Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
203791 7.8 重要
Local
Google - Nexus 5X デバイス上で稼動する Android の Qualcomm Wi-Fi ドライバにおける権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2016-3797 2016-07-19 16:09 2016-07-6 Show GitHub Exploit DB Packet Storm
203792 7.8 重要
Local
Google - Nexus 9 デバイス上で稼動する Android の NVIDIA カメラドライバにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3793 2016-07-19 15:51 2016-07-6 Show GitHub Exploit DB Packet Storm
203793 7.8 重要
Local
Google - Nexus 7 (2013) デバイス上で稼動する Android の Qualcomm Wi-Fi ドライバの CORE/HDD/src/wlan_hdd_hostapd.c における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3792 2016-07-19 15:51 2016-07-6 Show GitHub Exploit DB Packet Storm
203794 7.8 重要
Local
Google - 複数の Nexus および Pixel C デバイス上で稼動する Android のカーネルのファイルシステムの実装における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3775 2016-07-19 15:39 2016-07-6 Show GitHub Exploit DB Packet Storm
203795 7.5 重要
Network
Google - Android のメディアサーバの libstagefright の MPEG4Extractor.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-3766 2016-07-19 15:11 2016-07-6 Show GitHub Exploit DB Packet Storm
203796 7.7 重要
Local
Google - Android のメディアサーバの decoder/impeg2d_bitstream.c におけるプロセスメモリから重要な情報を取得される脆弱性 CWE-200
CWE-399
CVE-2016-3765 2016-07-19 15:11 2016-07-6 Show GitHub Exploit DB Packet Storm
203797 4 警告
Local
Google - Android のメディアサーバの media/libmediaplayerservice/MetadataRetrieverClient.cpp における重要なポインタ情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2016-3764 2016-07-19 15:11 2016-07-6 Show GitHub Exploit DB Packet Storm
203798 3.3
Local
Google - Android の Proxy Auto-Config 機能の net/PacProxySelector.java における認証情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2016-3763 2016-07-19 15:10 2016-07-6 Show GitHub Exploit DB Packet Storm
203799 7.8 重要
Local
Google - Android の socket サブシステムにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3762 2016-07-19 15:10 2016-07-6 Show GitHub Exploit DB Packet Storm
203800 5.5 警告
Local
Google - Android One デバイス上で稼動する Android の MediaTek ディスプレイドライバにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-3816 2016-07-19 14:53 2016-07-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291021 - open-xchange open-xchange_appsuite
open-xchange_server
Cross-site scripting (XSS) vulnerability in Open-Xchange AppSuite and Server before 6.22.0 rev16, 6.22.1 before rev19, 7.0.1 before rev7, 7.0.2 before rev11, and 7.2.0 before rev8 allows remote authe… CWE-79
Cross-site Scripting
CVE-2013-5698 2024-11-21 10:57 2013-09-5 Show GitHub Exploit DB Packet Storm
291022 - cisco global_site_selector Cross-site request forgery (CSRF) vulnerability in the web framework in Cisco Global Site Selector (GSS) allows remote attackers to hijack the authentication of arbitrary users, aka Bug ID CSCuh42164. CWE-352
 Origin Validation Error
CVE-2013-5471 2024-11-21 10:57 2013-09-5 Show GitHub Exploit DB Packet Storm
291023 - cisco secure_access_control_system Cisco Secure Access Control System (ACS) does not properly handle requests to read from the TACACS+ socket, which allows remote attackers to cause a denial of service (process crash) via malformed TC… CWE-20
 Improper Input Validation 
CVE-2013-5470 2024-11-21 10:57 2013-09-4 Show GitHub Exploit DB Packet Storm
291024 - paloaltonetworks pan-os Cross-site scripting (XSS) vulnerability in the web-based device-management API browser in Palo Alto Networks PAN-OS before 4.1.13 and 5.0.x before 5.0.6 allows remote attackers to inject arbitrary w… CWE-79
Cross-site Scripting
CVE-2013-5664 2024-11-21 10:57 2013-09-1 Show GitHub Exploit DB Packet Storm
291025 - paloaltonetworks pan-os The App-ID cache feature in Palo Alto Networks PAN-OS before 4.0.14, 4.1.x before 4.1.11, and 5.0.x before 5.0.2 allows remote attackers to bypass intended security policies via crafted requests that… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5663 2024-11-21 10:57 2013-09-1 Show GitHub Exploit DB Packet Storm
291026 - cisco ios The TCP implementation in Cisco IOS does not properly implement the transitions from the ESTABLISHED state to the CLOSED state, which allows remote attackers to cause a denial of service (flood of AC… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-5469 2024-11-21 10:57 2013-08-31 Show GitHub Exploit DB Packet Storm
291027 - id id-software
libdigidoc
Absolute path traversal vulnerability in the handleStartDataFile function in DigiDocSAXParser.c in libdigidoc 3.6.0.0, as used in ID-software before 3.7.2 and other products, allows remote attackers … CWE-22
Path Traversal
CVE-2013-5648 2024-11-21 10:57 2013-08-29 Show GitHub Exploit DB Packet Storm
291028 - adam_zaninovich sounder lib/sounder/sound.rb in the sounder gem 1.0.1 for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in a filename. CWE-94
Code Injection
CVE-2013-5647 2024-11-21 10:57 2013-08-29 Show GitHub Exploit DB Packet Storm
291029 - roundcube webmail Cross-site scripting (XSS) vulnerability in Roundcube webmail 1.0-git allows remote authenticated users to inject arbitrary web script or HTML via the Name field of an addressbook group. CWE-79
Cross-site Scripting
CVE-2013-5646 2024-11-21 10:57 2013-08-29 Show GitHub Exploit DB Packet Storm
291030 - roundcube webmail Multiple cross-site scripting (XSS) vulnerabilities in Roundcube webmail before 0.9.3 allow user-assisted remote attackers to inject arbitrary web script or HTML via the body of a message visited in … CWE-79
Cross-site Scripting
CVE-2013-5645 2024-11-21 10:57 2013-08-29 Show GitHub Exploit DB Packet Storm