Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
255261 6.8 警告 The PHP Group - PHP の Zend Engine におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-4697 2011-02-18 14:35 2010-09-18 Show GitHub Exploit DB Packet Storm
255262 1 注意 サン・マイクロシステムズ - Oracle Sun Java System Portal Server のプロキシにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-4431 2011-02-18 14:30 2011-01-18 Show GitHub Exploit DB Packet Storm
255263 3.6 注意 オラクル - Oracle Solaris 9 の XScreenSaver における脆弱性 CWE-noinfo
情報不足
CVE-2010-3586 2011-02-18 14:28 2011-01-18 Show GitHub Exploit DB Packet Storm
255264 3.6 注意 オラクル - Oracle Solaris 10 の Fault Manager Daemon における脆弱性 CWE-noinfo
情報不足
CVE-2010-4460 2011-02-18 14:11 2011-01-18 Show GitHub Exploit DB Packet Storm
255265 4.1 警告 オラクル - Oracle Solaris 11 Express の ZFS における脆弱性 CWE-noinfo
情報不足
CVE-2010-4458 2011-02-18 14:08 2011-01-18 Show GitHub Exploit DB Packet Storm
255266 4.1 警告 オラクル - Oracle Solaris の libc における脆弱性 CWE-noinfo
情報不足
CVE-2010-4415 2011-02-18 14:06 2011-01-18 Show GitHub Exploit DB Packet Storm
255267 4.3 警告 サン・マイクロシステムズ - Oracle Sun Java System Communications Express の Web メールにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-4456 2011-02-18 14:03 2011-01-18 Show GitHub Exploit DB Packet Storm
255268 4.3 警告 サン・マイクロシステムズ - Sun Java System Communications Express におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1227 2011-02-18 14:00 2010-04-1 Show GitHub Exploit DB Packet Storm
255269 10 危険 IBM - IBM DB2 UDB の Administration Server コンポーネントにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-3731 2011-02-17 18:09 2010-10-5 Show GitHub Exploit DB Packet Storm
255270 5 警告 IBM - IBM DB2 の SYSIBMADM スキーマにおける重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-3197 2011-02-17 18:08 2010-08-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
264401 5.9 MEDIUM
Network
mozilla firefox
firefox_esr
Add-on updates failed to verify that the add-on ID inside the signed package matched the ID of the add-on being updated. An attacker who could perform a man-in-the-middle attack on the user's connect… CWE-295
Improper Certificate Validation 
CVE-2016-9064 2024-11-21 12:00 2018-06-12 Show GitHub Exploit DB Packet Storm
264402 9.8 CRITICAL
Network
mozilla
debian
python
firefox
debian_linux
python
An integer overflow during the parsing of XML using the Expat library. This vulnerability affects Firefox < 50. CWE-190
 Integer Overflow or Wraparound
CVE-2016-9063 2024-11-21 12:00 2018-06-12 Show GitHub Exploit DB Packet Storm
264403 3.3 LOW
Local
mozilla firefox Private browsing mode leaves metadata information, such as URLs, for sites visited in "browser.db" and "browser.db-wal" files within the Firefox profile after the mode is exited. Note: This issue onl… CWE-200
Information Exposure
CVE-2016-9062 2024-11-21 12:00 2018-06-12 Show GitHub Exploit DB Packet Storm
264404 7.5 HIGH
Network
mozilla firefox A previously installed malicious Android application which defines a specific signature-level permissions used by Firefox can access API keys meant for Firefox only. Note: This issue only affects Fir… CWE-275
 Permission Issues
CVE-2016-9061 2024-11-21 12:00 2018-06-12 Show GitHub Exploit DB Packet Storm
264405 5.9 MEDIUM
Network
ntp
freebsd
hpe
siemens
ntp
freebsd
hpux-ntp
simatic_net_cp_443-1_opc_ua_firmware
An exploitable denial of service vulnerability exists in the origin timestamp check functionality of ntpd 4.2.8p9. A specially crafted unauthenticated network packet can be used to reset the expected… CWE-20
 Improper Input Validation 
CVE-2016-9042 2024-11-21 12:00 2018-06-5 Show GitHub Exploit DB Packet Storm
264406 10.0 CRITICAL
Network
redlion sixnet-managed_industrial_switches_firmware
stride-managed_ethernet_switches_firmware
A hard-coded cryptographic key vulnerability was identified in Red Lion Controls Sixnet-Managed Industrial Switches running firmware Version 5.0.196 and Stride-Managed Ethernet Switches running firmw… CWE-798
 Use of Hard-coded Credentials
CVE-2016-9335 2024-11-21 12:00 2018-05-9 Show GitHub Exploit DB Packet Storm
264407 7.8 HIGH
Local
corel coreldraw An out of bound write vulnerability exists in the EMF parsing functionality of CorelDRAW X8 (CdrGfx - Corel Graphics Engine (64-Bit) - 18.1.0.661). A specially crafted EMF file can cause a vulnerabil… CWE-787
 Out-of-bounds Write
CVE-2016-9043 2024-11-21 12:00 2018-04-25 Show GitHub Exploit DB Packet Storm
264408 7.8 HIGH
Local
sophos invincea-x An exploitable double fetch vulnerability exists in the SboxDrv.sys driver functionality of Invincea-X 6.1.3-24058. A specially crafted input buffer and race condition can result in kernel memory cor… CWE-362
Race Condition
CVE-2016-9038 2024-11-21 12:00 2018-04-25 Show GitHub Exploit DB Packet Storm
264409 7.8 HIGH
Local
symantec endpoint_protection Symantec Endpoint Protection clients place detected malware in quarantine as part of the intended product functionality. The quarantine logs can be exported for review by the user in a variety of for… CWE-20
 Improper Input Validation 
CVE-2016-9094 2024-11-21 12:00 2018-04-17 Show GitHub Exploit DB Packet Storm
264410 7.0 HIGH
Local
symantec endpoint_protection A version of the SymEvent Driver that shipped with Symantec Endpoint Protection 12.1 RU6 MP6 and earlier fails to properly sanitize logged-in user input. SEP 14.0 and later are not impacted by this i… CWE-20
 Improper Input Validation 
CVE-2016-9093 2024-11-21 12:00 2018-04-17 Show GitHub Exploit DB Packet Storm