Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
239741 7.5 危険 ninjadesigns - Flatchat の pmscript.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-1486 2012-09-25 17:27 2009-04-29 Show GitHub Exploit DB Packet Storm
239742 4.3 警告 MoinMoin - MoinMoin の action/AttachFile.py におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1482 2012-09-25 17:27 2009-04-18 Show GitHub Exploit DB Packet Storm
239743 4.3 警告 IceWarp, Inc. - IceWarp の eMail Server などの Forgot Password 実装における CRLF インジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2009-1469 2012-09-25 17:27 2009-05-5 Show GitHub Exploit DB Packet Storm
239744 6.5 警告 IceWarp, Inc. - IceWarp の eMail Server などの製品で使用される検索フォームにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1468 2012-09-25 17:27 2009-05-5 Show GitHub Exploit DB Packet Storm
239745 4.3 警告 IceWarp, Inc. - IceWarp eMail Server などの製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1467 2012-09-25 17:27 2009-05-5 Show GitHub Exploit DB Packet Storm
239746 2.1 注意 klinzmann - A-A-S における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2009-1466 2012-09-25 17:27 2009-05-14 Show GitHub Exploit DB Packet Storm
239747 7.5 危険 klinzmann - A-A-S におけるアクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2009-1465 2012-09-25 17:27 2009-05-14 Show GitHub Exploit DB Packet Storm
239748 6.8 警告 klinzmann - A-A-S の index.aas におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-1464 2012-09-25 17:27 2009-05-14 Show GitHub Exploit DB Packet Storm
239749 7.5 危険 ivano culmine - WebPortal CMS におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-1445 2012-09-25 17:27 2009-04-27 Show GitHub Exploit DB Packet Storm
239750 10 危険 OCS Inventory Team - OCS Inventory NG の Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2009-1443 2012-09-25 17:27 2009-04-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268561 7.5 HIGH
Network
samsung exynos_fimg2d_driver Use-after-free vulnerability in the Samsung Exynos fimg2d driver for Android with Exynos 5433, 54xx, or 7420 chipsets allows attackers to obtain sensitive information via unspecified vectors. The Sam… CWE-416
 Use After Free
CVE-2016-9279 2024-11-21 12:00 2017-01-19 Show GitHub Exploit DB Packet Storm
268562 5.5 MEDIUM
Local
samsung exynos_fimg2d_driver The Samsung Exynos fimg2d driver for Android with Exynos 5433, 54xx, or 7420 chipsets allows local users to cause a denial of service (kernel panic) via a crafted ioctl command. The Samsung ID is SVE… CWE-20
 Improper Input Validation 
CVE-2016-9278 2024-11-21 12:00 2017-01-19 Show GitHub Exploit DB Packet Storm
268563 5.5 MEDIUM
Local
libtiff libtiff tiffsplit in libtiff 4.0.6 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted file, related to changing td_nstrips in TIFF_STRIPCHOP mode. CWE-125
Out-of-bounds Read
CVE-2016-9273 2024-11-21 12:00 2017-01-19 Show GitHub Exploit DB Packet Storm
268564 7.5 HIGH
Network
artifex mujs Artifex Software MuJS allows attackers to cause a denial of service (crash) via vectors related to incomplete escape sequences. NOTE: this vulnerability exists due to an incomplete fix for CVE-2016-… CWE-125
Out-of-bounds Read
CVE-2016-9109 2024-11-21 12:00 2017-01-19 Show GitHub Exploit DB Packet Storm
268565 7.5 HIGH
Network
ntp ntp ntpd in NTP before 4.2.8p9, when running on Windows, allows remote attackers to cause a denial of service via a large UDP packet. CWE-399
 Resource Management Errors
CVE-2016-9312 2024-11-21 12:00 2017-01-14 Show GitHub Exploit DB Packet Storm
268566 5.9 MEDIUM
Network
ntp ntp ntpd in NTP before 4.2.8p9, when the trap service is enabled, allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted packet. CWE-476
 NULL Pointer Dereference
CVE-2016-9311 2024-11-21 12:00 2017-01-14 Show GitHub Exploit DB Packet Storm
268567 6.5 MEDIUM
Network
ntp ntp The control mode (mode 6) functionality in ntpd in NTP before 4.2.8p9 allows remote attackers to set or unset traps via a crafted control mode packet. CWE-400
 Uncontrolled Resource Consumption
CVE-2016-9310 2024-11-21 12:00 2017-01-14 Show GitHub Exploit DB Packet Storm
268568 7.5 HIGH
Network
otr gajim-otr The OTR plugin for Gajim sends information in cleartext when using XHTML, which allows remote attackers to obtain sensitive information via unspecified vectors. CWE-200
Information Exposure
CVE-2016-9107 2024-11-21 12:00 2017-01-14 Show GitHub Exploit DB Packet Storm
268569 5.5 MEDIUM
Local
jasper_project jasper The jpc_dec_tiledecode function in jpc_dec.c in JasPer before 1.900.8 allows remote attackers to cause a denial of service (assertion failure) via a crafted file. CWE-399
 Resource Management Errors
CVE-2016-8883 2024-11-21 12:00 2017-01-14 Show GitHub Exploit DB Packet Storm
268570 5.5 MEDIUM
Local
jasper_project jasper The jpc_dec_tilefini function in libjasper/jpc/jpc_dec.c in JasPer before 1.900.8 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted file. CWE-476
 NULL Pointer Dereference
CVE-2016-8882 2024-11-21 12:00 2017-01-14 Show GitHub Exploit DB Packet Storm