Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201601 7.5 重要
Network
Ruby-lang.org - OpenSSL gem for Ruby における暗号保護メカニズムを回避される脆弱性 CWE-310
暗号の問題
CVE-2016-7798 2017-02-16 16:49 2016-09-20 Show GitHub Exploit DB Packet Storm
201602 9.8 緊急
Network
サムスン - Android 用 Samsung Exynos fimg2d ドライバにおける NULL ポインタデリファレンスを引き起こされる脆弱性 CWE-476
NULL ポインタデリファレンス
CVE-2016-6604 2017-02-16 15:41 2016-08-5 Show GitHub Exploit DB Packet Storm
201603 5.5 警告
Local
Dropbox - Dropbox lepton の lepton/jpgcoder.cc の write_ujpg 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-6238 2017-02-16 15:25 2016-07-17 Show GitHub Exploit DB Packet Storm
201604 5.5 警告
Local
Dropbox - Dropbox lepton の lepton/jpgcoder.cc の build_huffcodes 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-787
境界外書き込み
CVE-2016-6237 2017-02-16 15:25 2016-07-17 Show GitHub Exploit DB Packet Storm
201605 5.5 警告
Local
Dropbox - Dropbox lepton の lepton/jpgcoder.cc の setup_imginfo_jpg 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-6236 2017-02-16 15:25 2016-07-17 Show GitHub Exploit DB Packet Storm
201606 5.5 警告
Local
Dropbox - Dropbox lepton の lepton/jpgcoder.cc の setup_imginfo_jpg 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-6235 2017-02-16 15:25 2016-07-17 Show GitHub Exploit DB Packet Storm
201607 5.5 警告
Local
Dropbox - Dropbox lepton の lepton/jpgcoder.cc の process_file 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-6234 2017-02-16 15:25 2016-07-17 Show GitHub Exploit DB Packet Storm
201608 9.8 緊急
Network
The WebM Project
Fedora Project
- libwebp における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2016-9085 2017-02-16 14:46 2016-10-10 Show GitHub Exploit DB Packet Storm
201609 5.5 警告
Local
cairographics.org - cairo の write_png 関数における整数オーバーフローの脆弱性 CWE-190
整数オーバーフローまたはラップアラウンド
CVE-2016-9082 2017-02-16 14:46 2016-10-20 Show GitHub Exploit DB Packet Storm
201610 5.5 警告
Local
GNOME Project - librsvg2 の rsvg-paint_server.c の rsvg_pattern_fix_fallback 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-6163 2017-02-16 14:46 2016-07-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 19, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292611 - apple quicktime Buffer overflow in Apple QuickTime before 7.7.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted ldat atom in a movie file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1248 2024-11-21 11:03 2014-02-27 Show GitHub Exploit DB Packet Storm
292612 - apple quicktime Apple QuickTime before 7.7.5 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted dref atom in a movie file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1247 2024-11-21 11:03 2014-02-27 Show GitHub Exploit DB Packet Storm
292613 - apple quicktime Buffer overflow in Apple QuickTime before 7.7.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted ftab atom in a movie file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1246 2024-11-21 11:03 2014-02-27 Show GitHub Exploit DB Packet Storm
292614 - apple quicktime Integer signedness error in Apple QuickTime before 7.7.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted stsz atom in a movie file. CWE-189
Numeric Errors
CVE-2014-1245 2024-11-21 11:03 2014-02-27 Show GitHub Exploit DB Packet Storm
292615 - apple quicktime Buffer overflow in Apple QuickTime before 7.7.5 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted movie file with H.264 encoding. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1244 2024-11-21 11:03 2014-02-27 Show GitHub Exploit DB Packet Storm
292616 - apple quicktime Apple QuickTime before 7.7.5 does not initialize an unspecified pointer, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted track l… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1243 2024-11-21 11:03 2014-02-27 Show GitHub Exploit DB Packet Storm
292617 7.4 HIGH
Network
apple mac_os_x
tvos
iphone_os
The SSLVerifySignedServerKeyExchange function in libsecurity_ssl/lib/sslKeyExchange.c in the Secure Transport feature in the Data Security component in Apple iOS 6.x before 6.1.6 and 7.x before 7.0.6… CWE-295
Improper Certificate Validation 
CVE-2014-1266 2024-11-21 11:03 2014-02-23 Show GitHub Exploit DB Packet Storm
292618 - apple boot_camp AppleMNT.sys in Apple Boot Camp 5 before 5.1 allows local users to cause a denial of service (kernel memory corruption) or possibly have unspecified other impact via a malformed header in a Portable … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1253 2024-11-21 11:03 2014-02-14 Show GitHub Exploit DB Packet Storm
292619 - broadcom 2e_web_option CA 2E Web Option r8.1.2 accepts a predictable substring of a W2E_SSNID session token in place of the entire token, which allows remote attackers to hijack sessions by changing characters at the end o… CWE-20
 Improper Input Validation 
CVE-2014-1219 2024-11-21 11:03 2014-02-14 Show GitHub Exploit DB Packet Storm
292620 - i-doit i-doit Cross-site scripting (XSS) vulnerability in synetics i-doit pro before 1.2.4 allows remote attackers to inject arbitrary web script or HTML via the call parameter. CWE-79
Cross-site Scripting
CVE-2014-1237 2024-11-21 11:03 2014-02-12 Show GitHub Exploit DB Packet Storm