Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240841 6.8 警告 Parallels - Parallels H-Sphere におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-5004 2012-09-21 16:04 2012-09-19 Show GitHub Exploit DB Packet Storm
240842 6.8 警告 NoMachine - NoMachine NX Web Companion の nxapplet.jar における任意のコードを実行される脆弱性 CWE-287
不適切な認証
CVE-2012-5003 2012-09-21 16:04 2012-09-19 Show GitHub Exploit DB Packet Storm
240843 4.3 警告 Clonemonster - Social Book Facebook Clone におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5190 2012-09-21 16:03 2012-09-20 Show GitHub Exploit DB Packet Storm
240844 2.1 注意 Sven Decabooter - Drupal 用 Webform Validation モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5189 2012-09-21 15:35 2011-11-30 Show GitHub Exploit DB Packet Storm
240845 2.1 注意 Tag1 Consulting - Drupal 用 Support Timer モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5188 2012-09-21 15:34 2011-11-30 Show GitHub Exploit DB Packet Storm
240846 2.1 注意 Tag1 Consulting - Drupal 用 Support Ticketing System モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5187 2012-09-21 15:34 2011-11-30 Show GitHub Exploit DB Packet Storm
240847 4.3 警告 Burnsy - e107 用 jbShop プラグインの jbshop.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5186 2012-09-21 15:32 2012-09-20 Show GitHub Exploit DB Packet Storm
240848 4.3 警告 realmatrix - Online Subtitles Workshop におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5185 2012-09-21 15:31 2012-09-20 Show GitHub Exploit DB Packet Storm
240849 4.3 警告 ヒューレット・パッカード - HP Network Node Manager i におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5184 2012-09-21 15:30 2012-09-20 Show GitHub Exploit DB Packet Storm
240850 7.5 危険 Bioinformatics - OrderSys における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-5183 2012-09-21 15:29 2012-09-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266361 9.8 CRITICAL
Network
apple iphone_os
tvos
mac_os_x
watchos
icloud
itunes
libxml2 in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4616 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm
266362 9.8 CRITICAL
Network
apple iphone_os
tvos
mac_os_x
watchos
icloud
itunes
libxml2 in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4615 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm
266363 9.8 CRITICAL
Network
apple icloud
itunes
iphone_os
tvos
mac_os_x
watchos
libxml2 in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a… CWE-787
 Out-of-bounds Write
CVE-2016-4614 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm
266364 9.8 CRITICAL
Network
xmlsoft
apple
fedoraproject
debian
libxslt
icloud
itunes
fedora
debian_linux
libxslt in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4610 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm
266365 9.8 CRITICAL
Network
xmlsoft
apple
fedoraproject
debian
libxslt
iphone_os
tvos
mac_os_x
watchos
icloud
itunes
fedora
debian_linux
libxslt in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4609 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm
266366 9.8 CRITICAL
Network
xmlsoft
apple
fedoraproject
libxslt
icloud
itunes
fedora
libxslt in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4608 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm
266367 9.8 CRITICAL
Network
xmlsoft
apple
fedoraproject
libxslt
iphone_os
tvos
mac_os_x
watchos
icloud
itunes
fedora
libxslt in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4607 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm
266368 6.5 MEDIUM
Network
apple iphone_os Calendar in Apple iOS before 9.3.3 allows remote attackers to cause a denial of service (NULL pointer dereference and device restart) via a crafted invitation. CWE-476
 NULL Pointer Dereference
CVE-2016-4605 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm
266369 5.4 MEDIUM
Network
apple safari Safari in Apple iOS before 9.3.3 allows remote attackers to spoof the displayed URL via an HTTP response specifying redirection to an invalid TCP port number. CWE-601
Open Redirect
CVE-2016-4604 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm
266370 4.3 MEDIUM
Network
apple iphone_os Web Media in Apple iOS before 9.3.3 allows attackers to bypass the Private Browsing protection mechanism and obtain sensitive video URL information by leveraging Safari View Controller misbehavior. CWE-254
 7PK - Security Features
CVE-2016-4603 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm