Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
259721 3 注意 オラクル - Oracle Solaris Studio における脆弱性 CWE-noinfo
情報不足
CVE-2010-2374 2010-08-9 16:49 2010-07-13 Show GitHub Exploit DB Packet Storm
259722 4.3 警告 オラクル - Oracle OpenSSO Enterprise における脆弱性 CWE-noinfo
情報不足
CVE-2009-3762 2010-08-9 16:49 2010-07-13 Show GitHub Exploit DB Packet Storm
259723 4.3 警告 オラクル - Oracle OpenSSO Enterprise の OpenSSO コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3764 2010-08-9 16:48 2010-07-13 Show GitHub Exploit DB Packet Storm
259724 4.3 警告 オラクル - Oracle OpenSSO Enterprise の Access Manager / OpenSSO コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-3763 2010-08-9 16:48 2010-07-13 Show GitHub Exploit DB Packet Storm
259725 5 警告 オラクル - Oracle Sun Convergence における脆弱性 CWE-noinfo
情報不足
CVE-2010-0914 2010-08-9 16:48 2010-07-13 Show GitHub Exploit DB Packet Storm
259726 5.8 警告 オラクル - Oracle Sun Java System Web Proxy Server の管理サーバにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2385 2010-08-9 16:48 2010-07-13 Show GitHub Exploit DB Packet Storm
259727 2.1 注意 オラクル - Oracle PeopleSoft and JDEdwards Suite の PeopleSoft Enterprise Campus Solutions コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2403 2010-08-6 18:29 2010-07-13 Show GitHub Exploit DB Packet Storm
259728 3 注意 オラクル - Oracle PeopleSoft and JDEdwards Suite の PeopleSoft Enterprise CRM コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2378 2010-08-6 18:29 2010-07-13 Show GitHub Exploit DB Packet Storm
259729 4 警告 オラクル - Oracle PeopleSoft and JDEdwards Suite の PeopleSoft Enterprise PeopleTools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2377 2010-08-6 18:29 2010-07-13 Show GitHub Exploit DB Packet Storm
259730 4 警告 オラクル - Oracle PeopleSoft and JDEdwards Suite の PeopleSoft Enterprise HCM - Time & Labor コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-2379 2010-08-6 18:29 2010-07-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
245791 7.5 HIGH
Network
lulucms lulu_cms An issue was discovered in LuLu CMS through 2015-05-14. backend\modules\filemanager\controllers\DefaultController.php allows arbitrary file upload by entering a filename, directory name, and PHP code… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2018-18771 2024-11-21 12:56 2018-10-29 Show GitHub Exploit DB Packet Storm
245792 9.1 CRITICAL
Network
cesanta mongoose An exploitable arbitrary memory read vulnerability exists in the MQTT packet-parsing functionality of Cesanta Mongoose 6.13. It is a heap-based buffer over-read in mg_mqtt_next_subscribe_topic. A spe… CWE-125
Out-of-bounds Read
CVE-2018-18765 2024-11-21 12:56 2018-10-29 Show GitHub Exploit DB Packet Storm
245793 9.1 CRITICAL
Network
cesanta mongoose An exploitable arbitrary memory read vulnerability exists in the MQTT packet-parsing functionality of Cesanta Mongoose 6.13. It is a heap-based buffer over-read in a parse_mqtt getu16 call. A special… CWE-125
Out-of-bounds Read
CVE-2018-18764 2024-11-21 12:56 2018-10-29 Show GitHub Exploit DB Packet Storm
245794 9.8 CRITICAL
Network
zyxel vmg3312-b10b_firmware ZyXEL VMG3312-B10B 1.00(AAPP.7) devices have a backdoor root account with the tTn3+Z@!Sr0O+ password hash in the etc/default.cfg file. CWE-522
 Insufficiently Protected Credentials
CVE-2018-18754 2024-11-21 12:56 2018-10-29 Show GitHub Exploit DB Packet Storm
245795 9.8 CRITICAL
Network
typecho typecho Typecho V1.1 allows remote attackers to send shell commands via base64-encoded serialized data, as demonstrated by SSRF. CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2018-18753 2024-11-21 12:56 2018-10-29 Show GitHub Exploit DB Packet Storm
245796 9.8 CRITICAL
Network
webiness_project webiness_inventory Webiness Inventory 2.3 suffers from an Arbitrary File upload vulnerability via PHP code in the protected/library/ajax/WsSaveToModel.php logo parameter. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2018-18752 2024-11-21 12:56 2018-10-29 Show GitHub Exploit DB Packet Storm
245797 9.8 CRITICAL
Network
gnu
canonical
redhat
gettext
ubuntu_linux
enterprise_linux
An issue was discovered in GNU gettext 0.19.8. There is a double free in default_add_message in read-catalog.c, related to an invalid free in po_gram_parse in po-gram-gen.y, as demonstrated by lt-msg… CWE-415
 Double Free
CVE-2018-18751 2024-11-21 12:56 2018-10-29 Show GitHub Exploit DB Packet Storm
245798 5.5 MEDIUM
Local
data_tools_project data_tools data-tools through 2017-07-26 has an Integer Overflow leading to an incorrect end value for the write_wchars function. CWE-190
 Integer Overflow or Wraparound
CVE-2018-18749 2024-11-21 12:56 2018-10-29 Show GitHub Exploit DB Packet Storm
245799 10.0 CRITICAL
Network
sandboxie sandboxie Sandboxie 5.26 allows a Sandbox Escape via an "import os" statement, followed by os.system("cmd") or os.system("powershell"), within a .py file. NOTE: the vendor disputes this issue because the obser… NVD-CWE-noinfo
CVE-2018-18748 2024-11-21 12:56 2018-10-29 Show GitHub Exploit DB Packet Storm
245800 4.8 MEDIUM
Network
sem-cms semcms An XSS issue was discovered in SEMCMS 3.4 via admin/SEMCMS_Menu.php?lgid=1 during editing. CWE-79
Cross-site Scripting
CVE-2018-18745 2024-11-21 12:56 2018-10-29 Show GitHub Exploit DB Packet Storm