Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202891 5.3 警告
Network
アップル
Google
マイクロソフト
Mozilla Foundation
Opera Software ASA
- HTTP/2 プロトコルにおける平文データを取得される脆弱性 CWE-200
情報漏えい
CVE-2016-7153 2016-09-7 13:58 2016-08-4 Show GitHub Exploit DB Packet Storm
202892 5.3 警告
Network
アップル
Google
マイクロソフト
Mozilla Foundation
Opera Software ASA
- HTTPS プロトコルにおける平文データを取得される脆弱性 CWE-200
情報漏えい
CVE-2016-7152 2016-09-7 13:58 2016-08-4 Show GitHub Exploit DB Packet Storm
202893 7.8 重要
Local
シスコシステムズ - Cisco WebEx Meetings Player における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-1464 2016-09-7 12:05 2016-08-31 Show GitHub Exploit DB Packet Storm
202894 5.5 警告
Local
シスコシステムズ - Cisco WebEx Meetings Player におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-1415 2016-09-7 12:05 2016-08-31 Show GitHub Exploit DB Packet Storm
202895 9.8 緊急
Network
MISP project - Malware Information Sharing Platform における PHP オブジェクトインジェクション攻撃を実行される脆弱性 CWE-94
コード・インジェクション
CVE-2015-5721 2016-09-7 11:49 2015-07-1 Show GitHub Exploit DB Packet Storm
202896 6.1 警告
Network
MISP project - Malware Information Sharing Platform の template-creation 機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-5720 2016-09-7 11:49 2015-07-1 Show GitHub Exploit DB Packet Storm
202897 9.8 緊急
Network
MISP project - Malware Information Sharing Platform の app/Controller/TemplatesController.php における脆弱性 CWE-noinfo
情報不足
CVE-2015-5719 2016-09-7 11:49 2015-07-1 Show GitHub Exploit DB Packet Storm
202898 5.5 警告
Local
Google
Bouncy Castle
- Android で使用される RFC 5084 の AES-GCM の要件における暗号保護メカニズムを破られる脆弱性 CWE-200
情報漏えい
CVE-2016-2427 2016-09-6 16:27 2016-04-4 Show GitHub Exploit DB Packet Storm
202899 7.2 危険 Linux - Linux Kernel の fs/overlayfs/inode.c の ovl_setattr 関数におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-8660 2016-09-6 16:03 2015-12-5 Show GitHub Exploit DB Packet Storm
202900 7.5 重要
Network
Apache Software Foundation - Apache Qpid AMQP 0-x JMS Client および JMS における任意のオブジェクトをデシリアライズされる脆弱性 CWE-20
不適切な入力確認
CVE-2016-4974 2016-09-6 15:25 2016-06-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291711 - xen xen Use-after-free vulnerability in the libxl_list_cpupool function in the libxl toolstack library in Xen 4.2.x and 4.3.x, when running "under memory pressure," returns the original pointer when the real… CWE-399
 Resource Management Errors
CVE-2013-4371 2024-11-21 10:55 2013-10-18 Show GitHub Exploit DB Packet Storm
291712 - xen xen The ocaml binding for the xc_vcpu_getaffinity function in Xen 4.2.x and 4.3.x frees certain memory that may still be intended for use, which allows local users to cause a denial of service (heap corr… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4370 2024-11-21 10:55 2013-10-18 Show GitHub Exploit DB Packet Storm
291713 - xen xen The xlu_vif_parse_rate function in the libxlu library in Xen 4.2.x and 4.3.x allows local users to cause a denial of service (NULL pointer dereference) by using the "@" character as the VIF rate conf… NVD-CWE-Other
CVE-2013-4369 2024-11-21 10:55 2013-10-18 Show GitHub Exploit DB Packet Storm
291714 - xen xen The outs instruction emulation in Xen 3.1.x, 4.2.x, 4.3.x, and earlier, when using FS: or GS: segment override, uses an uninitialized variable as a segment base, which allows local 64-bit PV guests t… CWE-200
Information Exposure
CVE-2013-4368 2024-11-21 10:55 2013-10-18 Show GitHub Exploit DB Packet Storm
291715 - apache
debian
opensuse
suse
mod_fcgid
debian_linux
opensuse
linux_enterprise_software_development_kit
cloud
Heap-based buffer overflow in the fcgid_header_bucket_read function in fcgid_bucket.c in the mod_fcgid module before 2.3.9 for the Apache HTTP Server allows remote attackers to have an unspecified im… CWE-787
 Out-of-bounds Write
CVE-2013-4365 2024-11-21 10:55 2013-10-18 Show GitHub Exploit DB Packet Storm
291716 - rubygems
ruby-lang
rubygems
ruby
Algorithmic complexity vulnerability in Gem::Version::ANCHORED_VERSION_PATTERN in lib/rubygems/version.rb in RubyGems before 1.8.23.2, 1.8.24 through 1.8.26, 2.0.x before 2.0.10, and 2.1.x before 2.1… CWE-310
Cryptographic Issues
CVE-2013-4363 2024-11-21 10:55 2013-10-18 Show GitHub Exploit DB Packet Storm
291717 - redhat
rubygems
ruby-lang
enterprise_linux
rubygems
ruby
Algorithmic complexity vulnerability in Gem::Version::VERSION_PATTERN in lib/rubygems/version.rb in RubyGems before 1.8.23.1, 1.8.24 through 1.8.25, 2.0.x before 2.0.8, and 2.1.x before 2.1.0, as use… CWE-310
Cryptographic Issues
CVE-2013-4287 2024-11-21 10:55 2013-10-18 Show GitHub Exploit DB Packet Storm
291718 - rubyonrails
opensuse
debian
rails
opensuse
debian_linux
Multiple format string vulnerabilities in log_subscriber.rb files in the log subscriber component in Action Mailer in Ruby on Rails 3.x before 3.2.15 allow remote attackers to cause a denial of servi… CWE-134
Use of Externally-Controlled Format String
CVE-2013-4389 2024-11-21 10:55 2013-10-17 Show GitHub Exploit DB Packet Storm
291719 - videolan vlc_media_player Buffer overflow in the mp4a packetizer (modules/packetizer/mpeg4audio.c) in VideoLAN VLC Media Player before 2.0.8 allows remote attackers to cause a denial of service (crash) and possibly execute ar… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4388 2024-11-21 10:55 2013-10-12 Show GitHub Exploit DB Packet Storm
291720 - qemu qemu Use-after-free vulnerability in the virtio-pci implementation in Qemu 1.4.0 through 1.6.0 allows local users to cause a denial of service (daemon crash) by "hot-unplugging" a virtio device. CWE-399
 Resource Management Errors
CVE-2013-4377 2024-11-21 10:55 2013-10-12 Show GitHub Exploit DB Packet Storm