Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
258321 9.3 危険 アップル - Apple Mac OS X の アカウント環境設定の実装におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0512 2010-04-15 18:38 2010-03-29 Show GitHub Exploit DB Packet Storm
258322 5 警告 アップル - Apple Mac OS X の Podcast プロデューサーにおけるワークフローにアクセスされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0511 2010-04-15 18:38 2010-03-29 Show GitHub Exploit DB Packet Storm
258323 9 危険 アップル - Apple Mac OS X のパスワードサーバにおけるログインアクセスを取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2010-0510 2010-04-15 18:37 2010-03-29 Show GitHub Exploit DB Packet Storm
258324 7.2 危険 アップル - Apple Mac OS X の SFLServer における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0509 2010-04-15 18:37 2010-03-29 Show GitHub Exploit DB Packet Storm
258325 7.8 危険 アップル - Apple Mac OS X の Mail における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2010-0525 2010-04-15 18:36 2010-03-29 Show GitHub Exploit DB Packet Storm
258326 4 警告 アップル
サイバートラスト株式会社
MySQL AB
レッドハット
- MySQL の mysqld におけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2009-4019 2010-04-15 18:16 2009-11-30 Show GitHub Exploit DB Packet Storm
258327 6.8 警告 The PHP Group
アップル
- PHP の posix_mkfifo 関数における open_basedir の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3558 2010-04-15 18:16 2009-11-23 Show GitHub Exploit DB Packet Storm
258328 4.4 警告 アップル
サイバートラスト株式会社
MySQL AB
レッドハット
- MySQL における権限チェックを回避される脆弱性 CWE-59
リンク解釈の問題
CVE-2009-4030 2010-04-15 18:16 2009-11-5 Show GitHub Exploit DB Packet Storm
258329 2.6 注意 アップル
サイバートラスト株式会社
MySQL AB
レッドハット
- MySQL のコマンドラインクライアントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-4456 2010-04-15 18:15 2008-10-6 Show GitHub Exploit DB Packet Storm
258330 10 危険 アップル - Apple Mac OS X の Mail における脆弱性 CWE-noinfo
情報不足
CVE-2010-0508 2010-04-14 17:11 2010-03-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
248701 7.8 HIGH
Local
qualcomm mdm9150_firmware
mdm9206_firmware
mdm9607_firmware
mdm9640_firmware
mdm9650_firmware
mdm9655_firmware
msm8909w_firmware
msm8996au_firmware
qcs605_firmware
sd_210_firmware
Undefined behavior in UE while processing unknown IEI in OTA message in Snapdragon Auto, Snapdragon Compute, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon Mobile, Snapdragon Wearable… CWE-20
 Improper Input Validation 
CVE-2018-11966 2024-11-21 12:44 2019-04-5 Show GitHub Exploit DB Packet Storm
248702 7.8 HIGH
Local
qualcomm mdm9206_firmware
mdm9607_firmware
mdm9650_firmware
mdm9655_firmware
msm8996au_firmware
sd_410_firmware
sd_412_firmware
sd_820a_firmware
Improper input validation in QCPE create function may lead to integer overflow in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Industrial IOT, Snapdragon Mobile in MDM920… CWE-20
 Improper Input Validation 
CVE-2018-11830 2024-11-21 12:44 2019-04-5 Show GitHub Exploit DB Packet Storm
248703 5.5 MEDIUM
Local
qualcomm mdm9206_firmware
mdm9607_firmware
mdm9650_firmware
mdm9655_firmware
qm215_firmware
sd_210_firmware
sd_212_firmware
sd_205_firmware
sd_410_firmware
sd_412_firmware
sd_425…
Insufficient protection of keys in keypad can lead HLOS to gain access to confidential keypad input data in Snapdragon Auto, Snapdragon Consumer Electronics Connectivity, Snapdragon Consumer IOT, Sna… NVD-CWE-noinfo
CVE-2018-11958 2024-11-21 12:44 2019-04-5 Show GitHub Exploit DB Packet Storm
248704 6.8 MEDIUM
Physics
tianocore edk_ii Stack overflow in DxeCore for EDK II may allow an unauthenticated user to potentially enable escalation of privilege, information disclosure and/or denial of service via local access. CWE-787
 Out-of-bounds Write
CVE-2018-12183 2024-11-21 12:44 2019-03-28 Show GitHub Exploit DB Packet Storm
248705 6.7 MEDIUM
Local
tianocore edk_ii Insufficient memory write check in SMM service for EDK II may allow an authenticated user to potentially enable escalation of privilege, information disclosure and/or denial of service via local acce… CWE-441
Confused Deputy
CVE-2018-12182 2024-11-21 12:44 2019-03-28 Show GitHub Exploit DB Packet Storm
248706 6.0 MEDIUM
Local
tianocore edk_ii Stack overflow in corrupted bmp for EDK II may allow unprivileged user to potentially enable denial of service or elevation of privilege via local access. CWE-787
 Out-of-bounds Write
CVE-2018-12181 2024-11-21 12:44 2019-03-28 Show GitHub Exploit DB Packet Storm
248707 8.8 HIGH
Network
tianocore
opensuse
edk_ii
leap
Buffer overflow in BlockIo service for EDK II may allow an unauthenticated user to potentially enable escalation of privilege, information disclosure and/or denial of service via network access. CWE-787
 Out-of-bounds Write
CVE-2018-12180 2024-11-21 12:44 2019-03-28 Show GitHub Exploit DB Packet Storm
248708 7.8 HIGH
Local
tianocore edk_ii Improper configuration in system firmware for EDK II may allow unauthenticated user to potentially enable escalation of privilege, information disclosure and/or denial of service via local access. NVD-CWE-noinfo
CVE-2018-12179 2024-11-21 12:44 2019-03-28 Show GitHub Exploit DB Packet Storm
248709 9.1 CRITICAL
Network
tianocore edk_ii Buffer overflow in network stack for EDK II may allow unprivileged user to potentially enable escalation of privilege and/or denial of service via network. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2018-12178 2024-11-21 12:44 2019-03-28 Show GitHub Exploit DB Packet Storm
248710 7.5 HIGH
Network
fasterxml
debian
fedoraproject
oracle
redhat
jackson-databind
debian_linux
fedora
jd_edwards_enterpriseone_tools
retail_merchandising_system
openshift_container_platform
jboss_enterprise_application_platform
single_sign-on<…
An issue was discovered in FasterXML jackson-databind prior to 2.7.9.4, 2.8.11.2, and 2.9.6. When Default Typing is enabled (either globally or for a specific property), the service has the Oracle JD… CWE-502
 Deserialization of Untrusted Data
CVE-2018-12023 2024-11-21 12:44 2019-03-22 Show GitHub Exploit DB Packet Storm