Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253861 6.8 警告 MantisBT Group - MantisBT の bug_actiongroup_ext_page.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-3357 2011-09-27 11:17 2011-08-31 Show GitHub Exploit DB Packet Storm
253862 4.3 警告 MantisBT Group - MantisBT の filter_api.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2938 2011-09-27 11:15 2011-08-18 Show GitHub Exploit DB Packet Storm
253863 4.3 警告 MantisBT Group - MantisBT の config_defaults_inc.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-3356 2011-09-27 11:12 2011-07-31 Show GitHub Exploit DB Packet Storm
253864 10 危険 シスコシステムズ - Cisco Identity Services Engine における設定を変更される脆弱性 CWE-255
証明書・パスワード管理
CVE-2011-3290 2011-09-27 11:07 2011-09-20 Show GitHub Exploit DB Packet Storm
253865 4.3 警告 Roundcube.net - Roundcube Webmail の UI メッセージ機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2937 2011-09-27 11:05 2011-08-9 Show GitHub Exploit DB Packet Storm
253866 6.8 警告 AmmSoft - AmmSoft ScriptFTP にバッファオーバーフローの脆弱性 - CVE-2011-3976 2011-09-27 10:58 2011-09-21 Show GitHub Exploit DB Packet Storm
253867 10 危険 Measuresoft Development Ltd. - Measuresoft ScadaPro の service.exe におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-3490 2011-09-26 15:59 2011-09-16 Show GitHub Exploit DB Packet Storm
253868 4.6 警告 レッドハット - Red Hat Enterprise MRG の Cumin における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2011-2925 2011-09-26 15:43 2011-09-7 Show GitHub Exploit DB Packet Storm
253869 5 警告 Zoho Corporation - ManageEngine ServiceDesk Plus の encryptPassword 関数における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2011-1509 2011-09-26 15:42 2011-09-20 Show GitHub Exploit DB Packet Storm
253870 4.3 警告 Zoho Corporation - ManageEngine ServiceDesk Plus の SolutionSearch.do におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-1510 2011-09-26 15:41 2011-09-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
264591 6.5 MEDIUM
Network
mozilla firefox Two use-after-free errors during DOM operations resulting in potentially exploitable crashes. This vulnerability affects Firefox < 50. CWE-416
 Use After Free
CVE-2016-9067 2024-11-21 12:00 2018-06-12 Show GitHub Exploit DB Packet Storm
264592 7.5 HIGH
Network
mozilla
debian
firefox
thunderbird
firefox_esr
debian_linux
A buffer overflow resulting in a potentially exploitable crash due to memory allocation issues when handling large amounts of incoming data. This vulnerability affects Thunderbird < 45.5, Firefox ESR… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-9066 2024-11-21 12:00 2018-06-12 Show GitHub Exploit DB Packet Storm
264593 7.5 HIGH
Network
mozilla firefox The location bar in Firefox for Android can be spoofed by forcing a user into fullscreen mode, blocking its exiting, and creating of a fake location bar without any user notification. Note: This issu… CWE-20
 Improper Input Validation 
CVE-2016-9065 2024-11-21 12:00 2018-06-12 Show GitHub Exploit DB Packet Storm
264594 5.9 MEDIUM
Network
mozilla firefox
firefox_esr
Add-on updates failed to verify that the add-on ID inside the signed package matched the ID of the add-on being updated. An attacker who could perform a man-in-the-middle attack on the user's connect… CWE-295
Improper Certificate Validation 
CVE-2016-9064 2024-11-21 12:00 2018-06-12 Show GitHub Exploit DB Packet Storm
264595 9.8 CRITICAL
Network
mozilla
debian
python
firefox
debian_linux
python
An integer overflow during the parsing of XML using the Expat library. This vulnerability affects Firefox < 50. CWE-190
 Integer Overflow or Wraparound
CVE-2016-9063 2024-11-21 12:00 2018-06-12 Show GitHub Exploit DB Packet Storm
264596 3.3 LOW
Local
mozilla firefox Private browsing mode leaves metadata information, such as URLs, for sites visited in "browser.db" and "browser.db-wal" files within the Firefox profile after the mode is exited. Note: This issue onl… CWE-200
Information Exposure
CVE-2016-9062 2024-11-21 12:00 2018-06-12 Show GitHub Exploit DB Packet Storm
264597 7.5 HIGH
Network
mozilla firefox A previously installed malicious Android application which defines a specific signature-level permissions used by Firefox can access API keys meant for Firefox only. Note: This issue only affects Fir… CWE-275
 Permission Issues
CVE-2016-9061 2024-11-21 12:00 2018-06-12 Show GitHub Exploit DB Packet Storm
264598 5.9 MEDIUM
Network
ntp
freebsd
hpe
siemens
ntp
freebsd
hpux-ntp
simatic_net_cp_443-1_opc_ua_firmware
An exploitable denial of service vulnerability exists in the origin timestamp check functionality of ntpd 4.2.8p9. A specially crafted unauthenticated network packet can be used to reset the expected… CWE-20
 Improper Input Validation 
CVE-2016-9042 2024-11-21 12:00 2018-06-5 Show GitHub Exploit DB Packet Storm
264599 10.0 CRITICAL
Network
redlion sixnet-managed_industrial_switches_firmware
stride-managed_ethernet_switches_firmware
A hard-coded cryptographic key vulnerability was identified in Red Lion Controls Sixnet-Managed Industrial Switches running firmware Version 5.0.196 and Stride-Managed Ethernet Switches running firmw… CWE-798
 Use of Hard-coded Credentials
CVE-2016-9335 2024-11-21 12:00 2018-05-9 Show GitHub Exploit DB Packet Storm
264600 7.8 HIGH
Local
corel coreldraw An out of bound write vulnerability exists in the EMF parsing functionality of CorelDRAW X8 (CdrGfx - Corel Graphics Engine (64-Bit) - 18.1.0.661). A specially crafted EMF file can cause a vulnerabil… CWE-787
 Out-of-bounds Write
CVE-2016-9043 2024-11-21 12:00 2018-04-25 Show GitHub Exploit DB Packet Storm