Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242931 4.3 警告 bernhard frohlich - phpCommunity 2 の templates/1/login.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4885 2012-06-26 16:19 2010-06-11 Show GitHub Exploit DB Packet Storm
242932 6.8 警告 bernhard frohlich - phpCommunity 2 における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4884 2012-06-26 16:19 2010-06-11 Show GitHub Exploit DB Packet Storm
242933 5 警告 GNU Project - GNU C Library の strfmon 実装 における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-4881 2012-06-26 16:19 2010-06-1 Show GitHub Exploit DB Packet Storm
242934 5 警告 GNU Project - GNU C Library の strfmon 実装における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2009-4880 2012-06-26 16:19 2010-06-1 Show GitHub Exploit DB Packet Storm
242935 5 警告 frederico caldeira knabben - FCKeditor.Java におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-4875 2012-06-26 16:19 2010-05-26 Show GitHub Exploit DB Packet Storm
242936 7.5 危険 abushhab - Alwasel における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4862 2012-06-26 16:19 2010-05-11 Show GitHub Exploit DB Packet Storm
242937 7.5 危険 demarque - Typing Pal の demo.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4860 2012-06-26 16:19 2010-05-11 Show GitHub Exploit DB Packet Storm
242938 4.3 警告 ecomstudio - PHP Photo Vote の login.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4857 2012-06-26 16:19 2010-05-11 Show GitHub Exploit DB Packet Storm
242939 4.3 警告 ecomstudio - PHP Easy Shopping Cart の subitems.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4856 2012-06-26 16:19 2010-05-11 Show GitHub Exploit DB Packet Storm
242940 4.3 警告 festic - SemanticScuttle におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4852 2012-06-26 16:19 2010-05-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267451 7.0 HIGH
Local
google android OpenSSLCipher.java in Conscrypt in Android 6.x before 2016-05-01 mishandles updates of the Additional Authenticated Data (AAD) array, which allows attackers to spoof message authentication via unspec… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2462 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
267452 7.0 HIGH
Local
google android OpenSSLCipher.java in Conscrypt in Android 6.x before 2016-05-01 mishandles resets of the Additional Authenticated Data (AAD) array, which allows attackers to spoof message authentication via unspeci… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2461 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
267453 5.5 MEDIUM
Local
google android mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not initialize certain data structures, which allows attackers to obtain sensitive info… CWE-200
Information Exposure
CVE-2016-2460 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
267454 5.5 MEDIUM
Local
google android mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not initialize certain data structures, which allows attackers to obtain sensitive info… CWE-200
Information Exposure
CVE-2016-2459 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
267455 5.5 MEDIUM
Local
google android The compose functionality in AOSP Mail in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not properly restrict attachments, which allows attackers to obtain sensitive … CWE-200
Information Exposure
CVE-2016-2458 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
267456 5.5 MEDIUM
Local
google android server/pm/UserManagerService.java in Wi-Fi in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 allows attackers to bypass intended restrictions on Wi-Fi configuration changes… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2457 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
267457 7.0 HIGH
Local
google android The MediaTek Wi-Fi driver in Android before 2016-05-01 on Android One devices allows attackers to gain privileges via a crafted application, aka internal bug 27275187. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2456 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
267458 5.5 MEDIUM
Local
google android The Qualcomm hardware video codec in Android before 2016-05-01 on Nexus 5 devices allows remote attackers to cause a denial of service (reboot) via a crafted file, aka internal bug 26221024. CWE-20
 Improper Input Validation 
CVE-2016-2454 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
267459 7.0 HIGH
Local
google android_one The MediaTek Wi-Fi driver in Android before 2016-05-01 on Android One devices allows attackers to gain privileges via a crafted application, aka internal bug 27549705. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2453 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm
267460 7.8 HIGH
Local
google android codecs/amrnb/dec/SoftAMR.cpp in libstagefright in mediaserver in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-05-01 does not validate buffer sizes, which allo… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2452 2024-11-21 11:48 2016-05-9 Show GitHub Exploit DB Packet Storm