Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
204001 7.8 重要
Local
Google - Nexus 5 デバイス上で稼動する Android の Qualcomm コンポーネントの arch/arm/mach-msm/qdsp6v2/msm_audio_ion.c におけるカーネルメモリから重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9779 2016-07-13 11:51 2016-07-6 Show GitHub Exploit DB Packet Storm
204002 7.8 重要
Local
Google - Nexus 5 および 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントにおける権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2014-9778 2016-07-13 11:51 2016-07-6 Show GitHub Exploit DB Packet Storm
204003 7.8 重要
Local
Google - Nexus 5 および 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントにおける権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2014-9777 2016-07-13 11:51 2016-07-6 Show GitHub Exploit DB Packet Storm
204004 7.8 重要
Local
Google - Android の Qualcomm コンポーネントにおける権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-7457 2016-07-13 11:51 2016-07-6 Show GitHub Exploit DB Packet Storm
204005 8.8 重要
Network
IBM - IBM Jazz Reporting Service の Report Builder および Data Collection Component におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-2889 2016-07-13 10:13 2016-06-24 Show GitHub Exploit DB Packet Storm
204006 5.4 警告
Network
IBM - IBM Jazz Reporting Service の Report Builder および Data Collection Component におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-2888 2016-07-13 10:13 2016-06-24 Show GitHub Exploit DB Packet Storm
204007 5.4 警告
Network
IBM - IBM Jazz Reporting Service の Report Builder および Data Collection Component におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-0350 2016-07-13 10:13 2016-06-24 Show GitHub Exploit DB Packet Storm
204008 8.8 重要
Network
IBM - IBM Jazz Reporting Service の Report Builder および Data Collection Component におけるセッションをハイジャックされる脆弱性 CWE-Other
その他
CVE-2016-0315 2016-07-13 10:13 2016-06-24 Show GitHub Exploit DB Packet Storm
204009 6.5 警告
Network
IBM - IBM Jazz Reporting Service の Report Builder および Data Collection Component におけるクリックジャッキング攻撃を実行される脆弱性 CWE-noinfo
情報不足
CVE-2016-0314 2016-07-13 10:13 2016-06-24 Show GitHub Exploit DB Packet Storm
204010 5.4 警告
Network
IBM - IBM Jazz Reporting Service の Report Builder および Data Collection Component におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-0313 2016-07-13 10:13 2016-06-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290601 - openinfosecfoundation
oisf
suricata Suricata before 1.4.6 allows remote attackers to cause a denial of service (crash) via a malformed SSL record. CWE-20
 Improper Input Validation 
CVE-2013-5919 2024-11-21 10:58 2014-05-30 Show GitHub Exploit DB Packet Storm
290602 - phpcms guesbook_module Multiple cross-site scripting (XSS) vulnerabilities in the Guestbook module for PHPCMS allow remote attackers to inject arbitrary web script or HTML via the (1) list or (2) introduce parameter to ind… CWE-79
Cross-site Scripting
CVE-2013-5939 2024-11-21 10:58 2014-05-15 Show GitHub Exploit DB Packet Storm
290603 - microweber microweber Directory traversal vulnerability in userfiles/modules/admin/backup/delete.php in Microweber before 0.830 allows remote attackers to delete arbitrary files via a .. (dot dot) in the file parameter. CWE-22
Path Traversal
CVE-2013-5984 2024-11-21 10:58 2014-05-12 Show GitHub Exploit DB Packet Storm
290604 - simplerisk simplerisk Cross-site scripting (XSS) vulnerability in management/prioritize_planning.php in SimpleRisk before 20130916-001 allows remote attackers to inject arbitrary web script or HTML via the new_project par… CWE-79
Cross-site Scripting
CVE-2013-5749 2024-11-21 10:58 2014-05-12 Show GitHub Exploit DB Packet Storm
290605 - simplerisk simplerisk Cross-site request forgery (CSRF) vulnerability in management/prioritize_planning.php in SimpleRisk before 20130916-001 allows remote attackers to hijack the authentication of users for requests that… CWE-352
 Origin Validation Error
CVE-2013-5748 2024-11-21 10:58 2014-05-12 Show GitHub Exploit DB Packet Storm
290606 - hp network_node_manager_i Cross-site scripting (XSS) vulnerability in HP Network Node Manager i (NNMi) 9.0, 9.10, and 9.20 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2013-6220 2024-11-21 10:58 2014-05-10 Show GitHub Exploit DB Packet Storm
290607 - bradesco_gateway_plugin_project bradesco_gateway Cross-site scripting (XSS) vulnerability in falha.php in the Bradesco Gateway plugin 2.0 for Wordpress, as used in the WP e-Commerce plugin, allows remote attackers to inject arbitrary web script or … CWE-79
Cross-site Scripting
CVE-2013-5916 2024-11-21 10:58 2014-05-9 Show GitHub Exploit DB Packet Storm
290608 - uclouvain openjpeg OpenJPEG 1.5.1 allows remote attackers to obtain sensitive information via unspecified vectors that trigger a heap-based out-of-bounds read. CWE-20
 Improper Input Validation 
CVE-2013-6053 2024-11-21 10:58 2014-04-28 Show GitHub Exploit DB Packet Storm
290609 - joomlaboat com_youtubegallery Cross-site scripting (XSS) vulnerability in includes/flvthumbnail.php in the Youtube Gallery (com_youtubegallery) component 3.4.0 for Joomla! allows remote attackers to inject arbitrary web script or… CWE-79
Cross-site Scripting
CVE-2013-5956 2024-11-21 10:58 2014-04-25 Show GitHub Exploit DB Packet Storm
290610 - revive-adserver
openx
revive_adserver
openx
Multiple cross-site request forgery (CSRF) vulnerabilities in OpenX 2.8.11 and earlier allow remote attackers to hijack the authentication of administrators for requests that delete (1) users via adm… CWE-352
 Origin Validation Error
CVE-2013-5954 2024-11-21 10:58 2014-04-25 Show GitHub Exploit DB Packet Storm