Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
209451 5.4 警告 pocketmags - Android 用 Classic Racer アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7535 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
209452 5.4 警告 buydot - Android 用 Funny & Interesting Things アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7534 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
209453 5.4 警告 notredame - Android 用 NotreDame Seguradora アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7533 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
209454 5.4 警告 greenecosystem - Android 用 GES Agri Connect アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7532 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
209455 5.4 警告 myapp - Android 用 PRIX IMPORT アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7530 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
209456 5.4 警告 streamingidiot - Android 用 Bodyguard for Hire アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7529 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
209457 5.4 警告 apptive - Android 用 Horsepower アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7528 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
209458 5.4 警告 savage nation mobile web project - Android 用 Savage Nation Mobile Web アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7527 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
209459 5.4 警告 immunize - Android 用 Immunize Canada アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7526 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
209460 5.4 警告 okacloud - Android 用 Domain Name Search & Web Host アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7525 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
251091 4.3 MEDIUM
Network
rockoa xinhu RockOA v2.6.5 is vulnerable to Directory Traversal in webmain/system/beifen/beifenAction.php. CWE-22
Path Traversal
CVE-2024-48213 2024-11-1 00:09 2024-10-24 Show GitHub Exploit DB Packet Storm
251092 7.5 HIGH
Network
mozilla thunderbird
firefox
A permission leak could have occurred from a trusted site to an untrusted site via `embed` or `object` elements. This vulnerability affects Firefox < 132, Firefox ESR < 128.4, Firefox ESR < 115.17, T… NVD-CWE-noinfo
CVE-2024-10458 2024-11-1 00:03 2024-10-29 Show GitHub Exploit DB Packet Storm
251093 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: vrf: revert "vrf: Remove unnecessary RCU-bh critical section" This reverts commit 504fc6f4f7f681d2a03aa5f68aad549d90eab853. dev_… CWE-667
 Improper Locking
CVE-2024-49980 2024-10-31 23:58 2024-10-22 Show GitHub Exploit DB Packet Storm
251094 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Fix PCI device refcount leak in has_external_pci() for_each_pci_dev() is implemented by pci_get_device(). The comment… NVD-CWE-Other
CVE-2022-49000 2024-10-31 23:56 2024-10-22 Show GitHub Exploit DB Packet Storm
251095 6.1 MEDIUM
Network
foxskav bet_wc_2018_russia Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Foxskav Bet WC 2018 Russia allows Reflected XSS.This issue affects Bet WC 2018 Russia: fro… CWE-79
Cross-site Scripting
CVE-2024-49637 2024-10-31 23:52 2024-10-29 Show GitHub Exploit DB Packet Storm
251096 6.1 MEDIUM
Network
prashantmavinkurve agile_video_player_lite Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Prashant Mavinkurve Agile Video Player Lite allows Reflected XSS.This issue affects Agile … CWE-79
Cross-site Scripting
CVE-2024-49636 2024-10-31 23:51 2024-10-29 Show GitHub Exploit DB Packet Storm
251097 4.3 MEDIUM
Network
hitachienergy tro610_firmware
tro620_firmware
tro670_firmware
Profile files from TRO600 series radios are extracted in plain-text and encrypted file formats. Profile files provide potential attackers valuable configuration information about the Tropos network. … CWE-212
 Improper Removal of Sensitive Information Before Storage or Transfer
CVE-2024-41156 2024-10-31 23:49 2024-10-29 Show GitHub Exploit DB Packet Storm
251098 7.1 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: ipv4: Handle attempt to delete multipath route when fib_info contains an nh reference Gwangun Jung reported a slab-out-of-bounds … CWE-125
Out-of-bounds Read
CVE-2022-48999 2024-10-31 23:44 2024-10-22 Show GitHub Exploit DB Packet Storm
251099 7.2 HIGH
Network
hitachienergy tro610_firmware
tro620_firmware
tro670_firmware
Command injection vulnerability in the Edge Computing UI for the TRO600 series radios that allows for the execution of arbitrary system commands. If exploited, an attacker with write access to the we… CWE-77
Command Injection
CVE-2024-41153 2024-10-31 23:37 2024-10-29 Show GitHub Exploit DB Packet Storm
251100 5.5 MEDIUM
Local
cisco ata_191_firmware
ata_192_firmware
A vulnerability in the web-based management interface of Cisco ATA 190 Series Multiplatform Analog Telephone Adapter firmware could allow an authenticated, local attacker with low privileges to view … CWE-522
 Insufficiently Protected Credentials
CVE-2024-20462 2024-10-31 23:35 2024-10-17 Show GitHub Exploit DB Packet Storm