Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252961 6.9 警告 アップル - iPhone および iPod touch 上で稼動する Apple iOS の IOSurface における整数オーバーフローの脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-2973 2010-09-6 17:45 2010-08-5 Show GitHub Exploit DB Packet Storm
252962 9.3 危険 アップル - Apple Quicktime に脆弱性 CWE-119
バッファエラー
CVE-2010-1799 2010-09-6 17:44 2010-08-13 Show GitHub Exploit DB Packet Storm
252963 10 危険 オラクル - Oracle WebLogic Server の WebLogic Server コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-0073 2010-09-6 17:41 2010-02-4 Show GitHub Exploit DB Packet Storm
252964 2.1 注意 サイバートラスト株式会社
libvirt.org
レッドハット
- libvirt における任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-2242 2010-09-3 16:32 2010-08-4 Show GitHub Exploit DB Packet Storm
252965 4.4 警告 サイバートラスト株式会社
libvirt.org
レッドハット
- libvirt における任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-2239 2010-09-3 16:32 2010-08-10 Show GitHub Exploit DB Packet Storm
252966 3.6 注意 freedesktop.org
サイバートラスト株式会社
レッドハット
- dbus-glib の GObject プロパティにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1172 2010-09-3 16:32 2010-08-10 Show GitHub Exploit DB Packet Storm
252967 6.6 警告 マイクロソフト - Microsoft Windows の win32k.sys 内にある Windows カーネルモードドライバにおける権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2010-1897 2010-09-3 12:00 2010-08-10 Show GitHub Exploit DB Packet Storm
252968 6.8 警告 マイクロソフト - Windows の Windows Service Isolation 機能における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-1886 2010-09-2 14:07 2010-08-10 Show GitHub Exploit DB Packet Storm
252969 6.8 警告 マイクロソフト - Windows のサービスのトレース機能における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-2554 2010-09-2 14:06 2010-08-10 Show GitHub Exploit DB Packet Storm
252970 6.8 警告 マイクロソフト - Windows のサービスのトレース機能における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-2555 2010-09-2 14:06 2010-08-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266111 9.8 CRITICAL
Network
google android decoder/impeg2d_dec_hdr.c in mediaserver in Android 6.x before 2016-04-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file t… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-0835 2024-11-21 11:42 2016-04-18 Show GitHub Exploit DB Packet Storm
266112 8.4 HIGH
Local
google android An unspecified media codec in mediaserver in Android 6.x before 2016-04-01 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted media file,… CWE-20
 Improper Input Validation 
CVE-2016-0834 2024-11-21 11:42 2016-04-18 Show GitHub Exploit DB Packet Storm
266113 9.8 CRITICAL
Network
dell emc_unisphere An HTTP servlet in vApp Manager in EMC Unisphere for VMAX Virtual Appliance before 8.2.0 allows remote attackers to write to arbitrary files via a crafted pathname. CWE-20
 Improper Input Validation 
CVE-2016-0889 2024-11-21 11:42 2016-04-15 Show GitHub Exploit DB Packet Storm
266114 5.9 MEDIUM
Network
fedoraproject
opensuse
libssh2
debian
fedora
opensuse
libssh2
debian_linux
The diffie_hellman_sha256 function in kex.c in libssh2 before 1.7.0 improperly truncates secrets to 128 or 256 bits, which makes it easier for man-in-the-middle attackers to decrypt or intercept SSH … CWE-200
Information Exposure
CVE-2016-0787 2024-11-21 11:42 2016-04-14 Show GitHub Exploit DB Packet Storm
266115 4.3 MEDIUM
Network
openstack image_registry_and_delivery_service_\(glance\) OpenStack Image Service (Glance) before 2015.1.3 (kilo) and 11.0.x before 11.0.2 (liberty), when show_multiple_locations is enabled, allow remote authenticated users to change image status and upload… CWE-284
Improper Access Control
CVE-2016-0757 2024-11-21 11:42 2016-04-14 Show GitHub Exploit DB Packet Storm
266116 5.9 MEDIUM
Network
redhat
canonical
libssh
fedoraproject
debian
enterprise_linux
ubuntu_linux
libssh
fedora
debian_linux
libssh before 0.7.3 improperly truncates ephemeral secrets generated for the (1) diffie-hellman-group1 and (2) diffie-hellman-group14 key exchange methods to 128 bits, which makes it easier for man-i… CWE-200
Information Exposure
CVE-2016-0739 2024-11-21 11:42 2016-04-14 Show GitHub Exploit DB Packet Storm
266117 6.5 MEDIUM
Network
python
debian
pillow
debian_linux
Buffer overflow in the ImagingFliDecode function in libImaging/FliDecode.c in Pillow before 3.1.1 allows remote attackers to cause a denial of service (crash) via a crafted FLI file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-0775 2024-11-21 11:42 2016-04-14 Show GitHub Exploit DB Packet Storm
266118 6.5 MEDIUM
Network
python
debian
pillow
debian_linux
Buffer overflow in the ImagingLibTiffDecode function in libImaging/TiffDecode.c in Pillow before 3.1.1 allows remote attackers to overwrite memory via a crafted TIFF file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-0740 2024-11-21 11:42 2016-04-14 Show GitHub Exploit DB Packet Storm
266119 5.9 MEDIUM
Network
dell bsafe_crypto-j
bsafe_ssl-c
bsafe_crypto-c-micro-edition
bsafe_micro-edition-suite
bsafe_ssl-j
EMC RSA BSAFE Micro Edition Suite (MES) 4.0.x and 4.1.x before 4.1.5, RSA BSAFE Crypto-C Micro Edition (CCME) 4.0.x and 4.1.x before 4.1.3, RSA BSAFE Crypto-J before 6.2.1, RSA BSAFE SSL-J before 6.2… CWE-200
Information Exposure
CVE-2016-0887 2024-11-21 11:42 2016-04-13 Show GitHub Exploit DB Packet Storm
266120 8.8 HIGH
Network
apache struts Apache Struts 2.x before 2.3.28 allows remote attackers to execute arbitrary code via a "%{}" sequence in a tag attribute, aka forced double OGNL evaluation. CWE-20
 Improper Input Validation 
CVE-2016-0785 2024-11-21 11:42 2016-04-13 Show GitHub Exploit DB Packet Storm