Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242791 5 警告 cnr.somee - CNR Hikaye Portal におけるデータベースをダウンロードされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-4765 2012-06-26 16:19 2010-04-13 Show GitHub Exploit DB Packet Storm
242792 9.3 危険 マイクロソフト
アドビシステムズ
- Adobe Reader におけるユーザに任意のコードを実行させる脆弱性 CWE-94
コード・インジェクション
CVE-2009-4764 2012-06-26 16:19 2010-04-5 Show GitHub Exploit DB Packet Storm
242793 9.3 危険 dicas - dicas Mpegable Player におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4758 2012-06-26 16:19 2010-03-29 Show GitHub Exploit DB Packet Storm
242794 9.3 危険 evils-world - BrotherSoft EW-MusicPlayer におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4757 2012-06-26 16:19 2010-03-29 Show GitHub Exploit DB Packet Storm
242795 9.3 危険 beatport - Beatport Player の TraktorBeatport.exe におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4756 2012-06-26 16:19 2010-03-29 Show GitHub Exploit DB Packet Storm
242796 7.5 危険 andrew charlton
WordPress.org
- WordPress の My Category Order プラグインの mycategoryorder.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4748 2012-06-26 16:19 2010-03-26 Show GitHub Exploit DB Packet Storm
242797 4.3 警告 dreamlevels - Dreamlevels DreamPoll の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4746 2012-06-26 16:19 2010-03-26 Show GitHub Exploit DB Packet Storm
242798 7.5 危険 dreamlevels - Dreamlevels DreamPoll の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4745 2012-06-26 16:19 2010-03-26 Show GitHub Exploit DB Packet Storm
242799 4.3 警告 AfterLogic - AfterLogic WebMail Pro の history-storage.aspx におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4743 2012-06-26 16:19 2010-03-26 Show GitHub Exploit DB Packet Storm
242800 7.5 危険 Docebo - Docebo における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4742 2012-06-26 16:19 2010-03-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267941 6.5 MEDIUM
Network
apple safari The Downloads feature in Apple Safari before 9.1 mishandles file expansion, which allows remote attackers to cause a denial of service via a crafted web site. CWE-19
 Data Processing Errors
CVE-2016-1771 2024-11-21 11:47 2016-03-24 Show GitHub Exploit DB Packet Storm
267942 6.5 MEDIUM
Network
apple mac_os_x The Reminders component in Apple OS X before 10.11.4 allows attackers to bypass an intended user-confirmation requirement and trigger a dialing action via a tel: URL. CWE-284
Improper Access Control
CVE-2016-1770 2024-11-21 11:47 2016-03-24 Show GitHub Exploit DB Packet Storm
267943 7.8 HIGH
Local
apple mac_os_x QuickTime in Apple OS X before 10.11.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Photoshop file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1769 2024-11-21 11:47 2016-03-24 Show GitHub Exploit DB Packet Storm
267944 7.8 HIGH
Local
apple mac_os_x QuickTime in Apple OS X before 10.11.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted FlashPix image, a different vulnerability than … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1768 2024-11-21 11:47 2016-03-24 Show GitHub Exploit DB Packet Storm
267945 7.8 HIGH
Local
apple mac_os_x QuickTime in Apple OS X before 10.11.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted FlashPix image, a different vulnerability than … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1767 2024-11-21 11:47 2016-03-24 Show GitHub Exploit DB Packet Storm
267946 7.5 HIGH
Network
apple iphone_os The Profiles component in Apple iOS before 9.3 does not properly validate certificates, which allows attackers to spoof an MDM profile trust relationship via unspecified vectors. NVD-CWE-noinfo
CVE-2016-1766 2024-11-21 11:47 2016-03-24 Show GitHub Exploit DB Packet Storm
267947 7.8 HIGH
Local
apple xcode otool in Apple Xcode before 7.3 allows local users to gain privileges or cause a denial of service (memory corruption and application crash) via unspecified vectors. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1765 2024-11-21 11:47 2016-03-24 Show GitHub Exploit DB Packet Storm
267948 4.3 MEDIUM
Network
apple mac_os_x The Content Security Policy (CSP) implementation in Messages in Apple OS X before 10.11.4 allows remote attackers to obtain sensitive information via a javascript: URL. CWE-200
Information Exposure
CVE-2016-1764 2024-11-21 11:47 2016-03-24 Show GitHub Exploit DB Packet Storm
267949 3.5 LOW
Network
apple iphone_os Messages in Apple iOS before 9.3 does not ensure that an auto-fill action applies to the intended message thread, which allows remote authenticated users to obtain sensitive information by providing … CWE-20
 Improper Input Validation 
CVE-2016-1763 2024-11-21 11:47 2016-03-24 Show GitHub Exploit DB Packet Storm
267950 8.1 HIGH
Network
apple
debian
canonical
xmlsoft
redhat
mcafee
watchos
iphone_os
mac_os_x
tvos
safari
debian_linux
ubuntu_linux
libxml2
enterprise_linux_desktop
enterprise_linux_server_aus
enterprise_linux_workstation
enterprise_…
The xmlNextChar function in libxml2 before 2.9.4 allows remote attackers to cause a denial of service (heap-based buffer over-read) via a crafted XML document. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1762 2024-11-21 11:47 2016-03-24 Show GitHub Exploit DB Packet Storm