Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201331 7.3 重要
Network
MODX - MODX Revolution の /connectors/index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-10037 2017-01-6 16:49 2016-11-14 Show GitHub Exploit DB Packet Storm
201332 4.4 警告
Local
レッドハット - Red Hat Enterprise Linux などの Linux 実装の sudo のデフォルト設定における情報漏えいの脆弱性 CWE-200
情報漏えい
CVE-2016-7091 2017-01-6 14:21 2016-11-3 Show GitHub Exploit DB Packet Storm
201333 9.1 緊急
Network
Michel Rodriguez - XML::Twig における外部エンティティを拡張される脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2016-9180 2017-01-6 13:32 2016-09-26 Show GitHub Exploit DB Packet Storm
201334 7.8 重要
Local
OpenJPEG project - OpenJPEG におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-9675 2017-01-6 12:36 2016-10-5 Show GitHub Exploit DB Packet Storm
201335 5.3 警告
Network
Digium - Asterisk Open Source および Certified Asterisk の chan_sip チャネルドライバにおけるプロキシの認証なしに Asterisk に INVITE リクエストを許可される脆弱性 CWE-285
不適切な認可
CVE-2016-9938 2017-01-6 11:48 2016-12-8 Show GitHub Exploit DB Packet Storm
201336 7.1 重要
Local
Image-Info project - Image::Info におけるサービス運用妨害 (DoS) の脆弱性 CWE-611
XML 外部エンティティ参照の不適切な制限
CVE-2016-9181 2017-01-6 11:18 2016-09-27 Show GitHub Exploit DB Packet Storm
201337 9.8 緊急
Network
Bundler - Bundler における任意の Ruby コードをアプリケーションに挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2016-7954 2017-01-6 11:03 2016-10-5 Show GitHub Exploit DB Packet Storm
201338 7.5 重要
Network
Digium - Asterisk Open Source におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-9937 2017-01-6 09:40 2016-11-11 Show GitHub Exploit DB Packet Storm
201339 6.1 警告
Network
Tiki Software Community Association - Tiki Wiki CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-9889 2017-01-5 18:40 2016-12-22 Show GitHub Exploit DB Packet Storm
201340 8.1 重要
Network
シーメンス - SIEMENS SIMATIC WinCC および SIEMENS SIMATIC PCS 7 における ActiveX コンポーネントをクラッシュさせられる脆弱性 CWE-254
セキュリティ機能
CVE-2016-9160 2017-01-5 18:24 2016-12-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
289841 - apple tvos
mac_os_x
iphone_os
The IOKit implementation in the kernel in Apple iOS before 7.1.2 and Apple TV before 6.1.2, and in IOReporting in Apple OS X before 10.9.4, allows local users to cause a denial of service (NULL point… NVD-CWE-Other
CVE-2014-1355 2024-11-21 11:04 2014-07-1 Show GitHub Exploit DB Packet Storm
289842 - apple iphone_os CoreGraphics in Apple iOS before 7.1.2 does not properly restrict allocation of stack memory for processing of XBM images, which allows remote attackers to execute arbitrary code or cause a denial of… CWE-399
 Resource Management Errors
CVE-2014-1354 2024-11-21 11:04 2014-07-1 Show GitHub Exploit DB Packet Storm
289843 - apple iphone_os Lock Screen in Apple iOS before 7.1.2 does not properly manage the telephony state in Airplane Mode, which allows physically proximate attackers to bypass the lock protection mechanism, and access a … CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-1353 2024-11-21 11:04 2014-07-1 Show GitHub Exploit DB Packet Storm
289844 - apple iphone_os Lock Screen in Apple iOS before 7.1.2 does not properly enforce the limit on failed passcode attempts, which makes it easier for physically proximate attackers to conduct brute-force passcode-guessin… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-1352 2024-11-21 11:04 2014-07-1 Show GitHub Exploit DB Packet Storm
289845 - apple iphone_os Siri in Apple iOS before 7.1.2 allows physically proximate attackers to bypass an intended lock-screen passcode requirement, and read a contact list, via a Siri request that refers to a contact ambig… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-1351 2024-11-21 11:04 2014-07-1 Show GitHub Exploit DB Packet Storm
289846 - apple iphone_os Settings in Apple iOS before 7.1.2 allows physically proximate attackers to bypass an intended iCloud password requirement, and turn off the Find My iPhone service, by leveraging incorrect state mana… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-1350 2024-11-21 11:04 2014-07-1 Show GitHub Exploit DB Packet Storm
289847 - apple iphone_os Use-after-free vulnerability in Safari in Apple iOS before 7.1.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an invalid URL. NVD-CWE-Other
CVE-2014-1349 2024-11-21 11:04 2014-07-1 Show GitHub Exploit DB Packet Storm
289848 - apple iphone_os Mail in Apple iOS before 7.1.2 advertises the availability of data protection for attachments but stores cleartext attachments under mobile/Library/Mail/, which makes it easier for physically proxima… CWE-310
Cryptographic Issues
CVE-2014-1348 2024-11-21 11:04 2014-07-1 Show GitHub Exploit DB Packet Storm
289849 - apple safari
iphone_os
WebKit in Apple iOS before 7.1.2 and Apple Safari before 6.1.5 and 7.x before 7.0.5 does not properly encode domain names in URLs, which allows remote attackers to spoof the address bar via a crafted… NVD-CWE-Other
CVE-2014-1345 2024-11-21 11:04 2014-07-1 Show GitHub Exploit DB Packet Storm
289850 - apple safari WebKit, as used in Apple Safari before 6.1.5 and 7.x before 7.0.5, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a craft… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1340 2024-11-21 11:04 2014-07-1 Show GitHub Exploit DB Packet Storm