Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
215831 5.4 警告 NQ Mobile - Android 用 NQ Mobile Security & Antivirus アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5672 2014-11-12 10:55 2014-09-3 Show GitHub Exploit DB Packet Storm
215832 5.4 警告 Noodlecake Studios Inc - Android 用 Super Stickman Golf アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5671 2014-11-12 10:52 2014-09-3 Show GitHub Exploit DB Packet Storm
215833 5.4 警告 ninja kiwi - Android 用 SAS: Zombie Assault 3 アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5670 2014-11-12 10:50 2014-09-3 Show GitHub Exploit DB Packet Storm
215834 5.4 警告 9GAG - Android 用 9GAG - Funny pics and videos アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5669 2014-11-12 10:43 2014-09-3 Show GitHub Exploit DB Packet Storm
215835 5.4 警告 Camp Mobile - Android 用 BAND -Group sharing & planning アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5668 2014-11-12 10:32 2014-09-3 Show GitHub Exploit DB Packet Storm
215836 5.4 警告 Kiragames Co., Ltd. - Android 用 Unblock Me FREE アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5653 2014-11-12 10:29 2014-09-3 Show GitHub Exploit DB Packet Storm
215837 5.4 警告 Receivd, Inc. - Android 用 Kicksend Photo Prints アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5652 2014-11-12 10:23 2014-09-3 Show GitHub Exploit DB Packet Storm
215838 5.4 警告 Receivd, Inc. - Android 用 Kicksend: ワンタッチで写真共有アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5651 2014-11-12 10:17 2014-09-3 Show GitHub Exploit DB Packet Storm
215839 - - Zopim - ** 削除 ** Android 用 Zopim ライブラリにおけるサーバになりすまされる脆弱性 - CVE-2014-5530 2014-11-11 18:17 2014-09-3 Show GitHub Exploit DB Packet Storm
215840 4.9 警告 Linux - Linux Kernel の fs/dcache.c 内の d_walk 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-8559 2014-11-11 18:02 2014-10-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293551 - oscommerce
harald_ponce_de_leon
oscommerce
authorize.net
The Authorize.Net module in osCommerce does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows … CWE-20
 Improper Input Validation 
CVE-2012-5793 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293552 - oscommerce
sagepay
oscommerce
sage_pay_direct_module
The Sage Pay Direct module in osCommerce does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allow… CWE-20
 Improper Input Validation 
CVE-2012-5792 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293553 - paypal invoicing PayPal Invoicing does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle atta… CWE-20
 Improper Input Validation 
CVE-2012-5791 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293554 - paypal payments_standard PayPal Payments Standard PHP Library 20120427 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which … CWE-20
 Improper Input Validation 
CVE-2012-5790 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293555 - paypal payments_standard PayPal Payments Standard PHP Library before 20120427 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate,… CWE-20
 Improper Input Validation 
CVE-2012-5789 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293556 - paypal ipn The PayPal IPN utility does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middl… CWE-20
 Improper Input Validation 
CVE-2012-5788 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293557 - paypal merchant_sdk The PayPal merchant SDK does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-midd… CWE-20
 Improper Input Validation 
CVE-2012-5787 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293558 - apache cxf The wsdl_first_https sample code in distribution/src/main/release/samples/wsdl_first_https/src/main/ in Apache CXF before 2.7.0 does not verify that the server hostname matches a domain name in the s… CWE-20
 Improper Input Validation 
CVE-2012-5786 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293559 - apache axis2 Apache Axis2/Java 1.6.2 and earlier does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man… CWE-20
 Improper Input Validation 
CVE-2012-5785 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293560 - apache
paypal
axis
mass_pay
transactional_information_soap
payments_pro
activemq
Apache Axis 1.4 and earlier, as used in PayPal Payments Pro, PayPal Mass Pay, PayPal Transactional Information SOAP, the Java Message Service implementation in Apache ActiveMQ, and other products, do… CWE-20
 Improper Input Validation 
CVE-2012-5784 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm