|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 11, 2026, 6:13 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 201121 | 7.5 |
重要
Network |
tar project | - | Node.js 用 tar パッケージにおける任意のファイルに書き込まれる脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2015-8860 | 2017-02-7 11:48 | 2015-11-3 | Show | GitHub Exploit DB Packet Storm |
| 201122 | 5.3 |
警告
Network |
send project | - | Node.js 用 send パッケージにおけるルートのパスを取得される脆弱性 |
CWE-200
情報漏えい |
CVE-2015-8859 | 2017-02-7 11:48 | 2015-11-3 | Show | GitHub Exploit DB Packet Storm |
| 201123 | 7.5 |
重要
Network |
uglify-js project | - | Node.js 用 uglify-js パッケージにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2015-8858 | 2017-02-7 11:48 | 2015-10-25 | Show | GitHub Exploit DB Packet Storm |
| 201124 | 9.8 |
緊急
Network |
uglify-js project | - | Node.js 用 uglify-js パッケージにおけるセキュリティメカニズムを回避される脆弱性 |
CWE-254
セキュリティ機能 |
CVE-2015-8857 | 2017-02-7 11:48 | 2015-08-25 | Show | GitHub Exploit DB Packet Storm |
| 201125 | 6.1 |
警告
Network |
serve-index project | - | Node.js 用 serve-index パッケージにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2015-8856 | 2017-02-7 11:48 | 2015-03-14 | Show | GitHub Exploit DB Packet Storm |
| 201126 | 7.5 |
重要
Network |
semver project | - | Node.js 用 semver パッケージにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2015-8855 | 2017-02-7 11:48 | 2015-04-4 | Show | GitHub Exploit DB Packet Storm |
| 201127 | 7.5 |
重要
Network |
Marked project | - | Node.js 用 marked パッケージにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2015-8854 | 2017-02-7 11:48 | 2015-01-23 | Show | GitHub Exploit DB Packet Storm |
| 201128 | 7.5 |
重要
Network |
ms project | - | Node.js 用 ms パッケージにおけるサービス運用妨害 (DoS) の脆弱性 |
CWE-399
リソース管理の問題 |
CVE-2015-8315 | 2017-02-7 11:48 | 2015-10-25 | Show | GitHub Exploit DB Packet Storm |
| 201129 | 6.1 |
警告
Network |
validator project | - | Node.js 用 validator パッケージにおける XSS フィルタを回避される脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-9772 | 2017-02-7 11:48 | 2014-10-28 | Show | GitHub Exploit DB Packet Storm |
| 201130 | 6.1 |
警告
Network |
validator project | - | Node.js 用 validator モジュールにおける XSS フィルタを回避される脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2013-7454 | 2017-02-7 11:48 | 2013-07-6 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 12, 2026, 4:20 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 291431 | 9.8 |
CRITICAL
Network |
qualcomm |
msm8996_firmware msm8939_firmware msm8976_firmware msm8917_firmware sdm845_firmware sdm660_firmware |
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MSM8996, MSM8939, MSM8976, MSM8917, SDM845, and SDM660, access control collision vulnerability when accessin… |
CWE-284
Improper Access Control |
CVE-2014-10050 | 2024-11-21 11:03 | 2018-04-18 | Show | GitHub Exploit DB Packet Storm |
| 291432 | 7.5 |
HIGH
Network |
qualcomm |
sd_400_firmware sd_800_firmware |
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 400 and SD 800, when writing the Full Disk Encryption key to crypto engine, information leak could occur. |
CWE-200
Information Exposure |
CVE-2014-10047 | 2024-11-21 11:03 | 2018-04-18 | Show | GitHub Exploit DB Packet Storm |
| 291433 | 7.5 |
HIGH
Network |
qualcomm |
mdm9615_firmware mdm9625_firmware mdm9635m_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_400_firmware sd_617_firmware sd_800_firmware sd_820_firmware |
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9615, MDM9625, MDM9635M, SD 210/SD 212/SD 205, SD 400, SD 617, SD 800, and SD 820, in the time daemon, un… |
CWE-129
Improper Validation of Array Index |
