Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
259731 6.4 警告 ヒューレット・パッカード
レッドハット
日立
オラクル
- Oracle Sun Products Suite の Oracle Communications Messaging Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-3564 2010-12-16 15:22 2010-10-12 Show GitHub Exploit DB Packet Storm
259732 9.3 危険 アップル - Apple Safari の WebKit における任意のコードを実行される脆弱性 CWE-DesignError
CVE-2010-3817 2010-12-16 14:18 2010-11-22 Show GitHub Exploit DB Packet Storm
259733 9.3 危険 アップル - Apple Safari の WebKit における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2010-3816 2010-12-16 14:18 2010-11-22 Show GitHub Exploit DB Packet Storm
259734 9.3 危険 アップル - Apple Safari の WebKit における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2010-3811 2010-12-16 14:16 2010-11-22 Show GitHub Exploit DB Packet Storm
259735 5 警告 The PHP Group
サイバートラスト株式会社
レッドハット
- PHP のセッションシリアライザにおける任意のセッション変数に変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-3065 2010-12-15 15:28 2010-05-31 Show GitHub Exploit DB Packet Storm
259736 5 警告 日立 - JP1/NETM 製品 におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
- 2010-12-15 15:27 2010-07-30 Show GitHub Exploit DB Packet Storm
259737 5 警告 The PHP Group
サイバートラスト株式会社
ターボリナックス
レッドハット
- PHP におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-1917 2010-12-15 15:27 2010-05-11 Show GitHub Exploit DB Packet Storm
259738 5 警告 The PHP Group
アップル
ターボリナックス
サイバートラスト株式会社
レッドハット
- PHP の xmlrpc 拡張におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2010-0397 2010-12-15 15:27 2010-03-16 Show GitHub Exploit DB Packet Storm
259739 6.4 警告 The PHP Group
サイバートラスト株式会社
レッドハット
- PHP の Linear Congruential Generator における値を推測される脆弱性 CWE-310
暗号の問題
CVE-2010-1128 2010-12-15 15:26 2010-03-26 Show GitHub Exploit DB Packet Storm
259740 6.9 警告 GNU Project
日本電気
ターボリナックス
サイバートラスト株式会社
レッドハット
- GNU Libtool の libltdl における権限昇格の脆弱性 CWE-DesignError
CVE-2009-3736 2010-12-15 15:26 2009-11-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 30, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
251411 6.1 MEDIUM
Network
atlassian jira
jira_server
The XsrfErrorAction resource in Atlassian Jira before version 7.6.9, from version 7.7.0 before version 7.7.5, from version 7.8.0 before version 7.8.5, from version 7.9.0 before version 7.9.3, from ve… CWE-601
Open Redirect
CVE-2018-13401 2024-11-21 12:47 2018-10-23 Show GitHub Exploit DB Packet Storm
251412 4.7 MEDIUM
Network
atlassian jira
jira_server
Several administrative resources in Atlassian Jira before version 7.6.9, from version 7.7.0 before version 7.7.5, from version 7.8.0 before version 7.8.5, from version 7.9.0 before version 7.9.3, fro… CWE-269
 Improper Privilege Management
CVE-2018-13400 2024-11-21 12:47 2018-10-23 Show GitHub Exploit DB Packet Storm
251413 7.8 HIGH
Local
atlassian fisheye
crucible
The Microsoft Windows Installer for Atlassian Fisheye and Crucible before version 4.6.1 allows local attackers to escalate privileges because of weak permissions on the installation directory. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2018-13399 2024-11-21 12:47 2018-10-16 Show GitHub Exploit DB Packet Storm
251414 6.5 MEDIUM
Network
atlassian fisheye
crucible
The administrative smart-commits resource in Atlassian Fisheye and Crucible before version 4.5.4 allows remote attackers to modify smart-commit settings via a Cross-site request forgery (CSRF) vulner… CWE-352
 Origin Validation Error
CVE-2018-13398 2024-11-21 12:47 2018-09-18 Show GitHub Exploit DB Packet Storm
251415 7.8 HIGH
Local
zohocorp manageengine_desktop_central An issue was discovered in the Self Service Portal in Zoho ManageEngine Desktop Central before 10.0.282. A clickable company logo in a window running as SYSTEM can be abused to escalate privileges. I… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2018-13412 2024-11-21 12:47 2018-09-13 Show GitHub Exploit DB Packet Storm
251416 8.8 HIGH
Network
zohocorp manageengine_desktop_central An issue was discovered in Zoho ManageEngine Desktop Central before 10.0.282. A clickable company logo in a window running as SYSTEM can be abused to escalate privileges. In cloud, the issue is fixed… CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2018-13411 2024-11-21 12:47 2018-09-13 Show GitHub Exploit DB Packet Storm
251417 6.1 MEDIUM
Network
atlassian jira
jira_server
Various resources in Atlassian Jira before version 7.6.8, from version 7.7.0 before version 7.7.5, from version 7.8.0 before version 7.8.5, from version 7.9.0 before version 7.9.3, from version 7.10.… CWE-79
Cross-site Scripting
CVE-2018-13395 2024-11-21 12:47 2018-08-28 Show GitHub Exploit DB Packet Storm
251418 5.3 MEDIUM
Network
atlassian jira
jira_server
The ProfileLinkUserFormat component of Jira Server before version 7.6.8, from version 7.7.0 before version 7.7.5, from version 7.8.0 before version 7.8.5, from version 7.9.0 before version 7.9.3, fro… CWE-200
Information Exposure
CVE-2018-13391 2024-11-21 12:47 2018-08-28 Show GitHub Exploit DB Packet Storm
251419 7.0 HIGH
Local
linecorp line An issue was discovered in the LINE jp.naver.line application 8.8.1 for Android. The Passcode feature allows authentication bypass via runtime manipulation that forces a certain method's return value… CWE-287
Improper Authentication
CVE-2018-13446 2024-11-21 12:47 2018-08-17 Show GitHub Exploit DB Packet Storm
251420 7.0 HIGH
Local
linecorp line An issue was discovered in the LINE jp.naver.line application 8.8.0 for iOS. The Passcode feature allows authentication bypass via runtime manipulation that forces a certain method to disable passcod… CWE-287
Improper Authentication
CVE-2018-13435 2024-11-21 12:47 2018-08-17 Show GitHub Exploit DB Packet Storm