Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
245671 7.5 危険 alqa6ari - Alqatari Q R Script の lesson.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3061 2012-06-26 16:18 2009-09-3 Show GitHub Exploit DB Packet Storm
245672 4.3 警告 allpublication - Joker Board におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3060 2012-06-26 16:18 2009-09-3 Show GitHub Exploit DB Packet Storm
245673 7.5 危険 allpublication - Joker Board における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3059 2012-06-26 16:18 2009-09-3 Show GitHub Exploit DB Packet Storm
245674 9.3 危険 aksoft - akPlayer におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3058 2012-06-26 16:18 2009-09-3 Show GitHub Exploit DB Packet Storm
245675 4.3 警告 aom-software - AOM Software Beex におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3057 2012-06-26 16:18 2009-09-3 Show GitHub Exploit DB Packet Storm
245676 7.5 危険 bas bloemsaat - KingCMS の include/engine/content/elements/menu.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-3056 2012-06-26 16:18 2009-09-3 Show GitHub Exploit DB Packet Storm
245677 7.5 危険 dlecms - DLE の engine/api/api.class.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-3055 2012-06-26 16:18 2009-09-3 Show GitHub Exploit DB Packet Storm
245678 7.5 危険 Joomla!
artetics
- Joomla! の Artetics.com artportal コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3054 2012-06-26 16:18 2009-09-3 Show GitHub Exploit DB Packet Storm
245679 6.5 警告 absoluteanime
phpBB
- phpBB の Prime Quick Style アドオンの root/includes/prime_quick_style.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3052 2012-06-26 16:18 2009-09-3 Show GitHub Exploit DB Packet Storm
245680 4.3 警告 アップル - Apple Safari におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3016 2012-06-26 16:18 2009-08-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
252841 8.8 HIGH
Network
ffmpeg
debian
ffmpeg
debian_linux
Heap-based buffer overflow in the decode_dds1 function in libavcodec/dfa.c in FFmpeg before 2.8.12, 3.0.x before 3.0.8, 3.1.x before 3.1.8, 3.2.x before 3.2.5, and 3.3.x before 3.3.1 allows remote at… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-9992 2024-11-21 12:37 2017-06-28 Show GitHub Exploit DB Packet Storm
252842 7.8 HIGH
Local
ffmpeg ffmpeg Heap-based buffer overflow in the xwd_decode_frame function in libavcodec/xwddec.c in FFmpeg before 2.8.12, 3.0.x before 3.0.8, 3.1.x before 3.1.8, 3.2.x before 3.2.5, and 3.3.x before 3.3.1 allows r… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-9991 2024-11-21 12:37 2017-06-28 Show GitHub Exploit DB Packet Storm
252843 8.8 HIGH
Network
ffmpeg ffmpeg Stack-based buffer overflow in the color_string_to_rgba function in libavcodec/xpmdec.c in FFmpeg 3.3 before 3.3.1 allows remote attackers to cause a denial of service (application crash) or possibly… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-9990 2024-11-21 12:37 2017-06-28 Show GitHub Exploit DB Packet Storm
252844 6.5 MEDIUM
Network
libming
debian
libming
debian_linux
util/outputtxt.c in libming 0.4.8 mishandles memory allocation. A crafted input will lead to a remote denial of service (NULL pointer dereference) attack. CWE-476
 NULL Pointer Dereference
CVE-2017-9989 2024-11-21 12:37 2017-06-28 Show GitHub Exploit DB Packet Storm
252845 6.5 MEDIUM
Network
libming
debian
libming
debian_linux
The readEncUInt30 function in util/read.c in libming 0.4.8 mishandles memory allocation. A crafted input will lead to a remote denial of service (NULL pointer dereference) attack against parser.c. CWE-476
 NULL Pointer Dereference
CVE-2017-9988 2024-11-21 12:37 2017-06-28 Show GitHub Exploit DB Packet Storm
252846 7.5 HIGH
Network
libav libav There is a heap-based buffer overflow in the function hpel_motion in mpegvideo_motion.c in libav 12.1. A crafted input can lead to a remote denial of service attack. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-9987 2024-11-21 12:37 2017-06-28 Show GitHub Exploit DB Packet Storm
252847 7.8 HIGH
Local
linux linux_kernel The intr function in sound/oss/msnd_pinnacle.c in the Linux kernel through 4.11.7 allows local users to cause a denial of service (over-boundary access) or possibly have unspecified other impact by c… CWE-125
Out-of-bounds Read
CVE-2017-9986 2024-11-21 12:37 2017-06-28 Show GitHub Exploit DB Packet Storm
252848 7.8 HIGH
Local
linux
canonical
linux_kernel
ubuntu_linux
The snd_msndmidi_input_read function in sound/isa/msnd/msnd_midi.c in the Linux kernel through 4.11.7 allows local users to cause a denial of service (over-boundary access) or possibly have unspecifi… CWE-125
Out-of-bounds Read
CVE-2017-9985 2024-11-21 12:37 2017-06-28 Show GitHub Exploit DB Packet Storm
252849 7.8 HIGH
Local
linux linux_kernel The snd_msnd_interrupt function in sound/isa/msnd/msnd_pinnacle.c in the Linux kernel through 4.11.7 allows local users to cause a denial of service (over-boundary access) or possibly have unspecifie… CWE-125
Out-of-bounds Read
CVE-2017-9984 2024-11-21 12:37 2017-06-28 Show GitHub Exploit DB Packet Storm
252850 7.5 HIGH
Network
teamspeak teamspeak_client TeamSpeak Client 3.0.19 allows remote attackers to cause a denial of service (application crash) via the ᗪ Unicode character followed by the ༿ Unicode character. CWE-20
 Improper Input Validation 
CVE-2017-9982 2024-11-21 12:37 2017-06-28 Show GitHub Exploit DB Packet Storm