Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251911 9.3 危険 マイクロソフト - Microsoft Windows の kernel における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-2514 2010-01-4 15:24 2009-11-10 Show GitHub Exploit DB Packet Storm
251912 6.8 警告 マイクロソフト - Microsoft Windows の kernel の Graphics Device Interface (GDI) における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2009-2513 2010-01-4 15:24 2009-11-10 Show GitHub Exploit DB Packet Storm
251913 6.8 警告 マイクロソフト - Microsoft Windows の kernel における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2009-1127 2010-01-4 15:24 2009-11-10 Show GitHub Exploit DB Packet Storm
251914 10 危険 マイクロソフト - Microsoft Windows の License Logging Server (llssrv.exe) における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2009-2523 2010-01-4 15:24 2009-11-10 Show GitHub Exploit DB Packet Storm
251915 9.3 危険 マイクロソフト - Microsoft Windows の Web Services on Devices API (WSDAPI) における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2009-2512 2010-01-4 15:23 2009-11-10 Show GitHub Exploit DB Packet Storm
251916 10 危険 アップル
VMware
サン・マイクロシステムズ
- Sun Java SE の Provider クラスにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2009-2722 2010-01-4 14:56 2009-08-10 Show GitHub Exploit DB Packet Storm
251917 10 危険 アップル
VMware
サン・マイクロシステムズ
- Sun Java SE の Provider クラスにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2009-2723 2010-01-4 14:55 2009-08-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211251 5.5 MEDIUM
Local
optipng_project
canonical
optipng
ubuntu_linux
gifread.c in gif2png, as used in OptiPNG before 0.7.6, allows remote attackers to cause a denial of service (uninitialized memory read) via a crafted GIF file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2015-7802 2024-11-21 11:37 2016-04-21 Show GitHub Exploit DB Packet Storm
211252 8.8 HIGH
Network
optipng_project
canonical
optipng
ubuntu_linux
Use-after-free vulnerability in OptiPNG 0.6.4 allows remote attackers to execute arbitrary code via a crafted PNG file. NVD-CWE-Other
CVE-2015-7801 2024-11-21 11:37 2016-04-21 Show GitHub Exploit DB Packet Storm
211253 5.4 MEDIUM
Network
ipswitch moveit_dmz Ipswitch MOVEit File Transfer (formerly DMZ) 8.1 and earlier, when configured to support file view on download, allows remote authenticated users to conduct cross-site scripting (XSS) attacks by uplo… CWE-79
Cross-site Scripting
CVE-2015-7676 2024-11-21 11:37 2016-04-16 Show GitHub Exploit DB Packet Storm
211254 8.1 HIGH
Network
citrix command_center Multiple SQL injection vulnerabilities in the Administration Web UI servlets in Citrix Command Center before 5.1 Build 36.7 and 5.2 before Build 44.11 allow remote authenticated users to execute arbi… CWE-89
SQL Injection
CVE-2015-7999 2024-11-21 11:37 2016-04-14 Show GitHub Exploit DB Packet Storm
211255 7.5 HIGH
Network
redislabs
debian
opensuse
redhat
redis
debian_linux
leap
opensuse
openstack
Integer overflow in the getnum function in lua_struct.c in Redis 2.8.x before 2.8.24 and 3.0.x before 3.0.6 allows context-dependent attackers with permission to run Lua code in a Redis session to ca… CWE-190
 Integer Overflow or Wraparound
CVE-2015-8080 2024-11-21 11:37 2016-04-14 Show GitHub Exploit DB Packet Storm
211256 4.3 MEDIUM
Network
f5 big-ip_access_policy_manager
big-ip_link_controller
big-ip_analytics
big-ip_edge_gateway
big-ip_protocol_security_module
big-ip_local_traffic_manager
big-ip_wan_optimization_manager…
Incomplete blacklist vulnerability in the Configuration utility in F5 BIG-IP LTM, Analytics, APM, ASM, GTM, Link Controller, and PSM 11.x before 11.2.1 HF11, 11.3.x, 11.4.0 before HF8, and 11.4.1 bef… CWE-284
Improper Access Control
CVE-2015-8021 2024-11-21 11:37 2016-04-12 Show GitHub Exploit DB Packet Storm
211257 9.1 CRITICAL
Network
schneider-electric proface_gp-pro_ex_pfxexedls
proface_gp-pro_ex_pfxexedv
proface_gp-pro_ex_ex-ed
proface_gp-pro_ex_pfxexgrpls
The FTP server in Pro-face GP-Pro EX EX-ED before 4.05.000, PFXEXEDV before 4.05.000, PFXEXEDLS before 4.05.000, and PFXEXGRPLS before 4.05.000 has hardcoded credentials, which makes it easier for re… CWE-255
Credentials Management
CVE-2015-7921 2024-11-21 11:37 2016-04-7 Show GitHub Exploit DB Packet Storm
211258 6.3 MEDIUM
Network
basercms basercms baserCMS 3.0.2 through 3.0.8 allows remote authenticated users to execute arbitrary OS commands via unspecified vectors. CWE-78
OS Command 
CVE-2015-7769 2024-11-21 11:37 2016-02-20 Show GitHub Exploit DB Packet Storm
211259 6.1 MEDIUM
Network
cybozu office Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than C… CWE-79
Cross-site Scripting
CVE-2015-7798 2024-11-21 11:37 2016-02-17 Show GitHub Exploit DB Packet Storm
211260 6.1 MEDIUM
Network
cybozu office Cross-site scripting (XSS) vulnerability in Cybozu Office 9.0.0 through 10.3.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, a different vulnerability than C… CWE-79
Cross-site Scripting
CVE-2015-7797 2024-11-21 11:37 2016-02-17 Show GitHub Exploit DB Packet Storm