Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
203811 3.3
Local
マイクロソフト - Microsoft Windows 10 の仮想保護モードにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-7220 2016-11-11 16:30 2016-11-8 Show GitHub Exploit DB Packet Storm
203812 5.5 警告
Local
マイクロソフト - 複数の Microsoft Windows 製品のカーネル API における権限昇格の脆弱性 CWE-200
CWE-264
CVE-2016-7216 2016-11-11 16:30 2016-11-8 Show GitHub Exploit DB Packet Storm
203813 7.8 重要
Local
マイクロソフト - 複数の Microsoft Windows 製品のタスク スケジューラにおける権限昇格の脆弱性 CWE-264
CWE-Other
CVE-2016-7222 2016-11-11 14:54 2016-11-8 Show GitHub Exploit DB Packet Storm
203814 7.5 重要
Network
マイクロソフト - Microsoft Internet Explorer 11 および Microsoft Edge における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-7241 2016-11-11 14:51 2016-11-8 Show GitHub Exploit DB Packet Storm
203815 3.1
Network
マイクロソフト - Microsoft Internet Explorer 9 から 11 および Microsoft Edge の XSS フィルタの RegEx クラスにおけるクロスサイトスクリプティングの脆弱性 CWE-200
CWE-79
CVE-2016-7239 2016-11-11 14:51 2016-11-8 Show GitHub Exploit DB Packet Storm
203816 3.1
Network
マイクロソフト - Microsoft Internet Explorer 9 から 11 および Microsoft Edge のスクリプトエンジンにおけるローカルファイルの存在を特定される脆弱性 CWE-200
情報漏えい
CVE-2016-7227 2016-11-11 14:51 2016-11-8 Show GitHub Exploit DB Packet Storm
203817 3.1
Network
マイクロソフト - Microsoft Internet Explorer 9 から 11 および Microsoft Edge における同一生成元ポリシーを回避される脆弱性 CWE-200
情報漏えい
CVE-2016-7199 2016-11-11 14:51 2016-11-8 Show GitHub Exploit DB Packet Storm
203818 7.5 重要
Network
マイクロソフト - Microsoft Internet Explorer 9 から 11 および Microsoft Edge における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-7198 2016-11-11 14:51 2016-11-8 Show GitHub Exploit DB Packet Storm
203819 7.5 重要
Network
マイクロソフト - Microsoft Internet Explorer 10 および 11 ならびに Microsoft Edge における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-7196 2016-11-11 14:51 2016-11-8 Show GitHub Exploit DB Packet Storm
203820 7.5 重要
Network
マイクロソフト - Microsoft Internet Explorer 9 から 11 および Microsoft Edge における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-7195 2016-11-11 14:51 2016-11-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 19, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292101 - apple safari WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a craft… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1304 2024-11-21 11:04 2014-04-3 Show GitHub Exploit DB Packet Storm
292102 - apple safari WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a craft… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1302 2024-11-21 11:04 2014-04-3 Show GitHub Exploit DB Packet Storm
292103 - apple safari
itunes
WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a craft… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1301 2024-11-21 11:04 2014-04-3 Show GitHub Exploit DB Packet Storm
292104 - apple safari WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a craft… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1299 2024-11-21 11:04 2014-04-3 Show GitHub Exploit DB Packet Storm
292105 - apple safari WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a craft… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1298 2024-11-21 11:04 2014-04-3 Show GitHub Exploit DB Packet Storm
292106 - apple safari WebKit, as used in Apple Safari before 6.1.3 and 7.x before 7.0.3, does not properly validate WebProcess IPC messages, which allows remote attackers to bypass a sandbox protection mechanism and read … CWE-20
 Improper Input Validation 
CVE-2014-1297 2024-11-21 11:04 2014-04-3 Show GitHub Exploit DB Packet Storm
292107 - horde horde_application_framework The framework/Util/lib/Horde/Variables.php script in the Util library in Horde before 5.1.1 allows remote attackers to conduct object injection attacks and execute arbitrary PHP code via a crafted se… CWE-94
Code Injection
CVE-2014-1691 2024-11-21 11:04 2014-04-2 Show GitHub Exploit DB Packet Storm
292108 - mozilla firefox The saltProfileName function in base/GeckoProfileDirectories.java in Mozilla Firefox through 28.0.1 on Android relies on Android's weak approach to seeding the Math.random function, which makes it ea… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-1516 2024-11-21 11:04 2014-03-30 Show GitHub Exploit DB Packet Storm
292109 - symantec liveupdate_administrator SQL injection vulnerability in forcepasswd.do in the management GUI in Symantec LiveUpdate Administrator (LUA) 2.x before 2.3.2.110 allows remote attackers to execute arbitrary SQL commands via unspe… CWE-89
SQL Injection
CVE-2014-1645 2024-11-21 11:04 2014-03-29 Show GitHub Exploit DB Packet Storm
292110 - symantec liveupdate_administrator The forgotten-password feature in forcepasswd.do in the management GUI in Symantec LiveUpdate Administrator (LUA) 2.x before 2.3.2.110 allows remote attackers to reset arbitrary passwords by providin… CWE-255
Credentials Management
CVE-2014-1644 2024-11-21 11:04 2014-03-29 Show GitHub Exploit DB Packet Storm