Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
254351 2.6 注意 アップル - 複数の Apple 製品上で稼働する Application-Level Gateway におけるデバイスの IP アドレスを使用される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-0039 2011-01-19 16:34 2010-12-22 Show GitHub Exploit DB Packet Storm
254352 - - Invensys - Wonderware InBatch と I/A Series Batch の database lock manager service (lm_tcp) にバッファオーバーフローの脆弱性 - - 2011-01-19 15:54 2010-12-16 Show GitHub Exploit DB Packet Storm
254353 6.9 警告 Exim Development
レッドハット
- Exim における権限昇格の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-4345 2011-01-19 15:41 2010-12-14 Show GitHub Exploit DB Packet Storm
254354 4 警告 マイクロソフト - x64 プラットフォーム上で稼働している Microsoft Exchange Server 2007 におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-3937 2011-01-19 15:31 2010-12-14 Show GitHub Exploit DB Packet Storm
254355 9.3 危険 マイクロソフト - Microsoft Office XP および Office Converter Pack における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-3952 2011-01-19 15:28 2010-12-14 Show GitHub Exploit DB Packet Storm
254356 9.3 危険 マイクロソフト - Microsoft Office XP および Office Converter Pack におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-3951 2011-01-18 14:26 2010-12-14 Show GitHub Exploit DB Packet Storm
254357 9.3 危険 マイクロソフト - 複数の Microsoft 製品における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-3950 2011-01-18 14:24 2010-12-14 Show GitHub Exploit DB Packet Storm
254358 9.3 危険 マイクロソフト - Microsoft Windows XP および Office Converter Pack におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-3949 2011-01-18 14:22 2010-12-14 Show GitHub Exploit DB Packet Storm
254359 9.3 危険 マイクロソフト - 複数の Microsoft 製品におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-3947 2011-01-18 14:20 2010-12-14 Show GitHub Exploit DB Packet Storm
254360 9.3 危険 マイクロソフト - 複数の Microsoft 製品における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-3946 2011-01-18 14:18 2010-12-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
265131 9.8 CRITICAL
Network
fedoraproject
php
opensuse
fedora
php
leap
The grapheme_strpos function in ext/intl/grapheme/grapheme_string.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 allows remote attackers to cause a denial of service (out-of-bounds… NVD-CWE-Other
CVE-2016-4541 2024-11-21 11:52 2016-05-22 Show GitHub Exploit DB Packet Storm
265132 9.8 CRITICAL
Network
fedoraproject
opensuse
php
fedora
leap
php
The grapheme_stripos function in ext/intl/grapheme/grapheme_string.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 allows remote attackers to cause a denial of service (out-of-bound… NVD-CWE-Other
CVE-2016-4540 2024-11-21 11:52 2016-05-22 Show GitHub Exploit DB Packet Storm
265133 9.8 CRITICAL
Network
php
opensuse
fedoraproject
php
leap
fedora
The xml_parse_into_struct function in ext/xml/xml.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 allows remote attackers to cause a denial of service (buffer under-read and segment… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4539 2024-11-21 11:52 2016-05-22 Show GitHub Exploit DB Packet Storm
265134 9.8 CRITICAL
Network
php
fedoraproject
opensuse
php
fedora
leap
The bcpowmod function in ext/bcmath/bcmath.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 modifies certain data structures without considering whether they are copies of the _zero_… CWE-20
 Improper Input Validation 
CVE-2016-4538 2024-11-21 11:52 2016-05-22 Show GitHub Exploit DB Packet Storm
265135 9.8 CRITICAL
Network
php
opensuse
fedoraproject
php
leap
fedora
The bcpowmod function in ext/bcmath/bcmath.c in PHP before 5.5.35, 5.6.x before 5.6.21, and 7.x before 7.0.6 accepts a negative integer for the scale argument, which allows remote attackers to cause … CWE-20
 Improper Input Validation 
CVE-2016-4537 2024-11-21 11:52 2016-05-22 Show GitHub Exploit DB Packet Storm
265136 6.0 MEDIUM
Local
qemu
canonical
debian
qemu
ubuntu_linux
debian_linux
The get_cmd function in hw/scsi/esp.c in the 53C9X Fast SCSI Controller (FSC) support in QEMU does not properly check DMA length, which allows local guest OS administrators to cause a denial of servi… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4441 2024-11-21 11:52 2016-05-20 Show GitHub Exploit DB Packet Storm
265137 6.7 MEDIUM
Local
canonical
qemu
debian
ubuntu_linux
qemu
debian_linux
The esp_reg_write function in hw/scsi/esp.c in the 53C9X Fast SCSI Controller (FSC) support in QEMU does not properly check command buffer length, which allows local guest OS administrators to cause … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4439 2024-11-21 11:52 2016-05-20 Show GitHub Exploit DB Packet Storm
265138 8.4 HIGH
Local
oracle
xen
vm_server
xen
The guest_walk_tables function in arch/x86/mm/guest_walk.c in Xen 4.6.x and earlier does not properly handle the Page Size (PS) page table entry bit at the L4 and L3 page table levels, which might al… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-4480 2024-11-21 11:52 2016-05-18 Show GitHub Exploit DB Packet Storm
265139 7.5 HIGH
Network
jansson_project jansson Jansson 2.7 and earlier allows context-dependent attackers to cause a denial of service (deep recursion, stack consumption, and crash) via crafted JSON data. CWE-20
 Improper Input Validation 
CVE-2016-4425 2024-11-21 11:52 2016-05-17 Show GitHub Exploit DB Packet Storm
265140 5.3 MEDIUM
Network
openafs openafs The client in OpenAFS before 1.6.17 does not properly initialize the (1) AFSStoreStatus, (2) AFSStoreVolumeStatus, (3) VldbListByAttributes, and (4) ListAddrByAttributes structures, which might allow… CWE-200
Information Exposure
CVE-2016-4536 2024-11-21 11:52 2016-05-14 Show GitHub Exploit DB Packet Storm