Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201331 7.8 重要
Local
Linux - Linux Kernel の net/packet/af_packet.c における権限を取得される脆弱性 CWE-362
CWE-416
CVE-2016-8655 2016-12-9 11:04 2016-12-1 Show GitHub Exploit DB Packet Storm
201332 4.3 警告 Mozilla Foundation
openSUSE project
オラクル
- Mozilla Firefox におけるアドレスバーを偽装される脆弱性 CWE-Other
その他
CVE-2016-1965 2016-12-8 18:14 2016-03-8 Show GitHub Exploit DB Packet Storm
201333 6.8 警告 Mozilla Foundation
openSUSE project
SUSE
オラクル
- Mozilla Firefox の AtomicBaseIncDec 関数における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2016-1964 2016-12-8 18:14 2016-03-8 Show GitHub Exploit DB Packet Storm
201334 10 危険 Mozilla Foundation
openSUSE project
オラクル
- Mozilla Firefox の mozilla::DataChannelConnection::Close 関数における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2016-1962 2016-12-8 18:14 2016-03-8 Show GitHub Exploit DB Packet Storm
201335 4.3 警告
Network
日立
オラクル
- Oracle Java SE および Java SE Embedded における CORBA に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-3458 2016-12-8 15:15 2016-07-19 Show GitHub Exploit DB Packet Storm
201336 3.7
Network
レッドハット
IBM
MariaDB Corporation Ab.
オラクル
- Oracle MySQL の MySQL Server および MariaDB における Server: Security: Encryption に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-3452 2016-12-8 15:15 2016-07-19 Show GitHub Exploit DB Packet Storm
201337 5.5 警告
Local
IBM
openSUSE project
Debian
MariaDB Corporation Ab.
オラクル
レッドハット
- Oracle MySQL の MySQL Server および MariaDB における Server: Replication に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-0650 2016-12-8 15:15 2016-04-19 Show GitHub Exploit DB Packet Storm
201338 5.5 警告
Local
IBM
openSUSE project
Debian
MariaDB Corporation Ab.
オラクル
レッドハット
- Oracle MySQL の MySQL Server および MariaDB における Server: PS に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-0648 2016-12-8 15:15 2016-04-19 Show GitHub Exploit DB Packet Storm
201339 5.5 警告
Local
IBM
openSUSE project
Debian
MariaDB Corporation Ab.
オラクル
レッドハット
- Oracle MySQL の MySQL Server および MariaDB における Server: FTS に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-0647 2016-12-8 15:15 2016-04-19 Show GitHub Exploit DB Packet Storm
201340 5.5 警告
Local
IBM
openSUSE project
Debian
MariaDB Corporation Ab.
オラクル
レッドハット
- Oracle MySQL の MySQL Server および MariaDB における Server: DML に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-0646 2016-12-8 15:15 2016-04-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291321 - aphpkb aphpkb Multiple cross-site scripting (XSS) vulnerabilities in Andy's PHP Knowledgebase (Aphpkb) before 0.95.8 allow remote attackers to inject arbitrary web script or HTML via the (1) HTTP Referer header to… CWE-79
Cross-site Scripting
CVE-2013-7277 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
291322 - recommend_to_a_friend_project recommend_to_a_friend Cross-site scripting (XSS) vulnerability in inc/raf_form.php in the Recommend to a friend plugin 2.0.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the current_url… CWE-79
Cross-site Scripting
CVE-2013-7276 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
291323 - mybb mybb Cross-site scripting (XSS) vulnerability in misc.php in MyBB (aka MyBulletinBoard) before 1.6.12 allows remote attackers to inject arbitrary web script or HTML via the editor parameter in a smilie li… CWE-79
Cross-site Scripting
CVE-2013-7275 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
291324 - wallpaperscript wallpaperscript Cross-site scripting (XSS) vulnerability in Wallpaper Script 3.5.0082 allows remote authenticated users to inject arbitrary web script or HTML via the title field in a wallpaper file upload. CWE-79
Cross-site Scripting
CVE-2013-7274 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
291325 - 7mediaws edutrac Directory traversal vulnerability in 7 Media Web Solutions eduTrac before 1.1.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the showmask parameter to installer/overview.php. CWE-22
Path Traversal
CVE-2013-7097 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
291326 - linux linux_kernel The x25_recvmsg function in net/x25/af_x25.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allows loc… CWE-20
 Improper Input Validation 
CVE-2013-7271 2024-11-21 11:00 2014-01-7 Show GitHub Exploit DB Packet Storm
291327 - linux linux_kernel The packet_recvmsg function in net/packet/af_packet.c in the Linux kernel before 3.12.4 updates a certain length value before ensuring that an associated data structure has been initialized, which al… CWE-20
 Improper Input Validation 
CVE-2013-7270 2024-11-21 11:00 2014-01-7 Show GitHub Exploit DB Packet Storm
291328 - linux linux_kernel The nr_recvmsg function in net/netrom/af_netrom.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allow… CWE-20
 Improper Input Validation 
CVE-2013-7269 2024-11-21 11:00 2014-01-7 Show GitHub Exploit DB Packet Storm
291329 - linux linux_kernel The ipx_recvmsg function in net/ipx/af_ipx.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allows loc… CWE-20
 Improper Input Validation 
CVE-2013-7268 2024-11-21 11:00 2014-01-7 Show GitHub Exploit DB Packet Storm
291330 - linux linux_kernel The atalk_recvmsg function in net/appletalk/ddp.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allow… CWE-20
 Improper Input Validation 
CVE-2013-7267 2024-11-21 11:00 2014-01-7 Show GitHub Exploit DB Packet Storm