Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
258041 5 警告 VMware - VMware Authorization Service の VMware Authentication Daemon におけるサービス運用妨害 (DoS) の脆弱性 CWE-134
書式文字列の問題
CVE-2009-3707 2010-05-7 17:26 2009-10-16 Show GitHub Exploit DB Packet Storm
258042 9.3 危険 VMware - VMnc メディアコーデックおよびムービーデコーダにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2009-1565 2010-05-7 17:26 2010-04-9 Show GitHub Exploit DB Packet Storm
258043 9.3 危険 VMware - VMnc メディアコーデックおよびムービーデコーダにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-1564 2010-05-7 17:25 2010-04-9 Show GitHub Exploit DB Packet Storm
258044 10 危険 VMware - VMware Remote Console の vmware-vmrc.exe build 158248 における任意のコードを実行される脆弱性 CWE-134
書式文字列の問題
CVE-2009-3732 2010-05-7 17:25 2010-04-9 Show GitHub Exploit DB Packet Storm
258045 7.2 危険 VMware - 複数の VMware 製品の vmrun における権限昇格の脆弱性 CWE-134
書式文字列の問題
CVE-2010-1139 2010-05-7 17:25 2010-04-9 Show GitHub Exploit DB Packet Storm
258046 5 警告 VMware - 複数の VMware 製品の仮想ネットワークスタックにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-1138 2010-05-7 17:25 2010-04-9 Show GitHub Exploit DB Packet Storm
258047 8.5 危険 VMware - 複数の VMware 製品の VMware Tools における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1142 2010-05-7 17:24 2010-04-9 Show GitHub Exploit DB Packet Storm
258048 8.5 危険 VMware - 複数の VMware 製品の VMware Tools における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1141 2010-05-7 17:24 2010-04-9 Show GitHub Exploit DB Packet Storm
258049 5 警告 アップル
サイバートラスト株式会社
レッドハット
ターボリナックス
CUPS
- CUPS の ippReadIO 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-0949 2010-05-7 16:55 2009-06-3 Show GitHub Exploit DB Packet Storm
258050 6.8 警告 レッドハット
サイバートラスト株式会社
ターボリナックス
CUPS
- CUPS の TIFF イメージデコーディングルーチンにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-0163 2010-05-7 16:51 2009-04-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294041 9.8 CRITICAL
Network
openpne opopensocialplugin opOpenSocialPlugin 0.8.2.1, > 0.9.9.2, 0.9.13, 1.2.6: Multiple XML External Entity Injection Vulnerabilities CWE-776
XML Entity Expansion
CVE-2013-4335 2024-11-21 10:55 2020-02-8 Show GitHub Exploit DB Packet Storm
294042 9.8 CRITICAL
Network
tejimaya opwebapiplugin opWebAPIPlugin 0.5.1, 0.4.0, and 0.1.0: XXE Vulnerabilities CWE-611
XXE
CVE-2013-4334 2024-11-21 10:55 2020-02-7 Show GitHub Exploit DB Packet Storm
294043 9.8 CRITICAL
Network
nuxeo nuxeo RichFaces implementation in Nuxeo Platform 5.6.0 before HF27 and 5.8.0 before HF-01 does not restrict the classes for which deserialization methods can be called, which allows remote attackers to exe… CWE-502
 Deserialization of Untrusted Data
CVE-2013-4521 2024-11-21 10:55 2020-02-7 Show GitHub Exploit DB Packet Storm
294044 7.5 HIGH
Network
mediawiki
fedoraproject
mediawiki
fedora
The CentralNotice extension for MediaWiki before 1.19.9, 1.20.x before 1.20.8, and 1.21.x before 1.21.3 sets the Cache-Control header to cache session cookies when a user is autocreated, which allows… CWE-384
 Session Fixation
CVE-2013-4572 2024-11-21 10:55 2020-02-7 Show GitHub Exploit DB Packet Storm
294045 7.5 HIGH
Network
gnome
redhat
evolution
evolution_data_server
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
The gpg_ctx_add_recipient function in camel/camel-gpg-context.c in GNOME Evolution 3.8.4 and earlier and Evolution Data Server 3.9.5 and earlier does not properly select the GPG key to use for email … CWE-200
Information Exposure
CVE-2013-4166 2024-11-21 10:55 2020-02-7 Show GitHub Exploit DB Packet Storm
294046 6.1 MEDIUM
Network
hitmyserver hms_testimonials Multiple cross-site scripting (XSS) vulnerabilities in the HMS Testimonials plugin before 2.0.11 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) imag… CWE-79
Cross-site Scripting
CVE-2013-4241 2024-11-21 10:55 2020-01-31 Show GitHub Exploit DB Packet Storm
294047 6.5 MEDIUM
Network
flippy_project flippy The Flippy module 7.x-1.x before 7.x-1.2 for Drupal does not properly restrict access to nodes, which allows remote authenticated users with the permission to access content to read a link or alias t… CWE-200
Information Exposure
CVE-2013-4187 2024-11-21 10:55 2020-01-31 Show GitHub Exploit DB Packet Storm
294048 8.8 HIGH
Network
gitlab gitlab
gitlab-shell
The parse_cmd function in lib/gitlab_shell.rb in GitLab 5.0 before 5.4.2, Community Edition before 6.2.4, and Enterprise Edition before 6.2.1 and gitlab-shell before 1.7.8 allows remote authenticated… CWE-269
 Improper Privilege Management
CVE-2013-4583 2024-11-21 10:55 2020-01-29 Show GitHub Exploit DB Packet Storm
294049 6.5 MEDIUM
Network
gitlab gitlab
gitlab-shell
The (1) create_branch, (2) create_tag, (3) import_project, and (4) fork_project functions in lib/gitlab_projects.rb in GitLab 5.0 before 5.4.2, Community Edition before 6.2.4, Enterprise Edition befo… CWE-829
 Inclusion of Functionality from Untrusted Control Sphere
CVE-2013-4582 2024-11-21 10:55 2020-01-29 Show GitHub Exploit DB Packet Storm
294050 9.8 CRITICAL
Network
pwgen_project pwgen The Phonemes mode in Pwgen 2.06 generates predictable passwords, which makes it easier for context-dependent attackers to guess the password via a brute-force attack. CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2013-4441 2024-11-21 10:55 2020-01-28 Show GitHub Exploit DB Packet Storm