Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201501 5.5 警告
Local
Fabrice Bellard - 32-bit Windows ゲストサポート用に TPR 最適化でビルドされた QEMU におけるサービス運用妨害 (DoS) の脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2016-1922 2017-01-12 15:33 2016-01-15 Show GitHub Exploit DB Packet Storm
201502 5.5 警告
Local
Fabrice Bellard - QEMU の exec.c の cpu_physical_memory_write_rom_internal 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-8818 2017-01-12 15:33 2015-07-6 Show GitHub Exploit DB Packet Storm
201503 5.5 警告
Local
Fabrice Bellard - 'address_space_translate' を使用するようにビルドされた QEMU におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
CWE-787
CVE-2015-8817 2017-01-12 15:33 2015-03-18 Show GitHub Exploit DB Packet Storm
201504 5.5 警告
Local
Fabrice Bellard - VMWARE VMXNET3 準仮想化 NIC エミュレータサポートでビルドされた QEMU におけるサービス運用妨害 (DoS) の脆弱性 CWE-284
不適切なアクセス制御
CVE-2015-8745 2017-01-12 15:33 2015-10-12 Show GitHub Exploit DB Packet Storm
201505 5.5 警告
Local
Fabrice Bellard - VMWARE VMXNET3 準仮想化 NIC エミュレータサポートでビルドされた QEMU におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-8744 2017-01-12 15:33 2015-10-12 Show GitHub Exploit DB Packet Storm
201506 7.1 重要
Local
Fabrice Bellard - NE2000 デバイスエミュレーションサポートでビルドされた QEMU におけるQEMU メモリのバイトをリークされる脆弱性 CWE-125
CWE-787
CVE-2015-8743 2017-01-12 15:33 2015-09-21 Show GitHub Exploit DB Packet Storm
201507 6.5 警告
Local
Fabrice Bellard - Rocker スイッチエミュレーションサポートでビルドされた QEMU におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2015-8701 2017-01-12 15:33 2015-12-28 Show GitHub Exploit DB Packet Storm
201508 6.5 警告
Local
Fabrice Bellard - QEMU の hw/9pfs/9p-proxy.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-400
リソースの枯渇
CVE-2016-9916 2017-01-12 15:26 2016-11-16 Show GitHub Exploit DB Packet Storm
201509 6.5 警告
Local
Fabrice Bellard - QEMU の hw/9pfs/9p-handle.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-400
リソースの枯渇
CVE-2016-9915 2017-01-12 15:26 2016-11-16 Show GitHub Exploit DB Packet Storm
201510 6.5 警告
Local
Fabrice Bellard - QEMU の hw/9pfs/9p.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-400
リソースの枯渇
CVE-2016-9914 2017-01-12 15:26 2016-11-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291821 - apache struts CookieInterceptor in Apache Struts before 2.3.20, when a wildcard cookiesName value is used, does not properly restrict access to the getClass method, which allows remote attackers to "manipulate" th… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0113 2024-11-21 11:01 2014-04-29 Show GitHub Exploit DB Packet Storm
291822 - apache struts ParametersInterceptor in Apache Struts before 2.3.20 does not properly restrict access to the getClass method, which allows remote attackers to "manipulate" the ClassLoader and execute arbitrary code… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0112 2024-11-21 11:01 2014-04-29 Show GitHub Exploit DB Packet Storm
291823 - openstack
canonical
opensuse
neutron
ubuntu_linux
opensuse
The openvswitch-agent process in OpenStack Neutron 2013.1 before 2013.2.4 and 2014.1 before 2014.1.1 allows remote authenticated users to bypass security group restrictions via an invalid CIDR in a s… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0187 2024-11-21 11:01 2014-04-28 Show GitHub Exploit DB Packet Storm
291824 - zarafa zarafa The ValidateUserLogon function in provider/libserver/ECSession.cpp in Zarafa 7.1.8, 6.20.0, and earlier, when using certain build conditions, allows remote attackers to cause a denial of service (cra… CWE-20
 Improper Input Validation 
CVE-2014-0079 2024-11-21 11:01 2014-04-28 Show GitHub Exploit DB Packet Storm
291825 - zarafa zarafa The ValidateUserLogon function in provider/libserver/ECSession.cpp in Zarafa 5.00 before 7.1.8 beta2 allows remote attackers to cause a denial of service (crash) via vectors related to "a NULL pointe… CWE-20
 Improper Input Validation 
CVE-2014-0037 2024-11-21 11:01 2014-04-28 Show GitHub Exploit DB Packet Storm
291826 - openstack image_registry_and_delivery_service_\(glance\)
icehouse
The Sheepdog backend in OpenStack Image Registry and Delivery Service (Glance) 2013.2 before 2013.2.4 and icehouse before icehouse-rc2 allows remote authenticated users with permission to insert or m… CWE-20
 Improper Input Validation 
CVE-2014-0162 2024-11-21 11:01 2014-04-28 Show GitHub Exploit DB Packet Storm
291827 - linux
redhat
suse
opensuse
linux_kernel
enterprise_linux_server
linux_enterprise_server
evergreen
linux_enterprise_real_time_extension
enterprise_linux_desktop
suse_linux_enterprise_server
The Netlink implementation in the Linux kernel through 3.14.1 does not provide a mechanism for authorizing socket operations based on the opener of a socket, which allows local users to bypass intend… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0181 2024-11-21 11:01 2014-04-27 Show GitHub Exploit DB Packet Storm
291828 - pocoproject poco_c\+\+_libraries The Poco::Net::X509Certificate::verify method in the NetSSL library in POCO C++ Libraries before 1.4.6p4 allows man-in-the-middle attackers to spoof SSL servers via crafted DNS PTR records that are r… CWE-310
Cryptographic Issues
CVE-2014-0350 2024-11-21 11:01 2014-04-26 Show GitHub Exploit DB Packet Storm
291829 - redhat openshift The openshift-origin-broker in Red Hat OpenShift Enterprise 2.0.5, 1.2.7, and earlier does not properly handle authentication requests from the remote-user auth plugin, which allows remote attackers … CWE-287
Improper Authentication
CVE-2014-0188 2024-11-21 11:01 2014-04-24 Show GitHub Exploit DB Packet Storm
291830 - automattic jetpack The Jetpack plugin before 1.9 before 1.9.4, 2.0.x before 2.0.9, 2.1.x before 2.1.4, 2.2.x before 2.2.7, 2.3.x before 2.3.7, 2.4.x before 2.4.4, 2.5.x before 2.5.2, 2.6.x before 2.6.3, 2.7.x before 2.… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0173 2024-11-21 11:01 2014-04-22 Show GitHub Exploit DB Packet Storm