Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
258001 9.3 危険 Mozilla Foundation - Windows 上で稼働する複数の Mozilla 製品における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2010-3131 2010-10-1 17:31 2010-09-7 Show GitHub Exploit DB Packet Storm
258002 9.3 危険 Mozilla Foundation - Apple Mac OS X 上で稼働する複数の Mozilla 製品における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-2770 2010-09-30 17:56 2010-09-7 Show GitHub Exploit DB Packet Storm
258003 7.2 危険 レッドハット - Red Hat Package Manager の lib/fsm.c における 権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2005-4889 2010-09-29 16:00 2010-06-8 Show GitHub Exploit DB Packet Storm
258004 10 危険 シスコシステムズ - Cisco Industrial Ethernet 3000 シリーズに SNMP Community String がハードコードされている問題 CWE-264
認可・権限・アクセス制御
CVE-2010-1574 2010-09-29 16:00 2010-07-13 Show GitHub Exploit DB Packet Storm
258005 4.3 警告 IBM - IBM WebSphere Application Server の管理コンソールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0778 2010-09-29 16:00 2010-06-18 Show GitHub Exploit DB Packet Storm
258006 4.3 警告 IBM - IBM WebSphere Application Server の管理コンソールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0779 2010-09-29 16:00 2010-06-18 Show GitHub Exploit DB Packet Storm
258007 4.3 警告 IBM - IBM HTTP Server の mod_ibm_ssl におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-2327 2010-09-29 15:59 2010-03-18 Show GitHub Exploit DB Packet Storm
258008 6.9 警告 アップル - Windows 上で稼働する Apple Safari における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1805 2010-09-28 14:46 2010-09-7 Show GitHub Exploit DB Packet Storm
258009 4.3 警告 Zope Foundation - Zope の ZServer におけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2010-3198 2010-09-28 14:46 2010-09-1 Show GitHub Exploit DB Packet Storm
258010 - - Blackboard, Inc. - Blackboard Transact データベースに情報漏えいの脆弱性 - - 2010-09-28 14:46 2010-09-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306221 6.7 MEDIUM
Local
linux-ax25
debian
ax25-tools
debian_linux
The AX.25 daemon (ax25d) in ax25-tools before 0.0.8-13 does not check the return value of a setuid call. The setuid call is responsible for dropping privileges but if the call fails the daemon would … CWE-269
 Improper Privilege Management
CVE-2011-2910 2024-11-21 10:29 2019-11-16 Show GitHub Exploit DB Packet Storm
306222 9.8 CRITICAL
Network
elgg elgg Elgg through 1.7.10 has a SQL injection vulnerability CWE-89
SQL Injection
CVE-2011-2936 2024-11-21 10:29 2019-11-12 Show GitHub Exploit DB Packet Storm
306223 6.1 MEDIUM
Network
elgg elgg Elgg through 1.7.10 has XSS CWE-79
Cross-site Scripting
CVE-2011-2935 2024-11-21 10:29 2019-11-12 Show GitHub Exploit DB Packet Storm
306224 9.8 CRITICAL
Network
gnome
redhat
debian
gdk-pixbuf
enterprise_linux
debian_linux
gdk-pixbuf through 2.31.1 has GIF loader buffer overflow when initializing decompression tables due to an input validation flaw CWE-20
 Improper Input Validation 
CVE-2011-2897 2024-11-21 10:29 2019-11-12 Show GitHub Exploit DB Packet Storm
306225 6.5 MEDIUM
Network
google blink Incorrect handling of timer information in Timer.cpp in WebKit in Google Chrome before Blink M13. CWE-755
 Improper Handling of Exceptional Conditions
CVE-2011-2807 2024-11-21 10:29 2019-11-8 Show GitHub Exploit DB Packet Storm
306226 6.5 MEDIUM
Network
google blink A stale layout root is set as an input element in WebKit in Google Chrome before Blink M13 when a child of a keygen with autofocus is accessed. CWE-20
 Improper Input Validation 
CVE-2011-2808 2024-11-21 10:29 2019-11-7 Show GitHub Exploit DB Packet Storm
306227 5.9 MEDIUM
Network
canonical selinux The Ubuntu SELinux initscript before version 1:0.10 used touch to create a lockfile in a world-writable directory. If the OS kernel does not have symlink protections then an attacker can cause a zero… CWE-693
 Protection Mechanism Failure
CVE-2011-3151 2024-11-21 10:29 2019-04-23 Show GitHub Exploit DB Packet Storm
306228 8.6 HIGH
Network
openstack nova Versions of nova before 2012.1 could expose hypervisor host files to a guest operating system when processing a maliciously constructed qcow filesystem. CWE-200
Information Exposure
CVE-2011-3147 2024-11-21 10:29 2019-04-23 Show GitHub Exploit DB Packet Storm
306229 9.8 CRITICAL
Network
mount.ecrpytfs_private_project mount.ecrpytfs_private When mount.ecrpytfs_private before version 87-0ubuntu1.2 calls setreuid() it doesn't also set the effective group id. So when it creates the new version, mtab.tmp, it's created with the group id of t… CWE-254
 7PK - Security Features
CVE-2011-3145 2024-11-21 10:29 2019-04-23 Show GitHub Exploit DB Packet Storm
306230 9.8 CRITICAL
Network
suse suse_linux_enterprise_server A vulnerability in pam_modules of SUSE Linux Enterprise allows attackers to log into accounts that should have been disabled. Affected releases are SUSE Linux Enterprise: versions prior to 12. CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-3172 2024-11-21 10:29 2018-06-8 Show GitHub Exploit DB Packet Storm