Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
257881 2.1 注意 アップル - Apple iOS のホームスクリーンコンポーネントにおける重要な状態情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3431 2011-10-24 16:47 2011-10-14 Show GitHub Exploit DB Packet Storm
257882 5 警告 アップル - Apple iOS の UIKit アラートコンポーネントにおけるサービス運用妨害 (デバイスハング) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-3432 2011-10-24 16:46 2011-10-14 Show GitHub Exploit DB Packet Storm
257883 4.3 警告 アップル - Apple iOS の WiFi コンポーネントにおける重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2011-3434 2011-10-24 16:46 2011-10-14 Show GitHub Exploit DB Packet Storm
257884 4.3 警告 アップル - Apple iOS および Safari で使用される WebKit におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-3243 2011-10-24 16:43 2011-10-14 Show GitHub Exploit DB Packet Storm
257885 2.1 注意 アップル - Apple iOS のキーボードコンポーネントにおける重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2011-3245 2011-10-24 16:43 2011-10-14 Show GitHub Exploit DB Packet Storm
257886 2.6 注意 アップル - Apple iOS の CalDAV における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2011-3253 2011-10-24 16:43 2011-10-14 Show GitHub Exploit DB Packet Storm
257887 4.3 警告 アップル - Apple iOS のカレンダーにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-3254 2011-10-24 16:42 2011-10-14 Show GitHub Exploit DB Packet Storm
257888 4.3 警告 アップル - Apple iOS の CFNetwork における重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2011-3255 2011-10-24 16:33 2011-10-14 Show GitHub Exploit DB Packet Storm
257889 2.1 注意 アップル - Apple iOS の Data Access コンポーネントにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-3257 2011-10-24 16:32 2011-10-14 Show GitHub Exploit DB Packet Storm
257890 6.8 警告 アップル - Apple iOS の OfficeImport におけるバッファオーバーフローの脆弱性 CWE-94
コード・インジェクション
CVE-2011-3260 2011-10-24 16:30 2011-10-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
249391 8.8 HIGH
Network
filemanagerpro file_manager There is a CSRF vulnerability in the mndpsingh287 File Manager plugin 3.0 for WordPress via the page=wp_file_manager_root public_path parameter. CWE-352
 Origin Validation Error
CVE-2018-16966 2024-11-21 12:53 2019-04-16 Show GitHub Exploit DB Packet Storm
249392 7.5 HIGH
Network
openstack
redhat
octavia
openstack
In a default Red Hat Openstack Platform Director installation, openstack-octavia before versions openstack-octavia 2.0.2-5 and openstack-octavia-3.0.1-0.20181009115732 creates log files that are read… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2018-16856 2024-11-21 12:53 2019-03-27 Show GitHub Exploit DB Packet Storm
249393 9.8 CRITICAL
Network
libreoffice libreoffice It was found that libreoffice before versions 6.0.7 and 6.1.3 was vulnerable to a directory traversal attack which could be used to execute arbitrary macros bundled with a document. An attacker could… CWE-22
Path Traversal
CVE-2018-16858 2024-11-21 12:53 2019-03-26 Show GitHub Exploit DB Packet Storm
249394 5.4 MEDIUM
Network
fedoraproject
redhat
sssd
enterprise_linux
A flaw was found in sssd Group Policy Objects implementation. When the GPO is not readable by SSSD due to a too strict permission settings on the server side, SSSD will allow all authenticated users … CWE-269
 Improper Privilege Management
CVE-2018-16838 2024-11-21 12:53 2019-03-26 Show GitHub Exploit DB Packet Storm
249395 5.4 MEDIUM
Network
printeron printeron PrinterOn Enterprise 4.1.4 suffers from multiple authenticated stored XSS vulnerabilities via the (1) "Machine Host Name" or "Server Serial Number" field in the clustering configuration, (2) "name" f… CWE-79
Cross-site Scripting
CVE-2018-17167 2024-11-21 12:53 2019-03-22 Show GitHub Exploit DB Packet Storm
249396 7.5 HIGH
Network
shellinabox_project shellinabox libhttp/url.c in shellinabox through 2.20 has an implementation flaw in the HTTP request parsing logic. By sending a crafted multipart/form-data HTTP request, an attacker could exploit this to force … CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2018-16789 2024-11-21 12:53 2019-03-22 Show GitHub Exploit DB Packet Storm
249397 9.8 CRITICAL
Network
dolibarr dolibarr An issue was discovered in Dolibarr through 7.0.0. expensereport/card.php in the expense reports module allows SQL injection via the integer parameters qty and value_unit. CWE-89
SQL Injection
CVE-2018-16809 2024-11-21 12:53 2019-03-8 Show GitHub Exploit DB Packet Storm
249398 6.1 MEDIUM
Network
dolibarr dolibarr An issue was discovered in Dolibarr through 7.0.0. There is Stored XSS in expensereport/card.php in the expense reports plugin via the comments parameter, or a public or private note. CWE-79
Cross-site Scripting
CVE-2018-16808 2024-11-21 12:53 2019-03-8 Show GitHub Exploit DB Packet Storm
249399 6.1 MEDIUM
Network
ucms_project ucms An issue was discovered in UCMS 1.4.6. There is XSS in the title bar, as demonstrated by a do=list request. CWE-79
Cross-site Scripting
CVE-2018-16804 2024-11-21 12:53 2019-03-8 Show GitHub Exploit DB Packet Storm
249400 7.5 HIGH
Network
haxx
canonical
debian
netapp
siemens
oracle
redhat
f5
libcurl
ubuntu_linux
debian_linux
clustered_data_ontap
sinema_remote_connect_client
http_server
secure_global_desktop
communications_operations_monitor
enterprise_linux
big…
libcurl versions from 7.36.0 to before 7.64.0 is vulnerable to a heap buffer out-of-bounds read. The function handling incoming NTLM type-2 messages (`lib/vauth/ntlm.c:ntlm_decode_type2_target`) does… CWE-125
CWE-190
Out-of-bounds Read
 Integer Overflow or Wraparound
CVE-2018-16890 2024-11-21 12:53 2019-02-7 Show GitHub Exploit DB Packet Storm