Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
256451 4.3 警告 アップル
Ruby on Rails project
- Ruby on Rails におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3009 2010-04-16 16:58 2009-09-8 Show GitHub Exploit DB Packet Storm
256452 7.5 危険 アップル
Ruby on Rails project
- Ruby on Rails のダイジェスト認証における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2009-2422 2010-04-16 16:57 2009-07-10 Show GitHub Exploit DB Packet Storm
256453 6.8 警告 アップル - Apple Mac OS X の QuickTime におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0526 2010-04-16 16:57 2010-03-29 Show GitHub Exploit DB Packet Storm
256454 6.8 警告 アップル - Apple Mac OS X の QuickTime におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0520 2010-04-16 16:57 2010-03-29 Show GitHub Exploit DB Packet Storm
256455 6.8 警告 アップル - Apple Mac OS X の QuickTime における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-0519 2010-04-16 16:57 2010-03-29 Show GitHub Exploit DB Packet Storm
256456 6.8 警告 アップル - Apple Mac OS X の QuickTime における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-0518 2010-04-16 16:56 2010-03-29 Show GitHub Exploit DB Packet Storm
256457 6.8 警告 アップル - Apple Mac OS X の QuickTime におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0517 2010-04-16 16:56 2010-03-29 Show GitHub Exploit DB Packet Storm
256458 6.8 警告 アップル - Apple Mac OS X の QuickTime におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0516 2010-04-15 18:39 2010-03-29 Show GitHub Exploit DB Packet Storm
256459 6.8 警告 アップル - Apple Mac OS X の QuickTime における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2010-0515 2010-04-15 18:39 2010-03-29 Show GitHub Exploit DB Packet Storm
256460 6.8 警告 アップル - Apple Mac OS X の QuickTime におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-0514 2010-04-15 18:38 2010-03-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
265761 9.8 CRITICAL
Network
xmlsoft
apple
fedoraproject
libxslt
icloud
itunes
fedora
libxslt in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4608 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm
265762 9.8 CRITICAL
Network
xmlsoft
apple
fedoraproject
libxslt
iphone_os
tvos
mac_os_x
watchos
icloud
itunes
fedora
libxslt in Apple iOS before 9.3.3, OS X before 10.11.6, iTunes before 12.4.2 on Windows, iCloud before 5.2.1 on Windows, tvOS before 9.2.2, and watchOS before 2.2.2 allows remote attackers to cause a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4607 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm
265763 6.5 MEDIUM
Network
apple iphone_os Calendar in Apple iOS before 9.3.3 allows remote attackers to cause a denial of service (NULL pointer dereference and device restart) via a crafted invitation. CWE-476
 NULL Pointer Dereference
CVE-2016-4605 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm
265764 5.4 MEDIUM
Network
apple safari Safari in Apple iOS before 9.3.3 allows remote attackers to spoof the displayed URL via an HTTP response specifying redirection to an invalid TCP port number. CWE-601
Open Redirect
CVE-2016-4604 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm
265765 4.3 MEDIUM
Network
apple iphone_os Web Media in Apple iOS before 9.3.3 allows attackers to bypass the Private Browsing protection mechanism and obtain sensitive video URL information by leveraging Safari View Controller misbehavior. CWE-254
 7PK - Security Features
CVE-2016-4603 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm
265766 8.8 HIGH
Network
apple mac_os_x QuickTime in Apple OS X before 10.11.6 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted FlashPix bitmap image, a different vulnerabilit… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4602 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm
265767 8.8 HIGH
Network
apple mac_os_x QuickTime in Apple OS X before 10.11.6 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted SGI image. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4601 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm
265768 8.8 HIGH
Network
apple mac_os_x QuickTime in Apple OS X before 10.11.6 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted FlashPix bitmap image, a different vulnerabilit… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4600 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm
265769 7.8 HIGH
Local
apple mac_os_x QuickTime in Apple OS X before 10.11.6 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted Photoshop document. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4599 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm
265770 9.8 CRITICAL
Network
apple mac_os_x QuickTime in Apple OS X before 10.11.6 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via a crafted image. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4598 2024-11-21 11:52 2016-07-22 Show GitHub Exploit DB Packet Storm