Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242511 4.3 警告 The Dojo Foundation - Dojo におけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2010-2274 2012-06-26 16:19 2010-06-15 Show GitHub Exploit DB Packet Storm
242512 4.3 警告 The Dojo Foundation - Dojo におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2273 2012-06-26 16:19 2010-06-15 Show GitHub Exploit DB Packet Storm
242513 10 危険 The Dojo Foundation - Dojo の iframe_history.html における詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2010-2272 2012-06-26 16:19 2010-06-15 Show GitHub Exploit DB Packet Storm
242514 7.5 危険 Accoria Networks - Accoria Web Server の authcfg.cgi におけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2010-2271 2012-06-26 16:19 2010-06-15 Show GitHub Exploit DB Packet Storm
242515 7.5 危険 Accoria Networks - Accoria Web Server におけるセッションをハイジャックされる脆弱性 CWE-310
暗号の問題
CVE-2010-2270 2012-06-26 16:19 2010-06-15 Show GitHub Exploit DB Packet Storm
242516 5 警告 Accoria Networks - Accoria Web Server の loadstatic.cgi におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-2269 2012-06-26 16:19 2010-06-15 Show GitHub Exploit DB Packet Storm
242517 6.8 警告 Accoria Networks - Accoria Web Server の authcfg.cgi におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2010-2268 2012-06-26 16:19 2010-06-15 Show GitHub Exploit DB Packet Storm
242518 4.3 警告 Accoria Networks - Accoria Web Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-2267 2012-06-26 16:19 2010-06-15 Show GitHub Exploit DB Packet Storm
242519 4.3 警告 アップル
マイクロソフト
- Apple Safari の CSS 実装における訪問した Web ページに関する重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-2264 2012-06-26 16:19 2010-06-7 Show GitHub Exploit DB Packet Storm
242520 5 警告 galileo students - Galileo Students Team Weborf におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-2262 2012-06-26 16:19 2010-06-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268971 7.8 HIGH
Local
huawei mate_s_firmware Integer overflow in the graphics drivers in Huawei Mate S smartphones with software CRR-TL00 before CRR-TL00C01B160SP01, CRR-UL00 before CRR-UL00C00B160, and CRR-CL00 before CRR-CL00C92B161 allows at… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1495 2024-11-21 11:46 2016-04-13 Show GitHub Exploit DB Packet Storm
268972 6.1 MEDIUM
Network
cisco unity_connection Cross-site scripting (XSS) vulnerability in Cisco Unity Connection through 11.0 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters, aka Bug ID CSCus21776. CWE-79
Cross-site Scripting
CVE-2016-1377 2024-11-21 11:46 2016-04-13 Show GitHub Exploit DB Packet Storm
268973 5.3 MEDIUM
Network
cisco ios_xr Cisco IOS XR 4.2.3, 4.3.0, 4.3.4, and 5.3.1 on ASR 9000 devices allows remote attackers to cause a denial of service (CRC and symbol errors, and interface flap) via crafted bit patterns in packets, a… CWE-20
 Improper Input Validation 
CVE-2016-1376 2024-11-21 11:46 2016-04-13 Show GitHub Exploit DB Packet Storm
268974 8.8 HIGH
Local
qemu
redhat
debian
qemu
openstack
virtualization
debian_linux
Use-after-free vulnerability in hw/ide/ahci.c in QEMU, when built with IDE AHCI Emulation support, allows guest OS users to cause a denial of service (instance crash) or possibly execute arbitrary co… CWE-416
 Use After Free
CVE-2016-1568 2024-11-21 11:46 2016-04-12 Show GitHub Exploit DB Packet Storm
268975 8.8 HIGH
Network
oar_project
debian
oar
debian_linux
The oarsh script in OAR before 2.5.7 allows remote authenticated users of a cluster to obtain sensitive information and possibly gain privileges via vectors related to OpenSSH options. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-1235 2024-11-21 11:46 2016-04-12 Show GitHub Exploit DB Packet Storm
268976 6.1 MEDIUM
Network
cisco ip_interoperability_and_collaboration_system Cross-site scripting (XSS) vulnerability in Cisco IP Interoperability and Collaboration System 4.10(1) allows remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSC… CWE-79
Cross-site Scripting
CVE-2016-1375 2024-11-21 11:46 2016-04-9 Show GitHub Exploit DB Packet Storm
268977 7.0 HIGH
Local
exim exim Exim before 4.86.2, when installed setuid root, allows local users to gain privileges via the perl_startup argument. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-1531 2024-11-21 11:46 2016-04-8 Show GitHub Exploit DB Packet Storm
268978 8.1 HIGH
Local
redhat
oracle
qemu
openstack
linux
qemu
The (1) fw_cfg_write and (2) fw_cfg_read functions in hw/nvram/fw_cfg.c in QEMU before 2.4, when built with the Firmware Configuration device emulation support, allow guest OS users with the CAP_SYS_… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1714 2024-11-21 11:46 2016-04-8 Show GitHub Exploit DB Packet Storm
268979 6.8 MEDIUM
Network
netapp clustered_data_ontap NetApp Clustered Data ONTAP 8.3.1 does not properly verify X.509 certificates from TLS servers, which allows man-in-the-middle attackers to spoof servers and obtain sensitive information via a crafte… CWE-200
CWE-20
Information Exposure
 Improper Input Validation 
CVE-2016-1563 2024-11-21 11:46 2016-04-7 Show GitHub Exploit DB Packet Storm
268980 5.9 MEDIUM
Network
dell
netgear
samsung
zyxel
zzinc
emc_powerscale_onefs
jr6150_firmware
x14j_firmware
gs1900-10hp_firmware
keymouse_firmware
The kernel in Cisco TelePresence Server 3.0 through 4.2(4.18) on Mobility Services Engine (MSE) 8710 devices allows remote attackers to cause a denial of service (panic and reboot) via a crafted sequ… CWE-399
 Resource Management Errors
CVE-2016-1346 2024-11-21 11:46 2016-04-7 Show GitHub Exploit DB Packet Storm