Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
256231 9.3 危険 Foxit Software Inc - Foxit Reader に任意のコード実行が可能な脆弱性 CWE-94
コード・インジェクション
CVE-2010-1239 2010-04-27 16:10 2010-04-6 Show GitHub Exploit DB Packet Storm
256232 10 危険 ヒューレット・パッカード - Broadcom NetXtreme 管理用ファームウェアにバッファオーバーフローの脆弱性 CWE-noinfo
情報不足
CVE-2010-0104 2010-04-27 16:09 2010-03-31 Show GitHub Exploit DB Packet Storm
256233 6.8 警告 アップル - AirPort Utility におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-2822 2010-04-27 16:09 2010-03-31 Show GitHub Exploit DB Packet Storm
256234 9.3 危険 アップル - Apple Safari の ColorSync における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-0040 2010-04-27 15:20 2010-03-15 Show GitHub Exploit DB Packet Storm
256235 4 警告 Squid-cache.org
サイバートラスト株式会社
ターボリナックス
レッドハット
- Squid の lib/rfc1035.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-0308 2010-04-27 15:20 2010-01-28 Show GitHub Exploit DB Packet Storm
256236 6.8 警告 アップル - Apple Mac OS X の QuickDraw Manager におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2837 2010-04-27 15:20 2009-11-9 Show GitHub Exploit DB Packet Storm
256237 5 警告 Squid-cache.org
サイバートラスト株式会社
ターボリナックス
レッドハット
- Squid の strListGetItem 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2009-2855 2010-04-27 15:19 2009-08-18 Show GitHub Exploit DB Packet Storm
256238 4.3 警告 アップル
サイバートラスト株式会社
LibTIFF
サン・マイクロシステムズ
レッドハット
- libtiff の LZWDecodeCompat 関数におけるバッファアンダーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-2285 2010-04-27 15:19 2009-07-1 Show GitHub Exploit DB Packet Storm
256239 4.3 警告 サイバートラスト株式会社
レッドハット
- Red Hat および MIRACLE LINUX の sendmail におけるメール送信元を偽装される脆弱性 - CVE-2006-7176 2010-04-27 15:18 2007-03-27 Show GitHub Exploit DB Packet Storm
256240 6.9 警告 アップル - Windows 上で稼働する Apple iTunes のインストールパッケージにおける権限昇格の脆弱性 CWE-362
競合状態
CVE-2010-0532 2010-04-26 16:59 2010-03-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
278751 5.5 MEDIUM
Local
imagemagick
suse
novell
opensuse_project
opensuse
canonical
imagemagick
linux_enterprise_server
leap
linux_enterprise_software_development_kit
suse_linux_enterprise_software_development_kit
linux_enterprise_debuginfo
linux_enterprise_worksta…
Memory leak in coders/rle.c in ImageMagick allows remote attackers to cause a denial of service (memory consumption) via a crafted rle file. CWE-399
 Resource Management Errors
CVE-2014-9853 2024-11-21 11:21 2017-03-17 Show GitHub Exploit DB Packet Storm
278752 9.8 CRITICAL
Network
imagemagick
suse
opensuse
imagemagick
linux_enterprise_software_development_kit
linux_enterprise_server
linux_enterprise_workstation_extension
linux_enterprise_desktop
opensuse
leap
distribute-cache.c in ImageMagick re-uses objects after they have been destroyed, which allows remote attackers to have unspecified impact via unspecified vectors. CWE-913
 Improper Control of Dynamically-Managed Code Resources
CVE-2014-9852 2024-11-21 11:21 2017-03-17 Show GitHub Exploit DB Packet Storm
278753 9.8 CRITICAL
Network
mcafee cloud_analysis_and_deconstructive_services Information disclosure vulnerability in McAfee (now Intel Security) Cloud Analysis and Deconstructive Services (CADS) 1.0.0.3x, 1.0.0.4d and earlier allows remote unauthenticated users to view, add, … CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-9921 2024-11-21 11:21 2017-03-15 Show GitHub Exploit DB Packet Storm
278754 5.9 MEDIUM
Network
mcafee application_control Unauthorized execution of binary vulnerability in McAfee (now Intel Security) McAfee Application Control (MAC) 6.0.0 before hotfix 9726, 6.0.1 before hotfix 9068, 6.1.0 before hotfix 692, 6.1.1 befor… CWE-284
Improper Access Control
CVE-2014-9920 2024-11-21 11:21 2017-03-15 Show GitHub Exploit DB Packet Storm
278755 5.5 MEDIUM
Local
busybox busybox The add_probe function in modutils/modprobe.c in BusyBox before 1.23.0 allows local users to bypass intended restrictions on loading kernel modules via a / (slash) character in a module name, as demo… CWE-20
 Improper Input Validation 
CVE-2014-9645 2024-11-21 11:21 2017-03-12 Show GitHub Exploit DB Packet Storm
278756 6.1 MEDIUM
Network
bilboplanet bilboplanet Multiple cross-site scripting (XSS) vulnerabilities in Bilboplanet 2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) tribe_name or (2) tags parameter in a tribes page requ… CWE-79
Cross-site Scripting
CVE-2014-9916 2024-11-21 11:21 2017-02-24 Show GitHub Exploit DB Packet Storm
278757 6.1 MEDIUM
Network
alinto sogo Multiple cross-site scripting (XSS) vulnerabilities in the Web Calendar in SOGo before 2.2.0 allow remote attackers to inject arbitrary web script or HTML via the (1) title of an appointment or (2) c… CWE-79
Cross-site Scripting
CVE-2014-9905 2024-11-21 11:21 2017-02-18 Show GitHub Exploit DB Packet Storm
278758 6.1 MEDIUM
Network
gosa_project gosa Cross-site scripting (XSS) vulnerability in the displayLogin function in html/index.php in GOsa allows remote attackers to inject arbitrary web script or HTML via the username. CWE-79
Cross-site Scripting
CVE-2014-9760 2024-11-21 11:21 2017-02-14 Show GitHub Exploit DB Packet Storm
278759 7.8 HIGH
Local
linux
google
linux_kernel
android
Race condition in the ip4_datagram_release_cb function in net/ipv4/datagram.c in the Linux kernel before 3.15.2 allows local users to gain privileges or cause a denial of service (use-after-free) by … CWE-362
CWE-416
Race Condition
 Use After Free
CVE-2014-9914 2024-11-21 11:21 2017-02-7 Show GitHub Exploit DB Packet Storm
278760 6.1 MEDIUM
Network
nodejs node.js The validator package before 2.0.0 for Node.js allows remote attackers to bypass the cross-site scripting (XSS) filter via hex-encoded characters. CWE-79
Cross-site Scripting
CVE-2014-9772 2024-11-21 11:21 2017-01-24 Show GitHub Exploit DB Packet Storm