Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241931 9.3 危険 The GIMP Team - GIMP の plug-ins/file-psd/psd-load.c における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-3909 2012-06-26 16:18 2009-11-16 Show GitHub Exploit DB Packet Storm
241932 4.3 警告 ecouriersoftware - e-Courier CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3905 2012-06-26 16:18 2009-11-6 Show GitHub Exploit DB Packet Storm
241933 7.5 危険 CubeCart Limited - CubeCart の classes/session/cc_admin_session.php における管理アクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3904 2012-06-26 16:18 2009-11-6 Show GitHub Exploit DB Packet Storm
241934 5 警告 マイクロソフト
Cherokee Project
- Windows の Cherokee Web Server におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-3902 2012-06-26 16:18 2009-11-6 Show GitHub Exploit DB Packet Storm
241935 4.3 警告 ecouriersoftware - e-Courier CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3901 2012-06-26 16:18 2009-11-6 Show GitHub Exploit DB Packet Storm
241936 4.6 警告 Timo Sirainen - Dovecot における任意のユーザアカウントにアクセスされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3897 2012-06-26 16:18 2009-11-20 Show GitHub Exploit DB Packet Storm
241937 6.8 警告 Curtis Galloway - libexif の exif_entry_fix 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3895 2012-06-26 16:18 2009-11-20 Show GitHub Exploit DB Packet Storm
241938 4.3 警告 Best Practical Solutions - Best Practical Solutions RT におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3892 2012-06-26 16:18 2009-09-14 Show GitHub Exploit DB Packet Storm
241939 9.3 危険 eEye Digital Security - eEye Retina WiFi Scanner におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3859 2012-06-26 16:18 2009-10-7 Show GitHub Exploit DB Packet Storm
241940 4.3 警告 gejosoft - GejoSoft におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3858 2012-06-26 16:18 2009-11-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266731 4.6 MEDIUM
Physics
novell
linux
canonical
suse_linux_enterprise_module_for_public_cloud
suse_linux_enterprise_server
suse_linux_enterprise_live_patching
suse_linux_enterprise_real_time_extension
suse_linux_enterprise_desktop
s…
The iowarrior_probe function in drivers/usb/misc/iowarrior.c in the Linux kernel before 4.5.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system c… NVD-CWE-Other
CVE-2016-2188 2024-11-21 11:48 2016-05-2 Show GitHub Exploit DB Packet Storm
266732 4.3 MEDIUM
Network
mozilla firefox The Firefox Health Reports (aka FHR or about:healthreport) feature in Mozilla Firefox before 46.0 does not properly restrict the origin of events, which makes it easier for remote attackers to modify… CWE-284
Improper Access Control
CVE-2016-2820 2024-11-21 11:48 2016-05-1 Show GitHub Exploit DB Packet Storm
266733 5.4 MEDIUM
Network
mozilla firefox The WebExtension sandbox feature in browser/components/extensions/ext-tabs.js in Mozilla Firefox before 46.0 does not properly restrict principal inheritance during chrome.tabs.create and chrome.tabs… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2817 2024-11-21 11:48 2016-05-1 Show GitHub Exploit DB Packet Storm
266734 6.5 MEDIUM
Network
mozilla firefox Mozilla Firefox before 46.0 allows remote attackers to bypass the Content Security Policy (CSP) protection mechanism via the multipart/x-mixed-replace content type. CWE-284
Improper Access Control
CVE-2016-2816 2024-11-21 11:48 2016-05-1 Show GitHub Exploit DB Packet Storm
266735 8.8 HIGH
Network
mozilla firefox Heap-based buffer overflow in the stagefright::SampleTable::parseSampleCencInfo function in libstagefright in Mozilla Firefox before 46.0, Firefox ESR 38.x before 38.8, and Firefox ESR 45.x before 45… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2814 2024-11-21 11:48 2016-05-1 Show GitHub Exploit DB Packet Storm
266736 6.5 MEDIUM
Network
mozilla firefox Mozilla Firefox before 46.0 on Android does not properly restrict JavaScript access to orientation and motion data, which allows remote attackers to obtain sensitive information about a device's phys… CWE-200
Information Exposure
CVE-2016-2813 2024-11-21 11:48 2016-05-1 Show GitHub Exploit DB Packet Storm
266737 7.5 HIGH
Network
mozilla firefox Race condition in the get implementation in the ServiceWorkerManager class in the Service Worker subsystem in Mozilla Firefox before 46.0 allows remote attackers to execute arbitrary code or cause a … CWE-362
Race Condition
CVE-2016-2812 2024-11-21 11:48 2016-05-1 Show GitHub Exploit DB Packet Storm
266738 8.8 HIGH
Network
mozilla firefox Use-after-free vulnerability in the ServiceWorkerInfo class in the Service Worker subsystem in Mozilla Firefox before 46.0 allows remote attackers to execute arbitrary code via vectors related to the… NVD-CWE-Other
CVE-2016-2811 2024-11-21 11:48 2016-05-1 Show GitHub Exploit DB Packet Storm
266739 5.0 MEDIUM
Local
mozilla firefox Mozilla Firefox before 46.0 on Android before 5.0 allows attackers to bypass intended Signature access requirements via a crafted application that leverages content-provider permissions, as demonstra… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2810 2024-11-21 11:48 2016-05-1 Show GitHub Exploit DB Packet Storm
266740 5.5 MEDIUM
Local
mozilla firefox The Mozilla Maintenance Service updater in Mozilla Firefox before 46.0 on Windows allows user-assisted remote attackers to delete arbitrary files by leveraging certain local file execution. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2809 2024-11-21 11:48 2016-05-1 Show GitHub Exploit DB Packet Storm