Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
204351 5.9 警告
Network
Expat
Debian
- Expat における暗号保護メカニズムを破られる脆弱性 CWE-310
暗号の問題
CVE-2012-6702 2016-06-20 18:00 2012-04-5 Show GitHub Exploit DB Packet Storm
204352 7.1 重要
Local
Fabrice Bellard - QEMU の USB Net デバイスエミュレータにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2016-2538 2016-06-20 17:59 2016-03-29 Show GitHub Exploit DB Packet Storm
204353 5 警告
Local
Fabrice Bellard
Canonical
- QEMU の USB OHCI エミュレーションサポートの ohci_bus_start 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-2391 2016-06-20 17:59 2016-02-16 Show GitHub Exploit DB Packet Storm
204354 8.8 重要
Network
マイクロソフト
アドビシステムズ
Google
- Microsoft Internet Explorer および Microsoft Edge の Adobe Flash ライブラリで使用される Adobe Flash Player における脆弱性 CWE-noinfo
情報不足
CVE-2016-4126 2016-06-20 17:47 2016-06-16 Show GitHub Exploit DB Packet Storm
204355 9.8 緊急
Network
マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-4120 2016-06-20 17:38 2016-05-12 Show GitHub Exploit DB Packet Storm
204356 9.8 緊急
Network
アドビシステムズ - Adobe Brackets の拡張機能マネージャーにおける脆弱性 CWE-20
不適切な入力確認
CVE-2016-4165 2016-06-20 16:49 2016-06-14 Show GitHub Exploit DB Packet Storm
204357 6.1 警告
Network
アドビシステムズ - Adobe Brackets におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-4164 2016-06-20 16:49 2016-06-14 Show GitHub Exploit DB Packet Storm
204358 9.8 緊急
Network
アドビシステムズ - Adobe DNG Software Development Kit における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-4167 2016-06-20 16:25 2016-06-14 Show GitHub Exploit DB Packet Storm
204359 7.3 重要
Local
アドビシステムズ - Windows 上で稼動する Adobe Creative Cloud デスクトップアプリケーションのインストーラーにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-4157 2016-06-20 16:13 2016-06-14 Show GitHub Exploit DB Packet Storm
204360 6.5 警告
Network
Mozilla Foundation - Mozilla Firefox における同一生成元ポリシーを回避される脆弱性 CWE-Other
その他
CVE-2016-2825 2016-06-20 11:33 2016-06-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
354031 - ubuntu ubuntu_linux passwd before 1:4.0.13 on Ubuntu 6.06 LTS leaves the root password blank instead of locking it when the administrator selects the "Go Back" option after the final "Installation complete" message and … NVD-CWE-Other
CVE-2006-3597 2008-09-6 06:07 2006-07-19 Show GitHub Exploit DB Packet Storm
354032 - cutephp cutenews Cross-site scripting (XSS) vulnerability in Index.PHP in CuteNews 1.4.5 allows remote attackers to inject arbitrary web script or HTML via unknown vectors. NOTE: the provenance of this information i… NVD-CWE-Other
CVE-2006-3661 2008-09-6 06:07 2006-07-19 Show GitHub Exploit DB Packet Storm
354033 - kde kdebase The KDE PAM configuration shipped with Fedora Core 5 causes KDM passwords to be cached, which allows attackers to login without a password by attempting to log in multiple times. NVD-CWE-Other
CVE-2006-3742 2008-09-6 06:07 2006-09-7 Show GitHub Exploit DB Packet Storm
354034 - lucid_designs lucid_calendar Cross-site scripting (XSS) vulnerability in Cal.PHP3 in Chris Lea Lucid Calendar 0.22 allows remote attackers to inject arbitrary web script or HTML via unspecified parameters. NOTE: the provenance … NVD-CWE-Other
CVE-2006-3025 2008-09-6 06:06 2006-06-15 Show GitHub Exploit DB Packet Storm
354035 - lucid_designs lucid_calendar Lucid Designs, Lucid Calendar, 0.22 is unsupported. A new, supported version of this product will be released in the near future. NVD-CWE-Other
CVE-2006-3025 2008-09-6 06:06 2006-06-15 Show GitHub Exploit DB Packet Storm
354036 - emailarchitect email_server Cross-site scripting (XSS) vulnerability in EmailArchitect Email Server 6.1 allows remote attackers to inject arbitrary Javascript via an HTML div tag with a carriage return between the onmouseover a… NVD-CWE-Other
CVE-2006-3108 2008-09-6 06:06 2006-06-21 Show GitHub Exploit DB Packet Storm
354037 - canonical spread spread uses a temporary file with a static filename based on the port number, which allows local users to cause a denial of service by creating the file during a race condition between unlink and bin… NVD-CWE-Other
CVE-2006-3118 2008-09-6 06:06 2006-07-1 Show GitHub Exploit DB Packet Storm
354038 - mambo mambo SQL injection vulnerability in the Weblinks module (weblinks.php) in Mambo 4.6rc1 and earlier allows remote attackers to execute arbitrary SQL commands via the catid parameter. NVD-CWE-Other
CVE-2006-3263 2008-09-6 06:06 2006-06-28 Show GitHub Exploit DB Packet Storm
354039 - mpg123 mpg123 Heap-based buffer overflow in httpdget.c in mpg123 before 0.59s-rll allows remote attackers to execute arbitrary code via a long URL, which is not properly terminated before being used with the strnc… NVD-CWE-Other
CVE-2006-3355 2008-09-6 06:06 2006-07-7 Show GitHub Exploit DB Packet Storm
354040 - ubuntu ubuntu_linux passwd command in shadow in Ubuntu 5.04 through 6.06 LTS, when called with the -f, -g, or -s flag, does not check the return code of a setuid call, which might allow local users to gain root privileg… NVD-CWE-Other
CVE-2006-3378 2008-09-6 06:06 2006-07-7 Show GitHub Exploit DB Packet Storm