Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201731 7.2 重要
Network
MetalGenix - GeniXCMS の inc/lib/Control/Backend/posts.control.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-5346 2017-01-24 14:36 2017-01-15 Show GitHub Exploit DB Packet Storm
201732 8.8 重要
Network
MetalGenix - GeniXCMS の inc/lib/Control/Ajax/tags-ajax.control.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2017-5345 2017-01-24 14:36 2017-01-9 Show GitHub Exploit DB Packet Storm
201733 9.8 緊急
Network
LibTIFF - LibTIFF の tools/tiffcp におけるヒープバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2017-5225 2017-01-24 14:24 2017-01-12 Show GitHub Exploit DB Packet Storm
201734 9.8 緊急
Network
The PHP Group - PHP における任意のコードを実行される脆弱性 CWE-416
解放済みメモリの使用
CVE-2016-7479 2017-01-24 14:23 2016-09-15 Show GitHub Exploit DB Packet Storm
201735 7.5 重要
Network
サムスン - Samsung Note デバイスのソフトウェアにおけるシステムクラッシュを引き起こされる脆弱性 CWE-400
リソースの枯渇
CVE-2017-5351 2017-01-24 13:54 2017-01-12 Show GitHub Exploit DB Packet Storm
201736 7.5 重要
Network
サムスン - Samsung Note デバイスのソフトウェアにおける systemUI のクラッシュを引き起こされる脆弱性 CWE-388
エラー処理
CVE-2017-5350 2017-01-24 13:54 2017-01-12 Show GitHub Exploit DB Packet Storm
201737 9.8 緊急
Network
British Columbia Institute of Technology - CodeIgniter の system/libraries/Email.php における任意のコードを実行される脆弱性 CWE-74
インジェクション
CVE-2016-10131 2017-01-24 13:53 2016-12-27 Show GitHub Exploit DB Packet Storm
201738 5.3 警告
Local
Google - Telephony における権限昇格の脆弱性 CWE-284
不適切なアクセス制御
CVE-2016-6771 2017-01-24 11:11 2016-12-5 Show GitHub Exploit DB Packet Storm
201739 5.5 警告
Local
Google - メディアサーバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-6767 2017-01-24 11:11 2016-12-5 Show GitHub Exploit DB Packet Storm
201740 7 重要
Local
Linux - MediaTek ドライバにおける権限を昇格される脆弱性 CWE-284
不適切なアクセス制御
CVE-2016-6785 2017-01-24 10:09 2016-12-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292221 5.9 MEDIUM
Network
python python The ssl.match_hostname function in CPython (aka Python) before 2.7.9 and 3.x before 3.3.3 does not properly handle wildcards in hostnames, which might allow man-in-the-middle attackers to spoof serve… CWE-19
 Data Processing Errors
CVE-2013-7440 2024-11-21 11:01 2016-06-8 Show GitHub Exploit DB Packet Storm
292222 7.5 HIGH
Network
php php file before 5.18, as used in the Fileinfo component in PHP before 5.6.0, allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a zero root_storage … NVD-CWE-Other
CVE-2014-0236 2024-11-21 11:01 2016-05-16 Show GitHub Exploit DB Packet Storm
292223 9.8 CRITICAL
Network
littlecms little_cms_color_engine Double free vulnerability in the DefaultICCintents function in cmscnvrt.c in liblcms2 in Little CMS 2.x before 2.6 allows remote attackers to execute arbitrary code via a malformed ICC profile that t… NVD-CWE-Other
CVE-2013-7455 2024-11-21 11:01 2016-05-7 Show GitHub Exploit DB Packet Storm
292224 6.5 MEDIUM
Network
canonical
xchat
hexchat_project
ubuntu_linux
xchat
xchat_gnome
hexchat
The ssl_do_connect function in common/server.c in HexChat before 2.10.2, XChat, and XChat-GNOME does not verify that the server hostname matches a domain name in the X.509 certificate, which allows m… CWE-310
Cryptographic Issues
CVE-2013-7449 2024-11-21 11:01 2016-04-21 Show GitHub Exploit DB Packet Storm
292225 7.5 HIGH
Network
debian
didiwiki_project
debian_linux
didiwiki
Directory traversal vulnerability in wiki.c in didiwiki allows remote attackers to read arbitrary files via the page parameter to api/page/get. CWE-22
Path Traversal
CVE-2013-7448 2024-11-21 11:01 2016-02-24 Show GitHub Exploit DB Packet Storm
292226 6.5 MEDIUM
Network
canonical
samsung
ubuntu_linux
x14j_firmware
Integer overflow in the gdk_cairo_set_source_pixbuf function in gdk/gdkcairo.c in GTK+ before 3.9.8, as used in eom, gnome-photos, eog, gambas3, thunar, pinpoint, and possibly other applications, all… NVD-CWE-Other
CVE-2013-7447 2024-11-21 11:01 2016-02-18 Show GitHub Exploit DB Packet Storm
292227 5.3 MEDIUM
Local
linux linux_kernel Use-after-free vulnerability in net/unix/af_unix.c in the Linux kernel before 4.3.3 allows local users to bypass intended AF_UNIX socket permissions or cause a denial of service (panic) via crafted e… NVD-CWE-Other
CVE-2013-7446 2024-11-21 11:01 2015-12-28 Show GitHub Exploit DB Packet Storm
292228 - linux linux_kernel The Direct Rendering Manager (DRM) subsystem in the Linux kernel through 4.x mishandles requests for Graphics Execution Manager (GEM) objects, which allows context-dependent attackers to cause a deni… CWE-399
 Resource Management Errors
CVE-2013-7445 2024-11-21 11:01 2015-10-16 Show GitHub Exploit DB Packet Storm
292229 - mediawiki mediawiki The Special:Contributions page in MediaWiki before 1.22.0 allows remote attackers to determine if an IP is autoblocked via the "Change block" text. CWE-200
Information Exposure
CVE-2013-7444 2024-11-21 11:01 2015-09-1 Show GitHub Exploit DB Packet Storm
292230 - canonical
sqlite
ubuntu_linux
sqlite
Buffer overflow in the skip-scan optimization in SQLite 3.8.2 allows remote attackers to cause a denial of service (crash) via crafted SQL statements. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-7443 2024-11-21 11:01 2015-08-12 Show GitHub Exploit DB Packet Storm