Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218061 5.4 警告 linkyungame - Android 用 Alien War Survivors アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5957 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
218062 5.4 警告 vplayer - Android 用 VPlayer Video Player アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5956 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
218063 5.4 警告 stephenvarga - Android 用 Atomic Fusion アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5955 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
218064 5.4 警告 State Bank of India - Android 用 State Bank Anywhere アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5954 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
218065 5.4 警告 kaskus - Android 用 KASKUS アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5953 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
218066 5.4 警告 calarepasoftware - Android 用 E-Dziennik アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5952 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
218067 5.4 警告 sinopac - Android 用 SinoPac アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5951 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
218068 5.4 警告 smtown - Android 用 NOW アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5950 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
218069 5.4 警告 mobileticketapp - Android 用 TICKET APP - Concerts & Sports アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5949 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
218070 5.4 警告 barackobama - Android 用 Obama for America アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5948 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 19, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290181 - haxx
apple
curl
libcurl
mac_os_x
cURL and libcurl before 7.38.0 allow remote attackers to bypass the Same Origin Policy and set cookies for arbitrary sites by setting a cookie for a top-level domain. CWE-310
Cryptographic Issues
CVE-2014-3620 2024-11-21 11:08 2014-11-19 Show GitHub Exploit DB Packet Storm
290182 - haxx
apple
curl
libcurl
mac_os_x
cURL and libcurl before 7.38.0 does not properly handle IP addresses in cookie domain names, which allows remote attackers to set cookies for or send arbitrary cookies to certain sites, as demonstrat… CWE-310
Cryptographic Issues
CVE-2014-3613 2024-11-21 11:08 2014-11-19 Show GitHub Exploit DB Packet Storm
290183 - apache qpid XML external entity (XXE) vulnerability in the XML Exchange module in Apache Qpid 0.30 allows remote attackers to cause outgoing HTTP connections via a crafted message. CWE-19
 Data Processing Errors
CVE-2014-3629 2024-11-21 11:08 2014-11-18 Show GitHub Exploit DB Packet Storm
290184 - mumble mumble The client in Mumble 1.2.x before 1.2.6 allows remote attackers to force the loading of an external file and cause a denial of service (hang and resource consumption) via a crafted string that is tre… CWE-19
 Data Processing Errors
CVE-2014-3756 2024-11-21 11:08 2014-11-16 Show GitHub Exploit DB Packet Storm
290185 - mumble mumble The QSvg module in Qt, as used in the Mumble client 1.2.x before 1.2.6, allows remote attackers to cause a denial of service (hang and resource consumption) via a local file reference in an (1) image… CWE-399
 Resource Management Errors
CVE-2014-3755 2024-11-21 11:08 2014-11-16 Show GitHub Exploit DB Packet Storm
290186 - apache cordova Apache Cordova Android before 3.5.1 allows remote attackers to open and send data to arbitrary applications via a URL with a crafted URI scheme for an Android intent. CWE-200
Information Exposure
CVE-2014-3502 2024-11-21 11:08 2014-11-16 Show GitHub Exploit DB Packet Storm
290187 - apache cordova Apache Cordova Android before 3.5.1 allows remote attackers to bypass the HTTP whitelist and connect to arbitrary servers by using JavaScript to open WebSocket connections through WebView. CWE-254
 7PK - Security Features
CVE-2014-3501 2024-11-21 11:08 2014-11-16 Show GitHub Exploit DB Packet Storm
290188 - apache cordova Apache Cordova Android before 3.5.1 allows remote attackers to change the start page via a crafted intent URL. CWE-17
Code
CVE-2014-3500 2024-11-21 11:08 2014-11-16 Show GitHub Exploit DB Packet Storm
290189 - canonical
apple
opensuse
oracle
debian
haxx
ubuntu_linux
mac_os_x
opensuse
hyperion
debian_linux
libcurl
The curl_easy_duphandle function in libcurl 7.17.1 through 7.38.0, when running with the CURLOPT_COPYPOSTFIELDS option, does not properly copy HTTP POST data for an easy handle, which triggers an out… CWE-200
Information Exposure
CVE-2014-3707 2024-11-21 11:08 2014-11-16 Show GitHub Exploit DB Packet Storm
290190 - qemu
debian
canonical
qemu
debian_linux
ubuntu_linux
The vmware-vga driver (hw/display/vmware_vga.c) in QEMU allows local guest users to write to qemu memory locations and gain privileges via unspecified parameters related to rectangle handling. CWE-269
 Improper Privilege Management
CVE-2014-3689 2024-11-21 11:08 2014-11-15 Show GitHub Exploit DB Packet Storm