Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
257651 10 危険 マイクロソフト - Microsoft Windows の TCP/IP 実装における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2010-0239 2010-03-1 11:36 2010-02-9 Show GitHub Exploit DB Packet Storm
257652 9.3 危険 マイクロソフト - Microsoft Windows の SMB クライアント実装における権限昇格の脆弱性 CWE-362
競合状態
CVE-2010-0017 2010-03-1 11:35 2010-02-9 Show GitHub Exploit DB Packet Storm
257653 9.3 危険 マイクロソフト - Microsoft Windows の SMB クライアント実装における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2010-0016 2010-03-1 11:35 2010-02-9 Show GitHub Exploit DB Packet Storm
257654 5 警告 日立 - uCosminexus Portal Framework におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
- 2010-02-26 11:36 2010-01-29 Show GitHub Exploit DB Packet Storm
257655 2.6 注意 tDiary開発プロジェクト - tDiary 付属のプラグイン tb-send.rb におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-0726 2010-02-25 15:03 2010-02-25 Show GitHub Exploit DB Packet Storm
257656 4.3 警告 サン・マイクロシステムズ - Sun ONE/iPlanet Web Server における HTTP リクエストを非表示にされる脆弱性 CWE-Other
その他
CVE-2003-1578 2010-02-25 12:36 2003-11-14 Show GitHub Exploit DB Packet Storm
257657 2.6 注意 サン・マイクロシステムズ - Sun ONE/iPlanet Web Server におけるログファイルに任意のテキストを挿入される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2003-1577 2010-02-25 12:36 2003-11-14 Show GitHub Exploit DB Packet Storm
257658 5 警告 IBM - IBM WebSphere Application Server の Single Sign-on 機能における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2010-0563 2010-02-25 12:35 2010-02-5 Show GitHub Exploit DB Packet Storm
257659 5 警告 アップル - Apple Safari の WebKit における任意の Web サイトにリクエストされる脆弱性 CWE-Other
その他
CVE-2009-2841 2010-02-25 12:33 2009-11-11 Show GitHub Exploit DB Packet Storm
257660 10 危険 アップル - Apple Safari の WebKit における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2009-3384 2010-02-25 12:33 2009-11-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267091 9.8 CRITICAL
Network
fedoraproject
x.org
fedora
libx11
The XGetImage function in X.org libX11 before 1.6.4 might allow remote X servers to gain privileges via vectors involving image type and geometry, which triggers out-of-bounds read operations. CWE-264
CWE-787
Permissions, Privileges, and Access Controls
 Out-of-bounds Write
CVE-2016-7942 2024-11-21 11:58 2016-12-14 Show GitHub Exploit DB Packet Storm
267092 5.5 MEDIUM
Local
mariadb
oracle
wolfssl
debian
mariadb
mysql
wolfssl
debian_linux
The C software implementation of AES Encryption and Decryption in wolfSSL (formerly CyaSSL) before 3.9.10 makes it easier for local users to discover AES keys by leveraging cache-bank timing differen… NVD-CWE-noinfo
CVE-2016-7440 2024-11-21 11:58 2016-12-14 Show GitHub Exploit DB Packet Storm
267093 5.5 MEDIUM
Local
wolfssl wolfssl The C software implementation of RSA in wolfSSL (formerly CyaSSL) before 3.9.10 makes it easier for local users to discover RSA keys by leveraging cache-bank hit differences. CWE-310
Cryptographic Issues
CVE-2016-7439 2024-11-21 11:58 2016-12-14 Show GitHub Exploit DB Packet Storm
267094 5.5 MEDIUM
Local
wolfssl wolfssl The C software implementation of ECC in wolfSSL (formerly CyaSSL) before 3.9.10 makes it easier for local users to discover RSA keys by leveraging cache-bank hit differences. CWE-310
Cryptographic Issues
CVE-2016-7438 2024-11-21 11:58 2016-12-14 Show GitHub Exploit DB Packet Storm
267095 6.0 MEDIUM
Local
qemu
opensuse
qemu
leap
Memory leak in the ehci_process_itd function in hw/usb/hcd-ehci.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (memory consumption) via a large numbe… CWE-772
 Missing Release of Resource after Effective Lifetime
CVE-2016-7995 2024-11-21 11:58 2016-12-10 Show GitHub Exploit DB Packet Storm
267096 6.0 MEDIUM
Local
qemu
opensuse
qemu
leap
Memory leak in the virtio_gpu_resource_create_2d function in hw/display/virtio-gpu.c in QEMU (aka Quick Emulator) allows local guest OS administrators to cause a denial of service (memory consumption… CWE-772
 Missing Release of Resource after Effective Lifetime
CVE-2016-7994 2024-11-21 11:58 2016-12-10 Show GitHub Exploit DB Packet Storm
267097 6.0 MEDIUM
Local
qemu
opensuse
redhat
qemu
leap
openstack
virtualization
Memory leak in the usb_xhci_exit function in hw/usb/hcd-xhci.c in QEMU (aka Quick Emulator), when the xhci uses msix, allows local guest OS administrators to cause a denial of service (memory consump… CWE-772
 Missing Release of Resource after Effective Lifetime
CVE-2016-7466 2024-11-21 11:58 2016-12-10 Show GitHub Exploit DB Packet Storm
267098 5.5 MEDIUM
Local
intel proset\/wireless_software_and_drivers Buffer overflow in Intel PROSet/Wireless Software and Drivers in versions before 19.20.3 allows a local user to crash iframewrk.exe causing a potential denial of service. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-8104 2024-11-21 11:58 2016-12-9 Show GitHub Exploit DB Packet Storm
267099 6.7 MEDIUM
Local
intel city_bios
canyon_bios
swift_canyon_bios
citry_bios
SMM call out in all Intel Branded NUC Kits allows a local privileged user to access the System Management Mode and take full control of the platform. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-8103 2024-11-21 11:58 2016-12-9 Show GitHub Exploit DB Packet Storm
267100 7.8 HIGH
Local
intel wireless_bluetooth_drivers Unquoted service path vulnerability in Intel Wireless Bluetooth Drivers 16.x, 17.x, and before 18.1.1607.3129 allows local users to launch processes with elevated privileges. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-8102 2024-11-21 11:58 2016-12-9 Show GitHub Exploit DB Packet Storm