Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242121 7.8 危険 シスコシステムズ - Cisco Aironet Lightweight AP におけるアクセスポイント設定の詳細を発見される脆弱性 CWE-310
暗号の問題
CVE-2009-2976 2012-06-26 16:18 2009-08-27 Show GitHub Exploit DB Packet Storm
242122 9.3 危険 Baidu, Inc.
uitv
- UiTV UiPlaye の ActiveX コントロール におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2970 2012-06-26 16:18 2009-10-19 Show GitHub Exploit DB Packet Storm
242123 4.3 警告 buildbot - Buildbot におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2967 2012-06-26 16:10 2009-08-26 Show GitHub Exploit DB Packet Storm
242124 9.3 危険 decomputeur - Toolbar Uninstaller の update 機能におけるダウンロードおよび任意のファイルの実行を強制される脆弱性 CWE-noinfo
情報不足
CVE-2009-2963 2012-06-26 16:10 2009-08-25 Show GitHub Exploit DB Packet Storm
242125 7.5 危険 cuteflow - CuteFlow におけるユーザ名を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-2960 2012-06-26 16:10 2009-08-25 Show GitHub Exploit DB Packet Storm
242126 4.3 警告 buildbot - Buildbot の status/web/waterfall.py におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2959 2012-06-26 16:10 2009-08-25 Show GitHub Exploit DB Packet Storm
242127 9.3 危険 Debian
Devscripts Devel Team
- devscripts の scripts/uscan.pl における Perl コードを実行される脆弱性 CWE-Other
その他
CVE-2009-2946 2012-06-26 16:10 2009-02-14 Show GitHub Exploit DB Packet Storm
242128 4.3 警告 elkagroup - elka CMS の Search 機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2930 2012-06-26 16:10 2009-08-21 Show GitHub Exploit DB Packet Storm
242129 7.5 危険 digitalspinners - DigitalSpinners DS CMS の DetailFile.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2927 2012-06-26 16:10 2009-08-21 Show GitHub Exploit DB Packet Storm
242130 7.8 危険 djcalendar - DJCalendar の DJcalendar.cgi におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-2925 2012-06-26 16:10 2009-08-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268691 6.5 MEDIUM
Network
uclouvain openjpeg Division-by-zero vulnerabilities in the functions opj_pi_next_cprl, opj_pi_next_pcrl, and opj_pi_next_rpcl in pi.c in OpenJPEG before 2.2.0 allow remote attackers to cause a denial of service (applic… CWE-369
 Divide By Zero
CVE-2016-10506 2024-11-21 11:44 2017-08-30 Show GitHub Exploit DB Packet Storm
268692 6.5 MEDIUM
Network
uclouvain openjpeg NULL pointer dereference vulnerabilities in the imagetopnm function in convert.c, sycc444_to_rgb function in color.c, color_esycc_to_rgb function in color.c, and sycc422_to_rgb function in color.c in… CWE-476
 NULL Pointer Dereference
CVE-2016-10505 2024-11-21 11:44 2017-08-30 Show GitHub Exploit DB Packet Storm
268693 6.5 MEDIUM
Network
uclouvain openjpeg Heap-based buffer overflow vulnerability in the opj_mqc_byteout function in mqc.c in OpenJPEG before 2.2.0 allows remote attackers to cause a denial of service (application crash) via a crafted bmp f… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-10504 2024-11-21 11:44 2017-08-30 Show GitHub Exploit DB Packet Storm
268694 4.3 MEDIUM
Network
ibm sametime IBM Sametime Meeting Server 8.5.2 and 9.0 could allow an authenticated and invited user of Sametime meeting to lower any or all hands in an e-meeting, thus spoofing results of votes in the meeting. I… CWE-20
 Improper Input Validation 
CVE-2016-10503 2024-11-21 11:44 2017-08-30 Show GitHub Exploit DB Packet Storm
268695 6.1 MEDIUM
Network
apostrophecms sanitize-html sanitize-html before 1.4.3 has XSS. CWE-79
Cross-site Scripting
CVE-2016-1000237 2024-11-21 11:43 2020-01-24 Show GitHub Exploit DB Packet Storm
268696 6.1 MEDIUM
Network
smartbear
redhat
swagger-ui
openshift
jboss_fuse
swagger-ui has XSS in key names CWE-79
Cross-site Scripting
CVE-2016-1000229 2024-11-21 11:43 2019-12-20 Show GitHub Exploit DB Packet Storm
268697 4.4 MEDIUM
Network
cookie-signature_project
debian
cookie-signature
debian_linux
Node-cookie-signature before 1.0.6 is affected by a timing attack due to the type of comparison used. CWE-362
Race Condition
CVE-2016-1000236 2024-11-21 11:43 2019-11-20 Show GitHub Exploit DB Packet Storm
268698 6.1 MEDIUM
Network
doxygen doxygen Insufficient sanitization of the query parameter in templates/html/search_opensearch.php could lead to reflected cross-site scripting or iframe injection. CWE-79
Cross-site Scripting
CVE-2016-10245 2024-11-21 11:43 2019-05-25 Show GitHub Exploit DB Packet Storm
268699 9.8 CRITICAL
Network
haraka_project haraka Haraka version 2.8.8 and earlier comes with a plugin for processing attachments for zip files. Versions 2.8.8 and earlier can be vulnerable to command injection. CWE-77
Command Injection
CVE-2016-1000282 2024-11-21 11:43 2019-02-6 Show GitHub Exploit DB Packet Storm
268700 9.8 CRITICAL
Network
dthdevelopment dt_register Joomla extension DT Register version before 3.1.12 (Joomla 3.x) / 2.8.18 (Joomla 2.5) contains an SQL injection in "/index.php?controller=calendar&format=raw&cat[0]=SQLi&task=events". This attack app… CWE-89
SQL Injection
CVE-2016-1000271 2024-11-21 11:43 2019-02-5 Show GitHub Exploit DB Packet Storm