CVE-2014-10044 | 2024-11-21 11:03 | 2018-04-18 | Show | GitHub Exploit DB Packet Storm |
| 291434 | 9.8 |
CRITICAL
Network |
qualcomm |
mdm9625_firmware sd_400_firmware sd_800_firmware |
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9625, SD 400, and SD 800, calling qsee_app_entry_return() without first calling qsee_app_entry() will cau… |
CWE-19
Data Processing Errors |
CVE-2014-10039 | 2024-11-21 11:03 | 2018-04-18 | Show | GitHub Exploit DB Packet Storm |
| 291435 | 7.5 |
HIGH
Network |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9640_firmware mdm9650_firmware msm8909w_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_400_firmware sd_410_firmware sd_… |
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile and Snapdragon Wear MDM9206, MDM9607, MDM9640, MDM9650, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410/12, S… |
CWE-200
Information Exposure |
CVE-2014-10062 | 2024-11-21 11:03 | 2018-04-18 | Show | GitHub Exploit DB Packet Storm |
| 291436 | 7.5 |
HIGH
Network |
qualcomm |
sd_210_firmware sd_212_firmware sd_205_firmware sd_400_firmware sd_427_firmware sd_435_firmware sd_425_firmware sd_430_firmware sd_450_firmware sd_617_firmware sd_625_fi… |
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile SD 210/SD 212/SD 205, SD 400, SD 425, SD 427, SD 430, SD 435, SD 450, SD 617, SD 625, SD 650/52, SD 800, SD … |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2014-10058 | 2024-11-21 11:03 | 2018-04-18 | Show | GitHub Exploit DB Packet Storm |
| 291437 | 9.8 |
CRITICAL
Network |
qualcomm |
mdm9615_firmware mdm9625_firmware mdm9635m_firmware mdm9640_firmware mdm9650_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_400_firmware sd_425_firmware sd_… |
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile MDM9615, MDM9625, MDM9635M, MDM9640, MDM9650, SD 210/SD 212/SD 205, SD 400, SD 425, SD 430, SD 435, SD 617, … |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2014-10057 | 2024-11-21 11:03 | 2018-04-18 | Show | GitHub Exploit DB Packet Storm |
| 291438 | 9.8 |
CRITICAL
Network |
qualcomm |
mdm9206_firmware mdm9607_firmware mdm9635m_firmware mdm9640_firmware mdm9650_firmware qca6174a_firmware msm8909w_firmware sd_210_firmware sd_212_firmware sd_205_firmware | In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear MDM9206, MDM9607, MDM9635M, MDM9640, MDM9650, MSM8909W, QCA6174A… |
CWE-264
Permissions, Privileges, and Access Controls |
CVE-2014-10054 | 2024-11-21 11:03 | 2018-04-18 | Show | GitHub Exploit DB Packet Storm |
| 291439 | 9.8 |
CRITICAL
Network |
qualcomm |
mdm9206_firmware sd_820a_firmware mdm9650_firmware msm8909w_firmware sd_210_firmware sd_212_firmware sd_205_firmware sd_400_firmware sd_410_firmware sd_412_firmware sd_4… |
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Automobile, Snapdragon Mobile, and Snapdragon Wear MDM9206, MDM9650, MSM8909W, SD 210/SD 212/SD 205, SD 400, SD 410… |
CWE-284
Improper Access Control |
CVE-2014-10053 | 2024-11-21 11:03 | 2018-04-18 | Show | GitHub Exploit DB Packet Storm |
| 291440 | 9.8 |
CRITICAL
Network |
qualcomm |
mdm9206_firmware mdm9607_firmware fsm9055_firmware mdm9625_firmware mdm9635m_firmware mdm9640_firmware mdm9645_firmware mdm9650_firmware mdm9655_firmware msm8909w_firmware<… |
In Android before 2018-04-05 or earlier security patch level on Qualcomm Snapdragon Mobile, Snapdragon Wear, and Small Cell SoC FSM9055, IPQ4019, MDM9206, MDM9607, MDM9625, MDM9635M, MDM9640, MDM9645… |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2014-10052 | 2024-11-21 11:03 | 2018-04-18 | Show | GitHub Exploit DB Packet Storm |