Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241481 4.3 警告 dreamlevels - Dreamlevels DreamPoll の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4746 2012-06-26 16:19 2010-03-26 Show GitHub Exploit DB Packet Storm
241482 7.5 危険 dreamlevels - Dreamlevels DreamPoll の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4745 2012-06-26 16:19 2010-03-26 Show GitHub Exploit DB Packet Storm
241483 4.3 警告 AfterLogic - AfterLogic WebMail Pro の history-storage.aspx におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4743 2012-06-26 16:19 2010-03-26 Show GitHub Exploit DB Packet Storm
241484 7.5 危険 Docebo - Docebo における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4742 2012-06-26 16:19 2010-03-26 Show GitHub Exploit DB Packet Storm
241485 7.5 危険 Allomani - Allomani Audio & Video Library の login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4735 2012-06-26 16:19 2010-03-18 Show GitHub Exploit DB Packet Storm
241486 7.5 危険 Allomani - Allomani Movies Library の login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4734 2012-06-26 16:19 2010-03-18 Show GitHub Exploit DB Packet Storm
241487 7.5 危険 boldfx - Model Agency Manager PRO の photos.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4731 2012-06-26 16:19 2010-03-18 Show GitHub Exploit DB Packet Storm
241488 5.1 警告 Arab Portal - Arab Portal の modules/aljazeera/admin/setup.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-4725 2012-06-26 16:19 2010-03-18 Show GitHub Exploit DB Packet Storm
241489 7.5 危険 andrews-web - A-W BannerAd の Admin/index.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4721 2012-06-26 16:19 2010-03-18 Show GitHub Exploit DB Packet Storm
241490 7.5 危険 gnudip - GnuDIP の cgi-bin/gnudip.cgi における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4720 2012-06-26 16:19 2010-03-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266781 5.5 MEDIUM
Network
mozilla
webrtc_project
firefox
webrtc
Use-after-free vulnerability in the DesktopDisplayDevice class in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service or poss… NVD-CWE-Other
CVE-2016-1976 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
266782 6.3 MEDIUM
Network
webrtc_project
mozilla
webrtc
firefox
Multiple race conditions in dom/media/systemservices/CamerasChild.cpp in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service … CWE-362
Race Condition
CVE-2016-1975 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
266783 8.8 HIGH
Network
mozilla
oracle
suse
opensuse
firefox
thunderbird
linux
linux_enterprise
leap
opensuse
The nsScannerString::AppendUnicodeTo function in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 does not verify that memory allocation succeeds, which allows remote attackers to execute… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1974 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
266784 8.8 HIGH
Network
oracle
mozilla
linux
firefox
Race condition in the GetStaticInstance function in the WebRTC implementation in Mozilla Firefox before 45.0 might allow remote attackers to execute arbitrary code or cause a denial of service (use-a… NVD-CWE-Other
CVE-2016-1973 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
266785 8.8 HIGH
Network
mozilla firefox Race condition in libvpx in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via unknown vec… NVD-CWE-Other
CVE-2016-1972 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
266786 8.8 HIGH
Network
mozilla firefox The I420VideoFrame::CreateFrame function in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows omits an unspecified status check, which might allow remote attackers to cause a denial… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1971 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
266787 8.8 HIGH
Network
mozilla firefox Integer underflow in the srtp_unprotect function in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service (memory corruption) o… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1970 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
266788 8.8 HIGH
Network
sil
mozilla
graphite2
firefox
The setAttr function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.6.1, allows remote attackers to cause a denial of service (out-of-bounds write) … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1969 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
266789 8.8 HIGH
Network
mozilla firefox Integer underflow in Brotli, as used in Mozilla Firefox before 45.0, allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow) via crafted data with brotli comp… CWE-189
Numeric Errors
CVE-2016-1968 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm
266790 6.5 MEDIUM
Network
mozilla firefox Mozilla Firefox before 45.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive inform… CWE-200
Information Exposure
CVE-2016-1967 2024-11-21 11:47 2016-03-14 Show GitHub Exploit DB Packet Storm