Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223431 4.9 警告 slysoft - SlySoft AnyDVD などに同梱されている Elaborate Bytes ElbyCDIO.sys におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2009-0824 2012-12-20 19:10 2009-03-14 Show GitHub Exploit DB Packet Storm
223432 4.3 警告 TYPO3 Association - TYPO3 の backend ユーザインタフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0816 2012-12-20 19:10 2009-03-4 Show GitHub Exploit DB Packet Storm
223433 5 警告 TYPO3 Association - TYPO3 の class.tslib_fe.php における任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2009-0815 2012-12-20 19:10 2009-03-4 Show GitHub Exploit DB Packet Storm
223434 9.3 危険 SopCast - sopocx.ocx の SopCast SopCore ActiveX コントロールにおける任意のプログラムを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-0811 2012-12-20 19:10 2009-03-4 Show GitHub Exploit DB Packet Storm
223435 7.5 危険 xatrix - xGuestbook の login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0810 2012-12-20 19:10 2009-03-4 Show GitHub Exploit DB Packet Storm
223436 7.5 危険 simple cmms - SimpleCMMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0808 2012-12-20 19:10 2009-03-4 Show GitHub Exploit DB Packet Storm
223437 7.5 危険 zfeeder - zFeeder における管理アクセス権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-0807 2012-12-20 19:10 2009-03-4 Show GitHub Exploit DB Packet Storm
223438 5.4 警告 ziproxy - Ziproxy における Flash のアクセスコントロールを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-0804 2012-12-20 19:10 2009-03-4 Show GitHub Exploit DB Packet Storm
223439 5.4 警告 Smoothwall - SmoothWall Firewall などで使用されている SmoothWall SmoothGuardian における Flash などに対するアクセスコントロールを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-0803 2012-12-20 19:10 2009-03-4 Show GitHub Exploit DB Packet Storm
223440 5.4 警告 qbik - Qbik WinGate におけるアクセスコントロールを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-0802 2012-12-20 19:10 2009-03-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 20, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1711 6.5 MEDIUM
Local
- - Execution with Unnecessary Privileges vulnerability in multiple services of Mitsubishi Electric GENESIS64 versions 10.97.3 and prior, Mitsubishi Electric ICONICS Suite versions 10.97.3 and prior, Mit… CWE-250
 Execution with Unnecessary Privileges
CVE-2025-0921 2026-04-14 08:16 2025-05-16 Show GitHub Exploit DB Packet Storm
1712 6.5 MEDIUM
Local
- - La vulnerabilidad de ejecución con privilegios innecesarios en el agente Pager de la función de notificación multiagente de Mitsubishi Electric Iconics Digital Solutions GENESIS64 anterior a la versi… CWE-250
 Execution with Unnecessary Privileges
CVE-2025-0921 2026-04-14 08:16 2025-05-16 Show GitHub Exploit DB Packet Storm
1713 5.9 MEDIUM
Network
- - Missing Authentication for Critical Function vulnerability in the mobile monitoring feature of Mitsubishi Electric GENESIS64 versions 10.97.2 and prior, Mitsubishi Electric ICONICS Suite versions 10.… CWE-306
Missing Authentication for Critical Function
CVE-2024-1573 2026-04-14 08:16 2024-07-4 Show GitHub Exploit DB Packet Storm
1714 5.9 MEDIUM
Network
- - Vulnerabilidad de autenticación incorrecta en la función de monitoreo móvil de ICONICS GENESIS64 versiones 10.97 a 10.97.2, Mitsubishi Electric GENESIS64 versiones 10.97 a 10.97.2 y Mitsubishi Electr… CWE-306
Missing Authentication for Critical Function
CVE-2024-1573 2026-04-14 08:16 2024-07-4 Show GitHub Exploit DB Packet Storm
1715 7.3 HIGH
Network
- - A security flaw has been discovered in nocobase plugin-workflow-javascript up to 2.0.23. This issue affects the function createSafeConsole of the file packages/plugins/@nocobase/plugin-workflow-javas… CWE-264
CWE-265
Permissions, Privileges, and Access Controls
 Privilege Issues
CVE-2026-6224 2026-04-14 07:16 2026-04-14 Show GitHub Exploit DB Packet Storm
1716 4.7 MEDIUM
Network
- - A vulnerability was identified in HummerRisk up to 1.5.0. This vulnerability affects the function ServerService.addServer of the file ServerService.java of the component Video File Download URL Handl… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-6220 2026-04-14 07:16 2026-04-14 Show GitHub Exploit DB Packet Storm
1717 6.7 MEDIUM
Local
- - A Missing Authentication for Critical Function vulnerability in command processing of Juniper Networks Junos OS allows a privileged local attacker to gain access to Linux-based line cards as root. T… CWE-306
Missing Authentication for Critical Function
CVE-2025-30650 2026-04-14 07:16 2026-04-9 Show GitHub Exploit DB Packet Storm
1718 8.6 HIGH
Local
adobe acrobat_dc
acrobat_reader_dc
acrobat
Acrobat Reader versions 24.001.30356, 26.001.21367 and earlier are affected by an Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution') vulnerability that could re… CWE-1321
 Improperly Controlled Modification of Object Prototype Attributes ('Prototype Pollution')
CVE-2026-34621 2026-04-14 06:23 2026-04-11 Show GitHub Exploit DB Packet Storm
1719 8.8 HIGH
Network
google chrome Insufficient validation of untrusted input in Media in Google Chrome prior to 147.0.7727.55 allowed a remote attacker who had compromised the renderer process to execute arbitrary code inside a sandb… CWE-20
 Improper Input Validation 
CVE-2026-5884 2026-04-14 06:19 2026-04-9 Show GitHub Exploit DB Packet Storm
1720 5.3 MEDIUM
Network
google chrome Out of bounds read in WebAudio in Google Chrome on Mac prior to 147.0.7727.55 allowed a remote attacker to obtain potentially sensitive information from process memory via a crafted HTML page. (Chrom… CWE-125
Out-of-bounds Read
CVE-2026-5886 2026-04-14 06:19 2026-04-9 Show GitHub Exploit DB Packet Storm