Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
243051 5 警告 Cherokee Project - Cherokee の header.c におけるウィンドウのタイトルを変更される脆弱性 CWE-20
不適切な入力確認
CVE-2009-4489 2012-06-26 16:19 2010-01-13 Show GitHub Exploit DB Packet Storm
243052 4.3 警告 bloofox - BloofoxCMS の search.5.html におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4522 2012-06-26 16:19 2009-12-31 Show GitHub Exploit DB Packet Storm
243053 4.3 警告 Eclipse Foundation - BIRT の birt-viewer/run におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4521 2012-06-26 16:19 2009-12-17 Show GitHub Exploit DB Packet Storm
243054 3.5 注意 Drupal
astha bhatnagar
- Drupal のモジュールの OpenSocial Shindig-Integrator モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4514 2012-06-26 16:19 2009-12-31 Show GitHub Exploit DB Packet Storm
243055 9.3 危険 AzeoTech, Inc. - AzeoTech DAQFactory の Web サービスにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4480 2012-06-26 16:19 2009-12-30 Show GitHub Exploit DB Packet Storm
243056 4.3 警告 Episerver - Ektron CMS400.NET におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4473 2012-06-26 16:19 2009-12-30 Show GitHub Exploit DB Packet Storm
243057 7.5 危険 freeschool - FreeSchool における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-4471 2012-06-26 16:18 2009-12-30 Show GitHub Exploit DB Packet Storm
243058 7.5 危険 dvbbs - DVBBS の boardrule.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4470 2012-06-26 16:18 2009-12-30 Show GitHub Exploit DB Packet Storm
243059 4.3 警告 giombetti - phpPowerCards の pagenumber.inc.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4469 2012-06-26 16:18 2009-12-30 Show GitHub Exploit DB Packet Storm
243060 4.3 警告 deluxebb - DeluxeBB の misc.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4468 2012-06-26 16:18 2009-12-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267211 8.1 HIGH
Local
ibm
oracle
mariadb
debian
canonical
powerkvm
mysql
linux
mariadb
debian_linux
ubuntu_linux
Unspecified vulnerability in Oracle MySQL 5.5.49 and earlier, 5.6.30 and earlier, and 5.7.12 and earlier and MariaDB before 5.5.50, 10.0.x before 10.0.26, and 10.1.x before 10.1.15 allows local users… NVD-CWE-noinfo
CVE-2016-3477 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm
267212 6.5 MEDIUM
Network
oracle knowledge Unspecified vulnerability in the Oracle Knowledge component in Oracle Siebel CRM 8.5.x allows remote attackers to affect confidentiality and integrity via vectors related to Information Manager Conso… NVD-CWE-noinfo
CVE-2016-3476 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm
267213 4.3 MEDIUM
Network
oracle knowledge Unspecified vulnerability in the Oracle Knowledge component in Oracle Siebel CRM 8.5.x allows remote authenticated users to affect confidentiality via vectors related to Information Manager Console. NVD-CWE-noinfo
CVE-2016-3475 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm
267214 3.7 LOW
Network
oracle business_intelligence_publisher Unspecified vulnerability in the BI Publisher (formerly XML Publisher) component in Oracle Fusion Middleware 11.1.1.7.0, 11.1.1.9.0, and 12.2.1.0.0 allows remote attackers to affect confidentiality v… NVD-CWE-noinfo
CVE-2016-3474 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm
267215 5.7 MEDIUM
Network
oracle siebel_engineering-installer_and_deployment Unspecified vulnerability in the Siebel Engineering - Installer and Deployment component in Oracle Siebel CRM 8.1.1, 8.2.2, IP2014, IP2015, and IP2016 allows remote authenticated users to affect conf… NVD-CWE-noinfo
CVE-2016-3472 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm
267216 7.5 HIGH
Local
oracle
redhat
mariadb
mysql
enterprise_linux
mariadb
Unspecified vulnerability in Oracle MySQL 5.5.45 and earlier and 5.6.26 and earlier allows local users to affect confidentiality, integrity, and availability via vectors related to Server: Option. NVD-CWE-noinfo
CVE-2016-3471 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm
267217 7.1 HIGH
Network
oracle transportation_management Unspecified vulnerability in the Oracle Transportation Management component in Oracle Supply Chain Products Suite 6.4.1 allows remote authenticated users to affect confidentiality and integrity via v… NVD-CWE-noinfo
CVE-2016-3470 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm
267218 3.3 LOW
Local
oracle siebel_core-server_framework Unspecified vulnerability in the Siebel Core - Server Framework component in Oracle Siebel CRM 8.1.1, 8.2.2, IP2014, IP2015, and IP2016 allows local users to affect confidentiality via vectors relate… NVD-CWE-noinfo
CVE-2016-3469 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm
267219 9.8 CRITICAL
Network
oracle agile_engineering_data_management Unspecified vulnerability in the Oracle Agile Engineering Data Management component in Oracle Supply Chain Products Suite 6.1.3.0 and 6.2.0.0 allows remote attackers to affect confidentiality, integr… NVD-CWE-noinfo
CVE-2016-3468 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm
267220 5.8 MEDIUM
Network
oracle application_express Unspecified vulnerability in the Application Express component in Oracle Database Server before 5.0.4 allows remote attackers to affect availability via unknown vectors. NVD-CWE-noinfo
CVE-2016-3467 2024-11-21 11:50 2016-07-21 Show GitHub Exploit DB Packet Storm