Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230361 7.5 危険 Tincan - phpList の lists/admin.php におけるローカルファイルをインクルードされる脆弱性 CWE-94
コード・インジェクション
CVE-2009-0422 2012-12-20 19:10 2009-02-4 Show GitHub Exploit DB Packet Storm
230362 7.5 危険 rd-media - Joomla! 用の RD-Autos コンポーネントにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0420 2012-12-20 19:10 2009-02-4 Show GitHub Exploit DB Packet Storm
230363 6.9 警告 Standards Based Linux Instrumentation (SBLIM) - SBLIM sblim-sfcb の SSL certificate setup program における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2009-0416 2012-12-20 19:10 2009-02-3 Show GitHub Exploit DB Packet Storm
230364 10 危険 The Tor Project - Tor における脆弱性 CWE-399
リソース管理の問題
CVE-2009-0414 2012-12-20 19:10 2009-02-3 Show GitHub Exploit DB Packet Storm
230365 4.3 警告 Roundcube.net - roundcubemail におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0413 2012-12-20 19:10 2009-01-20 Show GitHub Exploit DB Packet Storm
230366 7.5 危険 smartsitecms - smartSite CMS の articles.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0405 2012-12-20 19:10 2009-02-3 Show GitHub Exploit DB Packet Storm
230367 6.8 警告 socialengine - SocialEngine の blog.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0400 2012-12-20 19:10 2009-02-3 Show GitHub Exploit DB Packet Storm
230368 7.8 危険 sony ericsson - Sony Ericsson W910i などの電話機におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2009-0396 2012-12-20 19:10 2009-02-2 Show GitHub Exploit DB Packet Storm
230369 7.5 危険 ple cms - PLEs CMS の login.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0394 2012-12-20 19:10 2009-02-2 Show GitHub Exploit DB Packet Storm
230370 6.8 警告 sitexs cms - SiteXS CMS の post.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-0371 2012-12-20 19:10 2009-01-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
200991 3.3 LOW
Local
google android In createAdminSupportIntent of DevicePolicyManagerService.java, there is a possible disclosure of information about installed device/profile owner package name due to side channel information disclos… CWE-200
Information Exposure
CVE-2021-0983 2024-11-21 14:43 2021-12-16 Show GitHub Exploit DB Packet Storm
200992 3.3 LOW
Local
google android In getOrganizationNameForUser of DevicePolicyManagerService.java, there is a possible organization name disclosure due to a missing permission check. This could lead to local information disclosure w… CWE-862
 Missing Authorization
CVE-2021-0982 2024-11-21 14:43 2021-12-16 Show GitHub Exploit DB Packet Storm
200993 7.8 HIGH
Local
google android In enqueueNotificationInternal of NotificationManagerService.java, there is a possible way to run a foreground service without showing a notification due to improper input validation. This could lead… NVD-CWE-Other
CVE-2021-0981 2024-11-21 14:43 2021-12-16 Show GitHub Exploit DB Packet Storm
200994 5.5 MEDIUM
Local
google android In isRequestPinItemSupported of ShortcutService.java, there is a possible cross-user leak of packages in which the default launcher supports requests to create pinned shortcuts due to a permissions b… CWE-276
Incorrect Default Permissions 
CVE-2021-0979 2024-11-21 14:43 2021-12-16 Show GitHub Exploit DB Packet Storm
200995 3.3 LOW
Local
google android In getSerialForPackage of DeviceIdentifiersPolicyService.java, there is a possible way to determine whether an app is installed, without query permissions, due to side channel information disclosure.… CWE-862
 Missing Authorization
CVE-2021-0978 2024-11-21 14:43 2021-12-16 Show GitHub Exploit DB Packet Storm
200996 6.7 MEDIUM
Local
google android In phNxpNHal_DtaUpdate of phNxpNciHal_dta.cc, there is a possible out of bounds write due to an incorrect bounds check. This could lead to local escalation of privilege with System execution privileg… CWE-787
 Out-of-bounds Write
CVE-2021-0977 2024-11-21 14:43 2021-12-16 Show GitHub Exploit DB Packet Storm
200997 6.5 MEDIUM
Network
google android In toBARK of floor0.c, there is a possible out of bounds read due to a missing bounds check. This could lead to remote information disclosure with no additional execution privileges needed. User inte… CWE-125
Out-of-bounds Read
CVE-2021-0976 2024-11-21 14:43 2021-12-16 Show GitHub Exploit DB Packet Storm
200998 5.0 MEDIUM
Local
google android In isFileUri of UriUtil.java, there is a possible way to bypass ignoring file://URI attachment due to improper handling of case sensitivity. This could lead to local information disclosure with no ad… CWE-178
 Improper Handling of Case Sensitivity
CVE-2021-0973 2024-11-21 14:43 2021-12-16 Show GitHub Exploit DB Packet Storm
200999 6.5 MEDIUM
Network
google android In MPEG4Source::read of MPEG4Extractor.cpp, there is a possible out of bounds write due to a missing bounds check. This could lead to remote information disclosure with no additional execution privil… CWE-787
 Out-of-bounds Write
CVE-2021-0971 2024-11-21 14:43 2021-12-16 Show GitHub Exploit DB Packet Storm
201000 7.8 HIGH
Local
google android In createFromParcel of GpsNavigationMessage.java, there is a possible Parcel serialization/deserialization mismatch. This could lead to local escalation of privilege with no additional execution priv… CWE-502
 Deserialization of Untrusted Data
CVE-2021-0970 2024-11-21 14:43 2021-12-16 Show GitHub Exploit DB Packet Storm