Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
204201 7.8 重要
Local
Google - Nexus 5 および 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントにおける整数オーバーフローの脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9873 2016-08-10 17:43 2016-08-1 Show GitHub Exploit DB Packet Storm
204202 7.8 重要
Local
Google - Nexus 5 デバイス上で稼動する Android の Qualcomm コンポーネントの diag ドライバにおける権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2014-9872 2016-08-10 17:43 2016-08-1 Show GitHub Exploit DB Packet Storm
204203 7.8 重要
Local
Google - Nexus 5 および 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-9871 2016-08-10 17:43 2016-08-1 Show GitHub Exploit DB Packet Storm
204204 7.8 重要
Local
Google
Linux
- Nexus 5 および 7 (2013) デバイス上で稼動する Android で使用される ARM プラットフォームの Linux Kernel における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9870 2016-08-10 17:43 2016-08-1 Show GitHub Exploit DB Packet Storm
204205 7.8 重要
Local
Google - Nexus 5 および 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9869 2016-08-10 17:37 2016-08-1 Show GitHub Exploit DB Packet Storm
204206 7.8 重要
Local
Google - Nexus 5 および 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9868 2016-08-10 17:37 2016-08-1 Show GitHub Exploit DB Packet Storm
204207 7.8 重要
Local
Google - Nexus 5 および 7 (2013) デバイス上で稼動する Android の Qualcomm コンポーネントにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9867 2016-08-10 17:37 2016-08-1 Show GitHub Exploit DB Packet Storm
204208 5.5 警告
Local
Google - Nexus デバイス上で稼動する Android の Google Play サービスにおける Factory Reset Protection 保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-3853 2016-08-10 17:33 2016-08-1 Show GitHub Exploit DB Packet Storm
204209 5.5 警告
Local
Google - Android One デバイス上で稼動する Android の MediaTek Wi-Fi ドライバにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-3852 2016-08-10 17:33 2016-08-1 Show GitHub Exploit DB Packet Storm
204210 7.8 重要
Local
Google - Nexus 5 および 7 (2013) デバイス上で稼働する Android の Qualcomm コンポーネントにおける権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2014-9866 2016-08-10 17:33 2016-08-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290311 - openwebanalytics open_web_analytics SQL injection vulnerability in the password reset page in Open Web Analytics (OWA) before 1.5.5 allows remote attackers to execute arbitrary SQL commands via the owa_email_address parameter in a base… CWE-89
SQL Injection
CVE-2014-1206 2024-11-21 11:03 2014-01-16 Show GitHub Exploit DB Packet Storm
290312 - lorex_technology
lorextechnology
edge_lh310_firmware
edge
edge3_lh340_firmware
edge3
edge2_lh330_firmware
edge2
edge\+_lh320_firmware
edge\+
Buffer overflow in the INetViewX ActiveX control in the Lorex Edge LH310 and Edge+ LH320 series with firmware 7-35-28-1B26E, Edge2 LH330 series with firmware 11.17.38-33_1D97A, and Edge3 LH340 series… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1201 2024-11-21 11:03 2014-01-16 Show GitHub Exploit DB Packet Storm
290313 - graphviz graphviz Stack-based buffer overflow in the yyerror function in lib/cgraph/scan.l in Graphviz 2.34.0 allows remote attackers to have unspecified impact via a long line in a dot file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-0978 2024-11-21 11:03 2014-01-11 Show GitHub Exploit DB Packet Storm
290314 - sixapart movabletype Cross-site scripting (XSS) vulnerability in the Rich Text Editor in Movable Type 5.0x, 5.1x before 5.161, 5.2.x before 5.2.9, and 6.0.x before 6.0.1 allows remote attackers to inject arbitrary web sc… CWE-79
Cross-site Scripting
CVE-2014-0977 2024-11-21 11:03 2014-01-11 Show GitHub Exploit DB Packet Storm
290315 - graphviz graphviz Stack-based buffer overflow in the chkNum function in lib/cgraph/scan.l in Graphviz 2.34.0 allows remote attackers to have unspecified impact via vectors related to a "badly formed number" and a "lon… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1236 2024-11-21 11:03 2014-01-11 Show GitHub Exploit DB Packet Storm
290316 - paratrooper-newrelic_project paratrooper-newrelic The paratrooper-newrelic gem 1.0.1 for Ruby allows local users to obtain the X-Api-Key value by listing the curl process. CWE-200
Information Exposure
CVE-2014-1234 2024-11-21 11:03 2014-01-10 Show GitHub Exploit DB Packet Storm
290317 - tobias_maier paratrooper-pingdom The paratrooper-pingdom gem 1.0.0 for Ruby allows local users to obtain the App-Key, username, and password values by listing the curl process. CWE-200
Information Exposure
CVE-2014-1233 2024-11-21 11:03 2014-01-10 Show GitHub Exploit DB Packet Storm
290318 - foliovision foliopress_wysiwyg Cross-site scripting (XSS) vulnerability in the Foliopress WYSIWYG plugin before 2.6.8.5 for WordPress allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2014-1232 2024-11-21 11:03 2014-01-9 Show GitHub Exploit DB Packet Storm
290319 8.8 HIGH
Network
opensuse open_build_service In the Open Build Service (OBS) before version 2.4.6 the CSRF protection is incorrectly disabled in the web interface, allowing for requests without the user's consent. CWE-352
 Origin Validation Error
CVE-2014-0594 2024-11-21 11:02 2018-06-9 Show GitHub Exploit DB Packet Storm
290320 9.8 CRITICAL
Network
opensuse open_build_service The set_version script as shipped with obs-service-set_version is a source validator for the Open Build Service (OBS). In versions prior to 0.5.3-1.1 this script did not properly sanitize the input p… CWE-20
 Improper Input Validation 
CVE-2014-0593 2024-11-21 11:02 2018-06-9 Show GitHub Exploit DB Packet Storm