Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242311 4 警告 Angry Donuts
Drupal
- Drupal のモジュールにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-2077 2012-06-26 16:10 2009-06-10 Show GitHub Exploit DB Packet Storm
242312 3.5 注意 Drupal - Drupal 用の Views モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2076 2012-06-26 16:10 2009-06-10 Show GitHub Exploit DB Packet Storm
242313 7.5 危険 Angry Donuts
Drupal
- Drupal のモジュールの Nodequeue における詳細不明な脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-2075 2012-06-26 16:10 2009-06-10 Show GitHub Exploit DB Packet Storm
242314 3.5 注意 Drupal - Drupal 用の Nodequeue モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2074 2012-06-26 16:10 2009-06-10 Show GitHub Exploit DB Packet Storm
242315 6.8 警告 シスコシステムズ - Linksys WRT160N ワイアレスルータにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2009-2073 2012-06-26 16:10 2009-06-15 Show GitHub Exploit DB Packet Storm
242316 5.4 警告 アップル - Apple Safari における任意の https サイトを偽装される脆弱性 CWE-287
不適切な認証
CVE-2009-2072 2012-06-26 16:10 2009-06-15 Show GitHub Exploit DB Packet Storm
242317 6.8 警告 アップル - Apple Safari における https サイトのコンテキスト内の Web スクリプトを実行される脆弱性 CWE-287
不適切な認証
CVE-2009-2066 2012-06-26 16:10 2009-06-15 Show GitHub Exploit DB Packet Storm
242318 6.8 警告 アップル - Apple Safari における https サイトコンテキスト内の任意の Web スクリプトを実行される脆弱性 CWE-287
不適切な認証
CVE-2009-2062 2012-06-26 16:10 2009-06-15 Show GitHub Exploit DB Packet Storm
242319 6.8 警告 アップル - Apple Safari における任意の Web スクリプトを実行される脆弱性 CWE-287
不適切な認証
CVE-2009-2058 2012-06-26 16:10 2009-06-15 Show GitHub Exploit DB Packet Storm
242320 7.5 危険 grestul - Grestul の admin/options.php における管理者アカウントを作成される脆弱性 CWE-287
不適切な認証
CVE-2009-2040 2012-06-26 16:10 2009-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267041 7.8 HIGH
Local
cisco application_infrastructure_controller
application_policy_infrastructure_controller_firmware
The installation component on Cisco Application Policy Infrastructure Controller (APIC) devices with software before 1.3(2f) mishandles binary files, which allows local users to obtain root access vi… NVD-CWE-noinfo
CVE-2016-1420 2024-11-21 11:46 2016-06-10 Show GitHub Exploit DB Packet Storm
267042 8.1 HIGH
Adjacent
cisco aironet_access_point_software Cisco Access Point devices with software 8.2(102.43) allow remote attackers to cause a denial of service (device reload) via crafted ARP packets, aka Bug ID CSCuy55803. CWE-20
 Improper Input Validation 
CVE-2016-1419 2024-11-21 11:46 2016-06-10 Show GitHub Exploit DB Packet Storm
267043 7.5 HIGH
Network
cisco ip_phone_8800_series_firmware A vulnerability in the web application for Cisco IP Phones could allow an unauthenticated, remote attacker to execute code with root privileges or cause a reload of an affected IP phone, resulting in… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1421 2024-11-21 11:46 2016-06-10 Show GitHub Exploit DB Packet Storm
267044 5.5 MEDIUM
Local
canonical ubuntu_linux
lxd
LXD before 2.0.2 does not properly set permissions when switching an unprivileged container into privileged mode, which allows local users to access arbitrary world readable paths in the container di… CWE-200
Information Exposure
CVE-2016-1582 2024-11-21 11:46 2016-06-10 Show GitHub Exploit DB Packet Storm
267045 5.5 MEDIUM
Local
canonical ubuntu_linux
lxd
LXD before 2.0.2 uses world-readable permissions for /var/lib/lxd/zfs.img when setting up a loop based ZFS pool, which allows local users to copy and read data from arbitrary containers via unspecifi… CWE-284
Improper Access Control
CVE-2016-1581 2024-11-21 11:46 2016-06-10 Show GitHub Exploit DB Packet Storm
267046 7.8 HIGH
Local
cisco aironet_access_point_software_ Cisco Aironet Access Point Software 8.2(100.0) on 1830e, 1830i, 1850e, 1850i, 2800, and 3800 access points allows local users to obtain Linux root access via crafted CLI command parameters, aka Bug I… CWE-20
 Improper Input Validation 
CVE-2016-1418 2024-11-21 11:46 2016-06-8 Show GitHub Exploit DB Packet Storm
267047 7.5 HIGH
Network
clamav
cisco
clamav
email_security_appliance
web_security_appliance
libclamav in ClamAV (aka Clam AntiVirus), as used in Advanced Malware Protection (AMP) on Cisco Email Security Appliance (ESA) devices before 9.7.0-125 and Web Security Appliance (WSA) devices before… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1405 2024-11-21 11:46 2016-06-8 Show GitHub Exploit DB Packet Storm
267048 8.8 HIGH
Network
google
debian
canonical
redhat
suse
opensuse
chrome
debian_linux
ubuntu_linux
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
linux_enterprise
leap
opensuse
Multiple unspecified vulnerabilities in Google Chrome before 51.0.2704.79 allow attackers to cause a denial of service or possibly have other impact via unknown vectors. NVD-CWE-noinfo
CVE-2016-1703 2024-11-21 11:46 2016-06-6 Show GitHub Exploit DB Packet Storm
267049 6.5 MEDIUM
Network
debian
canonical
redhat
suse
opensuse
google
debian_linux
ubuntu_linux
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
linux_enterprise
leap
opensuse
chrome
The SkRegion::readFromMemory function in core/SkRegion.cpp in Skia, as used in Google Chrome before 51.0.2704.79, does not validate the interval count, which allows remote attackers to cause a denial… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1702 2024-11-21 11:46 2016-06-6 Show GitHub Exploit DB Packet Storm
267050 8.8 HIGH
Network
google
debian
redhat
suse
opensuse
chrome
debian_linux
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
linux_enterprise
leap
opensuse
The Autofill implementation in Google Chrome before 51.0.2704.79 mishandles the interaction between field updates and JavaScript code that triggers a frame deletion, which allows remote attackers to … NVD-CWE-Other
CVE-2016-1701 2024-11-21 11:46 2016-06-6 Show GitHub Exploit DB Packet Storm