Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241841 9.3 危険 aimp - AIMP2 Audio Converter におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3170 2012-06-26 16:18 2009-09-11 Show GitHub Exploit DB Packet Storm
241842 4.3 警告 anantasoft - Anantasoft Gazelle CMS の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-3167 2012-06-26 16:18 2009-09-11 Show GitHub Exploit DB Packet Storm
241843 7.5 危険 carsten wulff - simplePHPWeb の admin/files.php における管理操作を実行される脆弱性 CWE-287
不適切な認証
CVE-2009-3158 2012-06-26 16:18 2009-09-10 Show GitHub Exploit DB Packet Storm
241844 2.1 注意 Drupal
Karen Stevenson
- Drupal 用 の Date モジュールの Date Tools サブモジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3156 2012-06-26 16:18 2009-07-29 Show GitHub Exploit DB Packet Storm
241845 4.3 警告 almondsoft
Joomla!
- Joomla! の aclassf コンポーネントの gmap.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3155 2012-06-26 16:18 2009-09-10 Show GitHub Exploit DB Packet Storm
241846 7.5 危険 almondsoft
Joomla!
- Joomla! の aclassf コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3154 2012-06-26 16:18 2009-09-10 Show GitHub Exploit DB Packet Storm
241847 4.3 警告 curveriderhq - Elgg の _css/js.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-3149 2012-06-26 16:18 2009-09-10 Show GitHub Exploit DB Packet Storm
241848 4.3 警告 allenthusiast - ReviewPost Pro vB3 の showproduct.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3147 2012-06-26 16:18 2009-09-10 Show GitHub Exploit DB Packet Storm
241849 4.3 警告 articlefriend - ArticleFriend Script の search_advance.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3146 2012-06-26 16:18 2009-09-10 Show GitHub Exploit DB Packet Storm
241850 6.4 警告 Drupal
chris shattuck
- Drupal の Ajax Table モジュールにおける任意のユーザを削除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3122 2012-06-26 16:18 2009-08-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266841 6.5 MEDIUM
Network
opensuse
mozilla
leap
opensuse
nss
firefox
The s_mp_div function in lib/freebl/mpi/mpi.c in Mozilla Network Security Services (NSS) before 3.21, as used in Mozilla Firefox before 44.0, improperly divides numbers, which might make it easier fo… CWE-310
Cryptographic Issues
CVE-2016-1938 2024-11-21 11:47 2016-02-1 Show GitHub Exploit DB Packet Storm
266842 6.1 MEDIUM
Network
mozilla
opensuse
firefox
leap
opensuse
The protocol-handler dialog in Mozilla Firefox before 44.0 allows remote attackers to conduct clickjacking attacks via a crafted web site that triggers a single-click action in a situation where a do… CWE-79
Cross-site Scripting
CVE-2016-1937 2024-11-21 11:47 2016-02-1 Show GitHub Exploit DB Packet Storm
266843 8.8 HIGH
Network
opensuse
oracle
mozilla
leap
opensuse
linux
firefox
Buffer overflow in the BufferSubData function in Mozilla Firefox before 44.0 and Firefox ESR 38.x before 38.6 allows remote attackers to execute arbitrary code via crafted WebGL content. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1935 2024-11-21 11:47 2016-02-1 Show GitHub Exploit DB Packet Storm
266844 6.5 MEDIUM
Network
opensuse
mozilla
leap
opensuse
firefox
Integer overflow in the image-deinterlacing functionality in Mozilla Firefox before 44.0 allows remote attackers to cause a denial of service (memory consumption or application crash) via a crafted G… CWE-189
Numeric Errors
CVE-2016-1933 2024-11-21 11:47 2016-02-1 Show GitHub Exploit DB Packet Storm
266845 10.0 CRITICAL
Network
mozilla
opensuse
firefox
leap
opensuse
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 44.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly exe… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1931 2024-11-21 11:47 2016-02-1 Show GitHub Exploit DB Packet Storm
266846 9.8 CRITICAL
Network
mozilla
oracle
opensuse
firefox
linux
leap
opensuse
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 44.0 and Firefox ESR 38.x before 38.6 allow remote attackers to cause a denial of service (memory corruption and a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1930 2024-11-21 11:47 2016-02-1 Show GitHub Exploit DB Packet Storm
266847 10.0 CRITICAL
Network
hp operations_manager HPE Operations Manager 8.x and 9.0 on Windows allows remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections library. CWE-94
Code Injection
CVE-2016-1985 2024-11-21 11:47 2016-01-31 Show GitHub Exploit DB Packet Storm
266848 7.5 HIGH
Network
freebsd freebsd FreeBSD 9.3 before p33, 10.1 before p26, and 10.2 before p9 allow remote attackers to cause a denial of service (kernel crash) via vectors related to creating a TCP connection with the TCP_MD5SIG and… CWE-19
 Data Processing Errors
CVE-2016-1882 2024-11-21 11:47 2016-01-30 Show GitHub Exploit DB Packet Storm
266849 7.5 HIGH
Network
freebsd freebsd The Stream Control Transmission Protocol (SCTP) module in FreeBSD 9.3 before p33, 10.1 before p26, and 10.2 before p9, when the kernel is configured for IPv6, allows remote attackers to cause a denia… NVD-CWE-Other
CVE-2016-1879 2024-11-21 11:47 2016-01-30 Show GitHub Exploit DB Packet Storm
266850 5.9 MEDIUM
Network
mariadb
oracle
opensuse
redhat
debian
canonical
mariadb
linux
mysql
leap
enterprise_linux
debian_linux
ubuntu_linux
The ssl_verify_server_cert function in sql-common/client.c in MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10; Oracle MySQL 5.5.48 and earlier, 5.6.29 and earlier, and 5.7.11 … CWE-254
 7PK - Security Features
CVE-2016-2047 2024-11-21 11:47 2016-01-28 Show GitHub Exploit DB Packet Storm