Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
257971 6.9 警告 アドビシステムズ - Adobe Reader における権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2011-1353 2011-10-18 16:23 2011-09-13 Show GitHub Exploit DB Packet Storm
257972 5.8 警告 Adam Kennedy - Perl モジュール Crypt::DSA における署名を偽装される脆弱性 CWE-310
暗号の問題
CVE-2011-3599 2011-10-14 15:50 2011-10-10 Show GitHub Exploit DB Packet Storm
257973 5 警告 株式会社ロックオン - EC-CUBE における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-3988 2011-10-14 14:01 2011-10-14 Show GitHub Exploit DB Packet Storm
257974 6.8 警告 小山浩之 - DBD::mysqlPP における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-3989 2011-10-14 12:02 2011-10-14 Show GitHub Exploit DB Packet Storm
257975 5 警告 Novell - Novell GroupWise の GroupWise Internet Agent (GWIA) におけるサービス運用妨害 (デーモンクラッシュ) の脆弱性 CWE-noinfo
情報不足
CVE-2011-2219 2011-10-14 10:39 2010-06-30 Show GitHub Exploit DB Packet Storm
257976 5 警告 Novell - Novell GroupWise の GroupWise Internet Agent (GWIA) におけるサービス運用妨害 (デーモンクラッシュ) の脆弱性 CWE-noinfo
情報不足
CVE-2011-2218 2011-10-14 10:34 2010-06-30 Show GitHub Exploit DB Packet Storm
257977 4.3 警告 phpPgAdmin - phpPgAdmin におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-3598 2011-10-14 10:31 2011-10-8 Show GitHub Exploit DB Packet Storm
257978 10 危険 Novell - Novell GroupWise の GroupWise Internet Agent における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2011-2663 2011-10-14 10:30 2011-08-19 Show GitHub Exploit DB Packet Storm
257979 10 危険 Novell - Novell GroupWise の GroupWise Internet Agent における整数符号エラーの脆弱性 CWE-189
数値処理の問題
CVE-2011-2662 2011-10-14 10:28 2011-08-19 Show GitHub Exploit DB Packet Storm
257980 4.3 警告 Novell - Novell GroupWise の WebAccess におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2661 2011-10-14 10:27 2011-08-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
247211 6.1 MEDIUM
Network
ibm websphere_portal IBM WebSphere Portal 8.5 and 9.0 is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality poten… CWE-79
Cross-site Scripting
CVE-2018-1483 2024-11-21 12:59 2018-04-12 Show GitHub Exploit DB Packet Storm
247212 9.8 CRITICAL
Network
vmware
oracle
spring_framework
primavera_gateway
application_testing_suite
retail_open_commerce_platform
communications_diameter_signaling_router
communications_performance_intelligence_center
in…
Spring Framework, versions 5.0 prior to 5.0.5 and versions 4.3 prior to 4.3.16 and older unsupported versions, allow applications to expose STOMP over WebSocket endpoints with a simple, in-memory STO… - CVE-2018-1275 2024-11-21 12:59 2018-04-11 Show GitHub Exploit DB Packet Storm
247213 9.8 CRITICAL
Network
pivotal_software
apache
oracle
spring_data_commons
spring_data_rest
ignite
financial_services_crime_and_compliance_management_studio
Spring Data Commons, versions prior to 1.13 to 1.13.10, 2.0 to 2.0.5, and older unsupported versions, contain a property binder vulnerability caused by improper neutralization of special elements. An… CWE-74
Injection
CVE-2018-1273 2024-11-21 12:59 2018-04-11 Show GitHub Exploit DB Packet Storm
247214 9.8 CRITICAL
Network
dell emc_integrated_data_protection_appliance
emc_avamar
Avamar Installation Manager in Dell EMC Avamar Server 7.3.1, 7.4.1, and 7.5.0, and Dell EMC Integrated Data Protection Appliance 2.0 and 2.1, is affected by a missing access control check vulnerabili… NVD-CWE-noinfo
CWE-862
 Missing Authorization
CVE-2018-1217 2024-11-21 12:59 2018-04-10 Show GitHub Exploit DB Packet Storm
247215 7.5 HIGH
Network
apache
debian
solr
debian_linux
This vulnerability in Apache Solr 1.2 to 6.6.2 and 7.0.0 to 7.2.1 relates to an XML external entity expansion (XXE) in the `&dataConfig=<inlinexml>` parameter of Solr's DataImportHandler. It can be u… CWE-611
XXE
CVE-2018-1308 2024-11-21 12:59 2018-04-9 Show GitHub Exploit DB Packet Storm
247216 7.5 HIGH
Network
vmware
oracle
spring_framework
enterprise_manager_ops_center
primavera_gateway
application_testing_suite
retail_back_office
retail_open_commerce_platform
communications_diameter_signaling_router<…
Spring Framework, versions 5.0 prior to 5.0.5 and versions 4.3 prior to 4.3.15 and older unsupported versions, provide client-side support for multipart requests. When Spring MVC or Spring WebFlux se… NVD-CWE-noinfo
CVE-2018-1272 2024-11-21 12:59 2018-04-6 Show GitHub Exploit DB Packet Storm
247217 5.9 MEDIUM
Network
vmware
oracle
spring_framework
retail_xstore_point_of_service
enterprise_manager_ops_center
primavera_gateway
application_testing_suite
retail_back_office
retail_open_commerce_platform
communi…
Spring Framework, versions 5.0 prior to 5.0.5 and versions 4.3 prior to 4.3.15 and older unsupported versions, allow applications to configure Spring MVC to serve static resources (e.g. CSS, JS, imag… - CVE-2018-1271 2024-11-21 12:59 2018-04-6 Show GitHub Exploit DB Packet Storm
247218 9.8 CRITICAL
Network
vmware
oracle
redhat
debian
spring_framework
retail_xstore_point_of_service
enterprise_manager_ops_center
primavera_gateway
application_testing_suite
retail_back_office
retail_open_commerce_platform
communi…
Spring Framework, versions 5.0 prior to 5.0.5 and versions 4.3 prior to 4.3.15 and older unsupported versions, allow applications to expose STOMP over WebSocket endpoints with a simple, in-memory STO… - CVE-2018-1270 2024-11-21 12:59 2018-04-6 Show GitHub Exploit DB Packet Storm
247219 6.5 MEDIUM
Network
theforeman
redhat
foreman
satellite
An input sanitization flaw was found in the id field in the dashboard controller of Foreman before 1.16.1. A user could use this flaw to perform an SQL injection attack on the back end database. CWE-89
SQL Injection
CVE-2018-1096 2024-11-21 12:59 2018-04-6 Show GitHub Exploit DB Packet Storm
247220 3.7 LOW
Network
apache hive In Apache Hive 2.1.0 to 2.3.2, when 'COPY FROM FTP' statement is run using HPL/SQL extension to Hive, a compromised/malicious FTP server can cause the file to be written to an arbitrary location on t… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2018-1315 2024-11-21 12:59 2018-04-5 Show GitHub Exploit DB Packet Storm