_access
enterprise_manager_ops_center
endeca_i…
Spring Framework, versions 5.0.x prior to 5.0.6, versions 4.3.x prior to 4.3.17, and older unsupported versions allows applications to expose STOMP over WebSocket endpoints with a simple, in-memory S… NVD-CWE-noinfo
CVE-2018-1257 2024-11-21 12:59 2018-05-12 Show GitHub Exploit DB Packet Storm