Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201211 8.1 重要
Network
Django Software Foundation
Canonical
Fedora Project
- Django における DNS リバインディング攻撃を実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-9014 2016-12-15 17:22 2016-11-1 Show GitHub Exploit DB Packet Storm
201212 9.8 緊急
Network
Django Software Foundation
Canonical
Fedora Project
- Django におけるデータベースサーバへのアクセス権を取得される脆弱性 CWE-798
ハードコードされた認証情報の使用
CVE-2016-9013 2016-12-15 17:22 2016-11-1 Show GitHub Exploit DB Packet Storm
201213 6.3 警告
Network
International Digital Publishing Forum - EpubCheck に XML 外部実体参照 (XXE) に関する脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2016-9487 2016-12-15 16:42 2016-12-13 Show GitHub Exploit DB Packet Storm
201214 6.1 警告
Network
Dotclear - Dotclear のメディアマネージャにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-6523 2016-12-15 15:39 2016-08-5 Show GitHub Exploit DB Packet Storm
201215 6.5 警告
Network
Pivotal Software, Inc.
オラクル
- RabbitMQ の管理プラグインにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2015-8786 2016-12-15 15:13 2015-12-29 Show GitHub Exploit DB Packet Storm
201216 9.8 緊急
Network
The phpMyAdmin Project - phpMyAdmin における CSRF トークンがリターン URL から削除されない脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-9866 2016-12-15 14:58 2016-11-25 Show GitHub Exploit DB Packet Storm
201217 9.8 緊急
Network
The phpMyAdmin Project - phpMyAdmin における PMA_safeUnserialize() 関数による保護を回避される脆弱性 CWE-254
CWE-502
CVE-2016-9865 2016-12-15 14:58 2016-11-25 Show GitHub Exploit DB Packet Storm
201218 7.5 重要
Network
The phpMyAdmin Project - phpMyAdmin における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-9864 2016-12-15 14:58 2016-11-25 Show GitHub Exploit DB Packet Storm
201219 7.5 重要
Network
The phpMyAdmin Project - phpMyAdmin におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-9863 2016-12-15 14:58 2016-11-25 Show GitHub Exploit DB Packet Storm
201220 7.5 重要
Network
The phpMyAdmin Project - phpMyAdmin における BBCode インジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2016-9862 2016-12-15 14:58 2016-11-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290231 - adobe flash_player
air_sdk
air
air_sdk_\&_compiler
Adobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on Windows and OS X and before 11.2.202.418 on Linux, Adobe AIR before 15.0.0.356, Adobe AIR SDK before 15.0.0.356, and Adobe … CWE-94
Code Injection
CVE-2014-0577 2024-11-21 11:02 2014-11-12 Show GitHub Exploit DB Packet Storm
290232 - adobe flash_player
air_sdk
air
air_sdk_\&_compiler
Adobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on Windows and OS X and before 11.2.202.418 on Linux, Adobe AIR before 15.0.0.356, Adobe AIR SDK before 15.0.0.356, and Adobe … NVD-CWE-noinfo
CVE-2014-0576 2024-11-21 11:02 2014-11-12 Show GitHub Exploit DB Packet Storm
290233 - adobe flash_player
air_sdk
air
air_sdk_\&_compiler
Double free vulnerability in Adobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on Windows and OS X and before 11.2.202.418 on Linux, Adobe AIR before 15.0.0.356, Adobe AIR SDK … CWE-94
Code Injection
CVE-2014-0574 2024-11-21 11:02 2014-11-12 Show GitHub Exploit DB Packet Storm
290234 - adobe flash_player
air_sdk
air
air_sdk_\&_compiler
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on Windows and OS X and before 11.2.202.418 on Linux, Adobe AIR before 15.0.0.356, Adobe AIR S… NVD-CWE-Other
CVE-2014-0573 2024-11-21 11:02 2014-11-12 Show GitHub Exploit DB Packet Storm
290235 - debian advanced_package_tool The apt-get download command in APT before 1.0.9 does not properly validate signatures for packages, which allows remote attackers to execute arbitrary code via a crafted package. CWE-20
 Improper Input Validation 
CVE-2014-0490 2024-11-21 11:02 2014-11-4 Show GitHub Exploit DB Packet Storm
290236 - debian advanced_package_tool APT before 1.0.9, when the Acquire::GzipIndexes option is enabled, does not validate checksums, which allows remote attackers to execute arbitrary code via a crafted package. CWE-20
 Improper Input Validation 
CVE-2014-0489 2024-11-21 11:02 2014-11-4 Show GitHub Exploit DB Packet Storm
290237 - debian advanced_package_tool APT before 1.0.9 does not "invalidate repository data" when moving from an unauthenticated to authenticated state, which allows remote attackers to have unspecified impact via crafted repository data. CWE-20
 Improper Input Validation 
CVE-2014-0488 2024-11-21 11:02 2014-11-4 Show GitHub Exploit DB Packet Storm
290238 - debian advanced_package_tool APT before 1.0.9 does not verify downloaded files if they have been modified as indicated using the If-Modified-Since header, which has unspecified impact and attack vectors. NVD-CWE-noinfo
CVE-2014-0487 2024-11-21 11:02 2014-11-4 Show GitHub Exploit DB Packet Storm
290239 - canonical
chkrootkit
ubuntu_linux
chkrootkit
The slapper function in chkrootkit before 0.50 does not properly quote file paths, which allows local users to execute arbitrary code via a Trojan horse executable. NOTE: this is only a vulnerabilit… CWE-20
 Improper Input Validation 
CVE-2014-0476 2024-11-21 11:02 2014-10-26 Show GitHub Exploit DB Packet Storm
290240 - hamstersoft hamster_free_zip_archiver Untrusted search path vulnerability in Hamster Free ZIP Archiver 2.0.1.7 allows local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located i… NVD-CWE-Other
CVE-2014-0619 2024-11-21 11:02 2014-10-23 Show GitHub Exploit DB Packet Storm