Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226841 4.3 警告 phplemon - MyWeight におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3512 2012-12-20 19:28 2009-10-1 Show GitHub Exploit DB Packet Storm
226842 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech MMORPG Zone の view_news.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3505 2012-12-20 19:28 2009-09-30 Show GitHub Exploit DB Packet Storm
226843 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech Agent Zone の view_listing.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3497 2012-12-20 19:28 2009-09-30 Show GitHub Exploit DB Packet Storm
226844 4.3 警告 Vastal I-Tech & Co. - Vastal I-Tech DVD Zone の view_mag.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3496 2012-12-20 19:28 2009-09-30 Show GitHub Exploit DB Packet Storm
226845 7.5 危険 Vastal I-Tech & Co. - Vastal I-Tech DVD Zone の view_mag.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3495 2012-12-20 19:28 2009-09-30 Show GitHub Exploit DB Packet Storm
226846 6.8 警告 todor lazarov - T-HTB Manager の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3494 2012-12-20 19:28 2009-09-30 Show GitHub Exploit DB Packet Storm
226847 4.3 警告 zenas - Zenas PaoBacheca Guestbook におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3493 2012-12-20 19:28 2009-09-30 Show GitHub Exploit DB Packet Storm
226848 2.1 注意 ron jerome - Drupal 用の Bibliography モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3488 2012-12-20 19:28 2009-09-30 Show GitHub Exploit DB Packet Storm
226849 6.8 警告 TrustPort - TrustPort Antivirus などにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3482 2012-12-20 19:28 2009-09-30 Show GitHub Exploit DB Packet Storm
226850 5 警告 radactive - RADactive I-Load の WebCoreModule.ashx における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2009-3452 2012-12-20 19:28 2009-09-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196091 7.3 HIGH
Local
google android In ImportVCardActivity, there is a possible way to bypass user consent due to a tapjacking/overlay attack. This could lead to local escalation of privilege with User execution privileges needed. User… CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2021-0446 2024-11-21 14:42 2021-04-14 Show GitHub Exploit DB Packet Storm
196092 7.8 HIGH
Local
google android In start of WelcomeActivity.java, there is a possible residual profile due to a confused deputy. This could lead to local escalation of privilege with no additional execution privileges needed. User … NVD-CWE-Other
CVE-2021-0445 2024-11-21 14:42 2021-04-14 Show GitHub Exploit DB Packet Storm
196093 5.5 MEDIUM
Local
google android In onActivityResult of QuickContactActivity.java, there is an unnecessary return of an intent. This could lead to local information disclosure of contact data with no additional execution privileges … NVD-CWE-noinfo
CVE-2021-0444 2024-11-21 14:42 2021-04-14 Show GitHub Exploit DB Packet Storm
196094 4.7 MEDIUM
Local
google android In several functions of ScreenshotHelper.java and related files, there is a possible incorrectly saved screenshot due to a race condition. This could lead to local information disclosure across user … CWE-362
Race Condition
CVE-2021-0443 2024-11-21 14:42 2021-04-14 Show GitHub Exploit DB Packet Storm
196095 7.8 HIGH
Local
google android In updateInfo of android_hardware_input_InputApplicationHandle.cpp, there is a possible control of code flow due to a use after free. This could lead to local escalation of privilege with no addition… CWE-416
 Use After Free
CVE-2021-0442 2024-11-21 14:42 2021-04-14 Show GitHub Exploit DB Packet Storm
196096 7.8 HIGH
Local
google android In setPowerModeWithHandle of com_android_server_power_PowerManagerService.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to local escalation of privilege … CWE-787
 Out-of-bounds Write
CVE-2021-0439 2024-11-21 14:42 2021-04-14 Show GitHub Exploit DB Packet Storm
196097 7.8 HIGH
Local
google android In several functions of InputDispatcher.cpp, WindowManagerService.java, and related files, there is a possible tapjacking attack due to an incorrect FLAG_OBSCURED value. This could lead to local esca… CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2021-0438 2024-11-21 14:42 2021-04-14 Show GitHub Exploit DB Packet Storm
196098 7.8 HIGH
Local
google android In setPlayPolicy of DrmPlugin.cpp, there is a possible double free. This could lead to local escalation of privilege in a privileged process with no additional execution privileges needed. User inter… CWE-415
 Double Free
CVE-2021-0437 2024-11-21 14:42 2021-04-14 Show GitHub Exploit DB Packet Storm
196099 5.5 MEDIUM
Local
google android In CryptoPlugin::decrypt of CryptoPlugin.cpp, there is a possible out of bounds read due to integer overflow. This could lead to local information disclosure with no additional execution privileges n… CWE-190
 Integer Overflow or Wraparound
CVE-2021-0436 2024-11-21 14:42 2021-04-14 Show GitHub Exploit DB Packet Storm
196100 7.5 HIGH
Network
google android In avrc_proc_vendor_command of avrc_api.cc, there is a possible leak of heap data due to uninitialized data. This could lead to remote information disclosure with no additional execution privileges n… CWE-665
 Improper Initialization
CVE-2021-0435 2024-11-21 14:42 2021-04-14 Show GitHub Exploit DB Packet Storm