Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 4:07 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
245051 9.3 危険 Debian
Devscripts Devel Team
- devscripts の scripts/uscan.pl における Perl コードを実行される脆弱性 CWE-Other
その他
CVE-2009-2946 2012-06-26 16:10 2009-02-14 Show GitHub Exploit DB Packet Storm
245052 4.3 警告 elkagroup - elka CMS の Search 機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2930 2012-06-26 16:10 2009-08-21 Show GitHub Exploit DB Packet Storm
245053 7.5 危険 digitalspinners - DigitalSpinners DS CMS の DetailFile.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2927 2012-06-26 16:10 2009-08-21 Show GitHub Exploit DB Packet Storm
245054 7.8 危険 djcalendar - DJCalendar の DJcalendar.cgi におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-2925 2012-06-26 16:10 2009-08-21 Show GitHub Exploit DB Packet Storm
245055 5 警告 bitmixsoft - BitmixSoft PHP-Lance におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-2923 2012-06-26 16:10 2009-08-21 Show GitHub Exploit DB Packet Storm
245056 4.3 警告 elvinbts - Elvin におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2920 2012-06-26 16:10 2009-08-21 Show GitHub Exploit DB Packet Storm
245057 3.5 注意 BoonEx - Boonex Orca におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2919 2012-06-26 16:10 2009-08-21 Show GitHub Exploit DB Packet Storm
245058 9.3 危険 2kgames - 2K Games Vietcong の logs.dl の CNS_AddTxt 関数におけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2009-2916 2012-06-26 16:10 2009-08-21 Show GitHub Exploit DB Packet Storm
245059 7.5 危険 2fly - 2FLY Gift Delivery System の 2fly_gift.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2915 2012-06-26 16:10 2009-08-21 Show GitHub Exploit DB Packet Storm
245060 7.5 危険 clone2009 - Ebay Clone における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2894 2012-06-26 16:10 2009-08-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
252621 5.5 MEDIUM
Local
linux linux_kernel The do_check function in kernel/bpf/verifier.c in the Linux kernel before 4.11.1 does not make the allow_ptr_leaks value available for restricting the output of the print_bpf_insn function, which all… CWE-200
Information Exposure
CVE-2017-9150 2024-11-21 12:35 2017-05-23 Show GitHub Exploit DB Packet Storm
252622 7.5 HIGH
Network
metadata_anonymisation_toolkit_project metadata_anonymisation_toolkit Metadata Anonymisation Toolkit (MAT) 0.6 and 0.6.1 silently fails to perform "Clean metadata" actions upon invocation from the Nautilus contextual menu, which allows context-dependent attackers to ob… CWE-200
Information Exposure
CVE-2017-9149 2024-11-21 12:35 2017-05-23 Show GitHub Exploit DB Packet Storm
252623 6.5 MEDIUM
Network
libtiff libtiff LibTIFF 4.0.7 has an invalid read in the _TIFFVGetField function in tif_dir.c, which might allow remote attackers to cause a denial of service (crash) via a crafted TIFF file. CWE-125
Out-of-bounds Read
CVE-2017-9147 2024-11-21 12:35 2017-05-23 Show GitHub Exploit DB Packet Storm
252624 8.8 HIGH
Network
ytnef_project ytnef The TNEFFillMapi function in lib/ytnef.c in libytnef in ytnef through 1.9.2 does not ensure a nonzero count value before a certain memory allocation, which allows remote attackers to cause a denial o… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-9146 2024-11-21 12:35 2017-05-23 Show GitHub Exploit DB Packet Storm
252625 6.5 MEDIUM
Network
imagemagick
debian
imagemagick
debian_linux
In ImageMagick 7.0.5-5, a crafted RLE image can trigger a crash because of incorrect EOF handling in coders/rle.c. CWE-20
 Improper Input Validation 
CVE-2017-9144 2024-11-21 12:35 2017-05-22 Show GitHub Exploit DB Packet Storm
252626 6.5 MEDIUM
Network
imagemagick
debian
imagemagick
debian_linux
In ImageMagick 7.0.5-5, the ReadARTImage function in coders/art.c allows attackers to cause a denial of service (memory leak) via a crafted .art file. CWE-772
 Missing Release of Resource after Effective Lifetime
CVE-2017-9143 2024-11-21 12:35 2017-05-22 Show GitHub Exploit DB Packet Storm
252627 6.5 MEDIUM
Network
imagemagick
debian
imagemagick
debian_linux
In ImageMagick 7.0.5-7 Q16, a crafted file could trigger an assertion failure in the WriteBlob function in MagickCore/blob.c because of missing checks in the ReadOneJNGImage function in coders/png.c. CWE-20
CWE-617
 Improper Input Validation 
 Reachable Assertion
CVE-2017-9142 2024-11-21 12:35 2017-05-22 Show GitHub Exploit DB Packet Storm
252628 6.5 MEDIUM
Network
imagemagick
debian
imagemagick
debian_linux
In ImageMagick 7.0.5-7 Q16, a crafted file could trigger an assertion failure in the ResetImageProfileIterator function in MagickCore/profile.c because of missing checks in the ReadDDSImage function … CWE-20
CWE-617
 Improper Input Validation 
 Reachable Assertion
CVE-2017-9141 2024-11-21 12:35 2017-05-22 Show GitHub Exploit DB Packet Storm
252629 6.1 MEDIUM
Network
progress telerik_reporting
sitefinity_cms
Cross-site scripting (XSS) vulnerability in Telerik.ReportViewer.WebForms.dll in Telerik Reporting for ASP.NET WebForms Report Viewer control before R1 2017 SP2 (11.0.17.406) allows remote attackers … CWE-79
Cross-site Scripting
CVE-2017-9140 2024-11-21 12:35 2017-05-22 Show GitHub Exploit DB Packet Storm
252630 3.5 LOW
Adjacent
tendacn f1200_firmware
fh1202_firmware
f1202_firmware
There is a stack-based buffer overflow on some Tenda routers (FH1202/F1202/F1200: versions before 1.2.0.20). Crafted POST requests to an unspecified URL result in DoS, interrupting the HTTP service (… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-9139 2024-11-21 12:35 2017-05-22 Show GitHub Exploit DB Packet Storm