Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
237951 7.5 危険 mole-group - Restaurant Directory Script における admin パスワードを変更される脆弱性 CWE-287
不適切な認証
CVE-2009-4675 2012-09-25 17:38 2010-03-5 Show GitHub Exploit DB Packet Storm
237952 7.5 危険 mole-group - Mole Group Sky Hunter Airline Ticket Sale Script などにおける任意のパスワードを変更される脆弱性 CWE-255
証明書・パスワード管理
CVE-2009-4674 2012-09-25 17:38 2010-03-5 Show GitHub Exploit DB Packet Storm
237953 7.5 危険 mole-group - Mole Group Adult Portal Script の profile.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4673 2012-09-25 17:38 2010-03-5 Show GitHub Exploit DB Packet Storm
237954 4.3 警告 mp3-cutter - MP3-Cutter Ease Audio Cutter におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2009-4659 2012-09-25 17:38 2010-03-3 Show GitHub Exploit DB Packet Storm
237955 4 警告 omidrouhani - Xerver におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2009-4658 2012-09-25 17:38 2010-03-3 Show GitHub Exploit DB Packet Storm
237956 7.5 危険 omidrouhani - Xerver 用の管理者パッケージにおけるアプリケーション設定を変更される脆弱性 CWE-287
不適切な認証
CVE-2009-4657 2012-09-25 17:38 2010-03-3 Show GitHub Exploit DB Packet Storm
237957 9 危険 Novell - Novell eDirectory の dhost モジュールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4654 2012-09-25 17:38 2010-02-26 Show GitHub Exploit DB Packet Storm
237958 2.6 注意 Alexander Barton - ngIRCd の Conn_GetCipherInfo 関数などにおけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2009-4652 2012-09-25 17:38 2010-02-26 Show GitHub Exploit DB Packet Storm
237959 4.3 警告 onnogroen - Joomla! 用の webeecomment コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4651 2012-09-25 17:38 2010-02-22 Show GitHub Exploit DB Packet Storm
237960 7.5 危険 onnogroen - webeecomment コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4650 2012-09-25 17:38 2010-02-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
11 5.3 MEDIUM
Network
openssl openssl Issue Summary: An error in the callback used to verify the certificate provided in a Root CA key update Certificate Management Protocol (CMP) message response rendered the certificate validation inef… Update CWE-295
Improper Certificate Validation 
CVE-2026-42769 2026-06-16 03:26 2026-06-10 Show GitHub Exploit DB Packet Storm
12 7.5 HIGH
Network
openssl openssl Issue summary: Receiving a QUIC initial packet with an invalid token may trigger a NULL pointer dereference in the OpenSSL QUIC server with address validation disabled. Impact summary: NULL pointer … Update CWE-476
 NULL Pointer Dereference
CVE-2026-42764 2026-06-16 03:25 2026-06-10 Show GitHub Exploit DB Packet Storm
13 5.9 MEDIUM
Network
openssl openssl Issue summary: A specially crafted password-encrypted CMS message can trigger a NULL pointer dereference during CMS decryption. Impact summary: This NULL pointer dereference leads to an application … Update CWE-476
 NULL Pointer Dereference
CVE-2026-42766 2026-06-16 03:25 2026-06-10 Show GitHub Exploit DB Packet Storm
14 8.2 HIGH
Network
erlang erlang\/otp
erts
Stack-based Buffer Overflow vulnerability in Erlang OTP erts (inet_drv) allows an unauthenticated remote attacker to crash the BEAM VM by sending a crafted SCTP ERROR chunk. The sctp_parse_error_chu… Update CWE-121
Stack-based Buffer Overflow
CVE-2026-49759 2026-06-16 03:24 2026-06-11 Show GitHub Exploit DB Packet Storm
15 6.5 MEDIUM
Network
erlang erlang\/otp
erlang\/ssl
Reliance on IP Address for Authentication vulnerability in Erlang/OTP ssl (inet_tls_dist module) allows unauthenticated bypass of the distribution-over-TLS LAN allowlist. The inet_tls_dist:check_ip/… Update CWE-863
CWE-1025
 Incorrect Authorization
 Comparison Using Wrong Factors
CVE-2026-48860 2026-06-16 03:24 2026-06-11 Show GitHub Exploit DB Packet Storm
16 5.3 MEDIUM
Network
erlang erlang\/otp
erlang\/ssh
Observable Timing Discrepancy vulnerability in Erlang/OTP ssh (ssh_auth, ssh_options modules) allows unauthenticated remote username enumeration via timing side-channel in password authentication. W… Update CWE-208
 Information Exposure Through Timing Discrepancy
CVE-2026-48859 2026-06-16 03:23 2026-06-11 Show GitHub Exploit DB Packet Storm
17 6.5 MEDIUM
Network
erlang erlang\/inets
erlang\/otp
Sensitive Data Exposure vulnerability in Erlang OTP inets (httpc_response module) allows Retrieve Embedded Sensitive Data. The httpc client forwards the Authorization and Proxy-Authorization request… Update CWE-601
Open Redirect
CVE-2026-48856 2026-06-16 03:23 2026-06-11 Show GitHub Exploit DB Packet Storm
18 6.5 MEDIUM
Network
erlang erlang\/otp
erlang\/ssh
Exposure of Sensitive Information to an Unauthorized Actor vulnerability in Erlang OTP ssh (ssh_sftpd module) allows File Discovery. The SSH_FXP_READLINK handler in ssh_sftpd sends the raw result of… Update CWE-200
Information Exposure
CVE-2026-48855 2026-06-16 03:23 2026-06-11 Show GitHub Exploit DB Packet Storm
19 5.5 MEDIUM
Local
erlang erl_interface
erlang\/otp
Stack-based Buffer Overflow vulnerability in Erlang OTP (erl_interface) allows Stack-based Buffer Overflow. This vulnerability is associated with program file lib/erl_interface/src/misc/ei_printterm… Update CWE-121
Stack-based Buffer Overflow
CVE-2026-49760 2026-06-16 03:23 2026-06-11 Show GitHub Exploit DB Packet Storm
20 7.8 HIGH
Local
microsoft pc_manager Improper link resolution before file access ('link following') in Microsoft PC Manager allows an authorized attacker to elevate privileges locally. Update CWE-59
Link Following
CVE-2026-50511 2026-06-16 03:23 2026-06-10 Show GitHub Exploit DB Packet Storm