Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 22, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242801 7.5 危険 Allomani - Allomani Audio & Video Library の login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4735 2012-06-26 16:19 2010-03-18 Show GitHub Exploit DB Packet Storm
242802 7.5 危険 Allomani - Allomani Movies Library の login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4734 2012-06-26 16:19 2010-03-18 Show GitHub Exploit DB Packet Storm
242803 7.5 危険 boldfx - Model Agency Manager PRO の photos.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4731 2012-06-26 16:19 2010-03-18 Show GitHub Exploit DB Packet Storm
242804 5.1 警告 Arab Portal - Arab Portal の modules/aljazeera/admin/setup.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-4725 2012-06-26 16:19 2010-03-18 Show GitHub Exploit DB Packet Storm
242805 7.5 危険 andrews-web - A-W BannerAd の Admin/index.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4721 2012-06-26 16:19 2010-03-18 Show GitHub Exploit DB Packet Storm
242806 7.5 危険 gnudip - GnuDIP の cgi-bin/gnudip.cgi における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4720 2012-06-26 16:19 2010-03-18 Show GitHub Exploit DB Packet Storm
242807 7.5 危険 bob jewell - Discloser の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4719 2012-06-26 16:19 2010-03-18 Show GitHub Exploit DB Packet Storm
242808 7.5 危険 gonafish - Gonafish WebStatCaffe における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4718 2012-06-26 16:19 2010-03-15 Show GitHub Exploit DB Packet Storm
242809 4.3 警告 gonafish - Gonafish WebStatCaffe におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4717 2012-06-26 16:19 2010-03-15 Show GitHub Exploit DB Packet Storm
242810 4.3 警告 edgephp - EDGEPHP EZWebSearch の results.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4716 2012-06-26 16:19 2010-03-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267961 6.5 MEDIUM
Network
opensuse
mozilla
leap
opensuse
firefox
Integer overflow in the image-deinterlacing functionality in Mozilla Firefox before 44.0 allows remote attackers to cause a denial of service (memory consumption or application crash) via a crafted G… CWE-189
Numeric Errors
CVE-2016-1933 2024-11-21 11:47 2016-02-1 Show GitHub Exploit DB Packet Storm
267962 10.0 CRITICAL
Network
mozilla
opensuse
firefox
leap
opensuse
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 44.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly exe… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1931 2024-11-21 11:47 2016-02-1 Show GitHub Exploit DB Packet Storm
267963 9.8 CRITICAL
Network
mozilla
oracle
opensuse
firefox
linux
leap
opensuse
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 44.0 and Firefox ESR 38.x before 38.6 allow remote attackers to cause a denial of service (memory corruption and a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1930 2024-11-21 11:47 2016-02-1 Show GitHub Exploit DB Packet Storm
267964 10.0 CRITICAL
Network
hp operations_manager HPE Operations Manager 8.x and 9.0 on Windows allows remote attackers to execute arbitrary commands via a crafted serialized Java object, related to the Apache Commons Collections library. CWE-94
Code Injection
CVE-2016-1985 2024-11-21 11:47 2016-01-31 Show GitHub Exploit DB Packet Storm
267965 7.5 HIGH
Network
freebsd freebsd FreeBSD 9.3 before p33, 10.1 before p26, and 10.2 before p9 allow remote attackers to cause a denial of service (kernel crash) via vectors related to creating a TCP connection with the TCP_MD5SIG and… CWE-19
 Data Processing Errors
CVE-2016-1882 2024-11-21 11:47 2016-01-30 Show GitHub Exploit DB Packet Storm
267966 7.5 HIGH
Network
freebsd freebsd The Stream Control Transmission Protocol (SCTP) module in FreeBSD 9.3 before p33, 10.1 before p26, and 10.2 before p9, when the kernel is configured for IPv6, allows remote attackers to cause a denia… NVD-CWE-Other
CVE-2016-1879 2024-11-21 11:47 2016-01-30 Show GitHub Exploit DB Packet Storm
267967 5.9 MEDIUM
Network
mariadb
oracle
opensuse
redhat
debian
canonical
mariadb
linux
mysql
leap
enterprise_linux
debian_linux
ubuntu_linux
The ssl_verify_server_cert function in sql-common/client.c in MariaDB before 5.5.47, 10.0.x before 10.0.23, and 10.1.x before 10.1.10; Oracle MySQL 5.5.48 and earlier, 5.6.29 and earlier, and 5.7.11 … CWE-254
 7PK - Security Features
CVE-2016-2047 2024-11-21 11:47 2016-01-28 Show GitHub Exploit DB Packet Storm
267968 7.5 HIGH
Network
privoxy privoxy The client_host function in parsers.c in Privoxy before 3.0.24 allows remote attackers to cause a denial of service (invalid read and crash) via an empty HTTP Host header. CWE-20
 Improper Input Validation 
CVE-2016-1983 2024-11-21 11:47 2016-01-28 Show GitHub Exploit DB Packet Storm
267969 7.5 HIGH
Network
privoxy privoxy The remove_chunked_transfer_coding function in filters.c in Privoxy before 3.0.24 allows remote attackers to cause a denial of service (invalid read and crash) via crafted chunk-encoded content. CWE-20
 Improper Input Validation 
CVE-2016-1982 2024-11-21 11:47 2016-01-28 Show GitHub Exploit DB Packet Storm
267970 6.5 MEDIUM
Network
uclouvain openjpeg The opj_tgt_reset function in OpenJpeg 2016.1.18 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted JPEG 2000 image. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1924 2024-11-21 11:47 2016-01-28 Show GitHub Exploit DB Packet Storm