|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 2, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 254461 | 9.3 | 危険 | The GIMP Team レッドハット |
- | GIMP の SPHERE DESIGNER プラグインにおけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-4541 | 2011-06-13 14:42 | 2011-01-7 | Show | GitHub Exploit DB Packet Storm |
| 254462 | 6.8 | 警告 | The GIMP Team レッドハット |
- | GIMP の "LIGHTING EFFECTS > LIGHT" プラグインにおけるスタックベースのバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2010-4540 | 2011-06-13 14:41 | 2011-01-7 | Show | GitHub Exploit DB Packet Storm |
| 254463 | 10 | 危険 | ISC, Inc. サイバートラスト株式会社 ターボリナックス インターネットイニシアティブ センチュリー・システムズ レッドハット |
- | ISC DHCP dhclient におけるバッファオーバーフローの脆弱性 |
CWE-119
バッファエラー |
CVE-2009-0692 | 2011-06-10 10:04 | 2009-07-15 | Show | GitHub Exploit DB Packet Storm |
| 254464 | 5 | 警告 | ISC, Inc. ターボリナックス |
- | ISC DHCP にサービス運用妨害 (DoS) の脆弱性 |
CWE-20
不適切な入力確認 |
CVE-2010-3616 | 2011-06-10 10:04 | 2010-12-14 | Show | GitHub Exploit DB Packet Storm |
| 254465 | 7.2 | 危険 | サイバートラスト株式会社 VMware Linux レッドハット |
- | Linux kernel の do_anonymous_page 関数における任意のコードを実行される脆弱性 |
CWE-94
コード・インジェクション |
CVE-2010-2240 | 2011-06-10 10:03 | 2010-08-30 | Show | GitHub Exploit DB Packet Storm |
| 254466 | 7.2 | 危険 | サイバートラスト株式会社 VMware Linux レッドハット |
- | Linux kernel の gdth_read_event 関数における権限昇格の脆弱性 |
CWE-Other
その他 |
CVE-2009-3080 | 2011-06-10 10:03 | 2009-11-20 | Show | GitHub Exploit DB Packet Storm |
| 254467 | 7.1 | 危険 | サイバートラスト株式会社 VMware Linux レッドハット |
- | Linux kernel の net/ipv4/tcp_input.c におけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2010-1188 | 2011-06-10 10:02 | 2010-03-30 | Show | GitHub Exploit DB Packet Storm |
| 254468 | 7.8 | 危険 | サイバートラスト株式会社 VMware Linux レッドハット |
- | Linux kernel の e1000 ドライバにおけるパケットフィルタの制限を回避される脆弱性 |
CWE-189
数値処理の問題 |
CVE-2009-4536 | 2011-06-10 10:02 | 2010-01-12 | Show | GitHub Exploit DB Packet Storm |
| 254469 | 9.3 | 危険 | - | Google Chrome にて使用される WebKit の WebCore における任意のコードを実行される脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2010-1772 | 2011-06-10 09:57 | 2010-06-8 | Show | GitHub Exploit DB Packet Storm | |
| 254470 | 6.8 | 警告 | - | Google Chrome にて使用される WebKit の WebCore におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2010-1767 | 2011-06-10 09:57 | 2010-04-20 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 3, 2026, 4:18 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 264531 | 6.1 |
MEDIUM
Network |
mozilla | firefox | Mozilla's add-ons SDK had a world-accessible resource with an HTML injection vulnerability. If an additional vulnerability allowed this resource to be loaded as a document it could allow injecting co… |
CWE-79
Cross-site Scripting |
CVE-2016-9903 | 2024-11-21 12:01 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 264532 | 7.5 |
HIGH
Network |
redhat mozilla |
enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation enterprise_linux_server_aus enterprise_linux_server_eus firefox firefox_esr |
The Pocket toolbar button, once activated, listens for events fired from it's own pages but does not verify the origin of incoming events. This allows content from other origins to fire events and in… |
CWE-346
Origin Validation Error |
CVE-2016-9902 | 2024-11-21 12:01 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 264533 | 9.8 |
CRITICAL
Network |
redhat mozilla |
enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation enterprise_linux_aus enterprise_linux_eus firefox firefox_esr |
HTML tags received from the Pocket server will be processed without sanitization and any JavaScript code executed will be run in the "about:pocket-saved" (unprivileged) page, giving it access to Pock… |
CWE-20
Improper Input Validation |
CVE-2016-9901 | 2024-11-21 12:01 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 264534 | 9.8 |
CRITICAL
Network |
debian redhat mozilla |
debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation enterprise_linux enterprise_linux_server_aus enterprise_linux_server_eus firefox thu… |
Use-after-free while manipulating DOM events and removing audio elements due to errors in the handling of node adoption. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and Thunderbird… |
CWE-416
Use After Free |
CVE-2016-9899 | 2024-11-21 12:01 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 264535 | 9.8 |
CRITICAL
Network |
debian redhat mozilla |
debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation enterprise_linux enterprise_linux_server_aus enterprise_linux_server_eus thunderbird | Use-after-free resulting in potentially exploitable crash when manipulating DOM subtrees in the Editor. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and Thunderbird < 45.6. |
CWE-416
Use After Free |
CVE-2016-9898 | 2024-11-21 12:01 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 264536 | 7.5 |
HIGH
Network |
redhat debian mozilla |
enterprise_linux_server enterprise_linux_workstation debian_linux firefox firefox_esr thunderbird |
Memory corruption resulting in a potentially exploitable crash during WebGL functions using a vector constructor with a varying array within libGLES. This vulnerability affects Firefox < 50.1, Firefo… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2016-9897 | 2024-11-21 12:01 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 264537 | 7.5 |
HIGH
Network |
debian redhat mozilla |
debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation enterprise_linux enterprise_linux_server_aus enterprise_linux_server_eus thunderbird | External resources that should be blocked when loaded by SVG images can bypass security restrictions through the use of "data:" URLs. This could allow for cross-domain data leakage. This vulnerabilit… |
CWE-254
7PK - Security Features |
CVE-2016-9900 | 2024-11-21 12:01 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 264538 | 8.1 |
HIGH
Network |
mozilla | firefox | Use-after-free while manipulating the "navigator" object within WebVR. Note: WebVR is not currently enabled by default. This vulnerability affects Firefox < 50.1. |
CWE-416
Use After Free |
CVE-2016-9896 | 2024-11-21 12:01 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 264539 | 6.1 |
MEDIUM
Network |
debian redhat mozilla |
debian_linux enterprise_linux_desktop enterprise_linux_server enterprise_linux_workstation enterprise_linux enterprise_linux_server_aus enterprise_linux_server_eus thunderbird | Event handlers on "marquee" elements were executed despite a strict Content Security Policy (CSP) that disallowed inline JavaScript. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and… |
CWE-254
7PK - Security Features |
CVE-2016-9895 | 2024-11-21 12:01 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |
| 264540 | 7.5 |
HIGH
Network |
mozilla | firefox | A buffer overflow in SkiaGl caused when a GrGLBuffer is truncated during allocation. Later writers will overflow the buffer, resulting in a potentially exploitable crash. This vulnerability affects F… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2016-9894 | 2024-11-21 12:01 | 2018-06-12 | Show | GitHub Exploit DB Packet Storm |