Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201761 5.5 警告
Local
VMware - Mac OS X 上で稼動する VMware Tools におけるカーネルメモリのアドレスを特定される脆弱性 CWE-200
CWE-254
CVE-2016-5328 2017-01-10 17:40 2016-10-25 Show GitHub Exploit DB Packet Storm
201762 6.5 警告
Local
Fabrice Bellard - 'chardev' バックエンドサポートでビルドされた Quick Emulator におけるサービス運用妨害 (DoS) の脆弱性 CWE-416
解放済みメモリの使用
CVE-2016-9923 2017-01-10 17:32 2016-10-24 Show GitHub Exploit DB Packet Storm
201763 6.5 警告
Local
Fabrice Bellard - Cirrus CLGD 54xx VGA Emulator サポートでビルドされた Quick Emulator におけるサービス運用妨害 (DoS) の脆弱性 CWE-369
ゼロ除算
CVE-2016-9921 2017-01-10 17:32 2016-12-5 Show GitHub Exploit DB Packet Storm
201764 6.5 警告
Local
Fabrice Bellard - Virtio GPU デバイスのエミュレータサポートでビルドされた Quick Emulator におけるサービス運用妨害 (DoS) の脆弱性 CWE-400
リソースの枯渇
CVE-2016-9912 2017-01-10 17:32 2016-11-28 Show GitHub Exploit DB Packet Storm
201765 6.5 警告
Local
Fabrice Bellard - USB EHCI Emulation サポートでビルドされた Quick Emulator におけるサービス運用妨害 (DoS) の脆弱性 CWE-400
リソースの枯渇
CVE-2016-9911 2017-01-10 17:32 2016-11-10 Show GitHub Exploit DB Packet Storm
201766 3.3
Local
Fabrice Bellard - Virtio GPU デバイスのエミュレータサポートでビルドされた Quick Emulator における情報漏えいの脆弱性 CWE-200
情報漏えい
CVE-2016-9908 2017-01-10 17:32 2016-11-1 Show GitHub Exploit DB Packet Storm
201767 6.5 警告
Local
Fabrice Bellard - USB リダイレクタ の usb-guest サポートでビルドされた Quick Emulator におけるサービス運用妨害 (DoS) の脆弱性 CWE-400
リソースの枯渇
CVE-2016-9907 2017-01-10 17:32 2016-11-7 Show GitHub Exploit DB Packet Storm
201768 7.5 重要
Network
Tarantool - Tarantool の xrow_header_decode 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-9037 2017-01-10 15:57 2016-12-16 Show GitHub Exploit DB Packet Storm
201769 7.5 重要
Network
Tarantool - Tarantool の Msgpuck ライブラリの mp_check 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-125
境界外読み取り
CVE-2016-9036 2017-01-10 15:57 2016-12-16 Show GitHub Exploit DB Packet Storm
201770 6.5 警告
Network
KDE project - KMail における HTML メールにインクルードされた JavaScript コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2016-7968 2017-01-10 14:04 2016-10-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290271 - mantisbt mantisbt SQL injection vulnerability in the manage configuration page (adm_config_report.php) in MantisBT 1.2.13 through 1.2.16 allows remote authenticated administrators to execute arbitrary SQL commands via… CWE-89
SQL Injection
CVE-2014-2238 2024-11-21 11:05 2014-03-6 Show GitHub Exploit DB Packet Storm
290272 - askbot askbot Cross-site scripting (XSS) vulnerability in Askbot before 0.7.49 allows remote attackers to inject arbitrary web script or HTML via vectors related to the question search form. CWE-79
Cross-site Scripting
CVE-2014-2235 2024-11-21 11:05 2014-03-6 Show GitHub Exploit DB Packet Storm
290273 - askbot askbot Multiple cross-site scripting (XSS) vulnerabilities in Askbot before 0.7.49 allow remote attackers to inject arbitrary web script or HTML via vectors related to the (1) tag or (2) user search forms. CWE-79
Cross-site Scripting
CVE-2014-2236 2024-11-21 11:05 2014-03-6 Show GitHub Exploit DB Packet Storm
290274 - getgosoft getgo_download_manager Stack-based buffer overflow in GetGo Download Manager 4.9.0.1982, 4.8.2.1346, 4.4.5.502, and earlier allows remote attackers to cause a denial of service (crash) and execute arbitrary code via a long… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-2206 2024-11-21 11:05 2014-03-6 Show GitHub Exploit DB Packet Storm
290275 - apple mac_os_x A certain Apple patch for OpenSSL in Apple OS X 10.9.2 and earlier uses a Trust Evaluation Agent (TEA) feature without terminating certain TLS/SSL handshakes as specified in the SSL_CTX_set_verify ca… CWE-20
 Improper Input Validation 
CVE-2014-2234 2024-11-21 11:05 2014-03-5 Show GitHub Exploit DB Packet Storm
290276 - jordy_meow media_file_renamer Multiple cross-site scripting (XSS) vulnerabilities in the (1) callback_multicheck, (2) callback_radio, and (3) callback_wysiwygin functions in mfrh_class.settings-api.php in the Media File Renamer p… CWE-79
Cross-site Scripting
CVE-2014-2040 2024-11-21 11:05 2014-03-4 Show GitHub Exploit DB Packet Storm
290277 - posh_project posh SQL injection vulnerability in portal/addtoapplication.php in POSH (aka Posh portal or Portaneo) 3.0 before 3.3.0 allows remote attackers to execute arbitrary SQL commands via the rssurl parameter. CWE-89
SQL Injection
CVE-2014-2211 2024-11-21 11:05 2014-03-4 Show GitHub Exploit DB Packet Storm
290278 - artifex mupdf Stack-based buffer overflow in the xps_parse_color function in xps/xps-common.c in MuPDF 1.3 and earlier allows remote attackers to execute arbitrary code via a large number of entries in the Context… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-2013 2024-11-21 11:05 2014-03-4 Show GitHub Exploit DB Packet Storm
290279 - mybb mybb Cross-site scripting (XSS) vulnerability in Upload/search.php in MyBB 1.6.12 and earlier allows remote attackers to inject arbitrary web script or HTML via the keywords parameter in a do_search actio… CWE-79
Cross-site Scripting
CVE-2014-1840 2024-11-21 11:05 2014-03-4 Show GitHub Exploit DB Packet Storm
290280 - google
lenovo
android
shareit
java/android/webkit/BrowserFrame.java in Android before 4.4 uses the addJavascriptInterface API in conjunction with creating an object of the SearchBoxImpl class, which allows attackers to execute ar… CWE-94
Code Injection
CVE-2014-1939 2024-11-21 11:05 2014-03-3 Show GitHub Exploit DB Packet Storm