Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
208941 6.9 警告 アップル
FreeBSD
- FreeBSD および Apple iOS のカーネルの libc の stdio 内の fflush.c の __sflush 関数における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2014-8611 2015-10-6 10:34 2014-12-10 Show GitHub Exploit DB Packet Storm
208942 5 警告 The PHP Group
アップル
file project
- PHP の Fileinfo コンポーネントで使用される file の softmagic.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-9652 2015-10-6 10:34 2014-11-10 Show GitHub Exploit DB Packet Storm
208943 7.5 危険 The PHP Group
アップル
- PHP の ext/enchant/enchant.c の enchant_broker_request_dict 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-9705 2015-10-6 10:34 2014-12-5 Show GitHub Exploit DB Packet Storm
208944 5 警告 The PHP Group
LibGD project
アップル
- PHP で使用される LibGD の gd_gif_in.c 内の GetCode_ 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-9709 2015-10-6 10:34 2014-12-13 Show GitHub Exploit DB Packet Storm
208945 7.5 危険 The PHP Group
アップル
- PHP の CGI コンポーネントの sapi/cgi/cgi_main.c における php-cgi プロセスメモリから重要な情報を取得される脆弱性 CWE-119
バッファエラー
CVE-2014-9427 2015-10-6 10:33 2014-12-30 Show GitHub Exploit DB Packet Storm
208946 7.5 危険 The PHP Group
アップル
- PHP の Zend Engine の zend_ts_hash.c の zend_ts_hash_graceful_destroy 関数におけるメモリ二重解放の脆弱性 CWE-Other
その他
CVE-2014-9425 2015-10-6 10:33 2014-12-29 Show GitHub Exploit DB Packet Storm
208947 5 警告 アップル
Ruby-lang.org
- Ruby の REXML パーサにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2014-8090 2015-10-6 10:33 2014-11-13 Show GitHub Exploit DB Packet Storm
208948 5 警告 アップル
Ruby-lang.org
- Ruby の REXML パーサにおけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2014-8080 2015-10-6 10:33 2014-10-27 Show GitHub Exploit DB Packet Storm
208949 7.5 危険 アップル
Canonical
procmail project
- Procmail の formail の formisc.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-3618 2015-10-6 10:33 2014-09-4 Show GitHub Exploit DB Packet Storm
208950 4.3 警告 アップル
HTACG
- tidy の lexer.c の ParseValue 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2015-5523 2015-10-6 10:26 2015-06-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345591 - bea weblogic_server Multiple vulnerabilities in BEA WebLogic Server 8.1 through SP4, 7.0 through SP6, and 6.1 through SP7 leak sensitive information to remote attackers, including (1) DNS and IP addresses to address to … NVD-CWE-Other
CVE-2006-2471 2017-07-20 10:31 2006-05-19 Show GitHub Exploit DB Packet Storm
345592 - bea weblogic_server This vulnerability is addressed in the following product releases: BEA Systems, Weblogic Server, 8.1 SP 5 BEA Systems, Weblogic Express, 8.1 SP 5 BEA Systems, Weblogic Server, 7.0 SP 7 BEA System… NVD-CWE-Other
CVE-2006-2471 2017-07-20 10:31 2006-05-19 Show GitHub Exploit DB Packet Storm
345593 - bea weblogic_server Unspecified vulnerability in BEA WebLogic Server 9.1 and 9.0, 8.1 through SP5, 7.0 through SP6, and 6.1 through SP7 allows untrusted applications to obtain private server keys. NVD-CWE-Other
CVE-2006-2472 2017-07-20 10:31 2006-05-19 Show GitHub Exploit DB Packet Storm
345594 - bea weblogic_server Hyperlink #907650 has patches for the following products: WebLogic Server 9.1 WebLogic Server 9.0 This vulnerability is addressed in the following product releases: BEA Systems, Weblogic Server, … NVD-CWE-Other
CVE-2006-2472 2017-07-20 10:31 2006-05-19 Show GitHub Exploit DB Packet Storm
345595 - microchip_data_systems
pentaware
ziptv_for_c\+\+_builder
ziptv_for_delphi_7
pentasuite-pro
pentazip
Heap-based buffer overflow in the TZipTV component in (1) ZipTV for Delphi 7 2006.1.26 and for C++ Builder 2006-1.16, (2) PentaZip 8.5.1.190 and PentaSuite-PRO 8.5.1.221, and possibly other products,… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2006-2482 2017-07-20 10:31 2006-09-9 Show GitHub Exploit DB Packet Storm
345596 - spymac spymac_web_os Multiple cross-site scripting (XSS) vulnerabilities in Spymac WebOS (WOS) 5.0 allow remote attackers to inject arbitrary web script or HTML via the (1) del_folder, (2) nick, or (3) action parameters … NVD-CWE-Other
CVE-2006-2488 2017-07-20 10:31 2006-05-20 Show GitHub Exploit DB Packet Storm
345597 - invision_power_services invision_power_board Invision Power Board (IPB) before 2.1.6 allows remote attackers to execute arbitrary PHP script via attack vectors involving (1) the post_icon variable in classes/post/class_post.php and (2) the df v… NVD-CWE-Other
CVE-2006-2498 2017-07-20 10:31 2006-05-20 Show GitHub Exploit DB Packet Storm
345598 - sun java_system_application_server
java_system_web_server
one_application_server
one_web_server
Cross-site scripting (XSS) vulnerability in Sun ONE Web Server 6.0 SP9 and earlier, Java System Web Server 6.1 SP4 and earlier, Sun ONE Application Server 7 Platform and Standard Edition Update 6 and… NVD-CWE-Other
CVE-2006-2501 2017-07-20 10:31 2006-05-20 Show GitHub Exploit DB Packet Storm
345599 - sun java_system_application_server
java_system_web_server
one_application_server
one_web_server
This vulnerability is addressed in the following product releases: Sun, ONE Web Server, 6.0 SP10 or later Sun, Java System Web Server, 6.1 SP5 or later Sun, ONE Application Server, 7.0 Platform Up… NVD-CWE-Other
CVE-2006-2501 2017-07-20 10:31 2006-05-20 Show GitHub Exploit DB Packet Storm
345600 - cyrus imapd Stack-based buffer overflow in pop3d in Cyrus IMAPD (cyrus-imapd) 2.3.2, when the popsubfolders option is enabled, allows remote attackers to execute arbitrary code via a long USER command. NVD-CWE-Other
CVE-2006-2502 2017-07-20 10:31 2006-05-23 Show GitHub Exploit DB Packet Storm