Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241271 9.3 危険 Mozilla Foundation
didier ernotte
- Firefox の infoRSS におけるクロスドメインスクリプティング攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2009-4101 2012-06-26 16:18 2009-07-3 Show GitHub Exploit DB Packet Storm
241272 7.5 危険 Joomla!
g4j.laoneo
- Joomla! 用 Google Calendar GCalendar コンポーネンにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4099 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
241273 7.5 危険 companionway - myPhile における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2009-4095 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
241274 7.5 危険 designforjoomla
Joomla!
- Joomla! 用の D4J eZine コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-4094 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
241275 7.5 危険 e107.org - e107 の検索機能における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4084 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
241276 4.3 警告 e107.org - e107 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4083 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
241277 4.4 警告 DAG - dstat における権限を取得される脆弱性 CWE-Other
その他
CVE-2009-4081 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
241278 7.5 危険 GForge Group - GForge における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4070 2012-06-26 16:18 2009-11-24 Show GitHub Exploit DB Packet Storm
241279 9.3 危険 Krzysztof Kowalczyk
ccxvii
- SumatraPDF で使用される MuPDF の pdf_shade4.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4117 2012-06-26 16:18 2009-11-30 Show GitHub Exploit DB Packet Storm
241280 3.5 注意 CutePHP - CutePHP CuteNews におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-4116 2012-06-26 16:18 2009-11-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267071 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, an assertion was potentially reachable in a WLAN driver ioctl. CWE-20
 Improper Input Validation 
CVE-2016-10384 2024-11-21 11:43 2017-08-19 Show GitHub Exploit DB Packet Storm
267072 8.1 HIGH
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, there is a TOCTOU race condition in Secure UI. CWE-362
Race Condition
CVE-2016-10383 2024-11-21 11:43 2017-08-19 Show GitHub Exploit DB Packet Storm
267073 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, access control to the I2C bus is not sufficient. CWE-284
Improper Access Control
CVE-2016-10382 2024-11-21 11:43 2017-08-19 Show GitHub Exploit DB Packet Storm
267074 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, the UE can send unprotected MeasurementReports revealing UE location. CWE-1
Location
CVE-2016-10381 2024-11-21 11:43 2017-08-19 Show GitHub Exploit DB Packet Storm
267075 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, the UE can send unprotected MeasurementReports revealing UE location. CWE-1
Location
CVE-2016-10380 2024-11-21 11:43 2017-08-19 Show GitHub Exploit DB Packet Storm
267076 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, an argument to a hypervisor function is not properly validated. CWE-20
 Improper Input Validation 
CVE-2016-10347 2024-11-21 11:43 2017-08-19 Show GitHub Exploit DB Packet Storm
267077 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, an integer overflow vulnerability exists in the hypervisor. CWE-190
 Integer Overflow or Wraparound
CVE-2016-10346 2024-11-21 11:43 2017-08-19 Show GitHub Exploit DB Packet Storm
267078 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, the use of an out-of-range pointer offset is potentially possible in LTE. CWE-476
 NULL Pointer Dereference
CVE-2016-10344 2024-11-21 11:43 2017-08-19 Show GitHub Exploit DB Packet Storm
267079 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, sSL handshake failure with ClientHello rejection results in memory leak. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-10343 2024-11-21 11:43 2017-08-19 Show GitHub Exploit DB Packet Storm
267080 6.1 MEDIUM
Network
liferay liferay_portal XSS exists in Liferay Portal before 7.0 CE GA4 via a crafted redirect field to modules/apps/foundation/frontend-js/frontend-js-spa-web/src/main/resources/META-INF/resources/init.jsp. CWE-79
Cross-site Scripting
CVE-2016-10404 2024-11-21 11:43 2017-08-8 Show GitHub Exploit DB Packet Storm