Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
200731 4.9 警告
Network
Plone Foundation - Plone の Chameleon における制限された Python を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-4043 2017-03-16 16:40 2016-01-8 Show GitHub Exploit DB Packet Storm
200732 9.8 緊急
Network
IBHsoftec GmbH - IBHsoftec S7-SoftPLC におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-8364 2017-03-16 16:26 2016-11-1 Show GitHub Exploit DB Packet Storm
200733 6.6 警告
Physics
Sutra, Inc. - Norwegian Air Shuttle Airline Kiosk における "Please select booking identification" UI のステップを回避される脆弱性 CWE-284
不適切なアクセス制御
CVE-2017-5634 2017-03-16 16:16 2017-02-9 Show GitHub Exploit DB Packet Storm
200734 7.8 重要
Local
D. R. Commander
レッドハット
- libjpeg の cjpeg ユティリティにおけるサービス運用妨害 (DoS) の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2016-3616 2017-03-16 16:00 2016-03-17 Show GitHub Exploit DB Packet Storm
200735 9.8 緊急
Network
node-serialize project - Node.js 用 node-serialize パッケージにおける任意のコードを実行される脆弱性 CWE-502
信頼性のないデータのデシリアライゼーション
CVE-2017-5941 2017-03-16 15:55 2017-02-10 Show GitHub Exploit DB Packet Storm
200736 9.8 緊急
Network
シーメンス - Siemens SICAM PAS におけるポート 2638/TCP 経由のデータベースへのアクセス権を取得される脆弱性 CWE-798
ハードコードされた認証情報の使用
CVE-2016-8567 2017-03-16 15:43 2016-11-25 Show GitHub Exploit DB Packet Storm
200737 7.8 重要
Local
シーメンス - Siemens SICAM PAS におけるデータベースにアクセスするためのユーザパスワードを再構成される脆弱性 CWE-255
証明書・パスワード管理
CVE-2016-8566 2017-03-16 15:43 2016-11-25 Show GitHub Exploit DB Packet Storm
200738 7.3 重要
Network
Jenkins プロジェクト - Jenkins の Script Security プラグインにおける Groovy サンドボックス保護メカニズムを回避される脆弱性 CWE-254
セキュリティ機能
CVE-2016-3102 2017-03-16 15:23 2016-04-11 Show GitHub Exploit DB Packet Storm
200739 7.2 重要
Network
フォーティネット - Fortinet Connect における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-8494 2017-03-16 15:12 2016-10-7 Show GitHub Exploit DB Packet Storm
200740 8.1 重要
Network
Tor Browser Launcher project - Tor Browser Launcher における PGP 署名の検証を回避される脆弱性 CWE-254
セキュリティ機能
CVE-2016-3180 2017-03-16 15:11 2016-04-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 19, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290251 - redhat
jenkins
openshift
jenkins
Jenkins before 1.583 and LTS before 1.565.3 does not properly prevent downloading of plugins, which allows remote authenticated users with the Overall/READ permission to obtain sensitive information … CWE-200
Information Exposure
CVE-2014-3667 2024-11-21 11:08 2014-10-17 Show GitHub Exploit DB Packet Storm
290252 - redhat
jenkins
openshift
jenkins
Jenkins before 1.583 and LTS before 1.565.3 allows remote attackers to execute arbitrary code via a crafted packet to the CLI channel. CWE-94
Code Injection
CVE-2014-3666 2024-11-21 11:08 2014-10-17 Show GitHub Exploit DB Packet Storm
290253 - jenkins
redhat
jenkins
openshift
Jenkins before 1.583 and LTS before 1.565.3 allows remote authenticated users with the Job/CONFIGURE permission to bypass intended restrictions and create or destroy arbitrary jobs via unspecified ve… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-3663 2024-11-21 11:08 2014-10-17 Show GitHub Exploit DB Packet Storm
290254 - jenkins
redhat
jenkins
openshift
Jenkins before 1.583 and LTS before 1.565.3 allows remote attackers to enumerate user names via vectors related to login attempts. CWE-200
Information Exposure
CVE-2014-3662 2024-11-21 11:08 2014-10-17 Show GitHub Exploit DB Packet Storm
290255 - redhat
jenkins
openshift
jenkins
Jenkins before 1.583 and LTS before 1.565.3 allows remote attackers to cause a denial of service (thread consumption) via vectors related to a CLI handshake. CWE-399
 Resource Management Errors
CVE-2014-3661 2024-11-21 11:08 2014-10-17 Show GitHub Exploit DB Packet Storm
290256 - drupal
debian
drupal
debian_linux
The expandArguments function in the database abstraction API in Drupal core 7.x before 7.32 does not properly construct prepared statements, which allows remote attackers to conduct SQL injection att… CWE-89
SQL Injection
CVE-2014-3704 2024-11-21 11:08 2014-10-16 Show GitHub Exploit DB Packet Storm
290257 - w1.fi
debian
canonical
hostapd
wpa_supplicant
debian_linux
ubuntu_linux
wpa_supplicant and hostapd 0.7.2 through 2.2, when running with certain configurations and using wpa_cli or hostapd_cli with action scripts, allows remote attackers to execute arbitrary commands via … CWE-20
 Improper Input Validation 
CVE-2014-3686 2024-11-21 11:08 2014-10-16 Show GitHub Exploit DB Packet Storm
290258 - redhat
jenkins
openshift
jenkins
Cross-site scripting (XSS) vulnerability in Jenkins before 1.583 and LTS before 1.565.3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2014-3681 2024-11-21 11:08 2014-10-15 Show GitHub Exploit DB Packet Storm
290259 - jenkins
redhat
jenkins
openshift
Directory traversal vulnerability in Jenkins before 1.583 and LTS before 1.565.3 allows remote authenticated users with the Overall/READ permission to read arbitrary files via unspecified vectors. CWE-22
Path Traversal
CVE-2014-3664 2024-11-21 11:08 2014-10-15 Show GitHub Exploit DB Packet Storm
290260 - scientificlinux luci Eval injection vulnerability in luci 0.26.0 allows remote authenticated users with certain permissions to execute arbitrary Python code via a crafted cluster configuration. CWE-94
Code Injection
CVE-2014-3593 2024-11-21 11:08 2014-10-15 Show GitHub Exploit DB Packet Storm