Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202291 9.8 緊急
Network
The PHP Group - PHP の ext/exif/exif.c の exif_process_IFD_in_MAKERNOTE 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-6291 2016-10-7 16:37 2016-07-21 Show GitHub Exploit DB Packet Storm
202292 9.8 緊急
Network
The PHP Group - PHP の ext/session/session.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-6290 2016-10-7 16:37 2016-07-21 Show GitHub Exploit DB Packet Storm
202293 7.8 重要
Local
The PHP Group - PHP の TSRM/tsrm_virtual_cwd.c の virtual_file_ex 関数における整数オーバーフローの脆弱性 CWE-Other
その他
CVE-2016-6289 2016-10-7 16:37 2016-07-21 Show GitHub Exploit DB Packet Storm
202294 9.8 緊急
Network
The PHP Group - PHP の ext/standard/url.c の php_url_parse_ex 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-6288 2016-10-7 16:37 2016-07-21 Show GitHub Exploit DB Packet Storm
202295 8.1 重要
Network
The PHP Group
Invision Power Services, Inc
- Invision Power Services IPS Community Suite の applications/core/modules/front/system/content.php における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2016-6174 2016-10-7 16:37 2016-07-5 Show GitHub Exploit DB Packet Storm
202296 3.3
Local
マイクロソフト - Cryptography API: Next Generation (CNG) におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
- 2016-10-7 12:02 2016-10-7 Show GitHub Exploit DB Packet Storm
202297 7.3 重要
Network
横河電機株式会社 - STARDOM コントローラに任意のコマンドを実行される脆弱性 CWE-287
CWE-Other
CVE-2016-4860 2016-10-7 11:51 2016-09-14 Show GitHub Exploit DB Packet Storm
202298 5 警告 アップル
OpenSSL Project
ヒューレット・パッカード
オラクル
- OpenSSL の s23_srvr.c の ssl23_get_client_hello 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2014-3569 2016-10-7 11:49 2014-10-27 Show GitHub Exploit DB Packet Storm
202299 4.3 警告 アップル
OpenSSL Project
- OpenSSL におけるアクセス制限を回避される脆弱性 CWE-310
暗号の問題
CVE-2014-3568 2016-10-7 11:49 2014-10-15 Show GitHub Exploit DB Packet Storm
202300 7.1 危険 アップル
OpenSSL Project
オラクル
- OpenSSL の t1_lib.c の tls_decrypt_ticket 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
CWE-399
CVE-2014-3567 2016-10-7 11:49 2014-10-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291751 - redhat
scientificlinux
enterprise_linux
luci
Race condition in Luci 0.26.0 creates /var/lib/luci/etc/luci.ini with world-readable permissions before restricting the permissions, which allows local users to read the file and obtain sensitive inf… CWE-362
Race Condition
CVE-2013-4481 2024-11-21 10:55 2013-11-23 Show GitHub Exploit DB Packet Storm
291752 - canonical
freedesktop
ubuntu_linux
poppler
Format string vulnerability in the extractPages function in utils/pdfseparate.cc in poppler before 0.24.3 allows remote attackers to cause a denial of service (crash) via format string specifiers in … CWE-20
 Improper Input Validation 
CVE-2013-4474 2024-11-21 10:55 2013-11-23 Show GitHub Exploit DB Packet Storm
291753 - freedesktop
canonical
poppler
ubuntu_linux
Stack-based buffer overflow in the extractPages function in utils/pdfseparate.cc in poppler before 0.24.2 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary c… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4473 2024-11-21 10:55 2013-11-23 Show GitHub Exploit DB Packet Storm
291754 - lighttpd
debian
opensuse
lighttpd
debian_linux
opensuse
lighttpd before 1.4.33 does not check the return value of the (1) setuid, (2) setgid, or (3) setgroups functions, which might cause lighttpd to run as root if it is restarted and allows remote attack… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4559 2024-11-21 10:55 2013-11-20 Show GitHub Exploit DB Packet Storm
291755 - lighttpd
debian
opensuse
lighttpd
debian_linux
opensuse
Use-after-free vulnerability in lighttpd before 1.4.33 allows remote attackers to cause a denial of service (segmentation fault and crash) via unspecified vectors that trigger FAMMonitorDirectory fai… CWE-416
 Use After Free
CVE-2013-4560 2024-11-21 10:55 2013-11-20 Show GitHub Exploit DB Packet Storm
291756 - adaptivecomputing torque_resource_manager The send_the_mail function in server/svr_mail.c in Terascale Open-Source Resource and Queue Manager (aka TORQUE Resource Manager) before 4.2.6 allows remote attackers to execute arbitrary commands vi… CWE-94
Code Injection
CVE-2013-4495 2024-11-21 10:55 2013-11-20 Show GitHub Exploit DB Packet Storm
291757 - gnu
opensuse
gnutls
opensuse
Off-by-one error in the dane_raw_tlsa in the DANE library (libdane) in GnuTLS 3.1.x before 3.1.16 and 3.2.x before 3.2.6 allows remote servers to cause a denial of service (memory corruption) via a r… CWE-189
Numeric Errors
CVE-2013-4487 2024-11-21 10:55 2013-11-20 Show GitHub Exploit DB Packet Storm
291758 - gnu gnutls Buffer overflow in the dane_query_tlsa function in the DANE library (libdane) in GnuTLS 3.1.x before 3.1.15 and 3.2.x before 3.2.5 allows remote servers to cause a denial of service (memory corruptio… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4466 2024-11-21 10:55 2013-11-20 Show GitHub Exploit DB Packet Storm
291759 - redhat
theforeman
openstack
foreman
Multiple SQL injection vulnerabilities in app/models/concerns/host_common.rb in Foreman before 1.2.3 allow remote attackers to execute arbitrary SQL commands via the (1) fqdn or (2) hostgroup paramet… CWE-89
SQL Injection
CVE-2013-4386 2024-11-21 10:55 2013-11-20 Show GitHub Exploit DB Packet Storm
291760 - linux linux_kernel Memory leak in the __kvm_set_memory_region function in virt/kvm/kvm_main.c in the Linux kernel before 3.9 allows local users to cause a denial of service (memory consumption) by leveraging certain de… CWE-399
 Resource Management Errors
CVE-2013-4592 2024-11-21 10:55 2013-11-20 Show GitHub Exploit DB Packet Storm