Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201531 9.8 緊急
Network
The PHP Group - PHP の Zend/zend_hash.c における任意のコードを実行される脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2017-5340 2017-01-23 11:40 2017-01-3 Show GitHub Exploit DB Packet Storm
201532 9.8 緊急
Network
The PHP Group - PHP の ext/spl/spl_observer.c の SplObjectStorage のアンシリアライズの実装における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-7480 2017-01-23 11:40 2016-10-13 Show GitHub Exploit DB Packet Storm
201533 7.5 重要
Network
The PHP Group - PHP の Zend/zend_exceptions.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-835
無限ループ
CVE-2016-7478 2017-01-23 11:40 2016-11-3 Show GitHub Exploit DB Packet Storm
201534 4.8 警告
Network
web2py - Web2py における反射型クロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-4807 2017-01-23 10:52 2016-04-4 Show GitHub Exploit DB Packet Storm
201535 7.8 重要
Local
Hancom Inc. - Hancom Office 2014 におけるアプリケーションのコンテキスト内でコードを実行される脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2016-4298 2017-01-23 10:42 2016-08-4 Show GitHub Exploit DB Packet Storm
201536 7.8 重要
Local
Hancom Inc. - Hancom Office 2014 におけるヒープを破損される脆弱性 CWE-119
バッファエラー
CVE-2016-4296 2017-01-23 10:42 2016-08-4 Show GitHub Exploit DB Packet Storm
201537 7.8 重要
Local
Hancom Inc. - Hancom Office 2014 におけるヒープのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-4295 2017-01-23 10:42 2016-08-4 Show GitHub Exploit DB Packet Storm
201538 7.8 重要
Local
Hancom Inc. - Hancom Office 2014 におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-4294 2017-01-23 10:41 2016-08-4 Show GitHub Exploit DB Packet Storm
201539 7.8 重要
Local
Hancom Inc. - Hancom Office 2014 におけるアプリケーションのコンテキスト内でコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-4292 2017-01-23 10:41 2016-08-4 Show GitHub Exploit DB Packet Storm
201540 7.8 重要
Local
Hancom Inc. - Hancom Office 2014 における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2016-4291 2017-01-23 10:41 2016-08-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291771 - apache tomcat Apache Tomcat before 6.0.40, 7.x before 7.0.54, and 8.x before 8.0.6 does not properly constrain the class loader that accesses the XML parser used with an XSLT stylesheet, which allows remote attack… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0119 2024-11-21 11:01 2014-05-31 Show GitHub Exploit DB Packet Storm
291772 - apache tomcat Integer overflow in java/org/apache/tomcat/util/buf/Ascii.java in Apache Tomcat before 6.0.40, 7.x before 7.0.53, and 8.x before 8.0.4, when operated behind a reverse proxy, allows remote attackers t… CWE-189
Numeric Errors
CVE-2014-0099 2024-11-21 11:01 2014-05-31 Show GitHub Exploit DB Packet Storm
291773 - apache tomcat java/org/apache/catalina/servlets/DefaultServlet.java in the default servlet in Apache Tomcat before 6.0.40, 7.x before 7.0.53, and 8.x before 8.0.4 does not properly restrict XSLT stylesheets, which… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0096 2024-11-21 11:01 2014-05-31 Show GitHub Exploit DB Packet Storm
291774 - apache tomcat java/org/apache/coyote/ajp/AbstractAjpProcessor.java in Apache Tomcat 8.x before 8.0.4 allows remote attackers to cause a denial of service (thread consumption) by using a "Content-Length: 0" AJP req… CWE-20
 Improper Input Validation 
CVE-2014-0095 2024-11-21 11:01 2014-05-31 Show GitHub Exploit DB Packet Storm
291775 - apache tomcat Integer overflow in the parseChunkHeader function in java/org/apache/coyote/http11/filters/ChunkedInputFilter.java in Apache Tomcat before 6.0.40, 7.x before 7.0.53, and 8.x before 8.0.4 allows remot… CWE-189
Numeric Errors
CVE-2014-0075 2024-11-21 11:01 2014-05-31 Show GitHub Exploit DB Packet Storm
291776 - redhat rhevm-dwh The setup script in ovirt-engine-dwh, as used in the Red Hat Enterprise Virtualization Manager data warehouse (rhevm-dwh) package before 3.3.3, stores the history database password in cleartext, whic… CWE-255
Credentials Management
CVE-2014-0202 2024-11-21 11:01 2014-05-30 Show GitHub Exploit DB Packet Storm
291777 - sosreport_project sosreport SOSreport stores the md5 hash of the GRUB bootloader password in an archive, which allows local users to obtain sensitive information by reading the archive. CWE-255
Credentials Management
CVE-2014-0246 2024-11-21 11:01 2014-05-29 Show GitHub Exploit DB Packet Storm
291778 - redhat rhevm-reports ovirt-engine-reports, as used in the Red Hat Enterprise Virtualization reports package (rhevm-reports) before 3.3.3, uses world-readable permissions on configuration files, which allows local users t… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0201 2024-11-21 11:01 2014-05-29 Show GitHub Exploit DB Packet Storm
291779 - redhat rhevm-reports The Red Hat Enterprise Virtualization Manager reports (rhevm-reports) package before 3.3.3-1 uses world-readable permissions on the datasource configuration file (js-jboss7-ds.xml), which allows loca… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0200 2024-11-21 11:01 2014-05-29 Show GitHub Exploit DB Packet Storm
291780 - redhat rhevm-reports The setup script in ovirt-engine-reports, as used in the Red Hat Enterprise Virtualization reports (rhevm-reports) package before 3.3.3, stores the reports database password in cleartext, which allow… CWE-310
Cryptographic Issues
CVE-2014-0199 2024-11-21 11:01 2014-05-29 Show GitHub Exploit DB Packet Storm