Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
205021 8.6 重要
Network
オラクル - Oracle Fusion Middleware の Oracle Outside In Technology における Outside In Filters に関する脆弱性 CWE-Other
その他
CVE-2016-5578 2016-10-28 13:36 2016-10-18 Show GitHub Exploit DB Packet Storm
205022 8.6 重要
Network
オラクル - Oracle Fusion Middleware の Oracle Outside In Technology における Outside In Filters に関する脆弱性 CWE-Other
その他
CVE-2016-5577 2016-10-28 13:36 2016-10-18 Show GitHub Exploit DB Packet Storm
205023 8.8 重要
Network
The PHP Group
Debian
FreeBSD
LibGD project
Fedora Project
レッドハット
- PHP で使用される GD Graphics Library の gd_gd2.c の _gd2GetHeader 関数における整数オーバーフローの脆弱性 CWE-Other
その他
CVE-2016-5766 2016-10-28 09:58 2016-06-23 Show GitHub Exploit DB Packet Storm
205024 7.5 重要
Network
The PHP Group
openSUSE project
- PHP の GD におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2015-8874 2016-10-28 09:58 2015-08-6 Show GitHub Exploit DB Packet Storm
205025 8.8 重要
Network
Google - Google Chrome のプロキシ自動設定機能の net/proxy/proxy_service.cc における認証情報を取得される脆弱性 CWE-200
CWE-Other
CVE-2016-5134 2016-10-28 09:50 2016-07-20 Show GitHub Exploit DB Packet Storm
205026 7.5 重要
Network
アップル - 複数の Apple 製品の CFNetwork Proxies サブシステムにおける重要な情報を取得される脆弱性 CWE-200
CWE-Other
CVE-2016-1801 2016-10-28 09:49 2016-05-16 Show GitHub Exploit DB Packet Storm
205027 4.6 警告
Physics
Linux
SUSE
Canonical
- Linux Kernel の drivers/usb/misc/iowarrior.c の iowarrior_probe 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-2188 2016-10-27 18:07 2016-04-12 Show GitHub Exploit DB Packet Storm
205028 4.6 警告
Physics
Linux
SUSE
Canonical
- Linux Kernel の drivers/input/misc/powermate.c の powermate_probe 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-2186 2016-10-27 18:07 2016-04-12 Show GitHub Exploit DB Packet Storm
205029 4.6 警告
Physics
Linux
SUSE
Canonical
- Linux Kernel の snd-usb-audio ドライバの sound/usb/quirks.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-2184 2016-10-27 18:07 2016-04-12 Show GitHub Exploit DB Packet Storm
205030 4.6 警告
Physics
Linux
SUSE
Canonical
- Linux Kernel の drivers/input/misc/ati_remote2.c の ati_remote2_probe 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-2185 2016-10-27 18:07 2016-04-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290741 - cisco ios_xr
asr_9000_rsp440_router
asr_9001
asr_9006
asr_9010
asr_9904
asr_9912
asr_9922
Cisco IOS XR 4.3(.2) and earlier on ASR 9000 devices does not properly perform NetFlow sampling of IP packets, which allows remote attackers to cause a denial of service (chip and card hangs) via mal… CWE-20
 Improper Input Validation 
CVE-2014-3322 2024-11-21 11:07 2014-07-24 Show GitHub Exploit DB Packet Storm
290742 - honeywell falcon_xlweb_linux_controller
falcon_xlweb_xlwebexe
Multiple cross-site scripting (XSS) vulnerabilities on Honeywell FALCON XLWeb Linux controller devices 2.04.01 and earlier and FALCON XLWeb XLWebExe controller devices 2.02.11 and earlier allow remot… CWE-79
Cross-site Scripting
CVE-2014-3110 2024-11-21 11:07 2014-07-24 Show GitHub Exploit DB Packet Storm
290743 - micropact icomplaints Cross-site scripting (XSS) vulnerability in AddStdLetter.jsp in MicroPact iComplaints before 8.0.2.1.8.8014 allows remote authenticated users to inject arbitrary web script or HTML via the descriptio… CWE-79
Cross-site Scripting
CVE-2014-2971 2024-11-21 11:07 2014-07-24 Show GitHub Exploit DB Packet Storm
290744 - huawei e355_web_ui
e355_firmware
e355
Cross-site scripting (XSS) vulnerability in the web interface on the Huawei E355 CH1E355SM modem with software 21.157.37.01.910 and Web UI 11.001.08.00.03 allows remote attackers to inject arbitrary … CWE-79
Cross-site Scripting
CVE-2014-2968 2024-11-21 11:07 2014-07-24 Show GitHub Exploit DB Packet Storm
290745 - debian
google
debian_linux
chrome
Multiple unspecified vulnerabilities in Google Chrome before 36.0.1985.125 allow attackers to cause a denial of service or possibly have other impact via unknown vectors. NVD-CWE-noinfo
CVE-2014-3162 2024-11-21 11:07 2014-07-20 Show GitHub Exploit DB Packet Storm
290746 - google chrome The WebMediaPlayerAndroid::load function in content/renderer/media/android/webmediaplayer_android.cc in Google Chrome before 36.0.1985.122 on Android does not properly interact with redirects, which … CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-3161 2024-11-21 11:07 2014-07-20 Show GitHub Exploit DB Packet Storm
290747 - debian
google
debian_linux
chrome
The ResourceFetcher::canRequest function in core/fetch/ResourceFetcher.cpp in Blink, as used in Google Chrome before 36.0.1985.125, does not properly restrict subresource requests associated with SVG… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-3160 2024-11-21 11:07 2014-07-20 Show GitHub Exploit DB Packet Storm
290748 - google chrome The WebContentsDelegateAndroid::OpenURLFromTab function in components/web_contents_delegate_android/web_contents_delegate_android.cc in Google Chrome before 36.0.1985.122 on Android does not properly… CWE-20
 Improper Input Validation 
CVE-2014-3159 2024-11-21 11:07 2014-07-20 Show GitHub Exploit DB Packet Storm
290749 - cisco unified_customer_voice_portal Multiple cross-site scripting (XSS) vulnerabilities in Cisco Unified Customer Voice Portal (CVP) allow remote attackers to inject arbitrary web script or HTML via a crafted parameter, aka Bug IDs CSC… CWE-79
Cross-site Scripting
CVE-2014-3325 2024-11-21 11:07 2014-07-20 Show GitHub Exploit DB Packet Storm
290750 - ibm infosphere_master_data_management_server_for_product_information_management
infosphere_master_data_management_collaboration_server
The GDS component in IBM InfoSphere Master Data Management - Collaborative Edition 10.x and 11.x before 11.0 FP4 and InfoSphere Master Data Management Server for Product Information Management 9.0 an… CWE-200
Information Exposure
CVE-2014-3064 2024-11-21 11:07 2014-07-19 Show GitHub Exploit DB Packet Storm