Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228591 5 警告 roytanck - WordPress 用の WP-Cumulus プラグインにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2009-4170 2012-12-20 19:28 2009-12-2 Show GitHub Exploit DB Packet Storm
228592 4.3 警告 roytanck - WordPress 用の WP-Cumulus プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4169 2012-12-20 19:28 2009-09-27 Show GitHub Exploit DB Packet Storm
228593 4.3 警告 roytanck - WordPress、Joomulus モジュール、および Joomla! 用の WP-Cumulus モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4168 2012-12-20 19:28 2009-11-15 Show GitHub Exploit DB Packet Storm
228594 7.5 危険 simple glossar - TYPO3 用の simple_glossar エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4165 2012-12-20 19:28 2009-12-2 Show GitHub Exploit DB Packet Storm
228595 4.3 警告 simple glossar - TYPO3 用の simple_glossar エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-4164 2012-12-20 19:28 2009-12-2 Show GitHub Exploit DB Packet Storm
228596 7.5 危険 tw productfinder - TYPO3 用の TW Productfinder エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-4163 2012-12-20 19:28 2009-12-2 Show GitHub Exploit DB Packet Storm
228597 7.5 危険 Piwik
teethgrinder.co.uk
- Piwik などの製品で使用される Open Flash Chart Lug Wyrm Charmer における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2009-4140 2012-12-20 19:28 2009-10-21 Show GitHub Exploit DB Packet Storm
228598 7.5 危険 Piwik - Piwik の core/Cookie.php における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2009-4137 2012-12-20 19:28 2009-12-9 Show GitHub Exploit DB Packet Storm
228599 9.3 危険 wikipedia - Firefox の Wikipedia Toolbar エクステンションにおける Chrome 権限を伴う任意の JavaScript を実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-4127 2012-12-20 19:28 2009-12-2 Show GitHub Exploit DB Packet Storm
228600 10 危険 Ruby-lang.org - Ruby の string.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-4124 2012-12-20 19:28 2009-12-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
194631 7.1 HIGH
Local
google android Improper access control of a component in CallBGProvider prior to SMR JUN-2021 Release 1 allows local attackers to access arbitrary files with an escalated privilege. CWE-863
 Incorrect Authorization
CVE-2021-25410 2024-11-21 14:54 2021-06-12 Show GitHub Exploit DB Packet Storm
194632 2.4 LOW
Physics
google android Improper access in Notification setting prior to SMR JUN-2021 Release 1 allows physically proximate attackers to set arbitrary notification via physically configuring device. CWE-862
 Missing Authorization
CVE-2021-25409 2024-11-21 14:54 2021-06-12 Show GitHub Exploit DB Packet Storm
194633 7.8 HIGH
Local
google android A possible buffer overflow vulnerability in NPU driver prior to SMR JUN-2021 Release 1 allows arbitrary memory write and code execution. CWE-120
Classic Buffer Overflow
CVE-2021-25408 2024-11-21 14:54 2021-06-12 Show GitHub Exploit DB Packet Storm
194634 7.8 HIGH
Local
google android A possible out of bounds write vulnerability in NPU driver prior to SMR JUN-2021 Release 1 allows arbitrary memory write. CWE-787
 Out-of-bounds Write
CVE-2021-25407 2024-11-21 14:54 2021-06-12 Show GitHub Exploit DB Packet Storm
194635 6.5 MEDIUM
Adjacent
samsung gear_s Information exposure vulnerability in Gear S Plugin prior to version 2.2.05.20122441 allows unstrusted applications to access connected BT device information. CWE-863
 Incorrect Authorization
CVE-2021-25406 2024-11-21 14:54 2021-06-12 Show GitHub Exploit DB Packet Storm
194636 5.5 MEDIUM
Local
samsung notes An improper access control vulnerability in ScreenOffActivity in Samsung Notes prior to version 4.2.04.27 allows untrusted applications to access local files. NVD-CWE-Other
CVE-2021-25405 2024-11-21 14:54 2021-06-12 Show GitHub Exploit DB Packet Storm
194637 3.3 LOW
Local
samsung smartthings_firmware Information Exposure vulnerability in SmartThings prior to version 1.7.64.21 allows attacker to access user information via log. CWE-922
 Insecure Storage of Sensitive Information
CVE-2021-25404 2024-11-21 14:54 2021-06-12 Show GitHub Exploit DB Packet Storm
194638 3.3 LOW
Local
samsung account Intent redirection vulnerability in Samsung Account prior to version 10.8.0.4 in Android P(9.0) and below, and 12.2.0.9 in Android Q(10.0) and above allows attacker to access contacts and file provid… NVD-CWE-Other
CVE-2021-25403 2024-11-21 14:54 2021-06-12 Show GitHub Exploit DB Packet Storm
194639 3.3 LOW
Local
samsung notes Information Exposure vulnerability in Samsung Notes prior to version 4.2.04.27 allows attacker to access s pen latency information. CWE-922
 Insecure Storage of Sensitive Information
CVE-2021-25402 2024-11-21 14:54 2021-06-12 Show GitHub Exploit DB Packet Storm
194640 7.8 HIGH
Local
samsung health Intent redirection vulnerability in Samsung Health prior to version 6.16 allows attacker to execute privileged action. NVD-CWE-Other
CVE-2021-25401 2024-11-21 14:54 2021-06-12 Show GitHub Exploit DB Packet Storm