Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241271 4.3 警告 Drupal
Alex Barth
- Drupal の Feed Element Mapper におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4119 2012-06-26 16:18 2009-11-30 Show GitHub Exploit DB Packet Storm
241272 9.3 危険 Mozilla Foundation
didier ernotte
- Firefox の infoRSS におけるクロスドメインスクリプティング攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2009-4101 2012-06-26 16:18 2009-07-3 Show GitHub Exploit DB Packet Storm
241273 7.5 危険 Joomla!
g4j.laoneo
- Joomla! 用 Google Calendar GCalendar コンポーネンにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4099 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
241274 7.5 危険 companionway - myPhile における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2009-4095 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
241275 7.5 危険 designforjoomla
Joomla!
- Joomla! 用の D4J eZine コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-4094 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
241276 7.5 危険 e107.org - e107 の検索機能における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4084 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
241277 4.3 警告 e107.org - e107 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4083 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
241278 4.4 警告 DAG - dstat における権限を取得される脆弱性 CWE-Other
その他
CVE-2009-4081 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
241279 7.5 危険 GForge Group - GForge における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4070 2012-06-26 16:18 2009-11-24 Show GitHub Exploit DB Packet Storm
241280 9.3 危険 Krzysztof Kowalczyk
ccxvii
- SumatraPDF で使用される MuPDF の pdf_shade4.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4117 2012-06-26 16:18 2009-11-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268401 9.8 CRITICAL
Network
adobe acrobat_reader
acrobat
acrobat_dc
acrobat_reader_dc
Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous before 15.010.20056 on Windows and OS X allow attacker… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-0933 2024-11-21 11:42 2016-01-14 Show GitHub Exploit DB Packet Storm
268402 8.8 HIGH
Network
adobe acrobat_reader
acrobat
acrobat_dc
acrobat_reader_dc
Adobe Reader and Acrobat before 11.0.14, Acrobat and Acrobat Reader DC Classic before 15.006.30119, and Acrobat and Acrobat Reader DC Continuous before 15.010.20056 on Windows and OS X allow attacker… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-0931 2024-11-21 11:42 2016-01-14 Show GitHub Exploit DB Packet Storm
268403 4.3 MEDIUM
Network
ibm urbancode_deploy IBM UrbanCode Deploy 6.0 through 6.2.2.1 could allow an authenticated user to read sensitive information due to UCD REST endpoints not properly authorizing users when determining who can read data. I… CWE-285
Improper Authorization
CVE-2016-0373 2024-11-21 11:41 2018-08-31 Show GitHub Exploit DB Packet Storm
268404 3.3 LOW
Local
ibm openpages_grc_platform IBM OpenPages GRC Platform 7.1, 7.2, and 7.3 could allow a local user to obtain sensitive information when a previous user has logged out of the system but neglected to close their browser. IBM X-For… CWE-613
 Insufficient Session Expiration
CVE-2016-0234 2024-11-21 11:41 2018-08-31 Show GitHub Exploit DB Packet Storm
268405 3.3 LOW
Local
ibm cloud_orchestrator A vulnerability has been identified in IBM Cloud Orchestrator 2.3, 2.3.0.1, 2.4, and 2.4.0.1 that could allow an attacker after authentication to enumerate valid users of the system. IBM X-Force ID: … CWE-200
Information Exposure
CVE-2016-0205 2024-11-21 11:41 2018-08-31 Show GitHub Exploit DB Packet Storm
268406 6.1 MEDIUM
Network
ibm forms_server Cross-site scripting (XSS) vulnerability in the Webform Framework API in IBM Forms Server 4.0.x, 8.0.x, 8.1, and 8.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vec… CWE-79
Cross-site Scripting
CVE-2016-0223 2024-11-21 11:41 2018-03-16 Show GitHub Exploit DB Packet Storm
268407 5.4 MEDIUM
Network
ibm curam_social_program_management
care_management
Cross-site scripting (XSS) vulnerability in IBM Curam Social Program Management 6.0.0 before SP2 EP29, 6.0.4 before 6.0.4.6 iFix3, 6.0.5 before 6.0.5.9 iFix2, 6.1.0 before 6.1.0.1 iFix1, and 6.1.1 be… CWE-79
Cross-site Scripting
CVE-2016-0261 2024-11-21 11:41 2018-03-13 Show GitHub Exploit DB Packet Storm
268408 5.4 MEDIUM
Network
ibm infosphere_information_server XML external entity (XXE) vulnerability in IBM InfoSphere Information Governance Catalog 11.3 before 11.3.1.2 and 11.5 before 11.5.0.1 allows remote authenticated users to read arbitrary files or cau… CWE-611
XXE
CVE-2016-0250 2024-11-21 11:41 2018-03-13 Show GitHub Exploit DB Packet Storm
268409 5.5 MEDIUM
Local
ibm security_guardium_database_activity_monitor IBM Security Guardium Database Activity Monitor 10 allows local users to obtain sensitive information by reading cached browser data. IBM X-Force ID: 110328. CWE-200
Information Exposure
CVE-2016-0237 2024-11-21 11:41 2018-03-13 Show GitHub Exploit DB Packet Storm
268410 8.2 HIGH
Local
ibm security_guardium_database_activity_monitor IBM Security Guardium Database Activity Monitor 10 allows local users to have unspecified impact by leveraging administrator access to a hardcoded password, related to use on GRUB systems. IBM X-Forc… CWE-798
 Use of Hard-coded Credentials
CVE-2016-0235 2024-11-21 11:41 2018-03-13 Show GitHub Exploit DB Packet Storm