Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240161 6.8 警告 mkportal - MKPortal の admin.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0191 2012-09-25 15:36 2007-01-12 Show GitHub Exploit DB Packet Storm
240162 7.5 危険 PHP Web Scripts - Easy Banner Pro の info.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2007-0178 2012-09-25 15:36 2007-01-10 Show GitHub Exploit DB Packet Storm
240163 5.1 警告 MediaWiki - MediaWiki の AJAX モジュールにおけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0177 2012-09-25 15:36 2007-01-10 Show GitHub Exploit DB Packet Storm
240164 6.8 警告 l2j - L2J Statistik Script の index.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-0173 2012-09-25 15:36 2007-01-10 Show GitHub Exploit DB Packet Storm
240165 7.5 危険 locazo - LocazoList の main.asp における SQL インジェクションの脆弱性 - CVE-2007-0129 2012-09-25 15:36 2007-01-9 Show GitHub Exploit DB Packet Storm
240166 9.3 危険 Opera Software ASA - Opera の Javascript SVG サポートにおける任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2007-0127 2012-09-25 15:36 2007-01-8 Show GitHub Exploit DB Packet Storm
240167 9.3 危険 Opera Software ASA - Opera におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-0126 2012-09-25 15:36 2007-01-8 Show GitHub Exploit DB Packet Storm
240168 5 警告 カスペルスキー - Kaspersky Lab Antivurus Engine におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-0125 2012-09-25 15:36 2007-01-8 Show GitHub Exploit DB Packet Storm
240169 6.8 警告 michael romedahl - RI Blog の search.asp におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-0121 2012-09-25 15:36 2007-01-8 Show GitHub Exploit DB Packet Storm
240170 6.8 警告 packeteer - Packeteer PacketShaper PacketWise におけるバッファオーバーフローの脆弱性 - CVE-2007-0113 2012-09-25 15:36 2007-01-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268121 3.3 LOW
Local
novell
canonical
linux
suse_linux_enterprise_module_for_public_cloud
suse_linux_enterprise_server
suse_linux_enterprise_live_patching
suse_linux_enterprise_desktop
suse_linux_enterprise_real_time_extension
s…
The rtnl_fill_link_ifmap function in net/core/rtnetlink.c in the Linux kernel before 4.5.5 does not initialize a certain data structure, which allows local users to obtain sensitive information from … CWE-200
Information Exposure
CVE-2016-4486 2024-11-21 11:52 2016-05-23 Show GitHub Exploit DB Packet Storm
268122 7.5 HIGH
Network
novell
canonical
linux
suse_linux_enterprise_server
suse_linux_enterprise_debuginfo
suse_linux_enterprise_software_development_kit
ubuntu_linux
linux_kernel
The llc_cmsg_rcv function in net/llc/af_llc.c in the Linux kernel before 4.5.5 does not initialize a certain data structure, which allows attackers to obtain sensitive information from kernel stack m… CWE-200
Information Exposure
CVE-2016-4485 2024-11-21 11:52 2016-05-23 Show GitHub Exploit DB Packet Storm
268123 6.2 MEDIUM
Local
canonical
linux
novell
fedoraproject
ubuntu_linux
linux_kernel
suse_linux_enterprise_module_for_public_cloud
suse_linux_enterprise_server
suse_linux_enterprise_live_patching
suse_linux_enterprise_desktop
suse_linux_ent…
The proc_connectinfo function in drivers/usb/core/devio.c in the Linux kernel through 4.6 does not initialize a certain data structure, which allows local users to obtain sensitive information from k… CWE-200
Information Exposure
CVE-2016-4482 2024-11-21 11:52 2016-05-23 Show GitHub Exploit DB Packet Storm
268124 6.1 MEDIUM
Network
mediaelementjs
wordpress
mediaelement.js
wordpress
Cross-site scripting (XSS) vulnerability in flash/FlashMediaElement.as in MediaElement.js before 2.21.0, as used in WordPress before 4.5.2, allows remote attackers to inject arbitrary web script or H… CWE-79
Cross-site Scripting
CVE-2016-4567 2024-11-21 11:52 2016-05-22 Show GitHub Exploit DB Packet Storm
268125 6.1 MEDIUM
Network
wordpress
plupload
wordpress
plupload
Cross-site scripting (XSS) vulnerability in plupload.flash.swf in Plupload before 2.1.9, as used in WordPress before 4.5.2, allows remote attackers to inject arbitrary web script or HTML via a Same-O… CWE-79
Cross-site Scripting
CVE-2016-4566 2024-11-21 11:52 2016-05-22 Show GitHub Exploit DB Packet Storm
268126 9.8 CRITICAL
Network
php
opensuse
fedoraproject
debian
php
leap
opensuse
fedora
debian_linux
The exif_process_TIFF_in_JPEG function in ext/exif/exif.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 does not validate TIFF start data, which allows remote attackers to cause a d… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4544 2024-11-21 11:52 2016-05-22 Show GitHub Exploit DB Packet Storm
268127 9.8 CRITICAL
Network
hp
php
fedoraproject
opensuse
system_management_homepage
php
fedora
leap
The exif_process_IFD_in_JPEG function in ext/exif/exif.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 does not validate IFD sizes, which allows remote attackers to cause a denial o… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4543 2024-11-21 11:52 2016-05-22 Show GitHub Exploit DB Packet Storm
268128 9.8 CRITICAL
Network
php
opensuse
fedoraproject
php
leap
fedora
The exif_process_IFD_TAG function in ext/exif/exif.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 does not properly construct spprintf arguments, which allows remote attackers to c… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4542 2024-11-21 11:52 2016-05-22 Show GitHub Exploit DB Packet Storm
268129 9.8 CRITICAL
Network
fedoraproject
php
opensuse
fedora
php
leap
The grapheme_strpos function in ext/intl/grapheme/grapheme_string.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 allows remote attackers to cause a denial of service (out-of-bounds… NVD-CWE-Other
CVE-2016-4541 2024-11-21 11:52 2016-05-22 Show GitHub Exploit DB Packet Storm
268130 9.8 CRITICAL
Network
fedoraproject
opensuse
php
fedora
leap
php
The grapheme_stripos function in ext/intl/grapheme/grapheme_string.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 allows remote attackers to cause a denial of service (out-of-bound… NVD-CWE-Other
CVE-2016-4540 2024-11-21 11:52 2016-05-22 Show GitHub Exploit DB Packet Storm