Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
210191 5.4 警告 pocket pc - Android 用 PocketPC.ch アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5940 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210192 5.4 警告 travelzad - Android 用 travelzadcomvb アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5939 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210193 5.4 警告 alldealsasia - Android 用 AllDealsAsia All Deals ADA app アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5938 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210194 5.4 警告 freediyhomeimprovement - Android 用 Social Networking アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5937 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210195 5.4 警告 incognito private browser project - Android 用 INCOgnito Private Browser アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5936 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210196 5.4 警告 daily free app @ amazon project - Android 用 Daily Free App @ Amazon アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5935 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210197 5.4 警告 Skout Inc. - Android 用 Flurv Chat アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5934 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210198 5.4 警告 cokestudio - Android 用 Coke Studio 7 アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5933 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210199 5.4 警告 vodafone - Android 用 Vodafone Mobile@Work アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5932 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210200 5.4 警告 stopandshop - Android 用 Stop & Shop SCAN IT! Mobile アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5931 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
251091 4.3 MEDIUM
Network
rockoa xinhu RockOA v2.6.5 is vulnerable to Directory Traversal in webmain/system/beifen/beifenAction.php. CWE-22
Path Traversal
CVE-2024-48213 2024-11-1 00:09 2024-10-24 Show GitHub Exploit DB Packet Storm
251092 7.5 HIGH
Network
mozilla thunderbird
firefox
A permission leak could have occurred from a trusted site to an untrusted site via `embed` or `object` elements. This vulnerability affects Firefox < 132, Firefox ESR < 128.4, Firefox ESR < 115.17, T… NVD-CWE-noinfo
CVE-2024-10458 2024-11-1 00:03 2024-10-29 Show GitHub Exploit DB Packet Storm
251093 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: vrf: revert "vrf: Remove unnecessary RCU-bh critical section" This reverts commit 504fc6f4f7f681d2a03aa5f68aad549d90eab853. dev_… CWE-667
 Improper Locking
CVE-2024-49980 2024-10-31 23:58 2024-10-22 Show GitHub Exploit DB Packet Storm
251094 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: iommu/vt-d: Fix PCI device refcount leak in has_external_pci() for_each_pci_dev() is implemented by pci_get_device(). The comment… NVD-CWE-Other
CVE-2022-49000 2024-10-31 23:56 2024-10-22 Show GitHub Exploit DB Packet Storm
251095 6.1 MEDIUM
Network
foxskav bet_wc_2018_russia Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Foxskav Bet WC 2018 Russia allows Reflected XSS.This issue affects Bet WC 2018 Russia: fro… CWE-79
Cross-site Scripting
CVE-2024-49637 2024-10-31 23:52 2024-10-29 Show GitHub Exploit DB Packet Storm
251096 6.1 MEDIUM
Network
prashantmavinkurve agile_video_player_lite Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Prashant Mavinkurve Agile Video Player Lite allows Reflected XSS.This issue affects Agile … CWE-79
Cross-site Scripting
CVE-2024-49636 2024-10-31 23:51 2024-10-29 Show GitHub Exploit DB Packet Storm
251097 4.3 MEDIUM
Network
hitachienergy tro610_firmware
tro620_firmware
tro670_firmware
Profile files from TRO600 series radios are extracted in plain-text and encrypted file formats. Profile files provide potential attackers valuable configuration information about the Tropos network. … CWE-212
 Improper Removal of Sensitive Information Before Storage or Transfer
CVE-2024-41156 2024-10-31 23:49 2024-10-29 Show GitHub Exploit DB Packet Storm
251098 7.1 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: ipv4: Handle attempt to delete multipath route when fib_info contains an nh reference Gwangun Jung reported a slab-out-of-bounds … CWE-125
Out-of-bounds Read
CVE-2022-48999 2024-10-31 23:44 2024-10-22 Show GitHub Exploit DB Packet Storm
251099 7.2 HIGH
Network
hitachienergy tro610_firmware
tro620_firmware
tro670_firmware
Command injection vulnerability in the Edge Computing UI for the TRO600 series radios that allows for the execution of arbitrary system commands. If exploited, an attacker with write access to the we… CWE-77
Command Injection
CVE-2024-41153 2024-10-31 23:37 2024-10-29 Show GitHub Exploit DB Packet Storm
251100 5.5 MEDIUM
Local
cisco ata_191_firmware
ata_192_firmware
A vulnerability in the web-based management interface of Cisco ATA 190 Series Multiplatform Analog Telephone Adapter firmware could allow an authenticated, local attacker with low privileges to view … CWE-522
 Insufficiently Protected Credentials
CVE-2024-20462 2024-10-31 23:35 2024-10-17 Show GitHub Exploit DB Packet Storm