Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242361 7.2 危険 FreeBSD - FreeBSD の libexec/rtld-elf/rtld.c における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4146 2012-06-26 16:18 2009-12-2 Show GitHub Exploit DB Packet Storm
242362 4.4 警告 GNU Project - GNU coreutils の dist-check.mk の distcheck rule における権限を取得される脆弱性 CWE-59
リンク解釈の問題
CVE-2009-4135 2012-06-26 16:18 2009-12-5 Show GitHub Exploit DB Packet Storm
242363 6.5 警告 Condor Project
レッドハット
- MRG の Grid Execute Node で使用される Condor における権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2009-4133 2012-06-26 16:18 2009-12-23 Show GitHub Exploit DB Packet Storm
242364 7.2 危険 GNU Project - GNU GRUB における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2009-4128 2012-06-26 16:18 2009-12-1 Show GitHub Exploit DB Packet Storm
242365 4.3 警告 Drupal
Alex Barth
- Drupal の Feed Element Mapper におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4119 2012-06-26 16:18 2009-11-30 Show GitHub Exploit DB Packet Storm
242366 9.3 危険 Mozilla Foundation
didier ernotte
- Firefox の infoRSS におけるクロスドメインスクリプティング攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2009-4101 2012-06-26 16:18 2009-07-3 Show GitHub Exploit DB Packet Storm
242367 7.5 危険 Joomla!
g4j.laoneo
- Joomla! 用 Google Calendar GCalendar コンポーネンにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4099 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
242368 7.5 危険 companionway - myPhile における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2009-4095 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
242369 7.5 危険 designforjoomla
Joomla!
- Joomla! 用の D4J eZine コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-4094 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
242370 7.5 危険 e107.org - e107 の検索機能における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4084 2012-06-26 16:18 2009-11-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268581 8.1 HIGH
Network
chromedriver126_project chromedriver126 chromedriver126 is chromedriver version 1.26 for linux OS. chromedriver126 downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code ex… CWE-310
Cryptographic Issues
CVE-2016-10609 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268582 7.5 HIGH
Network
getrobot robot-js robot-js is a module for native system automation for node.js. robot-js downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execu… CWE-310
Cryptographic Issues
CVE-2016-10608 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268583 8.1 HIGH
Network
openframe-glslviewer_project openframe-glslviewer openframe-glsviewer is a Openframe extension which adds support for shaders via glslViewer. openframe-glsviewer downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It ma… CWE-310
Cryptographic Issues
CVE-2016-10607 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268584 8.1 HIGH
Network
grunt-webdriver-qunit_project grunt-webdriver-qunit grunt-webdriver-qunit is a grunt plugin to run qunit with webdriver in grunt grunt-webdriver-qunit downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible… CWE-310
Cryptographic Issues
CVE-2016-10606 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268585 8.1 HIGH
Network
dalekjs dalekjs dalek-browser-ie is Internet Explorer bindings for DalekJS. dalek-browser-ie downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code … CWE-310
Cryptographic Issues
CVE-2016-10605 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268586 8.1 HIGH
Network
dalekjs dalekjs dalek-browser-chrome is Google Chrome bindings for DalekJS. dalek-browser-chrome downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote c… CWE-310
Cryptographic Issues
CVE-2016-10604 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268587 8.1 HIGH
Network
air-sdk_project air-sdk air-sdk is a NPM wrapper for the Adobe AIR SDK. air-sdk downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by sw… CWE-310
Cryptographic Issues
CVE-2016-10603 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268588 8.1 HIGH
Network
haxe haxe haxe is a cross-platform toolkit haxe downloads zipped resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the req… CWE-310
Cryptographic Issues
CVE-2016-10602 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268589 8.1 HIGH
Network
webrtc webrtc-native webrtc-native uses WebRTC from chromium project. webrtc-native downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE… CWE-310
Cryptographic Issues
CVE-2016-10600 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268590 8.1 HIGH
Network
node-sauce-connect_project node-sauce-connect sauce-connect is a Node.js wrapper over the SauceLabs SauceConnect.jar program for establishing a secure tunnel for intranet testing. sauce-connect downloads binary resources over HTTP, which leaves … CWE-310
Cryptographic Issues
CVE-2016-10599 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm