Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241051 5 警告 MegaLab.it - MegaLab The Uploader の api/download_checker.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-4816 2012-06-26 16:19 2010-04-27 Show GitHub Exploit DB Packet Storm
241052 7.5 危険 graugon - Graugon PHP Article Publisher の admin.php における管理者用アクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2009-4808 2012-06-26 16:19 2010-04-23 Show GitHub Exploit DB Packet Storm
241053 7.5 危険 graugon - Graugon PHP Article Publisher における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4807 2012-06-26 16:19 2010-04-23 Show GitHub Exploit DB Packet Storm
241054 7.5 危険 digitalinterchange - Digital Interchange Document Library の admin/save_user.asp における管理者の資格情報を変更される脆弱性 CWE-287
不適切な認証
CVE-2009-4806 2012-06-26 16:19 2010-04-23 Show GitHub Exploit DB Packet Storm
241055 7.5 危険 TYPO3 Association
andreas schwarzkopf
- TYPO3 の a21glossary 拡張における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4803 2012-06-26 16:19 2010-03-5 Show GitHub Exploit DB Packet Storm
241056 5 警告 diskos - Diskos CMS におけるデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4799 2012-06-26 16:19 2010-04-22 Show GitHub Exploit DB Packet Storm
241057 7.5 危険 diskos - Diskos CMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4798 2012-06-26 16:19 2010-04-22 Show GitHub Exploit DB Packet Storm
241058 7.5 危険 glFusion - glFusion の private/system/classes/listfactory.class.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4796 2012-06-26 16:19 2010-04-22 Show GitHub Exploit DB Packet Storm
241059 7.5 危険 community cms - Community CMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4794 2012-06-26 16:19 2010-04-22 Show GitHub Exploit DB Packet Storm
241060 7.5 危険 bhavesh chauhan
Joomla!
- Joomla! 用の Quick News コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4785 2012-06-26 16:19 2010-04-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267301 7.4 HIGH
Network
flask-oidc_project flask-oidc flask-oidc version 0.1.2 and earlier is vulnerable to an open redirect CWE-601
Open Redirect
CVE-2016-1000001 2024-11-21 11:42 2016-10-8 Show GitHub Exploit DB Packet Storm
267302 9.8 CRITICAL
Network
huge-it huge-it_catalog Unauthenticated SQL Injection in Huge-IT Catalog v1.0.7 for Joomla CWE-89
SQL Injection
CVE-2016-1000125 2024-11-21 11:42 2016-10-6 Show GitHub Exploit DB Packet Storm
267303 9.8 CRITICAL
Network
huge-it portfolio_gallery Unauthenticated SQL Injection in Huge-IT Portfolio Gallery Plugin v1.0.6 CWE-89
SQL Injection
CVE-2016-1000124 2024-11-21 11:42 2016-10-6 Show GitHub Exploit DB Packet Storm
267304 9.8 CRITICAL
Network
huge-it video_gallery Unauthenticated SQL Injection in Huge-IT Video Gallery v1.0.9 for Joomla CWE-89
SQL Injection
CVE-2016-1000123 2024-11-21 11:42 2016-10-6 Show GitHub Exploit DB Packet Storm
267305 6.1 MEDIUM
Network
huge-it gallery XSS in huge IT gallery v1.1.5 for Joomla CWE-79
Cross-site Scripting
CVE-2016-1000114 2024-11-21 11:42 2016-10-6 Show GitHub Exploit DB Packet Storm
267306 9.8 CRITICAL
Network
huge-it gallery XSS and SQLi in huge IT gallery v1.1.5 for Joomla CWE-89
SQL Injection
CVE-2016-1000113 2024-11-21 11:42 2016-10-6 Show GitHub Exploit DB Packet Storm
267307 9.1 CRITICAL
Network
contussupport contus-video-comments Unauthenticated remote .jpg file upload in contus-video-comments v1.0 wordpress plugin CWE-22
Path Traversal
CVE-2016-1000112 2024-11-21 11:42 2016-10-6 Show GitHub Exploit DB Packet Storm
267308 7.5 HIGH
Network
tp-link tp-link TP-LINK lost control of two domains, www.tplinklogin.net and tplinkextender.net. Please note that these domains are physically printed on many of the devices. CWE-254
 7PK - Security Features
CVE-2016-1000009 2024-11-21 11:42 2016-10-6 Show GitHub Exploit DB Packet Storm
267309 8.8 HIGH
Network
progress whatsup_gold Ipswitch WhatsUp Gold 16.4.1 WrFreeFormText.asp sUniqueID Parameter Blind SQL Injection CWE-89
SQL Injection
CVE-2016-1000000 2024-11-21 11:42 2016-10-6 Show GitHub Exploit DB Packet Storm
267310 9.8 CRITICAL
Network
emc networker_module_for_microsoft_applications
replication_manager
The client in EMC Replication Manager (RM) before 5.5.3.0_01-PatchHotfix, EMC Network Module for Microsoft 3.x, and EMC Networker Module for Microsoft 8.2.x before 8.2.3.6 allows remote RM servers to… CWE-20
 Improper Input Validation 
CVE-2016-0913 2024-11-21 11:42 2016-10-5 Show GitHub Exploit DB Packet Storm