Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
260441 9.3 危険 アップル - Windows 上で稼働する Apple QuickTime の QuickTime.qts における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-0529 2010-04-26 16:59 2010-03-31 Show GitHub Exploit DB Packet Storm
260442 9.3 危険 アップル - Windows 上で稼働する Apple QuickTime における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-0528 2010-04-26 16:58 2010-03-31 Show GitHub Exploit DB Packet Storm
260443 9.3 危険 アップル - Apple QuickTime における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-0527 2010-04-26 16:58 2010-03-31 Show GitHub Exploit DB Packet Storm
260444 5 警告 アップル
サイバートラスト株式会社
Ruby-lang.org
レッドハット
- Ruby の BigDecimal ライブラリにおけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2009-1904 2010-04-26 16:46 2009-06-9 Show GitHub Exploit DB Packet Storm
260445 6.9 警告 アップル
Vim
- Vim の Python インターフェースの src/if_python.c における信頼性のない検索パスの脆弱性 CWE-Other
その他
CVE-2009-0316 2010-04-26 16:45 2009-01-28 Show GitHub Exploit DB Packet Storm
260446 9.3 危険 アップル
サイバートラスト株式会社
Vim
レッドハット
- Vim におけるエスケープ文字を適切に処理しないことに関する任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-4101 2010-04-26 16:45 2008-10-9 Show GitHub Exploit DB Packet Storm
260447 9.3 危険 アップル
サイバートラスト株式会社
Vim
レッドハット
- Vim における適切に入力をサニタイズしないことに関する任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-2712 2010-04-26 16:45 2008-10-9 Show GitHub Exploit DB Packet Storm
260448 4.3 警告 VMware - VMware Server の WebAccess におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1193 2010-04-21 17:54 2010-03-29 Show GitHub Exploit DB Packet Storm
260449 7.5 危険 VMware - 複数の VMware 製品の WebAccess におけるリクエストの発信元を偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2010-0686 2010-04-21 17:53 2010-03-29 Show GitHub Exploit DB Packet Storm
260450 4.3 警告 VMware - 複数の VMware 製品の WebAccess におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1137 2010-04-21 17:51 2010-03-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 27, 2026, 4:35 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
247311 9.8 CRITICAL
Network
fasterxml
debian
oracle
redhat
jackson-databind
debian_linux
primavera_unifier
primavera_p6_enterprise_project_portfolio_management
webcenter_portal
business_process_management_suite
retail_workforce_management_s…
FasterXML jackson-databind 2.x before 2.9.8 might allow attackers to have unspecified impact by leveraging failure to block the jboss-common-core class from polymorphic deserialization. CWE-502
 Deserialization of Untrusted Data
CVE-2018-19362 2024-11-21 12:57 2019-01-3 Show GitHub Exploit DB Packet Storm
247312 9.8 CRITICAL
Network
fasterxml
debian
oracle
redhat
jackson-databind
debian_linux
primavera_unifier
primavera_p6_enterprise_project_portfolio_management
webcenter_portal
business_process_management_suite
retail_workforce_management_s…
FasterXML jackson-databind 2.x before 2.9.8 might allow attackers to have unspecified impact by leveraging failure to block the openjpa class from polymorphic deserialization. CWE-502
 Deserialization of Untrusted Data
CVE-2018-19361 2024-11-21 12:57 2019-01-3 Show GitHub Exploit DB Packet Storm
247313 9.8 CRITICAL
Network
fasterxml
debian
oracle
redhat
jackson-databind
debian_linux
primavera_unifier
primavera_p6_enterprise_project_portfolio_management
webcenter_portal
business_process_management_suite
retail_workforce_management_s…
FasterXML jackson-databind 2.x before 2.9.8 might allow attackers to have unspecified impact by leveraging failure to block the axis2-transport-jms class from polymorphic deserialization. CWE-502
 Deserialization of Untrusted Data
CVE-2018-19360 2024-11-21 12:57 2019-01-3 Show GitHub Exploit DB Packet Storm
247314 8.8 HIGH
Network
engelsystem engelsystem Engelsystem before commit hash 2e28336 allows CSRF. CWE-352
 Origin Validation Error
CVE-2018-19182 2024-11-21 12:57 2018-12-27 Show GitHub Exploit DB Packet Storm
247315 9.1 CRITICAL
Network
epson epson_workforce_wf-2861_firmware The web service on Epson WorkForce WF-2861 10.48 LQ22I3(Recovery-mode), WF-2861 10.51.LQ20I6, and WF-2861 10.52.LQ17IA devices allows remote attackers to upload a firmware file and reset the printer … CWE-306
Missing Authentication for Critical Function
CVE-2018-19248 2024-11-21 12:57 2018-12-25 Show GitHub Exploit DB Packet Storm
247316 7.5 HIGH
Network
epson epson_workforce_wf-2861_firmware The web service on Epson WorkForce WF-2861 10.48 LQ22I3(Recovery-mode), WF-2861 10.51.LQ20I6, and WF-2861 10.52.LQ17IA devices allows remote attackers to cause a denial of service via a FIRMWAREUPDAT… NVD-CWE-noinfo
CVE-2018-19232 2024-11-21 12:57 2018-12-25 Show GitHub Exploit DB Packet Storm
247317 7.8 HIGH
Local
xmplay xmplay XMPlay 3.8.3 allows remote attackers to execute arbitrary code or cause a denial of service (stack-based buffer overflow) via a crafted http:// URL in a .m3u file. CWE-787
 Out-of-bounds Write
CVE-2018-19357 2024-11-21 12:57 2018-12-24 Show GitHub Exploit DB Packet Storm
247318 9.8 CRITICAL
Network
gigabyte oc_guru_ii
gigabyte_app_center
aorus_graphics_engine
xtreme_gaming_engine
The GDrv low-level driver in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before 1.26, and OC GURU II v2.08 exposes functionality to read and writ… NVD-CWE-noinfo
CVE-2018-19323 2024-11-21 12:57 2018-12-22 Show GitHub Exploit DB Packet Storm
247319 7.8 HIGH
Local
gigabyte oc_guru_ii
app_center
aorus_graphics_engine
xtreme_gaming_engine
The GPCIDrv and GDrv low-level drivers in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before 1.26, and OC GURU II v2.08 expose functionality to r… CWE-749
 Exposed Dangerous Method or Function
CVE-2018-19322 2024-11-21 12:57 2018-12-22 Show GitHub Exploit DB Packet Storm
247320 7.8 HIGH
Local
gigabyte oc_guru_ii
aorus_graphics_engine
app_center
xtreme_gaming_engine
The GPCIDrv and GDrv low-level drivers in GIGABYTE APP Center v1.05.21 and earlier, AORUS GRAPHICS ENGINE before 1.57, XTREME GAMING ENGINE before 1.26, and OC GURU II v2.08 expose functionality to r… NVD-CWE-noinfo
CVE-2018-19321 2024-11-21 12:57 2018-12-22 Show GitHub Exploit DB Packet Storm