Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
210271 5.4 警告 avantar - Android 用 White & Yellow Pages アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5857 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210272 5.4 警告 communityfactory - Android 用 Selfie Camera -Facial Beauty- アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5856 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210273 5.4 警告 cjmall - Android 用 CJmall アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5855 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210274 5.4 警告 clearhub - Android 用 Windows Live Hotmail PUSH mail アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5854 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210275 5.4 警告 Com2uS USA - Android 用 Knights N Squires アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5853 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210276 5.4 警告 Com2uS USA - Android 用 Kakao アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5852 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210277 5.4 警告 darksummoner - Android 用 Dark Summoner アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5851 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210278 5.4 警告 kaavefali - Android 用 Kaave Fali アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5850 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210279 5.4 警告 Disny - Android 用 Maleficent Free Fall アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5849 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210280 5.4 警告 mobiledeluxe - Android 用 Big Win Slots - Slot Machines アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5847 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
251231 - - - A path handling issue was addressed with improved logic. This issue is fixed in visionOS 2.1, iOS 18.1 and iPadOS 18.1, macOS Ventura 13.7.1, macOS Sonoma 14.7.1, watchOS 11.1, tvOS 18.1. A malicious… - CVE-2024-44255 2024-10-31 01:35 2024-10-29 Show GitHub Exploit DB Packet Storm
251232 5.5 MEDIUM
Local
apple macos The issue was addressed with improved checks. This issue is fixed in macOS Sequoia 15. An attacker may be able to view restricted content from the lock screen. CWE-754
 Improper Check for Unusual or Exceptional Conditions
CVE-2024-44174 2024-10-31 01:35 2024-10-29 Show GitHub Exploit DB Packet Storm
251233 3.3 LOW
Local
apple macos A permissions issue was addressed with additional restrictions. This issue is fixed in macOS Sequoia 15. A malicious app may be able to change network settings. NVD-CWE-noinfo
CVE-2024-40792 2024-10-31 01:35 2024-10-29 Show GitHub Exploit DB Packet Storm
251234 4.3 MEDIUM
Network
google chrome Inappropriate implementation in FedCM in Google Chrome prior to 128.0.6613.84 allowed a remote attacker to perform UI spoofing via a crafted HTML page. (Chromium security severity: Medium) NVD-CWE-noinfo
CVE-2024-7976 2024-10-31 01:35 2024-08-22 Show GitHub Exploit DB Packet Storm
251235 7.5 HIGH
Network
wpchill download_monitor The Download Monitor plugin for WordPress is vulnerable to authorization bypass due to a missing capability check on several REST-API routes related to reporting in versions up to, and including, 4.7… CWE-862
 Missing Authorization
CVE-2022-4972 2024-10-31 01:34 2024-10-16 Show GitHub Exploit DB Packet Storm
251236 4.9 MEDIUM
Network
mayurik petrol_pump_management A vulnerability classified as critical was found in SourceCodester Petrol Pump Management Software 1.0. Affected by this vulnerability is an unknown functionality of the file /admin/print.php. The ma… CWE-89
SQL Injection
CVE-2024-10354 2024-10-31 01:32 2024-10-25 Show GitHub Exploit DB Packet Storm
251237 7.2 HIGH
Network
oretnom23 online_exam_system A vulnerability classified as critical has been found in SourceCodester Online Exam System 1.0. Affected is an unknown function of the file /admin-dashboard. The manipulation leads to improper access… NVD-CWE-noinfo
CVE-2024-10353 2024-10-31 01:21 2024-10-25 Show GitHub Exploit DB Packet Storm
251238 6.1 MEDIUM
Network
archerirm archer Reflected XSS was discovered in an iView List Archer Platform UX page in Archer Platform 6.x before version 2024.09. A remote unauthenticated attacker could potentially exploit this by tricking a vic… CWE-79
Cross-site Scripting
CVE-2024-49210 2024-10-31 01:13 2024-10-23 Show GitHub Exploit DB Packet Storm
251239 6.1 MEDIUM
Network
archerirm archer Reflected XSS was discovered in a Dashboard Listing Archer Platform UX page in Archer Platform 6.x before version 2024.08. A remote unauthenticated attacker could potentially exploit this by tricking… CWE-79
Cross-site Scripting
CVE-2024-49211 2024-10-31 01:08 2024-10-23 Show GitHub Exploit DB Packet Storm
251240 5.4 MEDIUM
Network
wordpress wordpress WordPress Core, in versions up to 6.0.2, is vulnerable to Authenticated Stored Cross-Site Scripting that can be exploited by users with access to the WordPress post and page editor, typically consist… CWE-79
Cross-site Scripting
CVE-2022-4973 2024-10-31 00:58 2024-10-16 Show GitHub Exploit DB Packet Storm