Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
201901 5.5 警告
Local
wolfSSL Inc.
MariaDB Corporation Ab.
オラクル
- wolfSSL の AES 暗号および復号の C ソフトウェアの実装における AES 鍵を取得される脆弱性 CWE-310
暗号の問題
CVE-2016-7440 2016-12-27 09:47 2016-09-26 Show GitHub Exploit DB Packet Storm
201902 9.8 緊急
Network
サムスン - Samsung Note デバイスのソフトウェアの Telecom アプリケーションにおけるサービス運用妨害 (DoS) の脆弱性 CWE-388
エラー処理
CVE-2016-9967 2016-12-26 17:46 2016-09-13 Show GitHub Exploit DB Packet Storm
201903 9.8 緊急
Network
サムスン - Samsung Note デバイスのソフトウェアの Telecom アプリケーションにおけるサービス運用妨害 (DoS) の脆弱性 CWE-388
エラー処理
CVE-2016-9966 2016-12-26 17:46 2016-09-13 Show GitHub Exploit DB Packet Storm
201904 9.8 緊急
Network
サムスン - Samsung Note デバイスのソフトウェアの Telecom アプリケーションにおけるサービス運用妨害 (DoS) の脆弱性 CWE-388
エラー処理
CVE-2016-9965 2016-12-26 17:46 2016-09-13 Show GitHub Exploit DB Packet Storm
201905 7.5 重要
Network
Joomla! - Joomla! の components/com_users/models/registration.php における登録されたユーザアカウントへのアクセス権を取得される脆弱性 CWE-284
不適切なアクセス制御
CVE-2016-9838 2016-12-26 17:37 2016-12-13 Show GitHub Exploit DB Packet Storm
201906 7.5 重要
Network
Joomla! - Joomla! の templates/beez3/html/com_content/article/default.php における一般にアクセスできない記事を閲覧される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-9837 2016-12-26 17:37 2016-12-13 Show GitHub Exploit DB Packet Storm
201907 5.3 警告
Network
GNU Project
Debian
Canonical
- Libgcrypt および GnuPG の乱数発生器のミキシング機能における 160 ビットの値を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-6313 2016-12-26 17:12 2016-08-17 Show GitHub Exploit DB Packet Storm
201908 9.9 緊急
Network
PricewaterhouseCoopers (PwC) - SAP Security 用 PwC ACE-ABAP における ABAP インジェクション攻撃を実行される脆弱性 CWE-74
インジェクション
CVE-2016-9832 2016-12-26 16:58 2016-12-7 Show GitHub Exploit DB Packet Storm
201909 9.8 緊急
Network
BMC Software - BMC BladeLogic Server Automation における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2016-4322 2016-12-26 16:57 2016-09-4 Show GitHub Exploit DB Packet Storm
201910 8.8 重要
Network
ImageMagick
オラクル
- ImageMagick の MagickCore/property.c の Get8BIMProperty 関数におけるバッファオーバーフローの脆弱性 CWE-125
境界外読み取り
CVE-2016-6491 2016-12-26 16:55 2016-07-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291291 - ganesha_digital_library_project ganesha_digital_library Multiple directory traversal vulnerabilities in class/session.php in Ganesha Digital Library (GDL) 4.2 allow remote attackers to read arbitrary files via a .. (dot dot) in the (1) newlang or (2) newt… CWE-22
Path Traversal
CVE-2014-100029 2024-11-21 11:03 2015-01-14 Show GitHub Exploit DB Packet Storm
291292 - webcrafted_project webcrafted Cross-site scripting (XSS) vulnerability in /signup in WEBCrafted allows remote attackers to inject arbitrary web script or HTML via the username. CWE-79
Cross-site Scripting
CVE-2014-100028 2024-11-21 11:03 2015-01-14 Show GitHub Exploit DB Packet Storm
291293 - getusedtoit wp_slimstat Cross-site scripting (XSS) vulnerability in the WP SlimStat plugin before 3.5.6 for WordPress allows remote attackers to inject arbitrary web script or HTML via a crafted URL. CWE-79
Cross-site Scripting
CVE-2014-100027 2024-11-21 11:03 2015-01-14 Show GitHub Exploit DB Packet Storm
291294 - april\'s_super_functions_pack_project april\'s_super_functions_pack Cross-site scripting (XSS) vulnerability in readme.php in the April's Super Functions Pack plugin before 1.4.8 for WordPress allows remote attackers to inject arbitrary web script or HTML via the pag… CWE-79
Cross-site Scripting
CVE-2014-100026 2024-11-21 11:03 2015-01-14 Show GitHub Exploit DB Packet Storm
291295 - savsoft_technologies savsoft_quiz Cross-site request forgery (CSRF) vulnerability in index.php/user_data/insert_user in Savsoft Quiz allows remote attackers to hijack the authentication of administrators for requests that create an a… CWE-352
 Origin Validation Error
CVE-2014-100025 2024-11-21 11:03 2015-01-14 Show GitHub Exploit DB Packet Storm
291296 - seopanel seo_panel Cross-site scripting (XSS) vulnerability in Seo Panel before 3.4.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2014-100024 2024-11-21 11:03 2015-01-14 Show GitHub Exploit DB Packet Storm
291297 - mtouch_quiz_project mtouch_quiz Multiple cross-site scripting (XSS) vulnerabilities in question.php in the mTouch Quiz before 3.0.7 for WordPress allow remote attackers to inject arbitrary web script or HTML via the quiz parameter … CWE-79
Cross-site Scripting
CVE-2014-100023 2024-11-21 11:03 2015-01-14 Show GitHub Exploit DB Packet Storm
291298 - mtouch_quiz_project mtouch_quiz SQL injection vulnerability in question.php in the mTouch Quiz before 3.0.7 for WordPress allows remote attackers to execute arbitrary SQL commands via the quiz parameter to wp-admin/edit.php. CWE-89
SQL Injection
CVE-2014-100022 2024-11-21 11:03 2015-01-14 Show GitHub Exploit DB Packet Storm
291299 - orangehrm orangehrm Cross-site scripting (XSS) vulnerability in symfony/web/index.php/pim/viewEmployeeList in OrangeHRM before 3.1.2 allows remote attackers to inject arbitrary web script or HTML via the empsearch[emplo… CWE-79
Cross-site Scripting
CVE-2014-100021 2024-11-21 11:03 2015-01-14 Show GitHub Exploit DB Packet Storm
291300 - itechscripts itechclassifieds SQL injection vulnerability in ChangeEmail.php in iTechClassifieds 3.03.057 allows remote attackers to execute arbitrary SQL commands via the PreviewNum parameter. NOTE: the CatID parameter is alrea… CWE-89
SQL Injection
CVE-2014-100020 2024-11-21 11:03 2015-01-14 Show GitHub Exploit DB Packet Storm