Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
258151 9.3 危険 アドビシステムズ - Adobe Shockwave Player の DIRAPIX.dll における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-2870 2010-09-10 15:17 2010-08-24 Show GitHub Exploit DB Packet Storm
258152 9.3 危険 アドビシステムズ - Adobe Shockwave Player の IML32.dll における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-2869 2010-09-10 15:16 2010-08-24 Show GitHub Exploit DB Packet Storm
258153 9.3 危険 アドビシステムズ - Adobe Shockwave Player の IML32.dll における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-2868 2010-09-10 15:16 2010-08-24 Show GitHub Exploit DB Packet Storm
258154 4.3 警告 futomi - futomi's CGI Cafe 製高機能アクセス解析CGI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2366 2010-09-10 12:01 2010-09-10 Show GitHub Exploit DB Packet Storm
258155 9.3 危険 アドビシステムズ - Adobe Shockwave Player の DIRAPIX.dll における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-2867 2010-09-9 13:35 2010-08-24 Show GitHub Exploit DB Packet Storm
258156 9.3 危険 アドビシステムズ - Adobe Shockwave Player の DIRAPI モジュールにおける整数符号エラーの脆弱性 CWE-189
数値処理の問題
CVE-2010-2866 2010-09-9 13:34 2010-08-24 Show GitHub Exploit DB Packet Storm
258157 5 警告 アドビシステムズ - Adobe Shockwave Player におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2010-2865 2010-09-9 13:34 2010-08-24 Show GitHub Exploit DB Packet Storm
258158 9.3 危険 アドビシステムズ - Adobe Shockwave Player の IML32.dll における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-2864 2010-09-9 13:34 2010-08-24 Show GitHub Exploit DB Packet Storm
258159 10 危険 アドビシステムズ - Adobe Shockwave Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-2863 2010-09-9 13:34 2010-08-24 Show GitHub Exploit DB Packet Storm
258160 6.4 警告 アップル - Apple Mac OS X の libsecurity における SSL サーバになりすまされる脆弱性 CWE-287
不適切な認証
CVE-2010-1802 2010-09-8 15:52 2010-08-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
246511 6.1 MEDIUM
Network
1234n minicms An issue was discovered in MiniCMS 1.10. There is an mc-admin/post.php?tag= XSS vulnerability for a state=delete, state=draft, or state=publish request. CWE-79
Cross-site Scripting
CVE-2018-16298 2024-11-21 12:52 2018-09-1 Show GitHub Exploit DB Packet Storm
246512 9.8 CRITICAL
Network
phpkaiyuancms phpopensourcecms phpkaiyuancms PhpOpenSourceCMS (POSCMS) V3.2.0 allows an unauthenticated user to execute arbitrary SQL commands via the diy/module/member/controllers/Api.php ajax_save_draft function with the dir par… CWE-89
SQL Injection
CVE-2018-16278 2024-11-21 12:52 2018-09-1 Show GitHub Exploit DB Packet Storm
246513 7.8 HIGH
Local
linux
debian
canonical
linux_kernel
debian_linux
ubuntu_linux
An issue was discovered in yurex_read in drivers/usb/misc/yurex.c in the Linux kernel before 4.17.7. Local attackers could use user access read/writes with incorrect bounds checking in the yurex USB … CWE-787
 Out-of-bounds Write
CVE-2018-16276 2024-11-21 12:52 2018-09-1 Show GitHub Exploit DB Packet Storm
246514 7.8 HIGH
Local
opswat metadefender OPSWAT MetaDefender before v4.11.2 allows CSV injection. CWE-1236
 Improper Neutralization of Formula Elements in a CSV File
CVE-2018-16275 2024-11-21 12:52 2018-08-31 Show GitHub Exploit DB Packet Storm
246515 9.8 CRITICAL
Network
damicms damicms An issue was discovered in damiCMS V6.0.1. It relies on the PHP time() function for cookies, which makes it possible to determine the cookie for an existing admin session via 10800 guesses. CWE-330
 Use of Insufficiently Random Values
CVE-2018-16239 2024-11-21 12:52 2018-08-31 Show GitHub Exploit DB Packet Storm
246516 7.2 HIGH
Network
damicms damicms An issue was discovered in damiCMS V6.0.1. Remote code execution can occur via PHP code in a multipart/form-data POST to the admin.php?s=/Tpl/Update.html URI. For example, this can update the Web/Tpl… CWE-20
 Improper Input Validation 
CVE-2018-16238 2024-11-21 12:52 2018-08-31 Show GitHub Exploit DB Packet Storm
246517 2.7 LOW
Network
damicms damicms An issue was discovered in damiCMS V6.0.1. There is Directory Traversal via '|' characters in the s parameter to admin.php, as demonstrated by an admin.php?s=Tpl/Add/id/c:|windows|win.ini URI. CWE-22
Path Traversal
CVE-2018-16237 2024-11-21 12:52 2018-08-31 Show GitHub Exploit DB Packet Storm
246518 6.1 MEDIUM
Network
cpanel cpanel cPanel through 74 allows XSS via a crafted filename in the logs subdirectory of a user account, because the filename is mishandled during frontend/THEME/raw/index.html rendering. CWE-79
Cross-site Scripting
CVE-2018-16236 2024-11-21 12:52 2018-08-31 Show GitHub Exploit DB Packet Storm
246519 6.1 MEDIUM
Network
morningstarsecurity whatweb MorningStar WhatWeb 0.4.9 has XSS via JSON report files. CWE-79
Cross-site Scripting
CVE-2018-16234 2024-11-21 12:52 2018-08-31 Show GitHub Exploit DB Packet Storm
246520 6.1 MEDIUM
Network
1234n minicms MiniCMS V1.10 has XSS via the mc-admin/post-edit.php tags parameter. CWE-79
Cross-site Scripting
CVE-2018-16233 2024-11-21 12:52 2018-08-31 Show GitHub Exploit DB Packet Storm