Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242901 7.5 危険 AlienVault - AlienVault OSSIM の repository/repository_attachment.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-4374 2012-06-26 16:18 2009-12-21 Show GitHub Exploit DB Packet Storm
242902 7.5 危険 AlienVault - AlienVault OSSIM の repository/repository_attachment.php における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2009-4373 2012-06-26 16:18 2009-12-21 Show GitHub Exploit DB Packet Storm
242903 7.5 危険 AlienVault - AlienVault OSSIM における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2009-4372 2012-06-26 16:18 2009-12-21 Show GitHub Exploit DB Packet Storm
242904 3.5 注意 Drupal - Drupal Core の Locale モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4371 2012-06-26 16:18 2009-12-21 Show GitHub Exploit DB Packet Storm
242905 7.5 危険 fr.simon rundell
TYPO3 Association
- TYPO3 の ste_parish_admin 拡張における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4401 2012-06-26 16:18 2008-07-9 Show GitHub Exploit DB Packet Storm
242906 4.3 警告 fr.simon rundell
TYPO3 Association
- TYPO3 の ste_parish_admin 拡張におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4400 2012-06-26 16:18 2008-07-9 Show GitHub Exploit DB Packet Storm
242907 7.5 危険 fr.simon rundell
TYPO3 Association
- TYPO3 の hs_religiousartgallery 拡張における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4399 2012-06-26 16:18 2008-07-9 Show GitHub Exploit DB Packet Storm
242908 4.3 警告 fr.simon rundell
TYPO3 Association
- TYPO3 の hs_religiousartgallery 拡張におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4398 2012-06-26 16:18 2008-07-9 Show GitHub Exploit DB Packet Storm
242909 4.3 警告 fr.simon rundell
TYPO3 Association
- TYPO3 の pd_resources 拡張におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4397 2012-06-26 16:18 2008-07-9 Show GitHub Exploit DB Packet Storm
242910 4.3 警告 fr.simon rundell
TYPO3 Association
- TYPO3 の ste_prayer2 拡張におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4395 2012-06-26 16:18 2008-07-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 24, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267501 8.8 HIGH
Network
mozilla firefox Unspecified vulnerability in the browser engine in Mozilla Firefox ESR 38.x before 38.8 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly exec… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2805 2024-11-21 11:48 2016-05-1 Show GitHub Exploit DB Packet Storm
267502 8.8 HIGH
Network
mozilla firefox Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 46.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly exe… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2804 2024-11-21 11:48 2016-05-1 Show GitHub Exploit DB Packet Storm
267503 5.5 MEDIUM
Local
linux linux_kernel The Linux kernel before 4.5 allows local users to bypass file-descriptor limits and cause a denial of service (memory consumption) by leveraging incorrect tracking of descriptor ownership and sending… CWE-399
 Resource Management Errors
CVE-2016-2550 2024-11-21 11:48 2016-04-28 Show GitHub Exploit DB Packet Storm
267504 6.2 MEDIUM
Local
linux linux_kernel sound/core/hrtimer.c in the Linux kernel before 4.4.1 does not prevent recursive callback access, which allows local users to cause a denial of service (deadlock) via a crafted ioctl call. CWE-20
 Improper Input Validation 
CVE-2016-2549 2024-11-21 11:48 2016-04-28 Show GitHub Exploit DB Packet Storm
267505 6.2 MEDIUM
Local
linux linux_kernel sound/core/timer.c in the Linux kernel before 4.4.1 retains certain linked lists after a close or stop action, which allows local users to cause a denial of service (system crash) via a crafted ioctl… CWE-20
 Improper Input Validation 
CVE-2016-2548 2024-11-21 11:48 2016-04-28 Show GitHub Exploit DB Packet Storm
267506 6.2 MEDIUM
Local
linux
novell
linux_kernel
suse_linux_enterprise_module_for_public_cloud
suse_linux_enterprise_server
suse_linux_enterprise_live_patching
suse_linux_enterprise_real_time_extension
suse_linux_enterpr…
fs/pipe.c in the Linux kernel before 4.5 does not limit the amount of unread data in pipes, which allows local users to cause a denial of service (memory consumption) by creating many pipes with non-… CWE-399
 Resource Management Errors
CVE-2016-2847 2024-11-21 11:48 2016-04-28 Show GitHub Exploit DB Packet Storm
267507 4.6 MEDIUM
Physics
linux
suse
linux_kernel
linux_enterprise_server
linux_enterprise_software_development_kit
linux_enterprise_debuginfo
linux_enterprise_real_time_extension
linux_enterprise_workstation_extension
The treo_attach function in drivers/usb/serial/visor.c in the Linux kernel before 4.5 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) or… CWE-476
 NULL Pointer Dereference
CVE-2016-2782 2024-11-21 11:48 2016-04-28 Show GitHub Exploit DB Packet Storm
267508 5.1 MEDIUM
Local
linux linux_kernel sound/core/timer.c in the Linux kernel before 4.4.1 employs a locking approach that does not consider slave timer instances, which allows local users to cause a denial of service (race condition, use… CWE-362
Race Condition
CVE-2016-2547 2024-11-21 11:48 2016-04-28 Show GitHub Exploit DB Packet Storm
267509 5.1 MEDIUM
Local
linux linux_kernel sound/core/timer.c in the Linux kernel before 4.4.1 uses an incorrect type of mutex, which allows local users to cause a denial of service (race condition, use-after-free, and system crash) via a cra… CWE-362
Race Condition
CVE-2016-2546 2024-11-21 11:48 2016-04-28 Show GitHub Exploit DB Packet Storm
267510 5.1 MEDIUM
Local
linux linux_kernel The snd_timer_interrupt function in sound/core/timer.c in the Linux kernel before 4.4.1 does not properly maintain a certain linked list, which allows local users to cause a denial of service (race c… CWE-362
Race Condition
CVE-2016-2545 2024-11-21 11:48 2016-04-28 Show GitHub Exploit DB Packet Storm