Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242761 6.8 警告 Enlightenment - imlib2 におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0991 2012-06-26 16:19 2010-04-22 Show GitHub Exploit DB Packet Storm
242762 10 危険 creative - Creative Software AutoUpdate Engine ActiveX コントロールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0990 2012-06-26 16:19 2010-06-15 Show GitHub Exploit DB Packet Storm
242763 7.5 危険 chris simon
Joomla!
- Joomla! の abbrev コンポーネントにおける任意のローカルファイルをインクルードおよび実行される脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0985 2012-06-26 16:19 2010-03-16 Show GitHub Exploit DB Packet Storm
242764 5 警告 Acidcat - Acidcat CMS における資格情報を含むデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0984 2012-06-26 16:19 2010-03-16 Show GitHub Exploit DB Packet Storm
242765 7.5 危険 Acidcat - Acidcat CMS におけるインストールプロセスを再起動される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0976 2012-06-26 16:19 2010-03-16 Show GitHub Exploit DB Packet Storm
242766 7.5 危険 Joomla!
g4j.laoneo
- Joomla! 用 GCalendar コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0972 2012-06-26 16:19 2010-03-16 Show GitHub Exploit DB Packet Storm
242767 2.1 注意 ATutor - ATutor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0971 2012-06-26 16:19 2010-03-16 Show GitHub Exploit DB Packet Storm
242768 7.5 危険 fr.simon rundell
TYPO3 Association
- TYPO3 の pd_diocesedatabase 拡張における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1013 2012-06-26 16:19 2008-07-9 Show GitHub Exploit DB Packet Storm
242769 7.5 危険 geekhelps - Geekhelps ADMP の bannershow.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-0968 2012-06-26 16:19 2010-03-16 Show GitHub Exploit DB Packet Storm
242770 5.1 警告 geekhelps - Geekhelps ADMP におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-0967 2012-06-26 16:19 2010-03-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266821 7.5 HIGH
Network
gnome
debian
opensuse
librsvg
debian_linux
leap
opensuse
The _rsvg_css_normalize_font_size function in librsvg 2.40.2 allows context-dependent attackers to cause a denial of service (stack consumption and application crash) via circular definitions in an S… CWE-20
 Improper Input Validation 
CVE-2016-4348 2024-11-21 11:51 2016-05-20 Show GitHub Exploit DB Packet Storm
266822 9.8 CRITICAL
Network
php
apple
php
mac_os_x
Multiple integer overflows in the mbfl_strcut function in ext/mbstring/libmbfl/mbfl/mbfilter.c in PHP before 5.5.34, 5.6.x before 5.6.20, and 7.x before 7.0.5 allow remote attackers to cause a denial… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4073 2024-11-21 11:51 2016-05-20 Show GitHub Exploit DB Packet Storm
266823 9.8 CRITICAL
Network
php
apple
php
mac_os_x
The Phar extension in PHP before 5.5.34, 5.6.x before 5.6.20, and 7.x before 7.0.5 allows remote attackers to execute arbitrary code via a crafted filename, as demonstrated by mishandling of \0 chara… CWE-20
 Improper Input Validation 
CVE-2016-4072 2024-11-21 11:51 2016-05-20 Show GitHub Exploit DB Packet Storm
266824 9.8 CRITICAL
Network
php
apple
php
mac_os_x
Format string vulnerability in the php_snmp_error function in ext/snmp/snmp.c in PHP before 5.5.34, 5.6.x before 5.6.20, and 7.x before 7.0.5 allows remote attackers to execute arbitrary code via for… CWE-20
 Improper Input Validation 
CVE-2016-4071 2024-11-21 11:51 2016-05-20 Show GitHub Exploit DB Packet Storm
266825 7.5 HIGH
Network
php php Integer overflow in the php_raw_url_encode function in ext/standard/url.c in PHP before 5.5.34, 5.6.x before 5.6.20, and 7.x before 7.0.5 allows remote attackers to cause a denial of service (applica… CWE-189
Numeric Errors
CVE-2016-4070 2024-11-21 11:51 2016-05-20 Show GitHub Exploit DB Packet Storm
266826 9.8 CRITICAL
Network
lantronix xprintserver_firmware Lantronix xPrintServer devices with firmware before 5.0.1-65 have hardcoded credentials, which allows remote attackers to obtain root access via unspecified vectors. CWE-255
NVD-CWE-Other
Credentials Management
CVE-2016-4325 2024-11-21 11:51 2016-05-15 Show GitHub Exploit DB Packet Storm
266827 9.8 CRITICAL
Network
enlightenment
debian
opensuse
imlib2
debian_linux
opensuse
Integer overflow in imlib2 before 1.4.9 on 32-bit platforms allows remote attackers to execute arbitrary code via large dimensions in an image, which triggers an out-of-bounds heap memory write opera… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4024 2024-11-21 11:51 2016-05-14 Show GitHub Exploit DB Packet Storm
266828 8.2 HIGH
Network
debian
enlightenment
debian_linux
imlib2
The GIF loader in imlib2 before 1.4.9 allows remote attackers to cause a denial of service (application crash) or obtain sensitive information via a crafted image, which triggers an out-of-bounds rea… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-3994 2024-11-21 11:51 2016-05-14 Show GitHub Exploit DB Packet Storm
266829 7.5 HIGH
Network
enlightenment
debian
imlib2
debian_linux
Off-by-one error in the __imlib_MergeUpdate function in lib/updates.c in imlib2 before 1.4.9 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via crafte… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-3993 2024-11-21 11:51 2016-05-14 Show GitHub Exploit DB Packet Storm
266830 7.5 HIGH
Network
adobe
microsoft
flash_player
internet_explorer
edge
Unspecified vulnerability in Adobe Flash Player 21.0.0.213 and earlier, as used in the Adobe Flash libraries in Microsoft Internet Explorer 10 and 11 and Microsoft Edge, has unknown impact and attack… NVD-CWE-noinfo
CVE-2016-4116 2024-11-21 11:51 2016-05-11 Show GitHub Exploit DB Packet Storm