Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202201 7.8 重要
Local
Google - Nexus 5 および 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントの drivers/misc/qseecom.c における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2014-9884 2016-08-10 17:50 2016-08-1 Show GitHub Exploit DB Packet Storm
202202 7.8 重要
Local
Google - Nexus 5 および 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントの drivers/char/diag/diag_dci.c における整数オーバーフローの脆弱性 CWE-Other
その他
CVE-2014-9883 2016-08-10 17:50 2016-08-1 Show GitHub Exploit DB Packet Storm
202203 7.8 重要
Local
Google - Nexus 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントの drivers/media/radio/radio-iris.c におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-9882 2016-08-10 17:49 2016-08-1 Show GitHub Exploit DB Packet Storm
202204 7.8 重要
Local
Google - Nexus 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9881 2016-08-10 17:43 2016-08-1 Show GitHub Exploit DB Packet Storm
202205 7.8 重要
Local
Google - Nexus 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9880 2016-08-10 17:43 2016-08-1 Show GitHub Exploit DB Packet Storm
202206 7.8 重要
Local
Google - Nexus 5 デバイス上で稼動する Android の Qualcomm コンポーネントの mdss mdp3 ドライバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9879 2016-08-10 17:43 2016-08-1 Show GitHub Exploit DB Packet Storm
202207 7.8 重要
Local
Google - Nexus 5 デバイス上で稼動する Android の Qualcomm コンポーネントの drivers/mmc/card/mmc_block_test.c における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9878 2016-08-10 17:43 2016-08-1 Show GitHub Exploit DB Packet Storm
202208 7.8 重要
Local
Google - Nexus 5 および 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントにおける権限を取得される脆弱性 CWE-Other
その他
CVE-2014-9877 2016-08-10 17:43 2016-08-1 Show GitHub Exploit DB Packet Storm
202209 7.8 重要
Local
Google - 複数の Nexus デバイス上で稼動する Android の Qualcomm コンポーネントの drivers/char/diag/diagfwd.c における権限を取得される脆弱性 CWE-189
数値処理の問題
CVE-2014-9876 2016-08-10 17:43 2016-08-1 Show GitHub Exploit DB Packet Storm
202210 7.8 重要
Local
Google - Nexus 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントの drivers/char/diag/diag_dci.c における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9875 2016-08-10 17:43 2016-08-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290921 - kde kdelibs kioslave/http/http.cpp in KIO in kdelibs 4.10.3 and earlier allows attackers to discover credentials via a crafted request that triggers an "internal server error," which includes the username and pa… CWE-200
Information Exposure
CVE-2013-2074 2024-11-21 10:50 2014-02-6 Show GitHub Exploit DB Packet Storm
290922 - apache activemq Cross-site scripting (XSS) vulnerability in the Portfolio publisher servlet in the demo web application in Apache ActiveMQ before 5.9.0 allows remote attackers to inject arbitrary web script or HTML … CWE-79
Cross-site Scripting
CVE-2013-1880 2024-11-21 10:50 2014-02-6 Show GitHub Exploit DB Packet Storm
290923 - mediaelementjs
owncloud
mediaelement.js
owncloud
Cross-site scripting (XSS) vulnerability in flashmediaelement.swf in MediaElement.js before 2.11.2, as used in ownCloud Server 5.0.x before 5.0.5 and 4.5.x before 4.5.10, allows remote attackers to i… CWE-79
Cross-site Scripting
CVE-2013-1967 2024-11-21 10:50 2014-02-6 Show GitHub Exploit DB Packet Storm
290924 - kolja_schleich leaguemanager SQL injection vulnerability in leaguemanager.php in the LeagueManager plugin before 3.8.1 for WordPress allows remote attackers to execute arbitrary SQL commands via the league_id parameter in the le… CWE-89
SQL Injection
CVE-2013-1852 2024-11-21 10:50 2014-02-6 Show GitHub Exploit DB Packet Storm
290925 - almanah_project almanah Almanah Diary 0.9.0 and 0.10.0 does not encrypt the database when closed, which allows local users to obtain sensitive information by reading the database. CWE-310
Cryptographic Issues
CVE-2013-1853 2024-11-21 10:50 2014-01-25 Show GitHub Exploit DB Packet Storm
290926 - redhat dogtag_certificate_system
certificate_system
Format string vulnerability in the token processing system (pki-tps) in Red Hat Certificate System (RHCS) 8.1 and possibly Dogtag Certificate System 9 and 10 allows remote authenticated users to caus… CWE-134
Use of Externally-Controlled Format String
CVE-2013-1886 2024-11-21 10:50 2014-01-25 Show GitHub Exploit DB Packet Storm
290927 - redhat dogtag_certificate_system
certificate_system
Multiple cross-site scripting (XSS) vulnerabilities in the token processing system (pki-tps) in Red Hat Certificate System (RHCS) 8.1 and possibly Dogtag Certificate System 9 and 10 allow remote atta… CWE-79
Cross-site Scripting
CVE-2013-1885 2024-11-21 10:50 2014-01-25 Show GitHub Exploit DB Packet Storm
290928 - linux-nfs nfs-utils rpc-gssd in nfs-utils before 1.2.8 performs reverse DNS resolution for server names during GSSAPI authentication, which might allow remote attackers to read otherwise-restricted files via DNS spoofin… CWE-200
Information Exposure
CVE-2013-1923 2024-11-21 10:50 2014-01-22 Show GitHub Exploit DB Packet Storm
290929 - simon_mcvittie telepathy_gabble A certain hashing algorithm in Telepathy Gabble 0.16.x before 0.16.5 and 0.17.x before 0.17.3 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted m… CWE-310
Cryptographic Issues
CVE-2013-1769 2024-11-21 10:50 2014-01-22 Show GitHub Exploit DB Packet Storm
290930 - mozilla network_security_services The ssl_Do1stHandshake function in sslsecur.c in libssl in Mozilla Network Security Services (NSS) before 3.15.4, when the TLS False Start feature is enabled, allows man-in-the-middle attackers to sp… CWE-310
Cryptographic Issues
CVE-2013-1740 2024-11-21 10:50 2014-01-19 Show GitHub Exploit DB Packet Storm