Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 21, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
203591 8.8 重要
Network
Mozilla Foundation
openSUSE project
Canonical
Debian
SUSE
レッドハット
- Mozilla Firefox のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-2818 2016-11-21 10:57 2016-06-7 Show GitHub Exploit DB Packet Storm
203592 9.1 緊急
Network
The PHP Group
LibGD project
Debian
openSUSE project
- 特定の カスタム PHP の設定で使用される GD Graphics Library の gd_xbm.c におけるプロセスメモリから重要な情報を取得される脆弱性 CWE-119
バッファエラー
CVE-2016-5116 2016-11-21 10:37 2016-05-13 Show GitHub Exploit DB Packet Storm
203593 9.8 緊急
Network
openSUSE project
ImageMagick
Canonical
GraphicsMagick
Debian
オラクル
SUSE
- GraphicsMagick および ImageMagick の blob.c の OpenBlob 関数における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2016-5118 2016-11-21 10:35 2016-05-30 Show GitHub Exploit DB Packet Storm
203594 5.5 警告
Local
ImageMagick
Canonical
レッドハット
- ImageMagick の EPHEMERAL コーダにおける任意のファイルを削除される脆弱性 CWE-Other
その他
CVE-2016-3715 2016-11-18 17:01 2016-05-3 Show GitHub Exploit DB Packet Storm
203595 8.8 重要
Network
Google
openSUSE project
Fedora Project
- Google Chrome の PDFium で使用される OpenJPEG におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-5157 2016-11-18 17:00 2016-08-31 Show GitHub Exploit DB Packet Storm
203596 8.4 重要
Local
ImageMagick
Canonical
- ImageMagick に入力値検証不備の脆弱性 CWE-20
不適切な入力確認
CVE-2016-3714 2016-11-18 16:58 2016-05-4 Show GitHub Exploit DB Packet Storm
203597 8.8 重要
Network
Google
openSUSE project
- Google Chrome のイベントバインディングの extensions/renderer/event_bindings.cc におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-5156 2016-11-18 16:34 2016-08-31 Show GitHub Exploit DB Packet Storm
203598 6.5 警告
Network
Google
openSUSE project
- Google Chrome におけるアドレスバーを偽造される脆弱性 CWE-Other
その他
CVE-2016-5155 2016-11-18 16:34 2016-08-31 Show GitHub Exploit DB Packet Storm
203599 8.8 重要
Network
Google
openSUSE project
- Google Chrome で使用される PDFium におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-5154 2016-11-18 16:34 2016-08-31 Show GitHub Exploit DB Packet Storm
203600 8.8 重要
Network
Google
openSUSE project
- Google Chrome で使用される Blink の Web Animations の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-5153 2016-11-18 16:34 2016-08-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 21, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292101 - apple safari WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a craft… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1304 2024-11-21 11:04 2014-04-3 Show GitHub Exploit DB Packet Storm
292102 - apple safari WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a craft… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1302 2024-11-21 11:04 2014-04-3 Show GitHub Exploit DB Packet Storm
292103 - apple safari
itunes
WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a craft… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1301 2024-11-21 11:04 2014-04-3 Show GitHub Exploit DB Packet Storm
292104 - apple safari WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a craft… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1299 2024-11-21 11:04 2014-04-3 Show GitHub Exploit DB Packet Storm
292105 - apple safari WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a craft… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1298 2024-11-21 11:04 2014-04-3 Show GitHub Exploit DB Packet Storm
292106 - apple safari WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, does not properly validate WebProcess IPC messages, which allows remote attackers to bypass a sandbox protection mechanism and read … CWE-20
 Improper Input Validation 
CVE-2014-1297 2024-11-21 11:04 2014-04-3 Show GitHub Exploit DB Packet Storm
292107 - horde horde_application_framework The framework/Util/lib/Horde/Variables.php script in the Util library in Horde before 5.1.1 allows remote attackers to conduct object injection attacks and execute arbitrary PHP code via a crafted se… CWE-94
Code Injection
CVE-2014-1691 2024-11-21 11:04 2014-04-2 Show GitHub Exploit DB Packet Storm
292108 - mozilla firefox The saltProfileName function in base/GeckoProfileDirectories.java in Mozilla Firefox through 28.0.1 on Android relies on Android's weak approach to seeding the Math.random function, which makes it ea… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-1516 2024-11-21 11:04 2014-03-30 Show GitHub Exploit DB Packet Storm
292109 - symantec liveupdate_administrator SQL injection vulnerability in forcepasswd.do in the management GUI in Symantec LiveUpdate Administrator (LUA) 2.x before 2.3.2.110 allows remote attackers to execute arbitrary SQL commands via unspe… CWE-89
SQL Injection
CVE-2014-1645 2024-11-21 11:04 2014-03-29 Show GitHub Exploit DB Packet Storm
292110 - symantec liveupdate_administrator The forgotten-password feature in forcepasswd.do in the management GUI in Symantec LiveUpdate Administrator (LUA) 2.x before 2.3.2.110 allows remote attackers to reset arbitrary passwords by providin… CWE-255
Credentials Management
CVE-2014-1644 2024-11-21 11:04 2014-03-29 Show GitHub Exploit DB Packet Storm