Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 21, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202831 6.1 警告
Network
Tiki Software Community Association - Tiki Wiki CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-9889 2017-01-5 18:40 2016-12-22 Show GitHub Exploit DB Packet Storm
202832 8.1 重要
Network
シーメンス - SIEMENS SIMATIC WinCC および SIEMENS SIMATIC PCS 7 における ActiveX コンポーネントをクラッシュさせられる脆弱性 CWE-254
セキュリティ機能
CVE-2016-9160 2017-01-5 18:24 2016-12-9 Show GitHub Exploit DB Packet Storm
202833 5.9 警告
Network
シーメンス - SIEMENS SIMATIC S7-300 PN CPU および SIMATIC S7-400 PN CPU における PLC から資格情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-9159 2017-01-5 18:24 2016-12-9 Show GitHub Exploit DB Packet Storm
202834 7.5 重要
Network
シーメンス - SIEMENS SIMATIC S7-300 PN CPU および SIMATIC S7-400 PN CPU におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-9158 2017-01-5 18:24 2016-12-9 Show GitHub Exploit DB Packet Storm
202835 7.5 重要
Network
シーメンス - Siemens Desigo PX オートメーションコントローラ用 Desigo PX Web モジュールにおける対応する秘密鍵を再構成される脆弱性 CWE-332
PRNG における不十分なエントロピー
CVE-2016-9154 2017-01-5 18:24 2016-12-16 Show GitHub Exploit DB Packet Storm
202836 7 重要
Local
Percona
MariaDB Corporation Ab.
オラクル
- Oracle MySQL およびその他のデータベースにおける権限を取得される脆弱性 CWE-362
競合状態
CVE-2016-6663 2017-01-5 18:20 2016-09-6 Show GitHub Exploit DB Packet Storm
202837 7.5 重要
Network
Thomas E. Dickey - Lynx における異なるホストへの接続を誘導される脆弱性 CWE-20
不適切な入力確認
CVE-2016-9179 2017-01-5 18:18 2016-11-4 Show GitHub Exploit DB Packet Storm
202838 8.1 重要
Network
Cloud Foundry Foundation - 複数の Cloud Foundry Foundation 製品における権限を取得される脆弱性 CWE-287
不適切な認証
CVE-2016-6659 2017-01-5 18:16 2016-12-14 Show GitHub Exploit DB Packet Storm
202839 5.5 警告
Local
FFmpeg - FFmpeg の libavcodec/aacdec_template.c の che_configure 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-9561 2017-01-5 16:53 2016-12-8 Show GitHub Exploit DB Packet Storm
202840 5.5 警告
Local
FFmpeg - FFmpeg の libavcodec/gsm_parser.c の gsm_parse 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-8595 2017-01-5 16:53 2016-12-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 21, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292671 - debian advanced_package_tool APT before 1.0.9 does not "invalidate repository data" when moving from an unauthenticated to authenticated state, which allows remote attackers to have unspecified impact via crafted repository data. CWE-20
 Improper Input Validation 
CVE-2014-0488 2024-11-21 11:02 2014-11-4 Show GitHub Exploit DB Packet Storm
292672 - debian advanced_package_tool APT before 1.0.9 does not verify downloaded files if they have been modified as indicated using the If-Modified-Since header, which has unspecified impact and attack vectors. NVD-CWE-noinfo
CVE-2014-0487 2024-11-21 11:02 2014-11-4 Show GitHub Exploit DB Packet Storm
292673 - canonical
chkrootkit
ubuntu_linux
chkrootkit
The slapper function in chkrootkit before 0.50 does not properly quote file paths, which allows local users to execute arbitrary code via a Trojan horse executable. NOTE: this is only a vulnerabilit… CWE-20
 Improper Input Validation 
CVE-2014-0476 2024-11-21 11:02 2014-10-26 Show GitHub Exploit DB Packet Storm
292674 - hamstersoft hamster_free_zip_archiver Untrusted search path vulnerability in Hamster Free ZIP Archiver 2.0.1.7 allows local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located i… NVD-CWE-Other
CVE-2014-0619 2024-11-21 11:02 2014-10-23 Show GitHub Exploit DB Packet Storm
292675 - adobe coldfusion Adobe ColdFusion 9.0 before Update 13, 9.0.1 before Update 12, 9.0.2 before Update 7, 10 before Update 14, and 11 before Update 2 allows local users to bypass intended IP-based access restrictions vi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0572 2024-11-21 11:02 2014-10-15 Show GitHub Exploit DB Packet Storm
292676 - adobe coldfusion Cross-site scripting (XSS) vulnerability in Adobe ColdFusion 9.0 before Update 13, 9.0.1 before Update 12, 9.0.2 before Update 7, 10 before Update 14, and 11 before Update 2 allows remote attackers t… CWE-79
Cross-site Scripting
CVE-2014-0571 2024-11-21 11:02 2014-10-15 Show GitHub Exploit DB Packet Storm
292677 - adobe coldfusion Cross-site request forgery (CSRF) vulnerability in Adobe ColdFusion 9.0 before Update 13, 9.0.1 before Update 12, 9.0.2 before Update 7, 10 before Update 14, and 11 before Update 2 allows remote atta… CWE-352
 Origin Validation Error
CVE-2014-0570 2024-11-21 11:02 2014-10-15 Show GitHub Exploit DB Packet Storm
292678 - adobe
suse
opensuse
flash_player
flash_player_desktop_runtime
air_desktop_runtime
air_sdk
linux_enterprise_desktop
evergreen
opensuse
Integer overflow in Adobe Flash Player before 13.0.0.250 and 14.x and 15.x before 15.0.0.189 on Windows and OS X and before 11.2.202.411 on Linux, Adobe AIR before 15.0.0.293, Adobe AIR SDK before 15… CWE-190
 Integer Overflow or Wraparound
CVE-2014-0569 2024-11-21 11:02 2014-10-15 Show GitHub Exploit DB Packet Storm
292679 - adobe
suse
opensuse
flash_player
flash_player_desktop_runtime
air_desktop_runtime
air_sdk
linux_enterprise_desktop
evergreen
opensuse
Adobe Flash Player before 13.0.0.250 and 14.x and 15.x before 15.0.0.189 on Windows and OS X and before 11.2.202.411 on Linux, Adobe AIR before 15.0.0.293, Adobe AIR SDK before 15.0.0.302, and Adobe … NVD-CWE-noinfo
CVE-2014-0564 2024-11-21 11:02 2014-10-15 Show GitHub Exploit DB Packet Storm
292680 - adobe flash_player
adobe_air
adobe_air_sdk
Adobe Flash Player before 13.0.0.250 and 14.x and 15.x before 15.0.0.189 on Windows and OS X and before 11.2.202.411 on Linux, Adobe AIR before 15.0.0.293, Adobe AIR SDK before 15.0.0.302, and Adobe … CWE-94
Code Injection
CVE-2014-0558 2024-11-21 11:02 2014-10-15 Show GitHub Exploit DB Packet Storm