Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
258321 10 危険 マイクロソフト - Microsoft Windows Vista および Windows 7 の Bluetooth Stack における任意のコードを実行される脆弱性 CWE-DesignError
CVE-2011-1265 2011-07-21 10:24 2011-07-12 Show GitHub Exploit DB Packet Storm
258322 5 警告 Google - Google Chrome の Cascading Style Sheets の実装における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-1810 2011-07-21 10:23 2011-06-7 Show GitHub Exploit DB Packet Storm
258323 5 警告 Google - Google Chrome のアクセシビリティ機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-1809 2011-07-21 10:22 2011-06-7 Show GitHub Exploit DB Packet Storm
258324 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-1808 2011-07-21 10:21 2011-06-7 Show GitHub Exploit DB Packet Storm
258325 4.3 警告 サイバートラスト株式会社
Apache Software Foundation
レッドハット
- Apache Subversion で利用される Apache HTTP Server における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-1921 2011-07-21 09:57 2011-06-6 Show GitHub Exploit DB Packet Storm
258326 4.3 警告 サイバートラスト株式会社
Apache Software Foundation
レッドハット
- Apache Subversion で利用される Apache HTTP Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-1783 2011-07-21 09:56 2011-06-6 Show GitHub Exploit DB Packet Storm
258327 6.5 警告 MIT Kerberos
レッドハット
- MIT Kerberos 5 の GSS-API FTP デーモンにおけるグループのアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-1526 2011-07-20 11:17 2011-07-5 Show GitHub Exploit DB Packet Storm
258328 6.8 警告 ヒューレット・パッカード - HP-UX のダイナミックローダにおける権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2011-2398 2011-07-20 11:14 2011-07-5 Show GitHub Exploit DB Packet Storm
258329 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (メモリ破損) の脆弱性 CWE-119
バッファエラー
CVE-2011-2347 2011-07-20 10:52 2011-06-28 Show GitHub Exploit DB Packet Storm
258330 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-2346 2011-07-20 10:51 2011-06-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
246921 7.2 HIGH
Network
pivotal_software
cloudfoundry
cloud_foundry_uaa
cloud_foundry_uaa-release
cf-deployment
Cloud Foundry Foundation UAA, versions 4.12.X and 4.13.X, introduced a feature which could allow privilege escalation across identity zones for clients performing offline validation. A zone administr… NVD-CWE-noinfo
CVE-2018-1262 2024-11-21 12:59 2018-05-16 Show GitHub Exploit DB Packet Storm
246922 8.8 HIGH
Network
infinispan
redhat
infinispan
jboss_data_grid
Infinispan permits improper deserialization of trusted data via XML and JSON transcoders under certain server configurations. A user with authenticated access to the server could send a malicious obj… CWE-502
 Deserialization of Untrusted Data
CVE-2018-1131 2024-11-21 12:59 2018-05-15 Show GitHub Exploit DB Packet Storm
246923 7.8 HIGH
Local
linux
canonical
debian
redhat
linux_kernel
ubuntu_linux
debian_linux
enterprise_linux_desktop
enterprise_linux_server_aus
enterprise_linux_workstation
enterprise_linux
enterprise_linux_server_tus
enterpris…
kernel KVM before versions kernel 4.16, kernel 4.16-rc7, kernel 4.17-rc1, kernel 4.17-rc2 and kernel 4.17-rc3 is vulnerable to a flaw in the way the Linux kernel's KVM hypervisor handled exceptions d… NVD-CWE-noinfo
CVE-2018-1087 2024-11-21 12:59 2018-05-16 Show GitHub Exploit DB Packet Storm
246924 7.5 HIGH
Network
pivotal_software greenplum_command_center Pivotal Greenplum Command Center versions 2.x prior to 2.5.1 contains a blind SQL injection vulnerability. An unauthenticated user can perform a SQL injection in the command center which results in d… CWE-89
SQL Injection
CVE-2018-1280 2024-11-21 12:59 2018-05-12 Show GitHub Exploit DB Packet Storm
246925 6.5 MEDIUM
Network
pivotal_software pivotal_application_service Apps Manager included in Pivotal Application Service, versions 1.12.x prior to 1.12.22, 2.0.x prior to 2.0.13, and 2.1.x prior to 2.1.4 contains an authorization enforcement vulnerability. A member o… CWE-863
 Incorrect Authorization
CVE-2018-1278 2024-11-21 12:59 2018-05-12 Show GitHub Exploit DB Packet Storm
246926 4.7 MEDIUM
Local
vmware spring_integration_zip Spring-integration-zip versions prior to 1.0.1 exposes an arbitrary file write vulnerability, which can be achieved using a specially crafted zip archive (affects other archives as well, bzip2, tar, … CWE-22
Path Traversal
CVE-2018-1261 2024-11-21 12:59 2018-05-12 Show GitHub Exploit DB Packet Storm
246927 9.8 CRITICAL
Network
pivotal_software spring_security_oauth Spring Security OAuth, versions 2.3 prior to 2.3.3, 2.2 prior to 2.2.2, 2.1 prior to 2.1.2, 2.0 prior to 2.0.15 and older unsupported versions contains a remote code execution vulnerability. A malici… CWE-94
Code Injection
CVE-2018-1260 2024-11-21 12:59 2018-05-12 Show GitHub Exploit DB Packet Storm
246928 7.5 HIGH
Network
pivotal_software
xmlbeam
spring_data_commons
spring_data_rest
xmlbeam
Spring Data Commons, versions 1.13 prior to 1.13.12 and 2.0 prior to 2.0.7, used in combination with XMLBeam 1.4.14 or earlier versions, contains a property binder vulnerability caused by improper re… CWE-611
XXE
CVE-2018-1259 2024-11-21 12:59 2018-05-12 Show GitHub Exploit DB Packet Storm
246929 8.8 HIGH
Network
oracle
netapp
redhat
weblogic_server
enterprise_manager_ops_center
enterprise_repository
application_testing_suite
retail_back_office
hospitality_guest_access
endeca_information_discovery_integrator
Spring Framework version 5.0.5 when used in combination with any versions of Spring Security contains an authorization bypass when using method security. An unauthorized malicious user can gain unaut… CWE-863
 Incorrect Authorization
CVE-2018-1258 2024-11-21 12:59 2018-05-12 Show GitHub Exploit DB Packet Storm
246930 6.5 MEDIUM
Network
vmware
redhat
oracle
spring_framework
openshift
flexcube_private_banking
weblogic_server
primavera_gateway
application_testing_suite
hospitality_guest_access
enterprise_manager_ops_center
endeca_i…
Spring Framework, versions 5.0.x prior to 5.0.6, versions 4.3.x prior to 4.3.17, and older unsupported versions allows applications to expose STOMP over WebSocket endpoints with a simple, in-memory S… NVD-CWE-noinfo
CVE-2018-1257 2024-11-21 12:59 2018-05-12 Show GitHub Exploit DB Packet Storm