Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201111 7.5 重要
Network
Debian
openSUSE project
GraphicsMagick
- GraphicsMagick の coders/sct.c の ReadSCTImage 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-8682 2017-03-6 16:50 2016-09-10 Show GitHub Exploit DB Packet Storm
201112 6.1 警告
Network
WSO2 - WSO2 SOA Enablement Server for Java におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-4327 2017-03-6 16:32 2016-04-8 Show GitHub Exploit DB Packet Storm
201113 6.1 警告
Network
WSO2 - WSO2 Carbon におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-4316 2017-03-6 16:32 2016-08-12 Show GitHub Exploit DB Packet Storm
201114 5.7 警告
Network
WSO2 - WSO2 Carbon におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-4315 2017-03-6 16:32 2016-08-12 Show GitHub Exploit DB Packet Storm
201115 4.9 警告
Network
WSO2 - WSO2 Carbon の LogViewer Admin Service におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-4314 2017-03-6 16:32 2016-08-12 Show GitHub Exploit DB Packet Storm
201116 7.5 重要
Network
suckless.org
Fedora Project
- slock における画面ロックを回避される脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2016-6866 2017-03-6 16:31 2016-08-30 Show GitHub Exploit DB Packet Storm
201117 5.5 警告
Local
Libav - libav の resample.c の the ff_audio_resample 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-6832 2017-03-6 16:31 2016-08-17 Show GitHub Exploit DB Packet Storm
201118 7.8 重要
Local
Nagios Enterprises, LLC - Nagios における root 権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-10089 2017-03-6 16:29 2016-12-30 Show GitHub Exploit DB Packet Storm
201119 7.5 重要
Network
FreeBSD - FreeBSD の telnetd サービスにおけるログインの引数を挿入される脆弱性 CWE-287
不適切な認証
CVE-2016-1888 2017-03-6 16:27 2016-12-6 Show GitHub Exploit DB Packet Storm
201120 7.8 重要
Local
FreeBSD - FreeBSD の Linux 互換レイヤの issetugid システムコールにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-1883 2017-03-6 16:27 2016-01-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291861 - nokia_maps_\&_places_project nokia_maps_\&_places Open redirect vulnerability in nokia-mapsplaces.php in the Nokia Maps & Places plugin 1.6.6 for WordPress allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks… NVD-CWE-Other
CVE-2014-1750 2024-11-21 11:04 2015-07-1 Show GitHub Exploit DB Packet Storm
291862 - linuxcontainers
canonical
cgmanager
ubuntu_linux
cmanager 0.32 does not properly enforce nesting when modifying cgroup properties, which allows local users to set cgroup values for all cgroups via unspecified vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-1425 2024-11-21 11:04 2015-01-8 Show GitHub Exploit DB Packet Storm
291863 - open-xchange open-xchange_appsuite Cross-site scripting (XSS) vulnerability in Open-Xchange (OX) AppSuite before 7.2.2-rev31, 7.4.0 before 7.4.0-rev27, and 7.4.1 before 7.4.1-rev17 allows remote attackers to inject arbitrary web scrip… CWE-79
Cross-site Scripting
CVE-2014-1679 2024-11-21 11:04 2015-01-6 Show GitHub Exploit DB Packet Storm
291864 - maxthon maxthon_cloud_browser The Maxthon Cloud Browser application before 4.1.6.2000 for Android allows remote attackers to spoof the address bar via crafted JavaScript code that uses the history API. CWE-284
Improper Access Control
CVE-2014-1449 2024-11-21 11:04 2014-12-26 Show GitHub Exploit DB Packet Storm
291865 - mozilla network_security_services The definite_length_decoder function in lib/util/quickder.c in Mozilla Network Security Services (NSS) before 3.16.2.4 and 3.17.x before 3.17.3 does not ensure that the DER encoding of an ASN.1 lengt… NVD-CWE-Other
CVE-2014-1569 2024-11-21 11:04 2014-12-16 Show GitHub Exploit DB Packet Storm
291866 - mozilla firefox
firefox_esr
thunderbird
Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, and Thunderbird before 31.3 on Apple OS X 10.10 omit a CoreGraphics disable-logging action that is needed by jemalloc-based applications, wh… CWE-199
 Information Management Errors
CVE-2014-1595 2024-11-21 11:04 2014-12-11 Show GitHub Exploit DB Packet Storm
291867 - mozilla firefox_esr
firefox
seamonkey
thunderbird
Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, Thunderbird before 31.3, and SeaMonkey before 2.31 might allow remote attackers to execute arbitrary code by leveraging an incorrect cast fr… CWE-20
 Improper Input Validation 
CVE-2014-1594 2024-11-21 11:04 2014-12-11 Show GitHub Exploit DB Packet Storm
291868 - mozilla firefox_esr
firefox
seamonkey
thunderbird
Stack-based buffer overflow in the mozilla::FileBlockCache::Read function in Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, Thunderbird before 31.3, and SeaMonkey before 2.31 allows remot… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1593 2024-11-21 11:04 2014-12-11 Show GitHub Exploit DB Packet Storm
291869 - mozilla firefox_esr
firefox
seamonkey
thunderbird
Use-after-free vulnerability in the nsHtml5TreeOperation function in xul.dll in Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, Thunderbird before 31.3, and SeaMonkey before 2.31 allows re… NVD-CWE-Other
CVE-2014-1592 2024-11-21 11:04 2014-12-11 Show GitHub Exploit DB Packet Storm
291870 - mozilla firefox
seamonkey
Mozilla Firefox 33.0 and SeaMonkey before 2.31 include path strings in CSP violation reports, which allows remote attackers to obtain sensitive information via a web site that receives a report after… CWE-199
 Information Management Errors
CVE-2014-1591 2024-11-21 11:04 2014-12-11 Show GitHub Exploit DB Packet Storm