Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 25, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202421 5.5 警告
Local
Google - Android のメディアサーバの libs/ui/Region.cpp の Region::unflatten 関数における整数オーバーフローの脆弱性 CWE-200
CWE-Other
CVE-2016-3895 2016-09-14 17:41 2016-09-6 Show GitHub Exploit DB Packet Storm
202422 5.5 警告
Local
Google - Nexus 6 デバイス上で稼動する Android の Qualcomm DMA コンポーネントにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-3894 2016-09-14 17:41 2016-09-6 Show GitHub Exploit DB Packet Storm
202423 5.5 警告
Local
Google - Nexus 6P デバイス上で稼動する Android の Qualcomm の音声コーデックにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-3893 2016-09-14 17:41 2016-09-6 Show GitHub Exploit DB Packet Storm
202424 5.5 警告
Local
Google - 複数の Nexus デバイス上で稼動する Android の Qualcomm SPMI ドライバにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-3892 2016-09-14 17:41 2016-09-6 Show GitHub Exploit DB Packet Storm
202425 7 重要
Local
Google - Android の adb/sockets.cpp の Java Debug Wire Protocol の実装における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3890 2016-09-14 17:41 2016-09-6 Show GitHub Exploit DB Packet Storm
202426 5.5 警告
Local
Google - Android の Telephony の internal/telephony/SMSDispatcher.java におけるプレミアム SMS の支払い確認ダイアログを偽装される脆弱性 CWE-Other
その他
CVE-2016-3883 2016-09-14 17:41 2016-09-6 Show GitHub Exploit DB Packet Storm
202427 7.8 重要
Local
Google - Nexus 5X および 6P デバイス上で稼動する Android の Qualcomm のパワードライバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3868 2016-09-14 17:41 2016-09-6 Show GitHub Exploit DB Packet Storm
202428 7.8 重要
Local
Google - Android の MediaMuxer におけるスタックベースのバッファオーバーフローの脆弱性 CWE-Other
その他
CVE-2016-3863 2016-09-14 17:41 2016-09-6 Show GitHub Exploit DB Packet Storm
202429 7.8 重要
Local
Google - 複数の Nexus デバイス上で稼動する Android の Qualcomm カメラドライバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3859 2016-09-14 17:41 2016-09-6 Show GitHub Exploit DB Packet Storm
202430 5.5 警告
Local
Google - Android のメディアサーバの libstagefright の OMXCodec.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-3899 2016-09-14 16:46 2016-09-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
289971 - ibm data_studio_web_console
infosphere_optim_configuration_manager
optim_performance_manager
db2_recovery_expert
IBM Data Studio Web Console 3.x before 3.2, Optim Performance Manager 5.x before 5.2, InfoSphere Optim Configuration Manager 2.x before 2.2, and DB2 Recovery Expert 2.x store unspecified authenticati… CWE-255
Credentials Management
CVE-2013-4022 2024-11-21 10:54 2013-09-25 Show GitHub Exploit DB Packet Storm
289972 - ibm websphere_application_server
websphere_application_server_feature_pack_for_web_services
The WS-Security implementation in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.31, 8.0 before 8.0.0.8, and 8.5 before 8.5.5.1, and WAS Feature Pack for Web Services 6.… CWE-20
 Improper Input Validation 
CVE-2013-4053 2024-11-21 10:54 2013-09-21 Show GitHub Exploit DB Packet Storm
289973 - ibm websphere_application_server Cross-site scripting (XSS) vulnerability in the UDDI Administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.31, 8.0 before 8.0.0.8, and 8.5 before 8.5.… CWE-79
Cross-site Scripting
CVE-2013-4052 2024-11-21 10:54 2013-09-21 Show GitHub Exploit DB Packet Storm
289974 - ibm lotus_domino
lotus_inotes
Buffer overflow in iNotes in IBM Domino 8.5.3 before FP5 IF1 and 9.0 before IF4 allows remote authenticated users to execute arbitrary code via unspecified vectors, aka SPR PTHN9ADPA8. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4068 2024-11-21 10:54 2013-09-21 Show GitHub Exploit DB Packet Storm
289975 - kde
opensuse
kde_sc
kde-workspace
opensuse
KDE-Workspace 4.10.5 and earlier does not properly handle the return value of the glibc 2.17 crypt and pw_encrypt functions, which allows remote attackers to cause a denial of service (NULL pointer d… CWE-310
Cryptographic Issues
CVE-2013-4132 2024-11-21 10:54 2013-09-17 Show GitHub Exploit DB Packet Storm
289976 - squid-cache
opensuse
squid
opensuse
client_side_request.cc in Squid 3.2.x before 3.2.13 and 3.3.x before 3.3.8 allows remote attackers to cause a denial of service via a crafted port number in a HTTP Host header. CWE-20
 Improper Input Validation 
CVE-2013-4123 2024-11-21 10:54 2013-09-17 Show GitHub Exploit DB Packet Storm
289977 - ibm spss_analytical_decision_management Unrestricted file upload vulnerability in IBM SPSS Analytical Decision Management 6.1 before IF1, 6.2 before IF1, and 7.0 before FP1 IF6 allows remote authenticated users to execute arbitrary code by… NVD-CWE-Other
CVE-2013-4049 2024-11-21 10:54 2013-09-17 Show GitHub Exploit DB Packet Storm
289978 - ibm spss_analytical_decision_management Cross-site scripting (XSS) vulnerability in IBM SPSS Analytical Decision Management 6.1 before IF1, 6.2 before IF1, and 7.0 before FP1 IF6 allows remote authenticated users to inject arbitrary web sc… CWE-79
Cross-site Scripting
CVE-2013-4048 2024-11-21 10:54 2013-09-17 Show GitHub Exploit DB Packet Storm
289979 - ibm spss_analytical_decision_management Cross-site scripting (XSS) vulnerability in IBM SPSS Analytical Decision Management 6.1 before IF1, 6.2 before IF1, and 7.0 before FP1 IF6 allows remote attackers to inject arbitrary web script or HT… CWE-79
Cross-site Scripting
CVE-2013-4047 2024-11-21 10:54 2013-09-17 Show GitHub Exploit DB Packet Storm
289980 - microsoft outlook Double free vulnerability in Microsoft Outlook 2007 SP3 and 2010 SP1 and SP2 allows remote attackers to execute arbitrary code by including many nested S/MIME certificates in an e-mail message, aka "… CWE-399
 Resource Management Errors
CVE-2013-3870 2024-11-21 10:54 2013-09-11 Show GitHub Exploit DB Packet Storm