Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242701 9.3 危険 awingsoft - Awingsoft Awakening Winds3D Viewer プラグインにおける任意のファイルをダウンロードされる脆弱性 CWE-20
不適切な入力確認
CVE-2009-2386 2012-06-26 16:10 2009-07-10 Show GitHub Exploit DB Packet Storm
242702 7.5 危険 Simple Machines
fustrate
- SMF 用 Member Awards コンポーネントの awardsMembers 関数における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2385 2012-06-26 16:10 2009-07-8 Show GitHub Exploit DB Packet Storm
242703 7.5 危険 blogtrafficexchange
WordPress.org
- WordPress 用の Related Sites プラグインの BTE_RW_Webajax.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2383 2012-06-26 16:10 2009-07-8 Show GitHub Exploit DB Packet Storm
242704 5 警告 gizmo5 - Linux 上の Gizmo における任意のユーザの資格情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2009-2381 2012-06-26 16:10 2009-07-8 Show GitHub Exploit DB Packet Storm
242705 4.3 警告 4homepages - 4images の includes/functions.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2380 2012-06-26 16:10 2009-06-15 Show GitHub Exploit DB Packet Storm
242706 6.8 警告 BIGACE - BIGACE Web CMS の public/index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-2379 2012-06-26 16:10 2009-07-1 Show GitHub Exploit DB Packet Storm
242707 4.3 警告 avax-software - AVAX-software Avax Vector ActiveX の Avax Vector ActiveX コントロールにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2377 2012-06-26 16:10 2009-07-8 Show GitHub Exploit DB Packet Storm
242708 7.5 危険 datachecknh - DataCheck Solutions ForumPal FE および ForumPal の login.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2366 2012-06-26 16:10 2009-07-8 Show GitHub Exploit DB Packet Storm
242709 7.5 危険 datachecknh - DataCheck Solutions GalleryPal FE の login.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2365 2012-06-26 16:10 2009-07-8 Show GitHub Exploit DB Packet Storm
242710 9.3 危険 dan cahill - NullLogic Groupware の pgsqlQuery 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2356 2012-06-26 16:10 2009-07-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267681 9.8 CRITICAL
Network
cisco wireless_lan_controller_software Buffer overflow in the redirection functionality in Cisco Wireless LAN Controller (WLC) Software 7.2 through 7.4 before 7.4.140.0(MD) and 7.5 through 8.0 before 8.0.115.0(ED) allows remote attackers … CWE-399
 Resource Management Errors
CVE-2016-1363 2024-11-21 11:46 2016-04-21 Show GitHub Exploit DB Packet Storm
267682 7.5 HIGH
Network
cisco aireos Cisco AireOS 4.1 through 7.4.120.0, 7.5.x, and 7.6.100.0 on Wireless LAN Controller (WLC) devices allows remote attackers to cause a denial of service (device reload) via a crafted HTTP request, aka … CWE-399
 Resource Management Errors
CVE-2016-1362 2024-11-21 11:46 2016-04-21 Show GitHub Exploit DB Packet Storm
267683 7.5 HIGH
Network
cisco ios
ios_xe
The NTP implementation in Cisco IOS 15.1 and 15.5 and IOS XE 3.2 through 3.17 allows remote attackers to modify the system time via crafted packets, aka Bug ID CSCux46898. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-1384 2024-11-21 11:46 2016-04-21 Show GitHub Exploit DB Packet Storm
267684 9.8 CRITICAL
Network
debian
suse
opensuse
canonical
google
debian_linux
linux_enterprise
leap
ubuntu_linux
chrome
Multiple unspecified vulnerabilities in Google Chrome before 50.0.2661.75 allow attackers to cause a denial of service or possibly have other impact via unknown vectors. NVD-CWE-noinfo
CVE-2016-1659 2024-11-21 11:46 2016-04-18 Show GitHub Exploit DB Packet Storm
267685 4.3 MEDIUM
Network
novell
opensuse
google
debian
suse_package_hub_for_suse_linux_enterprise
leap
chrome
debian_linux
The Extensions subsystem in Google Chrome before 50.0.2661.75 incorrectly relies on GetOrigin method calls for origin comparisons, which allows remote attackers to bypass the Same Origin Policy and o… CWE-200
CWE-284
Information Exposure
Improper Access Control
CVE-2016-1658 2024-11-21 11:46 2016-04-18 Show GitHub Exploit DB Packet Storm
267686 4.3 MEDIUM
Network
debian
novell
opensuse
google
debian_linux
suse_package_hub_for_suse_linux_enterprise
leap
chrome
The WebContentsImpl::FocusLocationBarByDefault function in content/browser/web_contents/web_contents_impl.cc in Google Chrome before 50.0.2661.75 mishandles focus for certain about:blank pages, which… CWE-254
 7PK - Security Features
CVE-2016-1657 2024-11-21 11:46 2016-04-18 Show GitHub Exploit DB Packet Storm
267687 7.5 HIGH
Network
google
suse
opensuse
chrome
linux_enterprise
leap
The download implementation in Google Chrome before 50.0.2661.75 on Android allows remote attackers to bypass intended pathname restrictions via unspecified vectors. CWE-284
Improper Access Control
CVE-2016-1656 2024-11-21 11:46 2016-04-18 Show GitHub Exploit DB Packet Storm
267688 8.8 HIGH
Network
debian
suse
opensuse
google
canonical
debian_linux
linux_enterprise
leap
chrome
ubuntu_linux
Google Chrome before 50.0.2661.75 does not properly consider that frame removal may occur during callback execution, which allows remote attackers to cause a denial of service (use-after-free) or pos… NVD-CWE-Other
CVE-2016-1655 2024-11-21 11:46 2016-04-18 Show GitHub Exploit DB Packet Storm
267689 6.5 MEDIUM
Network
debian
suse
opensuse
google
canonical
debian_linux
linux_enterprise
leap
chrome
ubuntu_linux
The media subsystem in Google Chrome before 50.0.2661.75 does not initialize an unspecified data structure, which allows remote attackers to cause a denial of service (invalid read operation) via unk… CWE-20
 Improper Input Validation 
CVE-2016-1654 2024-11-21 11:46 2016-04-18 Show GitHub Exploit DB Packet Storm
267690 8.8 HIGH
Network
debian
suse
opensuse
canonical
google
debian_linux
linux_enterprise
leap
ubuntu_linux
chrome
The LoadBuffer implementation in Google V8, as used in Google Chrome before 50.0.2661.75, mishandles data types, which allows remote attackers to cause a denial of service or possibly have unspecifie… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1653 2024-11-21 11:46 2016-04-18 Show GitHub Exploit DB Packet Storm