Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241441 7.5 危険 auth2db - auth2db における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1208 2012-06-26 16:10 2009-04-1 Show GitHub Exploit DB Packet Storm
241442 4.3 警告 banshee-project - Banshee の DAAP 拡張の apps/web/vs_diag.cgi におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1175 2012-06-26 16:10 2009-03-31 Show GitHub Exploit DB Packet Storm
241443 10 危険 DELL EMC (旧 EMC Corporation) - EMC RepliStor におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-1119 2012-06-26 16:10 2009-04-15 Show GitHub Exploit DB Packet Storm
241444 9.3 危険 GeoVision - GeoVision DVR システムの LIVEAU~1.OCX における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2009-1092 2012-06-26 16:10 2009-03-25 Show GitHub Exploit DB Packet Storm
241445 4.3 警告 expressionengine - ExpressionEngine の system/index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1070 2012-06-26 16:10 2009-03-26 Show GitHub Exploit DB Packet Storm
241446 9.3 危険 AB Team - bsplayer におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-1068 2012-06-26 16:10 2009-03-26 Show GitHub Exploit DB Packet Storm
241447 4.3 警告 Lucid Crew - Pixie CMS の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1067 2012-06-26 16:10 2009-03-26 Show GitHub Exploit DB Packet Storm
241448 7.5 危険 Lucid Crew - Pixie CMS の admin/lib/lib_logs.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1066 2012-06-26 16:10 2009-03-26 Show GitHub Exploit DB Packet Storm
241449 7.5 危険 Lucid Crew - Pixie CMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1065 2012-06-26 16:10 2009-03-26 Show GitHub Exploit DB Packet Storm
241450 6.8 警告 Saurused - eXeScope におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-1063 2012-06-26 16:10 2009-03-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268121 6.1 MEDIUM
Local
linux
google
linux_kernel
android
The rfcomm_sock_bind function in net/bluetooth/rfcomm/sock.c in the Linux kernel before 4.2 allows local users to obtain sensitive information or cause a denial of service (NULL pointer dereference) … CWE-476
 NULL Pointer Dereference
CVE-2015-8956 2024-11-21 11:39 2016-10-10 Show GitHub Exploit DB Packet Storm
268122 7.3 HIGH
Local
linux
google
linux_kernel
android
arch/arm64/kernel/perf_event.c in the Linux kernel before 4.1 on arm64 platforms allows local users to gain privileges or cause a denial of service (invalid pointer dereference) via vectors involving… CWE-264
Permissions, Privileges, and Access Controls
CVE-2015-8955 2024-11-21 11:39 2016-10-10 Show GitHub Exploit DB Packet Storm
268123 7.8 HIGH
Local
google android Multiple use-after-free vulnerabilities in sound/soc/msm/qdsp6v2/msm-lsm-client.c in the Qualcomm sound driver in Android before 2016-10-05 on Nexus 5X, Nexus 6P, and Android One devices allow attack… CWE-264
Permissions, Privileges, and Access Controls
CVE-2015-8951 2024-11-21 11:39 2016-10-10 Show GitHub Exploit DB Packet Storm
268124 5.5 MEDIUM
Local
linux linux_kernel arch/arm64/mm/dma-mapping.c in the Linux kernel before 4.0.3, as used in the ION subsystem in Android and other products, does not initialize certain data structures, which allows local users to obta… CWE-200
Information Exposure
CVE-2015-8950 2024-11-21 11:39 2016-10-10 Show GitHub Exploit DB Packet Storm
268125 9.8 CRITICAL
Network
debian
uclouvain
debian_linux
openjpeg
Use-after-free vulnerability in the opj_j2k_write_mco function in j2k.c in OpenJPEG before 2.1.1 allows remote attackers to have unspecified impact via unknown vectors. CWE-416
 Use After Free
CVE-2015-8871 2024-11-21 11:39 2016-09-21 Show GitHub Exploit DB Packet Storm
268126 8.1 HIGH
Network
ietf
netapp
transport_layer_security
snap_creator_framework
data_ontap_edge
snapdrive
snapmanager
smi-s_provider
host_agent
clustered_data_ontap_antivirus_connector
solidfire_\&_hci_m…
The TLS protocol 1.2 and earlier supports the rsa_fixed_dh, dss_fixed_dh, rsa_fixed_ecdh, and ecdsa_fixed_ecdh values for ClientCertificateType but does not directly document the ability to compute t… CWE-295
Improper Certificate Validation 
CVE-2015-8960 2024-11-21 11:39 2016-09-21 Show GitHub Exploit DB Packet Storm
268127 5.5 MEDIUM
Local
suse
canonical
libarchive
linux_enterprise_software_development_kit
linux_enterprise_server
linux_enterprise_desktop
ubuntu_linux
libarchive
The copy_from_lzss_window function in archive_read_support_format_rar.c in libarchive 3.2.0 and earlier allows remote attackers to cause a denial of service (out-of-bounds heap read) via a crafted ra… CWE-125
Out-of-bounds Read
CVE-2015-8934 2024-11-21 11:39 2016-09-20 Show GitHub Exploit DB Packet Storm
268128 5.5 MEDIUM
Local
libarchive
suse
canonical
libarchive
linux_enterprise_software_development_kit
linux_enterprise_server
linux_enterprise_desktop
ubuntu_linux
Integer overflow in the archive_read_format_tar_skip function in archive_read_support_format_tar.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service (crash) via a crafte… CWE-190
 Integer Overflow or Wraparound
CVE-2015-8933 2024-11-21 11:39 2016-09-20 Show GitHub Exploit DB Packet Storm
268129 5.5 MEDIUM
Local
canonical
debian
suse
libarchive
ubuntu_linux
debian_linux
linux_enterprise_software_development_kit
linux_enterprise_server
linux_enterprise_desktop
libarchive
The compress_bidder_init function in archive_read_support_filter_compress.c in libarchive before 3.2.0 allows remote attackers to cause a denial of service (crash) via a crafted tar file, which trigg… CWE-20
 Improper Input Validation 
CVE-2015-8932 2024-11-21 11:39 2016-09-20 Show GitHub Exploit DB Packet Storm
268130 7.8 HIGH
Local
libarchive
suse
canonical
debian
libarchive
linux_enterprise_software_development_kit
linux_enterprise_server
linux_enterprise_desktop
ubuntu_linux
debian_linux
Multiple integer overflows in the (1) get_time_t_max and (2) get_time_t_min functions in archive_read_support_format_mtree.c in libarchive before 3.2.0 allow remote attackers to have unspecified impa… CWE-190
 Integer Overflow or Wraparound
CVE-2015-8931 2024-11-21 11:39 2016-09-20 Show GitHub Exploit DB Packet Storm