Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216041 1.9 注意 IBM
オラクル
- Oracle Fusion Middleware の Oracle Outside In Technology コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-3597 2014-02-21 18:06 2011-01-18 Show GitHub Exploit DB Packet Storm
216042 6.8 警告 Ruby on Rails project - Ruby on Rails の Active Record における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-0080 2014-02-21 16:25 2014-02-18 Show GitHub Exploit DB Packet Storm
216043 4.4 警告 IBM
オラクル
- Oracle Application Server の Outside In Technology コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-1011 2014-02-21 16:15 2009-04-15 Show GitHub Exploit DB Packet Storm
216044 4.4 警告 IBM
オラクル
- Oracle Application Server の Outside In Technology コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-1010 2014-02-21 16:13 2009-04-15 Show GitHub Exploit DB Packet Storm
216045 4.4 警告 IBM
オラクル
- Oracle Application Server の Outside In Technology コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-1009 2014-02-21 16:13 2009-04-15 Show GitHub Exploit DB Packet Storm
216046 4.4 警告 IBM
オラクル
- Oracle Application Server の Outside In Technology コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-1008 2014-02-21 16:12 2009-04-15 Show GitHub Exploit DB Packet Storm
216047 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR における ASLR 保護メカニズムを破られる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0492 2014-02-21 13:40 2014-01-14 Show GitHub Exploit DB Packet Storm
216048 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR における不特定の保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0491 2014-02-21 13:40 2014-01-14 Show GitHub Exploit DB Packet Storm
216049 3.5 注意 The phpMyAdmin Project - phpMyAdmin の import.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1879 2014-02-21 12:26 2014-02-15 Show GitHub Exploit DB Packet Storm
216050 5.8 警告 feep.net - libtar の tar_extract_glob および tar_extract_all 関数におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-4420 2014-02-21 12:25 2013-12-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
289161 - elkagroup image_gallery SQL injection vulnerability in property.php in elkagroup Image Gallery 1.0 allows remote attackers to execute arbitrary SQL commands via the pid parameter. NVD-CWE-Other
CVE-2007-3461 2017-10-11 10:32 2007-06-28 Show GitHub Exploit DB Packet Storm
289162 - redhat enterprise_linux The file watch implementation in the audit subsystem (auditctl -w) in the Red Hat Enterprise Linux (RHEL) 4 kernel 2.6.9 allows local users to cause a denial of service (kernel panic) by replacing a … NVD-CWE-Other
CVE-2007-0001 2017-10-11 10:31 2007-03-3 Show GitHub Exploit DB Packet Storm
289163 - redhat enterprise_linux Successful exploitation requires that the attacker previously created a watch for a file. NVD-CWE-Other
CVE-2007-0001 2017-10-11 10:31 2007-03-3 Show GitHub Exploit DB Packet Storm
289164 - linux linux_kernel The key serial number collision avoidance code in the key_alloc_serial function in Linux kernel 2.6.9 up to 2.6.20 allows local users to cause a denial of service (crash) via vectors that trigger a n… NVD-CWE-Other
CVE-2007-0006 2017-10-11 10:31 2007-02-7 Show GitHub Exploit DB Packet Storm
289165 - linux linux_kernel The scheme for selecting serial numbers was changed from incrementing a counter to random number selection, increasing the likelihood of a serial number collision. NVD-CWE-Other
CVE-2007-0006 2017-10-11 10:31 2007-02-7 Show GitHub Exploit DB Packet Storm
289166 - netfarer movieplay Stack-based buffer overflow in MoviePlay 4.76 allows remote attackers to execute arbitrary code via a long filename in a LST file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2007-0016 2017-10-11 10:31 2007-01-3 Show GitHub Exploit DB Packet Storm
289167 - videolan vlc_media_player Multiple format string vulnerabilities in (1) the cdio_log_handler function in modules/access/cdda/access.c in the CDDA (libcdda_plugin) plugin, and the (2) cdio_log_handler and (3) vcd_log_handler f… CWE-134
Use of Externally-Controlled Format String
CVE-2007-0017 2017-10-11 10:31 2007-01-3 Show GitHub Exploit DB Packet Storm
289168 - cisco ios The Data-link Switching (DLSw) feature in Cisco IOS 11.0 through 12.4 allows remote attackers to cause a denial of service (device reload) via "an invalid value in a DLSw message... during the capabi… NVD-CWE-Other
CVE-2007-0199 2017-10-11 10:31 2007-01-11 Show GitHub Exploit DB Packet Storm
289169 - libgtop libgtop Stack-based buffer overflow in the glibtop_get_proc_map_s function in libgtop before 2.14.6 (libgtop2) allows local users to cause a denial of service (crash) and possibly execute arbitrary code via … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2007-0235 2017-10-11 10:31 2007-01-17 Show GitHub Exploit DB Packet Storm
289170 - apple mac_os_x Double free vulnerability in the _ATPsndrsp function in Apple Mac OS X 10.4.8, and possibly other versions, allows remote attackers to cause a denial of service (kernel panic) and possibly execute ar… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2007-0236 2017-10-11 10:31 2007-01-17 Show GitHub Exploit DB Packet Storm