Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
258161 6.8 警告 アップル - Apple Mac OS X の CoreGraphics におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1801 2010-09-8 15:52 2010-08-25 Show GitHub Exploit DB Packet Storm
258162 5 警告 アップル
ClamAV
- ClamAV の libclamav/mspack.c における qtm_decompress 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-1311 2010-09-8 15:52 2010-04-8 Show GitHub Exploit DB Packet Storm
258163 5 警告 アップル - Apple Mac OS X の CFNetwork における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-1800 2010-09-8 15:51 2010-08-25 Show GitHub Exploit DB Packet Storm
258164 6.8 警告 アップル - Apple Mac OS X の Apple Type Services におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1808 2010-09-8 15:51 2010-08-25 Show GitHub Exploit DB Packet Storm
258165 6.2 警告 サイバートラスト株式会社
Todd C. Miller
ターボリナックス
レッドハット
- sudo の secure path 機能における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1646 2010-09-8 15:50 2010-06-7 Show GitHub Exploit DB Packet Storm
258166 6.9 警告 サイバートラスト株式会社
Todd C. Miller
ターボリナックス
レッドハット
- sudo における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-1163 2010-09-8 15:50 2010-04-16 Show GitHub Exploit DB Packet Storm
258167 10 危険 ESET
アップル
ClamAV
ソースネクスト
- 複数のアンチウィルス製品に脆弱性 CWE-noinfo
情報不足
CVE-2010-0098 2010-09-8 15:50 2010-04-13 Show GitHub Exploit DB Packet Storm
258168 7.5 危険 The PHP Group
アップル
- PHP の safe_mode 実装におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1129 2010-09-8 15:49 2010-03-26 Show GitHub Exploit DB Packet Storm
258169 4.4 警告 サイバートラスト株式会社
Todd C. Miller
ターボリナックス
レッドハット
- sudo における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0427 2010-09-8 15:49 2010-02-25 Show GitHub Exploit DB Packet Storm
258170 6.6 警告 サイバートラスト株式会社
レッドハット
- QEMU-KVM の subpage MMIO initialization 機能における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-2784 2010-09-7 15:51 2010-08-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
253661 5.5 MEDIUM
Local
pcmanfm_project pcmanfm PCManFM 1.2.5 insecurely uses /tmp for a socket file, allowing a local user to cause a denial of service (application unavailability). CWE-20
 Improper Input Validation 
CVE-2017-8934 2024-11-21 12:35 2017-05-15 Show GitHub Exploit DB Packet Storm
253662 3.3 LOW
Local
libmenu-cache_project libmenu-cache Libmenu-cache 1.0.2 insecurely uses /tmp for a socket file, allowing a local user to cause a denial of service (menu unavailability). CWE-20
 Improper Input Validation 
CVE-2017-8933 2024-11-21 12:35 2017-05-15 Show GitHub Exploit DB Packet Storm
253663 8.8 HIGH
Network
simpleinvoices simple_invoices Multiple cross-site request forgery (CSRF) vulnerabilities in Simple Invoices 2013.1.beta.8 allow remote attackers to hijack the authentication of admins for requests that can (1) create new administ… CWE-352
 Origin Validation Error
CVE-2017-8930 2024-11-21 12:35 2017-05-15 Show GitHub Exploit DB Packet Storm
253664 7.5 HIGH
Network
virustotal yara The sized_string_cmp function in libyara/sizedstr.c in YARA 3.5.0 allows remote attackers to cause a denial of service (use-after-free and application crash) via a crafted rule. CWE-416
 Use After Free
CVE-2017-8929 2024-11-21 12:35 2017-05-15 Show GitHub Exploit DB Packet Storm
253665 4.3 MEDIUM
Network
openstack swift In OpenStack Swift through 2.10.1, 2.11.0 through 2.13.0, and 2.14.0, the proxy-server logs full tempurl paths, potentially leaking reusable tempurl signatures to anyone with read access to these log… CWE-200
Information Exposure
CVE-2017-8761 2024-11-21 12:34 2021-06-2 Show GitHub Exploit DB Packet Storm
253666 8.8 HIGH
Adjacent
dlink dcs-1100_firmware
dcs-1130_firmware
An issue was discovered on D-Link DCS-1100 and DCS-1130 devices. The device requires that a user logging into the device provide a username and password. However, the device allows D-Link apps on the… CWE-255
Credentials Management
CVE-2017-8417 2024-11-21 12:34 2019-07-3 Show GitHub Exploit DB Packet Storm
253667 7.2 HIGH
Network
open-xchange ox_cloud Open-Xchange GmbH OX Cloud Plugins 1.4.0 and earlier is affected by: Missing Authorization. CWE-285
Improper Authorization
CVE-2017-8777 2024-11-21 12:34 2019-05-23 Show GitHub Exploit DB Packet Storm
253668 5.4 MEDIUM
Network
synacor zimbra_collaboration_suite Synacor Zimbra Collaboration Suite (ZCS) before 8.7.10 has Persistent XSS. CWE-79
Cross-site Scripting
CVE-2017-8783 2024-11-21 12:34 2018-02-4 Show GitHub Exploit DB Packet Storm
253669 7.8 HIGH
Local
cisecurity cis-cat_pro_dashboard In Center for Internet Security CIS-CAT Pro Dashboard before 1.0.4, an authenticated user is able to change an administrative user's e-mail address and send a forgot password email to themselves, the… CWE-640
 Weak Password Recovery Mechanism for Forgotten Password
CVE-2017-8916 2024-11-21 12:34 2018-02-1 Show GitHub Exploit DB Packet Storm
253670 5.4 MEDIUM
Network
synocor zimbra_collaboration_suite Cross-site scripting (XSS) vulnerability in Zimbra Collaboration Suite (aka ZCS) before 8.8.0 Beta2 might allow remote attackers to inject arbitrary web script or HTML via vectors related to the "Sho… CWE-79
Cross-site Scripting
CVE-2017-8802 2024-11-21 12:34 2018-01-17 Show GitHub Exploit DB Packet Storm