Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252041 7.5 危険 Techjoomla - Joomla! 用の Techjoomla SocialAds における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4975 2011-12-9 14:41 2011-11-1 Show GitHub Exploit DB Packet Storm
252042 4.3 警告 MetInfo - MetInfo の search/search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4976 2011-12-9 14:40 2011-11-1 Show GitHub Exploit DB Packet Storm
252043 7.5 危険 Miniwork - Joomla! 用 Canteen コンポーネントの menu.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4977 2011-12-9 14:39 2011-11-1 Show GitHub Exploit DB Packet Storm
252044 4.3 警告 Nicholas Berry - CANDID の image/view.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4978 2011-12-9 14:39 2011-11-1 Show GitHub Exploit DB Packet Storm
252045 7.5 危険 Nicholas Berry - CANDID の image/view.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4979 2011-12-9 14:38 2011-11-1 Show GitHub Exploit DB Packet Storm
252046 7.5 危険 iScripts - iScripts ReserveLogic の packagedetails.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4980 2011-12-9 14:38 2011-11-1 Show GitHub Exploit DB Packet Storm
252047 7.5 危険 YourFreeWorld.com - YourFreeWorld Banner Management における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4981 2011-12-9 14:37 2011-11-1 Show GitHub Exploit DB Packet Storm
252048 7.5 危険 My Kazaam - My Kazaam Address & Contact Organizer における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4982 2011-12-9 14:36 2011-11-1 Show GitHub Exploit DB Packet Storm
252049 7.5 危険 iScripts - iScripts CyberMatch における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4983 2011-12-9 14:36 2011-11-1 Show GitHub Exploit DB Packet Storm
252050 7.5 危険 My Kazaam - My Kazaam Notes Management System における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4984 2011-12-9 14:35 2011-11-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
247451 6.1 MEDIUM
Network
wordpress
debian
wordpress
debian_linux
In WordPress before 4.7.5, a cross-site scripting (XSS) vulnerability related to the Customizer exists, involving an invalid customization session. CWE-79
Cross-site Scripting
CVE-2017-9063 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm
247452 8.6 HIGH
Network
wordpress
debian
wordpress
debian_linux
In WordPress before 4.7.5, there is improper handling of post meta data values in the XML-RPC API. CWE-352
CWE-79
CWE-601
 Origin Validation Error
Cross-site Scripting
Open Redirect
CVE-2017-9062 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm
247453 6.1 MEDIUM
Network
wordpress
debian
wordpress
debian_linux
In WordPress before 4.7.5, a cross-site scripting (XSS) vulnerability exists when attempting to upload very large files, because the error message does not properly restrict presentation of the filen… CWE-79
Cross-site Scripting
CVE-2017-9061 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm
247454 5.5 MEDIUM
Local
linux linux_kernel The NFSv4 implementation in the Linux kernel through 4.11.1 allows local users to cause a denial of service (resource consumption) by leveraging improper channel callback shutdown when unmounting an … CWE-404
 Improper Resource Shutdown or Release
CVE-2017-9059 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm
247455 9.8 CRITICAL
Network
ytnef_project
canonical
ytnef
ubuntu_linux
In libytnef in ytnef through 1.9.2, there is a heap-based buffer over-read due to incorrect boundary checking in the SIZECHECK macro in lib/ytnef.c. CWE-125
Out-of-bounds Read
CVE-2017-9058 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm
247456 9.8 CRITICAL
Network
libdwarf_project libdwarf An issue, also known as DW201703-001, was discovered in libdwarf 2017-03-21. In dwarf_formsdata() a few data types were not checked for being in bounds, leading to a heap-based buffer over-read. CWE-125
Out-of-bounds Read
CVE-2017-9055 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm
247457 9.8 CRITICAL
Network
libdwarf_project libdwarf An issue, also known as DW201703-002, was discovered in libdwarf 2017-03-21. In _dwarf_decode_s_leb128_chk() a byte pointer was dereferenced just before it was checked for being in bounds, leading to… CWE-125
Out-of-bounds Read
CVE-2017-9054 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm
247458 9.1 CRITICAL
Network
libdwarf_project libdwarf An issue, also known as DW201703-005, was discovered in libdwarf 2017-03-21. A heap-based buffer over-read in _dwarf_read_loc_expr_op() is due to a failure to check a pointer for being in bounds (in … CWE-125
Out-of-bounds Read
CVE-2017-9053 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm
247459 9.8 CRITICAL
Network
libdwarf_project libdwarf An issue, also known as DW201703-006, was discovered in libdwarf 2017-03-21. A heap-based buffer over-read in dwarf_formsdata() is due to a failure to check a pointer for being in bounds (in a few pl… CWE-119
CWE-125
Incorrect Access of Indexable Resource ('Range Error') 
Out-of-bounds Read
CVE-2017-9052 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm
247460 9.8 CRITICAL
Network
libav libav libav before 12.1 is vulnerable to an invalid read of size 1 due to NULL pointer dereferencing in the nsv_read_chunk function in libavformat/nsvdec.c. CWE-476
 NULL Pointer Dereference
CVE-2017-9051 2024-11-21 12:35 2017-05-18 Show GitHub Exploit DB Packet Storm