Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 12:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
258761 10 危険 マイクロソフト - Microsoft Windows の License Logging Server (llssrv.exe) における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2009-2523 2010-01-4 15:24 2009-11-10 Show GitHub Exploit DB Packet Storm
258762 9.3 危険 マイクロソフト - Microsoft Windows の Web Services on Devices API (WSDAPI) における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-2512 2010-01-4 15:23 2009-11-10 Show GitHub Exploit DB Packet Storm
258763 10 危険 アップル
VMware
サン・マイクロシステムズ
- Sun Java SE の Provider クラスにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2009-2722 2010-01-4 14:56 2009-08-10 Show GitHub Exploit DB Packet Storm
258764 10 危険 アップル
VMware
サン・マイクロシステムズ
- Sun Java SE の Provider クラスにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2009-2723 2010-01-4 14:55 2009-08-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
250331 7.5 HIGH
Network
ge mds_pulsenet Multiple variants of XML External Entity (XXE) attacks may be used to exfiltrate data from the host Windows platform in GE MDS PulseNET and MDS PulseNET Enterprise version 3.2.1 and prior. CWE-611
XXE
CVE-2018-10613 2024-11-21 12:41 2018-06-4 Show GitHub Exploit DB Packet Storm
250332 9.8 CRITICAL
Network
ge mds_pulsenet Java remote method invocation (RMI) input port in GE MDS PulseNET and MDS PulseNET Enterprise version 3.2.1 and prior may be exploited to allow unauthenticated users to launch applications and suppor… CWE-287
Improper Authentication
CVE-2018-10611 2024-11-21 12:41 2018-06-4 Show GitHub Exploit DB Packet Storm
250333 5.4 MEDIUM
Network
modx modx_revolution MODX Revolution 2.6.3 has XSS. CWE-79
Cross-site Scripting
CVE-2018-10382 2024-11-21 12:41 2018-06-2 Show GitHub Exploit DB Packet Storm
250334 6.1 MEDIUM
Network
gitlab gitlab An issue was discovered in GitLab Community Edition (CE) and Enterprise Edition (EE) before 10.5.8, 10.6.x before 10.6.5, and 10.7.x before 10.7.2. The Move Issue feature contained a persistent XSS v… CWE-79
Cross-site Scripting
CVE-2018-10379 2024-11-21 12:41 2018-06-1 Show GitHub Exploit DB Packet Storm
250335 5.3 MEDIUM
Network
samsung samsung_mobile A malformed OMACP WAP push message can cause memory corruption on a Samsung S7 Edge device when processing the String Extension portion of the WbXml payload. This is due to an integer overflow in mem… CWE-190
 Integer Overflow or Wraparound
CVE-2018-10751 2024-11-21 12:41 2018-05-30 Show GitHub Exploit DB Packet Storm
250336 9.8 CRITICAL
Network
zohocorp manageengine_adaudit_plus Zoho ManageEngine ADAudit Plus before 5.0.0 build 5100 allows blind SQL Injection. CWE-89
SQL Injection
CVE-2018-10466 2024-11-21 12:41 2018-05-30 Show GitHub Exploit DB Packet Storm
250337 5.3 MEDIUM
Network
dataiku data_science_studio The REST API in Dataiku DSS before 4.2.3 allows remote attackers to obtain sensitive information (i.e., determine if a username is valid) because of profile pictures visibility. CWE-200
Information Exposure
CVE-2018-10732 2024-11-21 12:41 2018-05-29 Show GitHub Exploit DB Packet Storm
250338 8.8 HIGH
Network
trendmicro smart_protection_server A SQL injection remote code execution vulnerability in Trend Micro Smart Protection Server (Standalone) 3.x could allow a remote attacker to execute arbitrary code on vulnerable installations due to … CWE-89
SQL Injection
CVE-2018-10350 2024-11-21 12:41 2018-05-26 Show GitHub Exploit DB Packet Storm
250339 6.3 MEDIUM
Adjacent
bd database_manager
performa
reada
A vulnerability in ReadA version 1.1.0.2 and previous allows an authorized user with access to a privileged account on a BD Kiestra system (Kiestra TLA, Kiestra WCA, and InoqulA+ specimen processor) … CWE-89
SQL Injection
CVE-2018-10595 2024-11-21 12:41 2018-05-25 Show GitHub Exploit DB Packet Storm
250340 5.6 MEDIUM
Adjacent
bd database_manager
performa
reada
A vulnerability in DB Manager version 3.0.1.0 and previous and PerformA version 3.0.0.0 and previous allows an authorized user with access to a privileged account on a BD Kiestra system (Kiestra TLA,… CWE-89
SQL Injection
CVE-2018-10593 2024-11-21 12:41 2018-05-25 Show GitHub Exploit DB Packet Storm