Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242711 5.8 警告 nicholas thompson - Drupal 用の Global Redirect モジュールにおけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2010-2021 2012-06-27 11:09 2012-06-13 Show GitHub Exploit DB Packet Storm
242712 4.3 警告 アドビシステムズ
日立
- Adobe RoboHelp Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0523 2012-06-27 11:05 2009-02-24 Show GitHub Exploit DB Packet Storm
242713 4.3 警告 アドビシステムズ
日立
- Adobe RoboHelp によって作成されたファイルにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-0642 2012-06-27 11:02 2008-02-12 Show GitHub Exploit DB Packet Storm
242714 4.3 警告 Webmin Project - Webmin におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-1937 2012-06-27 10:56 2011-05-31 Show GitHub Exploit DB Packet Storm
242715 5.1 警告 ターボリナックス
ImageMagick
レッドハット
オラクル
- ImageMagick における不正な Sun Rasterfile ファイルによるヒープオーバーフローの脆弱性 - CVE-2006-3744 2012-06-27 10:50 2006-08-14 Show GitHub Exploit DB Packet Storm
242716 6.8 警告 galeriashqip - GaleriaSHQIP の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-3207 2012-06-26 16:19 2010-09-3 Show GitHub Exploit DB Packet Storm
242717 7.5 危険 diy-cms - DiY-CMS における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-3206 2012-06-26 16:19 2010-09-3 Show GitHub Exploit DB Packet Storm
242718 9.3 危険 アドビシステムズ - Adobe Captivate における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2010-3191 2012-06-26 16:19 2010-08-31 Show GitHub Exploit DB Packet Storm
242719 9.3 危険 アドビシステムズ - Adobe ESTK CS5 における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2010-3155 2012-06-26 16:19 2010-08-27 Show GitHub Exploit DB Packet Storm
242720 9.3 危険 アドビシステムズ - Adobe Extension Manager CS5 における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2010-3154 2012-06-26 16:19 2010-08-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266681 9.8 CRITICAL
Network
debian
westes
debian_linux
flex
Heap-based buffer overflow in the yy_get_next_buffer function in Flex before 2.6.1 might allow context-dependent attackers to cause a denial of service or possibly execute arbitrary code via vectors … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-6354 2024-11-21 11:55 2016-09-21 Show GitHub Exploit DB Packet Storm
266682 8.6 HIGH
Network
oracle
libarchive
linux
libarchive
Integer overflow in the ISO9660 writer in libarchive before 3.2.1 allows remote attackers to cause a denial of service (application crash) or execute arbitrary code via vectors related to verifying f… CWE-190
 Integer Overflow or Wraparound
CVE-2016-6250 2024-11-21 11:55 2016-09-21 Show GitHub Exploit DB Packet Storm
266683 7.5 HIGH
Adjacent
huawei ws331a_router_firmware The management interface of Huawei WS331a routers with software before WS331a-10 V100R001C01B112 allows remote attackers to bypass authentication and obtain administrative access by sending "special … CWE-287
Improper Authentication
CVE-2016-6159 2024-11-21 11:55 2016-09-21 Show GitHub Exploit DB Packet Storm
266684 6.1 MEDIUM
Network
huawei ws331a_router_firmware Multiple cross-site request forgery (CSRF) vulnerabilities in Huawei WS331a routers with software before WS331a-10 V100R001C01B112 allow remote attackers to hijack the authentication of administrator… CWE-352
 Origin Validation Error
CVE-2016-6158 2024-11-21 11:55 2016-09-21 Show GitHub Exploit DB Packet Storm
266685 6.5 MEDIUM
Network
libarchive
redhat
oracle
libarchive
enterprise_linux_hpc_node
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
enterprise_linux_server_aus
enterprise_linux_server_eus
enterpr…
Integer overflow in the ISO parser in libarchive before 3.2.1 allows remote attackers to cause a denial of service (application crash) via a crafted ISO file. CWE-190
 Integer Overflow or Wraparound
CVE-2016-5844 2024-11-21 11:55 2016-09-21 Show GitHub Exploit DB Packet Storm
266686 8.6 HIGH
Local
rockwellautomation rslogix_500_starter_edition
rslogix_micro_starter_lite
rslogix_micro_developer
rslogix_500_standard_edition
rslogix_500_professional_edition
Buffer overflow in Rockwell Automation RSLogix Micro Starter Lite, RSLogix Micro Developer, RSLogix 500 Starter Edition, RSLogix 500 Standard Edition, and RSLogix 500 Professional Edition allows remo… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-5814 2024-11-21 11:55 2016-09-19 Show GitHub Exploit DB Packet Storm
266687 9.4 CRITICAL
Network
otrs faq Multiple SQL injection vulnerabilities in the FAQ package 2.x before 2.3.6, 4.x before 4.0.5, and 5.x before 5.0.5 in Open Ticket Request System (OTRS) allow remote attackers to execute arbitrary SQL… CWE-89
SQL Injection
CVE-2016-5843 2024-11-21 11:55 2016-09-17 Show GitHub Exploit DB Packet Storm
266688 9.8 CRITICAL
Network
nodejs
openssl
node.js
openssl
Integer overflow in the MDC2_Update function in crypto/mdc2/mdc2dgst.c in OpenSSL before 1.1.0 allows remote attackers to cause a denial of service (out-of-bounds write and application crash) or poss… CWE-787
 Out-of-bounds Write
CVE-2016-6303 2024-11-21 11:55 2016-09-16 Show GitHub Exploit DB Packet Storm
266689 7.5 HIGH
Network
openssl
oracle
openssl
solaris
linux
The tls_decrypt_ticket function in ssl/t1_lib.c in OpenSSL before 1.1.0 does not consider the HMAC size during validation of the ticket length, which allows remote attackers to cause a denial of serv… CWE-20
 Improper Input Validation 
CVE-2016-6302 2024-11-21 11:55 2016-09-16 Show GitHub Exploit DB Packet Storm
266690 4.3 MEDIUM
Network
cisco hosted_collaboration_mediation_fulfillment Directory traversal vulnerability in the web interface in Cisco Hosted Collaboration Mediation Fulfillment (HCM-F) 10.6(3) and earlier allows remote authenticated users to read arbitrary files via a … CWE-22
Path Traversal
CVE-2016-6370 2024-11-21 11:55 2016-09-12 Show GitHub Exploit DB Packet Storm