Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230911 9.3 危険 stonetrip - StoneTrip Ston3D StandalonePlayer および WebPlayer の system.openURL 関数における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2009-1792 2012-12-20 19:10 2009-05-29 Show GitHub Exploit DB Packet Storm
230912 7.5 危険 phpdirsubmit - PHP Dir Submit における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1787 2012-12-20 19:10 2009-05-26 Show GitHub Exploit DB Packet Storm
230913 4.3 警告 ulteo - Ulteo Open Virtual Desktop におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1785 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
230914 6.8 警告 roboform - Frax.dk Php Recommend の admin.php における phpre_config.php へ任意の PHP コードを挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2009-1781 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
230915 7.5 危険 roboform - Frax.dk Php Recommend の admin.php における管理者権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-1780 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
230916 6.8 警告 roboform - Frax.dk Php Recommend の admin.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2009-1779 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
230917 4.3 警告 ulteo - Ulteo Open Virtual Desktop におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-1775 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
230918 9.3 危険 strawberry - Strawberry の plugins/ddb/foot.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-1774 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
230919 5 警告 ramazeiten - Rama Zaiten CMS の download.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-1768 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
230920 6.4 警告 teozkr - LightOpenCMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-1766 2012-12-20 19:10 2009-05-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196211 5.5 MEDIUM
Local
amd epyc_7232p_firmware
epyc_7302p_firmware
epyc_7402p_firmware
epyc_7502p_firmware
epyc_7702p_firmware
epyc_7252_firmware
epyc_7262_firmware
epyc_7272_firmware
epyc_7282_firmware…
Insufficient bound checks in the System Management Unit (SMU) may result in access to an invalid address space that could result in denial of service. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2021-26378 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
196212 5.5 MEDIUM
Local
amd epyc_7232p_firmware
epyc_7302p_firmware
epyc_7402p_firmware
epyc_7502p_firmware
epyc_7702p_firmware
epyc_7252_firmware
epyc_7262_firmware
epyc_7272_firmware
epyc_7282_firmware…
Insufficient checks in System Management Unit (SMU) FeatureConfig may result in reenabling features potentially resulting in denial of resources and/or denial of service. NVD-CWE-noinfo
CVE-2021-26376 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
196213 5.5 MEDIUM
Local
amd epyc_7232p_firmware
epyc_7302p_firmware
epyc_7402p_firmware
epyc_7502p_firmware
epyc_7702p_firmware
epyc_7252_firmware
epyc_7262_firmware
epyc_7272_firmware
epyc_7282_firmware…
Insufficient General Purpose IO (GPIO) bounds check in System Management Unit (SMU) may result in access/updates from/to invalid address space that could result in denial of service. NVD-CWE-noinfo
CVE-2021-26375 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
196214 5.5 MEDIUM
Local
amd epyc_7232p_firmware
epyc_7302p_firmware
epyc_7402p_firmware
epyc_7502p_firmware
epyc_7702p_firmware
epyc_7252_firmware
epyc_7262_firmware
epyc_7272_firmware
epyc_7282_firmware…
Insufficient bound checks in the System Management Unit (SMU) may result in a system voltage malfunction that could result in denial of resources and/or possibly denial of service. CWE-20
 Improper Input Validation 
CVE-2021-26373 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
196215 5.5 MEDIUM
Local
amd epyc_7232p_firmware
epyc_7302p_firmware
epyc_7402p_firmware
epyc_7502p_firmware
epyc_7702p_firmware
epyc_7252_firmware
epyc_7262_firmware
epyc_7272_firmware
epyc_7282_firmware…
Insufficient bound checks related to PCIE in the System Management Unit (SMU) may result in access to an invalid address space that could result in denial of service. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2021-26372 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
196216 5.5 MEDIUM
Local
amd epyc_7232p_firmware
epyc_7302p_firmware
epyc_7402p_firmware
epyc_7502p_firmware
epyc_7702p_firmware
epyc_7252_firmware
epyc_7262_firmware
epyc_7272_firmware
epyc_7282_firmware…
Insufficient bounds checking in an SMU mailbox register could allow an attacker to potentially read outside of the SRAM address range which could result in an exception handling leading to a potentia… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2021-26364 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
196217 4.7 MEDIUM
Local
amd epyc_7232p_firmware
epyc_7302p_firmware
epyc_7402p_firmware
epyc_7502p_firmware
epyc_7702p_firmware
epyc_7252_firmware
epyc_7262_firmware
epyc_7272_firmware
epyc_7282_firmware…
A TOCTOU race condition in SMU may allow for the caller to obtain and manipulate the address of a message port register which may result in a potential denial of service. CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2021-26350 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
196218 5.5 MEDIUM
Local
amd epyc_7763_firmware
epyc_7713p_firmware
epyc_7713_firmware
epyc_7663_firmware
epyc_7643_firmware
epyc_75f3_firmware
epyc_7543p_firmware
epyc_7543_firmware
epyc_7513_firmware
Failure to assign a new report ID to an imported guest may potentially result in an SEV-SNP guest VM being tricked into trusting a dishonest Migration Agent (MA). NVD-CWE-noinfo
CVE-2021-26349 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
196219 5.5 MEDIUM
Local
amd epyc_7763_firmware
epyc_7713p_firmware
epyc_7713_firmware
epyc_7663_firmware
epyc_7643_firmware
epyc_75f3_firmware
epyc_7543p_firmware
epyc_7543_firmware
epyc_7513_firmware
Failure to flush the Translation Lookaside Buffer (TLB) of the I/O memory management unit (IOMMU) may lead an IO device to write to memory it should not be able to access, resulting in a potential lo… NVD-CWE-noinfo
CVE-2021-26348 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
196220 4.7 MEDIUM
Local
amd epyc_7763_firmware
epyc_7713p_firmware
epyc_7713_firmware
epyc_7663_firmware
epyc_7643_firmware
epyc_75f3_firmware
epyc_7543p_firmware
epyc_7543_firmware
epyc_7513_firmware
Failure to validate the integer operand in ASP (AMD Secure Processor) bootloader may allow an attacker to introduce an integer overflow in the L2 directory table in SPI flash resulting in a potential… CWE-1284
 Improper Validation of Specified Quantity in Input
CVE-2021-26347 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm