Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242041 5 警告 Digium - Asterisk Open Source のダイアルプラン機能のデザインにおけるダイアルプランへ文字列を挿入される脆弱性 CWE-DesignError
CVE-2010-0685 2012-06-26 16:19 2010-02-10 Show GitHub Exploit DB Packet Storm
242042 3.5 注意 Apache Software Foundation - Apache ActiveMQ の createDestination.action におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0684 2012-06-26 16:19 2010-04-5 Show GitHub Exploit DB Packet Storm
242043 4.3 警告 bgsvetionik - BGSvetionik BGS CMS の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0675 2012-06-26 16:19 2010-02-22 Show GitHub Exploit DB Packet Storm
242044 5 警告 2enetworx - StatCounteX におけるデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0674 2012-06-26 16:19 2010-02-22 Show GitHub Exploit DB Packet Storm
242045 7.5 危険 WordPress.org
copperleaf
- WordPress の Copperleaf Photolog プラグインの cplphoto.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0673 2012-06-26 16:19 2010-02-22 Show GitHub Exploit DB Packet Storm
242046 9.3 危険 アップル
Google
- Google Chrome における Chrome サンドボックス内の任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2010-0659 2012-06-26 16:19 2010-02-18 Show GitHub Exploit DB Packet Storm
242047 2.6 注意 アップル - Google Chrome および Apple Safari の WebKit におけるポップアップウィンドウ上の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0650 2012-06-26 16:19 2010-02-18 Show GitHub Exploit DB Packet Storm
242048 9.3 危険 アップル
Google
- Google Chrome で使用される WebKit における Chrome サンドボックス内の任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-0647 2012-06-26 16:19 2010-01-6 Show GitHub Exploit DB Packet Storm
242049 5 警告 シスコシステムズ - CCS における JHTML ファイルのソースコードを読まれる脆弱性 CWE-200
情報漏えい
CVE-2010-0642 2012-06-26 16:19 2010-02-17 Show GitHub Exploit DB Packet Storm
242050 4.3 警告 シスコシステムズ - CCS の webline/html/admin/wcs/LoginPage.jhtml におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0641 2012-06-26 16:19 2010-02-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266711 7.8 HIGH
Local
mozilla firefox The maintenance service in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 on Windows does not prevent MAR extracted-file modification during updater execution, which might allow local u… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2826 2024-11-21 11:48 2016-06-13 Show GitHub Exploit DB Packet Storm
266712 6.5 MEDIUM
Network
canonical
opensuse
mozilla
ubuntu_linux
leap
opensuse
firefox
Mozilla Firefox before 47.0 allows remote attackers to bypass the Same Origin Policy and modify the location.host property via an invalid data: URL. CWE-284
Improper Access Control
CVE-2016-2825 2024-11-21 11:48 2016-06-13 Show GitHub Exploit DB Packet Storm
266713 8.8 HIGH
Network
mozilla
opensuse
firefox
leap
opensuse
The TSymbolTableLevel class in ANGLE, as used in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 on Windows, allows remote attackers to cause a denial of service (out-of-bounds write and… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2824 2024-11-21 11:48 2016-06-13 Show GitHub Exploit DB Packet Storm
266714 6.5 MEDIUM
Network
debian
mozilla
canonical
opensuse
debian_linux
firefox
ubuntu_linux
leap
opensuse
Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allow remote attackers to spoof the address bar via a SELECT element with a persistent menu. CWE-284
Improper Access Control
CVE-2016-2822 2024-11-21 11:48 2016-06-13 Show GitHub Exploit DB Packet Storm
266715 7.5 HIGH
Network
mozilla
debian
opensuse
canonical
firefox
debian_linux
leap
opensuse
ubuntu_linux
Use-after-free vulnerability in the mozilla::dom::Element class in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2, when contenteditable mode is enabled, allows remote attackers to execu… NVD-CWE-Other
CVE-2016-2821 2024-11-21 11:48 2016-06-13 Show GitHub Exploit DB Packet Storm
266716 8.8 HIGH
Network
opensuse
mozilla
debian
canonical
leap
opensuse
firefox
debian_linux
ubuntu_linux
Heap-based buffer overflow in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allows remote attackers to execute arbitrary code via foreign-context HTML5 fragments, as demonstrated by fr… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2819 2024-11-21 11:48 2016-06-13 Show GitHub Exploit DB Packet Storm
266717 8.8 HIGH
Network
mozilla
debian
redhat
novell
opensuse
canonical
firefox
debian_linux
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_server_aus
enterprise_linux_for_scientific_computing
enterprise_linux_workstation
enterpris…
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allow remote attackers to cause a denial of service (memory corruption and a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2818 2024-11-21 11:48 2016-06-13 Show GitHub Exploit DB Packet Storm
266718 8.8 HIGH
Network
mozilla
canonical
novell
opensuse
firefox_esr
ubuntu_linux
suse_linux_enterprise_server
suse_linux_enterprise_desktop
suse_linux_enterprise_software_development_kit
leap
opensuse
firefox
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 47.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly exe… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2815 2024-11-21 11:48 2016-06-13 Show GitHub Exploit DB Packet Storm
266719 5.5 MEDIUM
Local
google android Activity Manager in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 does not properly terminate process groups, which allows attackers to obtain sensitive information via a … CWE-200
Information Exposure
CVE-2016-2500 2024-11-21 11:48 2016-06-13 Show GitHub Exploit DB Packet Storm
266720 5.5 MEDIUM
Local
google android AudioSource.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-06-01 does not initialize certain data, which allows attacker… CWE-200
Information Exposure
CVE-2016-2499 2024-11-21 11:48 2016-06-13 Show GitHub Exploit DB Packet Storm