Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231101 4 警告 Iconify.it - SkyBlueCanvas の admin.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-2116 2012-12-20 19:10 2009-06-18 Show GitHub Exploit DB Packet Storm
231102 6.8 警告 Iconify.it - SkyBlueCanvas の admin.php における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2009-2115 2012-12-20 19:10 2009-06-18 Show GitHub Exploit DB Packet Storm
231103 4.3 警告 Iconify.it - SkyBlueCanvas の admin.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2114 2012-12-20 19:10 2009-06-18 Show GitHub Exploit DB Packet Storm
231104 4.3 警告 webmedia explorer - webmex の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2107 2012-12-20 19:10 2009-06-17 Show GitHub Exploit DB Packet Storm
231105 7.5 危険 projektseminar proservice wwu - TYPO3 用の Virtual civserv エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2106 2012-12-20 19:10 2009-06-17 Show GitHub Exploit DB Packet Storm
231106 4.3 警告 udo von eynern - TYPO3 用の Modern Guestbook / Commenting System エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-2104 2012-12-20 19:10 2009-06-17 Show GitHub Exploit DB Packet Storm
231107 7.5 危険 steve grundell - TYPO3 用の fe_mp3player エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2103 2012-12-20 19:10 2009-06-17 Show GitHub Exploit DB Packet Storm
231108 7.5 危険 zokisoft - Zoki Soft Zoki Catalog の system/application/controllers/catalog.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2097 2012-12-20 19:10 2009-06-17 Show GitHub Exploit DB Packet Storm
231109 4.3 警告 phpwebthings - phpWebThings の help.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2009-2081 2012-12-20 19:10 2009-06-16 Show GitHub Exploit DB Packet Storm
231110 6 警告 ricardo alexandre de oliveira staudt - Yogurt の writemessage.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-2034 2012-12-20 19:10 2009-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196641 4.0 MEDIUM
Local
amd cpu AMD processors may speculatively re-order load instructions which can result in stale data being observed when multiple processors are operating on shared memory, resulting in potential data leakage. NVD-CWE-noinfo
CVE-2021-26400 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
196642 5.5 MEDIUM
Local
amd epyc_7232p_firmware
epyc_7302p_firmware
epyc_7402p_firmware
epyc_7502p_firmware
epyc_7702p_firmware
epyc_7252_firmware
epyc_7262_firmware
epyc_7272_firmware
epyc_7282_firmware…
Improper validation of the BIOS directory may allow for searches to read beyond the directory table copy in RAM, exposing out of bounds memory contents, resulting in a potential denial of service. CWE-125
Out-of-bounds Read
CVE-2021-26388 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
196643 5.5 MEDIUM
Local
amd epyc_7232p_firmware
epyc_7302p_firmware
epyc_7402p_firmware
epyc_7502p_firmware
epyc_7702p_firmware
epyc_7252_firmware
epyc_7262_firmware
epyc_7272_firmware
epyc_7282_firmware…
Insufficient bound checks in the System Management Unit (SMU) may result in access to an invalid address space that could result in denial of service. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2021-26378 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
196644 5.5 MEDIUM
Local
amd epyc_7232p_firmware
epyc_7302p_firmware
epyc_7402p_firmware
epyc_7502p_firmware
epyc_7702p_firmware
epyc_7252_firmware
epyc_7262_firmware
epyc_7272_firmware
epyc_7282_firmware…
Insufficient checks in System Management Unit (SMU) FeatureConfig may result in reenabling features potentially resulting in denial of resources and/or denial of service. NVD-CWE-noinfo
CVE-2021-26376 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
196645 5.5 MEDIUM
Local
amd epyc_7232p_firmware
epyc_7302p_firmware
epyc_7402p_firmware
epyc_7502p_firmware
epyc_7702p_firmware
epyc_7252_firmware
epyc_7262_firmware
epyc_7272_firmware
epyc_7282_firmware…
Insufficient General Purpose IO (GPIO) bounds check in System Management Unit (SMU) may result in access/updates from/to invalid address space that could result in denial of service. NVD-CWE-noinfo
CVE-2021-26375 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
196646 5.5 MEDIUM
Local
amd epyc_7232p_firmware
epyc_7302p_firmware
epyc_7402p_firmware
epyc_7502p_firmware
epyc_7702p_firmware
epyc_7252_firmware
epyc_7262_firmware
epyc_7272_firmware
epyc_7282_firmware…
Insufficient bound checks in the System Management Unit (SMU) may result in a system voltage malfunction that could result in denial of resources and/or possibly denial of service. CWE-20
 Improper Input Validation 
CVE-2021-26373 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
196647 5.5 MEDIUM
Local
amd epyc_7232p_firmware
epyc_7302p_firmware
epyc_7402p_firmware
epyc_7502p_firmware
epyc_7702p_firmware
epyc_7252_firmware
epyc_7262_firmware
epyc_7272_firmware
epyc_7282_firmware…
Insufficient bound checks related to PCIE in the System Management Unit (SMU) may result in access to an invalid address space that could result in denial of service. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2021-26372 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
196648 5.5 MEDIUM
Local
amd epyc_7232p_firmware
epyc_7302p_firmware
epyc_7402p_firmware
epyc_7502p_firmware
epyc_7702p_firmware
epyc_7252_firmware
epyc_7262_firmware
epyc_7272_firmware
epyc_7282_firmware…
Insufficient bounds checking in an SMU mailbox register could allow an attacker to potentially read outside of the SRAM address range which could result in an exception handling leading to a potentia… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2021-26364 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
196649 4.7 MEDIUM
Local
amd epyc_7232p_firmware
epyc_7302p_firmware
epyc_7402p_firmware
epyc_7502p_firmware
epyc_7702p_firmware
epyc_7252_firmware
epyc_7262_firmware
epyc_7272_firmware
epyc_7282_firmware…
A TOCTOU race condition in SMU may allow for the caller to obtain and manipulate the address of a message port register which may result in a potential denial of service. CWE-367
 Time-of-check Time-of-use (TOCTOU) Race Condition
CVE-2021-26350 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm
196650 5.5 MEDIUM
Local
amd epyc_7763_firmware
epyc_7713p_firmware
epyc_7713_firmware
epyc_7663_firmware
epyc_7643_firmware
epyc_75f3_firmware
epyc_7543p_firmware
epyc_7543_firmware
epyc_7513_firmware
Failure to assign a new report ID to an imported guest may potentially result in an SEV-SNP guest VM being tricked into trusting a dishonest Migration Agent (MA). NVD-CWE-noinfo
CVE-2021-26349 2024-11-21 14:56 2022-05-12 Show GitHub Exploit DB Packet Storm