Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 27, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
204421 6.8 警告 Mozilla Foundation
openSUSE project
SUSE
オラクル
- Mozilla Firefox の HTML5 文字列パーサの nsHtml5TreeBuilder クラスにおける整数アンダーフローの脆弱性 CWE-Other
その他
CVE-2016-1960 2016-12-5 17:49 2016-03-8 Show GitHub Exploit DB Packet Storm
204422 4.3 警告 Mozilla Foundation
openSUSE project
オラクル
- Mozilla Firefox の browser/base/content/browser.js におけるアドレスバーを偽装される脆弱性 CWE-Other
その他
CVE-2016-1958 2016-12-5 17:48 2016-03-8 Show GitHub Exploit DB Packet Storm
204423 4.3 警告 Mozilla Foundation
openSUSE project
SUSE
オラクル
- Mozilla Firefox の libstagefright におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-1957 2016-12-5 17:48 2016-03-8 Show GitHub Exploit DB Packet Storm
204424 6.8 警告 Mozilla Foundation
openSUSE project
SUSE
オラクル
- Mozilla Firefox の dom/security/nsCSPContext.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-1954 2016-12-5 17:47 2016-03-8 Show GitHub Exploit DB Packet Storm
204425 6.8 警告 Mozilla Foundation
openSUSE project
SUSE
オラクル
- Mozilla Firefox のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-1952 2016-12-5 17:47 2016-03-8 Show GitHub Exploit DB Packet Storm
204426 7.8 重要
Local
Apache Software Foundation
オラクル
- 複数の Linux ディストリビューションの Tomcat パッケージにおける root 権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-5425 2016-12-5 17:01 2016-10-10 Show GitHub Exploit DB Packet Storm
204427 7.3 重要
Network
ヒューレット・パッカード - HP Network Automation Software の RMI サービスにおける任意のコマンドを実行される脆弱性 CWE-Other
その他
CVE-2016-4385 2016-12-5 17:01 2016-09-20 Show GitHub Exploit DB Packet Storm
204428 6.8 警告 Debian
Canonical
Apache Software Foundation
- Apache Tomcat における Web セッションをハイジャックされる脆弱性 CWE-Other
その他
CVE-2015-5346 2016-12-5 17:01 2015-12-10 Show GitHub Exploit DB Packet Storm
204429 5 警告 ヒューレット・パッカード
Debian
Canonical
Apache Software Foundation
- Apache Tomcat の Mapper コンポーネントにおけるディレクトリの存在を特定される脆弱性 CWE-22
パス・トラバーサル
CVE-2015-5345 2016-12-5 17:01 2015-12-6 Show GitHub Exploit DB Packet Storm
204430 4 警告 ヒューレット・パッカード
Debian
Canonical
Apache Software Foundation
- Apache Tomcat の RequestUtil.java におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2015-5174 2016-12-5 17:01 2015-08-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 27, 2026, 4:35 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292041 - linux
redhat
canonical
suse
f5
linux_kernel
enterprise_linux
ubuntu_linux
linux_enterprise_desktop
linux_enterprise_server
linux_enterprise_real_time_extension
linux_enterprise_high_availability_extension
big-…
The rd_build_device_space function in drivers/target/target_core_rd.c in the Linux kernel before 3.14 does not properly initialize a certain data structure, which allows local users to obtain sensiti… CWE-200
Information Exposure
CVE-2014-4027 2024-11-21 11:09 2014-06-23 Show GitHub Exploit DB Packet Storm
292042 - linux linux_kernel The capabilities implementation in the Linux kernel before 3.14.8 does not properly consider that namespaces are inapplicable to inodes, which allows local users to bypass intended chmod restrictions… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-4014 2024-11-21 11:09 2014-06-23 Show GitHub Exploit DB Packet Storm
292043 - linuxfoundation cups-filters cups-browsed in cups-filters before 1.0.53 allows remote attackers to bypass intended access restrictions in opportunistic circumstances by leveraging a malformed cups-browsed.conf BrowseAllow direct… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-4338 2024-11-21 11:09 2014-06-23 Show GitHub Exploit DB Packet Storm
292044 - linuxfoundation cups-filters The process_browse_data function in utils/cups-browsed.c in cups-browsed in cups-filters before 1.0.53 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-4337 2024-11-21 11:09 2014-06-23 Show GitHub Exploit DB Packet Storm
292045 - linuxfoundation cups-filters The generate_local_queue function in utils/cups-browsed.c in cups-browsed in cups-filters before 1.0.53 allows remote IPP printers to execute arbitrary commands via shell metacharacters in the host n… CWE-77
Command Injection
CVE-2014-4336 2024-11-21 11:09 2014-06-23 Show GitHub Exploit DB Packet Storm
292046 - webmin usermin Usermin before 1.600 allows remote attackers to execute arbitrary operating-system commands via unspecified vectors related to a user action. CWE-78
OS Command 
CVE-2014-3883 2024-11-21 11:09 2014-06-22 Show GitHub Exploit DB Packet Storm
292047 - barracudadrive barracudadrive Multiple cross-site scripting (XSS) vulnerabilities in BarracudaDrive 6.7.2 allow remote attackers to inject arbitrary web script or HTML via the (1) host or (2) password parameter to rtl/protected/a… CWE-79
Cross-site Scripting
CVE-2014-4335 2024-11-21 11:09 2014-06-19 Show GitHub Exploit DB Packet Storm
292048 - ubi rayman_legends Stack-based buffer overflow in Ubisoft Rayman Legends before 1.3.140380 allows remote attackers to execute arbitrary code via a long string in the "second connection" to TCP port 1001. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-4334 2024-11-21 11:09 2014-06-19 Show GitHub Exploit DB Packet Storm
292049 - boonex dolphin Cross-site request forgery (CSRF) vulnerability in administration/profiles.php in Dolphin 7.1.4 and earlier allows remote attackers to hijack the authentication of administrators for requests that co… CWE-352
 Origin Validation Error
CVE-2014-4333 2024-11-21 11:09 2014-06-19 Show GitHub Exploit DB Packet Storm
292050 - zte zxv10_w300_firmware
zxv10_w300
Cross-site request forgery (CSRF) vulnerability in the ZTE ZXV10 W300 router with firmware W300V1.0.0a_ZRD_LK allows remote attackers to hijack the authentication of administrators for requests that … CWE-352
 Origin Validation Error
CVE-2014-4155 2024-11-21 11:09 2014-06-19 Show GitHub Exploit DB Packet Storm