Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
221561 5 警告 sherzod ruzmetov - CGI::Session における任意のファイルを上書きされる脆弱性 - CVE-2006-1279 2014-03-11 17:43 2006-03-19 Show GitHub Exploit DB Packet Storm
221562 7.2 危険 Avira - AntiVir PersonalEdition における権限を取得される脆弱性 - CVE-2006-1274 2014-03-11 17:43 2006-03-19 Show GitHub Exploit DB Packet Storm
221563 6.2 警告 rahul dhesi - zoo におけるバッファオーバーフローの脆弱性 - CVE-2006-1269 2014-03-11 17:43 2006-03-19 Show GitHub Exploit DB Packet Storm
221564 4.6 警告 Firebird Project - Firebird におけるバッファオーバーフローの脆弱性 - CVE-2006-1240 2014-03-11 17:43 2006-03-15 Show GitHub Exploit DB Packet Storm
221565 7.5 危険 crossfire - CrossFire におけるバッファオーバーフローの脆弱性 - CVE-2006-1236 2014-03-11 17:43 2006-03-15 Show GitHub Exploit DB Packet Storm
221566 1.2 注意 julian pawlowski - CAPI4HylaFAX における任意のファイルを変更される脆弱性 - CVE-2006-1231 2014-03-11 17:43 2006-03-14 Show GitHub Exploit DB Packet Storm
221567 5 警告 Drupal - Drupal における CRLF インジェクションの脆弱性 - CVE-2006-1225 2014-03-11 17:43 2006-03-14 Show GitHub Exploit DB Packet Storm
221568 4.3 警告 runcms - Runcms におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-1216 2014-03-11 17:43 2006-03-14 Show GitHub Exploit DB Packet Storm
221569 3.7 注意 comvigo - Comvigo IM Lock における製品のブロック機能を回避される脆弱性 - CVE-2006-1198 2014-03-11 17:43 2006-03-14 Show GitHub Exploit DB Packet Storm
221570 7.5 危険 ebay - eBay Enhanced Picture Services におけるバッファオーバーフローの脆弱性 - CVE-2006-1176 2014-03-11 17:43 2006-07-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
273311 5.4 MEDIUM
Network
artezio kanban_board The Artezio Kanban Board plugin 1.4 revision 1914 for Atlassian Jira has XSS via the Board Name in a Create New Board action, related to an artezioboard/mainPage.jspa?kanbanId=7#/kanban-view URI. CWE-79
Cross-site Scripting
CVE-2016-10715 2024-11-21 11:44 2018-03-16 Show GitHub Exploit DB Packet Storm
273312 9.8 CRITICAL
Network
zsh
canonical
zsh
ubuntu_linux
In zsh before 5.3, an off-by-one error resulted in undersized buffers that were intended to support PATH_MAX characters. CWE-189
Numeric Errors
CVE-2016-10714 2024-11-21 11:44 2018-02-28 Show GitHub Exploit DB Packet Storm
273313 5.5 MEDIUM
Local
gnu patch An issue was discovered in GNU patch before 2.7.6. Out-of-bounds access within pch_write_line() in pch.c can possibly lead to DoS via a crafted input file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-10713 2024-11-21 11:44 2018-02-14 Show GitHub Exploit DB Packet Storm
273314 7.5 HIGH
Network
php
canonical
php
ubuntu_linux
In PHP before 5.5.32, 5.6.x before 5.6.18, and 7.x before 7.0.3, all of the return values of stream_get_meta_data can be controlled if the input can be controlled (e.g., during file uploads). For exa… CWE-20
 Improper Input Validation 
CVE-2016-10712 2024-11-21 11:44 2018-02-9 Show GitHub Exploit DB Packet Storm
273315 9.8 CRITICAL
Network
debian
apsis
debian_linux
pound
Apsis Pound before 2.8a allows request smuggling via crafted headers, a different vulnerability than CVE-2005-3751. CWE-444
HTTP Request Smuggling
CVE-2016-10711 2024-11-21 11:44 2018-01-30 Show GitHub Exploit DB Packet Storm
273316 8.1 HIGH
Network
biscom secure_file_transfer Biscom Secure File Transfer (SFT) 5.0.1000 through 5.0.1048 does not validate the dataFieldId value, and uses sequential numbers, which allows remote authenticated users to overwrite or read files vi… CWE-20
 Improper Input Validation 
CVE-2016-10710 2024-11-21 11:44 2018-01-26 Show GitHub Exploit DB Packet Storm
273317 8.8 HIGH
Network
pfsense pfsense pfSense before 2.3 allows remote authenticated users to execute arbitrary OS commands via a '|' character in the status_rrd_graph_img.php graph parameter, related to _rrd_graph_img.php. CWE-78
OS Command 
CVE-2016-10709 2024-11-21 11:44 2018-01-22 Show GitHub Exploit DB Packet Storm
273318 7.5 HIGH
Network
openbsd
debian
canonical
netapp
openssh
debian_linux
ubuntu_linux
storagegrid_webscale
cloud_backup
data_ontap_edge
storagegrid
clustered_data_ontap
service_processor
oncommand_unified_manager
data_ont…
sshd in OpenSSH before 7.4 allows remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via an out-of-sequence NEWKEYS message, as demonstrated by Honggfuzz, relat… CWE-476
 NULL Pointer Dereference
CVE-2016-10708 2024-11-21 11:44 2018-01-22 Show GitHub Exploit DB Packet Storm
273319 7.5 HIGH
Network
jquery jquery jQuery 3.0.0-rc.1 is vulnerable to Denial of Service (DoS) due to removing a logic that lowercased attribute names. Any attribute getter using a mixed-cased name for boolean attributes goes into an i… CWE-674
 Uncontrolled Recursion
CVE-2016-10707 2024-11-21 11:44 2018-01-19 Show GitHub Exploit DB Packet Storm
273320 6.1 MEDIUM
Network
automattic jetpack The Jetpack plugin before 4.0.3 for WordPress has XSS via a crafted Vimeo link. CWE-79
Cross-site Scripting
CVE-2016-10706 2024-11-21 11:44 2018-01-13 Show GitHub Exploit DB Packet Storm