Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252601 3.5 注意 OTRS プロジェクト - OTRS におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-5055 2012-03-27 18:42 2011-03-18 Show GitHub Exploit DB Packet Storm
252602 7.5 危険 Smarty - Smarty におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-5054 2012-03-27 18:42 2011-02-3 Show GitHub Exploit DB Packet Storm
252603 7.5 危険 Smarty - Smarty における任意の PHP コードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2009-5053 2012-03-27 18:42 2011-02-3 Show GitHub Exploit DB Packet Storm
252604 10 危険 Smarty - Smarty における詳細不明の脆弱性 CWE-noinfo
情報不足
CVE-2009-5052 2012-03-27 18:42 2011-02-3 Show GitHub Exploit DB Packet Storm
252605 5 警告 Hastymail - Hastymail2 におけるクッキーを取り込まれる脆弱性 CWE-16
環境設定
CVE-2009-5051 2012-03-27 18:42 2011-01-18 Show GitHub Exploit DB Packet Storm
252606 5 警告 ViewVC - ViewVC における cvsdb row_limit 設定を迂回される脆弱性 CWE-399
リソース管理の問題
CVE-2009-5024 2012-03-27 18:42 2011-05-23 Show GitHub Exploit DB Packet Storm
252607 6.8 警告 catb - gif2png における任意のコマンドを実行される脆弱性 CWE-119
バッファエラー
CVE-2009-5018 2012-03-27 18:42 2011-01-14 Show GitHub Exploit DB Packet Storm
252608 4 警告 IBM - IBM Lotus Notes Traveler の traveler.exe におけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2009-5036 2012-03-27 18:42 2010-12-16 Show GitHub Exploit DB Packet Storm
252609 4.3 警告 IBM - IBM Lotus Notes Traveler の Nokia クライアントにおける他人への電子メールを読まれる脆弱性 CWE-200
情報漏えい
CVE-2009-5035 2012-03-27 18:42 2010-12-16 Show GitHub Exploit DB Packet Storm
252610 4 警告 IBM - IBM Lotus Notes Traveler におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-5034 2012-03-27 18:42 2010-12-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
264571 8.8 HIGH
Network
opencast opencast Opencast 2.3.2 and older versions are vulnerable to script injections through media and metadata in the player and media module resulting in arbitrary code execution, fixed in 2.3.3 and 3.0. CWE-74
Injection
CVE-2017-1000217 2024-11-21 12:04 2017-11-18 Show GitHub Exploit DB Packet Storm
264572 5.5 MEDIUM
Local
exiv2 exiv2 Exiv2 0.26 contains a stack out of bounds read in JPEG2000 parser CWE-125
Out-of-bounds Read
CVE-2017-1000128 2024-11-21 12:04 2017-11-18 Show GitHub Exploit DB Packet Storm
264573 5.5 MEDIUM
Local
exiv2 exiv2 Exiv2 0.26 contains a heap buffer overflow in tiff parser CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-1000127 2024-11-21 12:04 2017-11-18 Show GitHub Exploit DB Packet Storm
264574 5.5 MEDIUM
Local
exiv2 exiv2 exiv2 0.26 contains a Stack out of bounds read in webp parser CWE-125
Out-of-bounds Read
CVE-2017-1000126 2024-11-21 12:04 2017-11-18 Show GitHub Exploit DB Packet Storm
264575 7.5 HIGH
Network
snap7_project snap7_server The Snap7 Server version 1.4.1 can be crashed when the ItemCount field of the ReadVar or WriteVar functions of the S7 protocol implementation in Snap7 are provided with unexpected input, thus resulti… CWE-20
 Improper Input Validation 
CVE-2017-1000230 2024-11-21 12:04 2017-11-18 Show GitHub Exploit DB Packet Storm
264576 5.4 MEDIUM
Network
parallelus salutation Stored XSS in Salutation Responsive WordPress + BuddyPress Theme version 3.0.15 could allow logged-in users to do almost anything an admin can CWE-79
Cross-site Scripting
CVE-2017-1000227 2024-11-21 12:04 2017-11-18 Show GitHub Exploit DB Packet Storm
264577 9.1 CRITICAL
Network
simplexml_project simplexml SimpleXML (latest version 2.7.1) is vulnerable to an XXE vulnerability resulting SSRF, information disclosure, DoS and so on. CWE-611
XXE
CVE-2017-1000190 2024-11-21 12:04 2017-11-18 Show GitHub Exploit DB Packet Storm
264578 6.1 MEDIUM
Network
phoenixframework phoenix The Phoenix Framework versions 1.0.0 through 1.0.4, 1.1.0 through 1.1.6, 1.2.0, 1.2.2 and 1.3.0-rc.0 are vulnerable to unvalidated URL redirection, which may result in phishing or social engineering … CWE-601
Open Redirect
CVE-2017-1000163 2024-11-21 12:04 2017-11-18 Show GitHub Exploit DB Packet Storm
264579 9.8 CRITICAL
Network
xrootd xrootd ROOT xrootd version 4.6.0 and below is vulnerable to an unauthenticated shell command injection resulting in remote code execution CWE-78
OS Command 
CVE-2017-1000215 2024-11-21 12:04 2017-11-18 Show GitHub Exploit DB Packet Storm
264580 7.5 HIGH
Network
jqueryfiletree_project jqueryfiletree jqueryFileTree 2.1.5 and older Directory Traversal CWE-22
Path Traversal
CVE-2017-1000170 2024-11-21 12:04 2017-11-18 Show GitHub Exploit DB Packet Storm