Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231541 6.8 警告 freedesktop.org - Abiword pdftoabw utility で使用される Poppler におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3938 2012-12-20 19:28 2009-11-13 Show GitHub Exploit DB Packet Storm
231542 4.9 警告 サン・マイクロシステムズ - Sun OpenSolaris の Solaris TCP ソケットにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-3937 2012-12-20 19:28 2009-11-13 Show GitHub Exploit DB Packet Storm
231543 5 警告 Webkit - Google Chrome で使用されている WebKit におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2009-3933 2012-12-20 19:28 2009-10-27 Show GitHub Exploit DB Packet Storm
231544 9.3 危険 raven software
punkbuster
- Soldier of Fortune II で使用される pbsv.dll におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2009-3924 2012-12-20 19:28 2009-11-9 Show GitHub Exploit DB Packet Storm
231545 7.5 危険 サン・マイクロシステムズ - Sun VDI の VirtualBox Web サービスにおける不特定のアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2009-3923 2012-12-20 19:28 2009-11-3 Show GitHub Exploit DB Packet Storm
231546 5 警告 Sean Robertson - Drupal 用の crmngp モジュールの管理ページにおけるログ情報を読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2009-3920 2012-12-20 19:28 2009-11-4 Show GitHub Exploit DB Packet Storm
231547 4.3 警告 Sean Robertson - Drupal 用の crmngp モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3919 2012-12-20 19:28 2009-11-4 Show GitHub Exploit DB Packet Storm
231548 4.3 警告 Ronan Dowling - Drupal 用の Node Hierarchy モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3916 2012-12-20 19:28 2009-11-4 Show GitHub Exploit DB Packet Storm
231549 4.3 警告 drunomics - Drupal 用の Temporary Invitation モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-3914 2012-12-20 19:28 2009-11-4 Show GitHub Exploit DB Packet Storm
231550 7.5 危険 Xerox - Xerox Fiery Webtools の summary.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-3913 2012-12-20 19:28 2009-11-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196611 7.8 HIGH
Local
amd enterprise_driver
radeon_pro_software
radeon_software
An attacker with local access to the system can make unauthorized modifications of the security configuration of the SOC registers. This could allow potential corruption of AMD secure processor’s enc… NVD-CWE-noinfo
CVE-2021-26360 2024-11-21 14:56 2022-11-10 Show GitHub Exploit DB Packet Storm
196612 5.5 MEDIUM
Local
amd enterprise_driver
radeon_pro_software
radeon_software
radeon_rx_vega_56_firmware
radeon_rx_vega_64_firmware
ryzen_3_2200ge_firmware
ryzen_3_2200g_firmware
ryzen_5_2400ge_firmware…
Insufficient memory cleanup in the AMD Secure Processor (ASP) Trusted Execution Environment (TEE) may allow an authenticated attacker with privileges to generate a valid signed TA and potentially poi… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2021-26393 2024-11-21 14:56 2022-11-10 Show GitHub Exploit DB Packet Storm
196613 7.8 HIGH
Local
amd enterprise_driver
radeon_pro_software
radeon_software
radeon_rx_vega_56_firmware
radeon_rx_vega_64_firmware
ryzen_3_5300ge_firmware
ryzen_3_5300g_firmware
ryzen_5_5600ge_firmware…
Insufficient verification of multiple header signatures while loading a Trusted Application (TA) may allow an attacker with privileges to gain code execution in that TA or the OS/kernel. NVD-CWE-noinfo
CVE-2021-26391 2024-11-21 14:56 2022-11-10 Show GitHub Exploit DB Packet Storm
196614 7.5 HIGH
Network
lannerinc iac-ast2500a_firmware A broken access control vulnerability in the FirstReset_handler_func function of spx_restservice allows an attacker to arbitrarily send reboot commands to the BMC, causing a Denial-of-Service (DoS) c… NVD-CWE-Other
CVE-2021-26733 2024-11-21 14:56 2022-10-24 Show GitHub Exploit DB Packet Storm
196615 5.3 MEDIUM
Network
lannerinc iac-ast2500a_firmware A broken access control vulnerability in the First_network_func function of spx_restservice allows an attacker to arbitrarily change the network configuration of the BMC. This issue affects: Lanner I… NVD-CWE-Other
CVE-2021-26732 2024-11-21 14:56 2022-10-24 Show GitHub Exploit DB Packet Storm
196616 9.8 CRITICAL
Network
lannerinc iac-ast2500a_firmware Command injection and multiple stack-based buffer overflows vulnerabilities in the modifyUserb_func function of spx_restservice allow an authenticated attacker to execute arbitrary code with the same… CWE-77
CWE-787
Command Injection
 Out-of-bounds Write
CVE-2021-26731 2024-11-21 14:56 2022-10-24 Show GitHub Exploit DB Packet Storm
196617 9.8 CRITICAL
Network
lannerinc iac-ast2500a_firmware A stack-based buffer overflow vulnerability in a subfunction of the Login_handler_func function of spx_restservice allows an attacker to execute arbitrary code with the same privileges as the server … CWE-787
 Out-of-bounds Write
CVE-2021-26730 2024-11-21 14:56 2022-10-24 Show GitHub Exploit DB Packet Storm
196618 9.8 CRITICAL
Network
lannerinc iac-ast2500a_firmware Command injection and multiple stack-based buffer overflows vulnerabilities in the Login_handler_func function of spx_restservice allow an attacker to execute arbitrary code with the same privileges … CWE-77
CWE-787
Command Injection
 Out-of-bounds Write
CVE-2021-26729 2024-11-21 14:56 2022-10-24 Show GitHub Exploit DB Packet Storm
196619 9.8 CRITICAL
Network
lannerinc iac-ast2500a_firmware Command injection and stack-based buffer overflow vulnerabilities in the KillDupUsr_func function of spx_restservice allow an attacker to execute arbitrary code with the same privileges as the server… CWE-77
CWE-787
Command Injection
 Out-of-bounds Write
CVE-2021-26728 2024-11-21 14:56 2022-10-24 Show GitHub Exploit DB Packet Storm
196620 9.8 CRITICAL
Network
lannerinc iac-ast2500a_firmware Multiple command injections and stack-based buffer overflows vulnerabilities in the SubNet_handler_func function of spx_restservice allow an attacker to execute arbitrary code with the same privilege… CWE-77
CWE-787
Command Injection
 Out-of-bounds Write
CVE-2021-26727 2024-11-21 14:56 2022-10-24 Show GitHub Exploit DB Packet Storm