Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
203251 6.1 警告
Network
Aternity, Inc. - Aternity の Web サーバにおけるクロスサイトスクリプティングの脆弱性 CWE-79
CWE-Other
CVE-2016-5061 2016-10-5 10:28 2016-09-28 Show GitHub Exploit DB Packet Storm
203252 6.5 警告
Network
Google - Google Chrome における SafeBrowsing 保護メカニズムを回避される脆弱性 CWE-Other
その他
CVE-2016-5176 2016-10-5 10:12 2016-09-13 Show GitHub Exploit DB Packet Storm
203253 8.1 重要
Network
マイクロソフト - Node.js 用 Microsoft Azure Active Directory Passport ライブラリにおける認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2016-7191 2016-10-5 10:07 2016-08-25 Show GitHub Exploit DB Packet Storm
203254 4 警告
Network
シーメンス - Siemens SCALANCE M-800 および S615 モジュールのファームウェアの統合 Web サーバにおけるセッション Cookie をキャプチャされる脆弱性 CWE-200
情報漏えい
CVE-2016-7090 2016-10-5 09:57 2016-09-22 Show GitHub Exploit DB Packet Storm
203255 9.8 緊急
Network
LibGD project - PHP で使用される GD Graphics Library の gd_webp.c の gdImageWebpCtx 関数における整数オーバーフローの脆弱性 CWE-Other
その他
CVE-2016-7568 2016-10-4 18:25 2016-09-16 Show GitHub Exploit DB Packet Storm
203256 7.8 重要
Local
- HPE Network Automation Software における任意のファイルに書き込まれる脆弱性 CWE-noinfo
情報不足
CVE-2016-4386 2016-10-4 17:16 2016-09-28 Show GitHub Exploit DB Packet Storm
203257 5.5 警告
Local
Huawei - 複数の Huawei スマートフォンのソフトウェアのビデオドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-8279 2016-10-4 16:54 2016-09-21 Show GitHub Exploit DB Packet Storm
203258 6.5 警告
Network
Huawei - 複数の Huawei AR ルータおよび NetEngine 16EX ルータのソフトウェアにおけるフォーマットストリングの脆弱性 CWE-20
不適切な入力確認
CVE-2016-6901 2016-10-4 16:54 2016-08-24 Show GitHub Exploit DB Packet Storm
203259 6.1 警告
Network
Huawei - Huawei OceanStor ISM の管理インターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-6840 2016-10-4 16:54 2016-08-18 Show GitHub Exploit DB Packet Storm
203260 6.5 警告
Network
Huawei - Huawei FusionCompute における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-6827 2016-10-4 16:54 2016-08-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291601 5.4 MEDIUM
Network
ibm spss_modeler IBM SPSS Modeler before 16 on UNIX allows remote authenticated users to bypass intended access restrictions via an SSO token. IBM X-Force ID: 89855. CWE-284
Improper Access Control
CVE-2013-6739 2024-11-21 10:59 2018-04-28 Show GitHub Exploit DB Packet Storm
291602 7.8 HIGH
Local
s3dvt_project s3dvt The (1) pty_init_terminal and (2) pipe_init_terminal functions in main.c in s3dvt 0.2.2 and earlier allows local users to gain privileges by leveraging setuid permissions and usage of bash 4.3 and ea… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-6876 2024-11-21 10:59 2018-04-7 Show GitHub Exploit DB Packet Storm
291603 5.4 MEDIUM
Network
redhat jbpm Multiple cross-site scripting (XSS) vulnerabilities in JBPM KIE Workbench 6.0.x allow remote authenticated users to inject arbitrary web script or HTML via vectors related to task name html inputs. CWE-79
Cross-site Scripting
CVE-2013-6465 2024-11-21 10:59 2017-12-20 Show GitHub Exploit DB Packet Storm
291604 9.8 CRITICAL
Network
seagate blackarmor_nas_220_firmware Seagate BlackArmor NAS devices with firmware sg2000-2000.1331 allow remote attackers to execute arbitrary commands via shell metacharacters in the ip parameter to backupmgt/getAlias.php. CWE-77
Command Injection
CVE-2013-6924 2024-11-21 10:59 2017-10-11 Show GitHub Exploit DB Packet Storm
291605 6.5 MEDIUM
Network
google chrome Google Chrome caches TLS sessions before certificate validation occurs. CWE-295
Improper Certificate Validation 
CVE-2013-6662 2024-11-21 10:59 2017-04-14 Show GitHub Exploit DB Packet Storm
291606 7.5 HIGH
Network
google skia SkRegion::setPath in Skia allows remote attackers to cause a denial of service (crash). NVD-CWE-noinfo
CVE-2013-6648 2024-11-21 10:59 2017-04-14 Show GitHub Exploit DB Packet Storm
291607 9.8 CRITICAL
Network
google chrome A use-after-free in AnimationController::endAnimationUpdate in Google Chrome. CWE-416
 Use After Free
CVE-2013-6647 2024-11-21 10:59 2017-04-12 Show GitHub Exploit DB Packet Storm
291608 3.1 LOW
Network
cloudera cdh The JobHistory Server in Cloudera CDH 4.x before 4.6.0 and 5.x before 5.0.0 Beta 2, when using MRv2/YARN with HTTP authentication, allows remote authenticated users to obtain sensitive job informatio… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-6446 2024-11-21 10:59 2017-03-24 Show GitHub Exploit DB Packet Storm
291609 - php
suse
php
linux_enterprise_server
The default soap.wsdl_cache_dir setting in (1) php.ini-production and (2) php.ini-development in PHP through 5.6.7 specifies the /tmp directory, which makes it easier for local users to conduct WSDL … CWE-74
Injection
CVE-2013-6501 2024-11-21 10:59 2015-03-30 Show GitHub Exploit DB Packet Storm
291610 - websvn
debian
websvn
debian_linux
WebSVN 2.3.3 allows remote authenticated users to read arbitrary files via a symlink attack in a commit. CWE-200
Information Exposure
CVE-2013-6892 2024-11-21 10:59 2015-01-22 Show GitHub Exploit DB Packet Storm