Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 12:09 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216311 5.4 警告 Choice of Love - Android 用 Free Dating COL アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5592 2014-09-18 16:57 2014-09-3 Show GitHub Exploit DB Packet Storm
216312 5.4 警告 Tictoc Planet, Inc. - Android 用 Frankly Chat アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5591 2014-09-18 16:57 2014-09-3 Show GitHub Exploit DB Packet Storm
216313 5.4 警告 uKnow.com - Android 用 FamilyConnect.net アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5600 2014-09-18 16:57 2014-09-3 Show GitHub Exploit DB Packet Storm
216314 5.4 警告 BTWGames - Android 用 Snake Evolution アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5590 2014-09-18 16:57 2014-09-3 Show GitHub Exploit DB Packet Storm
216315 5.4 警告 Lorenzo Zanotto - Android 用 Now Browser アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5589 2014-09-18 16:57 2014-09-3 Show GitHub Exploit DB Packet Storm
216316 5.4 警告 Com2uS USA - Android 用 Tiny Farm アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5599 2014-09-18 16:57 2014-09-3 Show GitHub Exploit DB Packet Storm
216317 5.4 警告 Com2uS USA - Android 用 Puzzle Family アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5598 2014-09-18 16:57 2014-09-3 Show GitHub Exploit DB Packet Storm
216318 5.4 警告 BMF Apps - Android 用 Free eBooks アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5588 2014-09-18 16:57 2014-09-3 Show GitHub Exploit DB Packet Storm
216319 5.4 警告 Com2uS USA - Android 用 9 Innings: 2014 Pro Baseball アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5597 2014-09-18 16:57 2014-09-3 Show GitHub Exploit DB Packet Storm
216320 5.4 警告 Com2uS USA - Android 用 Homerun Battle 2 アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5596 2014-09-18 16:57 2014-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293271 - prestashop prestashop
ebay_module
The eBay module in PrestaShop does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-th… CWE-20
 Improper Input Validation 
CVE-2012-5800 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293272 - prestashop
presto-changeo
prestashop
canadapost
The Canada Post (aka CanadaPost) module in PrestaShop does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate… CWE-20
 Improper Input Validation 
CVE-2012-5799 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293273 - paypal
oscommerce
payflow_pro_express_checkout
oscommerce
The PayPal Pro PayFlow EC module in osCommerce does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which… CWE-20
 Improper Input Validation 
CVE-2012-5798 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293274 - brian_burton
oscommerce
paypal_pro_payflow_module
oscommerce
The PayPal Pro PayFlow module in osCommerce does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which al… CWE-20
 Improper Input Validation 
CVE-2012-5797 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293275 - paypal
oscommerce
paypal_pro
oscommerce
The PayPal Pro module in osCommerce does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man… CWE-20
 Improper Input Validation 
CVE-2012-5796 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293276 - akunamachata
oscommerce
paypal_express_module
oscommerce
The PayPal Express module in osCommerce does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows… CWE-20
 Improper Input Validation 
CVE-2012-5795 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293277 - moneybookers
oscommerce
moneybookers
oscommerce
The MoneyBookers module in osCommerce does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows m… CWE-20
 Improper Input Validation 
CVE-2012-5794 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293278 - oscommerce
harald_ponce_de_leon
oscommerce
authorize.net
The Authorize.Net module in osCommerce does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows … CWE-20
 Improper Input Validation 
CVE-2012-5793 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293279 - oscommerce
sagepay
oscommerce
sage_pay_direct_module
The Sage Pay Direct module in osCommerce does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allow… CWE-20
 Improper Input Validation 
CVE-2012-5792 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm
293280 - paypal invoicing PayPal Invoicing does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle atta… CWE-20
 Improper Input Validation 
CVE-2012-5791 2024-11-21 10:45 2012-11-5 Show GitHub Exploit DB Packet Storm