Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241031 2.1 注意 Drupal
Karen Stevenson
- Drupal 用 の Date モジュールの Date Tools サブモジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3156 2012-06-26 16:18 2009-07-29 Show GitHub Exploit DB Packet Storm
241032 4.3 警告 almondsoft
Joomla!
- Joomla! の aclassf コンポーネントの gmap.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3155 2012-06-26 16:18 2009-09-10 Show GitHub Exploit DB Packet Storm
241033 7.5 危険 almondsoft
Joomla!
- Joomla! の aclassf コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3154 2012-06-26 16:18 2009-09-10 Show GitHub Exploit DB Packet Storm
241034 4.3 警告 curveriderhq - Elgg の _css/js.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-3149 2012-06-26 16:18 2009-09-10 Show GitHub Exploit DB Packet Storm
241035 4.3 警告 allenthusiast - ReviewPost Pro vB3 の showproduct.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3147 2012-06-26 16:18 2009-09-10 Show GitHub Exploit DB Packet Storm
241036 4.3 警告 articlefriend - ArticleFriend Script の search_advance.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3146 2012-06-26 16:18 2009-09-10 Show GitHub Exploit DB Packet Storm
241037 6.4 警告 Drupal
chris shattuck
- Drupal の Ajax Table モジュールにおける任意のユーザを削除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3122 2012-06-26 16:18 2009-08-26 Show GitHub Exploit DB Packet Storm
241038 4.3 警告 Drupal
chris shattuck
- Drupal の Ajax Table モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3121 2012-06-26 16:18 2009-08-26 Show GitHub Exploit DB Packet Storm
241039 4.3 警告 BIGACE - BIGACE Web CMS の public/index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3120 2012-06-26 16:18 2009-09-9 Show GitHub Exploit DB Packet Storm
241040 7.5 危険 danneo - Danneo CMS の mod/poll/comment.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3118 2012-06-26 16:18 2009-09-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 10, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267891 - oracle e-business_suite Unspecified vulnerability in the Oracle Customer Interaction History component in Oracle E-Business Suite 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect confiden… NVD-CWE-noinfo
CVE-2016-0527 2024-11-21 11:41 2016-01-21 Show GitHub Exploit DB Packet Storm
267892 - oracle e-business_suite Unspecified vulnerability in the Oracle CRM Technical Foundation component in Oracle E-Business Suite 11.5.10.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote attackers to affect integrity via unk… NVD-CWE-noinfo
CVE-2016-0526 2024-11-21 11:41 2016-01-21 Show GitHub Exploit DB Packet Storm
267893 - oracle universal_work_queue Unspecified vulnerability in the Oracle Universal Work Queue component in Oracle E-Business Suite 11.5.10.2, 12.1.1, 12.1.2, and 12.1.3 allows remote attackers to affect confidentiality and integrity… NVD-CWE-noinfo
CVE-2016-0525 2024-11-21 11:41 2016-01-21 Show GitHub Exploit DB Packet Storm
267894 - oracle e-business_suite Unspecified vulnerability in the Oracle Universal Work Queue component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect confidentiality and integrity via unknown vectors related… NVD-CWE-noinfo
CVE-2016-0524 2024-11-21 11:41 2016-01-21 Show GitHub Exploit DB Packet Storm
267895 - oracle interaction_blending Unspecified vulnerability in the Oracle Interaction Blending component in Oracle E-Business Suite 11.5.10.2, 12.1.1, 12.1.2, 12.1.3, 12.2.3, 12.2.4, and 12.2.5 allows remote authenticated users to af… NVD-CWE-noinfo
CVE-2016-0523 2024-11-21 11:41 2016-01-21 Show GitHub Exploit DB Packet Storm
267896 - oracle retail_open_commerce_platform_cloud_service Unspecified vulnerability in the Oracle Retail Open Commerce Platform Cloud Service component in Oracle Retail Applications 3.5, 4.5, 4.7, and 5.0 allows remote attackers to affect confidentiality, i… NVD-CWE-noinfo
CVE-2016-0522 2024-11-21 11:41 2016-01-21 Show GitHub Exploit DB Packet Storm
267897 - oracle e-business_suite Unspecified vulnerability in the Oracle iProcurement component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors related to Redirection. NVD-CWE-noinfo
CVE-2016-0521 2024-11-21 11:41 2016-01-21 Show GitHub Exploit DB Packet Storm
267898 - oracle application_object_library Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via vectors related to Java APIs. NVD-CWE-noinfo
CVE-2016-0520 2024-11-21 11:41 2016-01-21 Show GitHub Exploit DB Packet Storm
267899 - oracle e-business_suite Unspecified vulnerability in the Oracle iReceivables component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect integrity via unknown vectors related to AR Web Utilities, a diff… NVD-CWE-noinfo
CVE-2016-0519 2024-11-21 11:41 2016-01-21 Show GitHub Exploit DB Packet Storm
267900 - oracle e-business_suite Unspecified vulnerability in the Oracle Human Resources component in Oracle E-Business Suite 11.5.10.2 allows remote attackers to affect confidentiality and integrity via unknown vectors related to G… NVD-CWE-noinfo
CVE-2016-0518 2024-11-21 11:41 2016-01-21 Show GitHub Exploit DB Packet Storm