Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219901 5.4 警告 appsdeve - Android 用 hasb_e_haal アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5567 2014-09-17 17:15 2014-09-3 Show GitHub Exploit DB Packet Storm
219902 5.4 警告 Fly Fishing and Fly Tying magazine - Android 用 Fly Fishing & Fly Tying アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5556 2014-09-17 17:15 2014-09-3 Show GitHub Exploit DB Packet Storm
219903 5.4 警告 ilaz hoxha - Android 用 Sprint jump アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5545 2014-09-17 17:15 2014-09-3 Show GitHub Exploit DB Packet Storm
219904 5.4 警告 i Learn With - Kids Educational Game - Android 用 Animals! Kids Preschool Games アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5550 2014-09-17 17:15 2014-09-3 Show GitHub Exploit DB Packet Storm
219905 5.4 警告 FreshPlanet - Android 用 SongPop アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5544 2014-09-17 17:15 2014-09-3 Show GitHub Exploit DB Packet Storm
219906 5.4 警告 Difference Games LLC - Android 用 Hidden Object - Alice Free アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5543 2014-09-17 17:15 2014-09-3 Show GitHub Exploit DB Packet Storm
219907 5.4 警告 Starlux Studios LLC - Android 用 Puppy Slots アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5549 2014-09-17 17:15 2014-09-3 Show GitHub Exploit DB Packet Storm
219908 5.4 警告 AppsFlyer Ltd. - Android 用 Appsflyer ライブラリにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5528 2014-09-17 17:15 2014-09-3 Show GitHub Exploit DB Packet Storm
219909 5.4 警告 Seven Bulls - Android 用 Christmas Words アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5548 2014-09-17 17:15 2014-09-3 Show GitHub Exploit DB Packet Storm
219910 5.4 警告 Tamalaki - Android 用 Hidden Object Mystery アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5542 2014-09-17 17:15 2014-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295251 - xen xen The XEN_DOMCTL_getmemlist hypercall in Xen 3.4.x through 4.3.x (possibly 4.3.1) does not always obtain the page_alloc_lock and mm_rwlock in the same order, which allows local guest administrators to … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4553 2024-11-21 10:55 2013-12-25 Show GitHub Exploit DB Packet Storm
295252 - redhat jboss_operations_network Red Hat JBoss Operations Network 3.1.2 uses world-readable permissions for the (1) server and (2) agent configuration files, which allows local users to obtain authentication credentials and other un… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4452 2024-11-21 10:55 2013-12-25 Show GitHub Exploit DB Packet Storm
295253 - ffmpeg ffmpeg libavcodec/h264.c in FFmpeg before 0.11.4 allows remote attackers to cause a denial of service (crash) via vectors related to alternating bit depths in H.264 data. NVD-CWE-noinfo
CVE-2013-4358 2024-11-21 10:55 2013-12-25 Show GitHub Exploit DB Packet Storm
295254 - fedoraproject
duckcorp
fedora
bip
Bip before 0.8.9, when running as a daemon, writes SSL handshake errors to an unexpected file descriptor that was previously associated with stderr before stderr has been closed, which allows remote … CWE-310
Cryptographic Issues
CVE-2013-4550 2024-11-21 10:55 2013-12-25 Show GitHub Exploit DB Packet Storm
295255 - redhat jboss_enterprise_portal_platform Multiple cross-site scripting (XSS) vulnerabilities in the GateIn Portal component in Red Hat JBoss Portal 6.1.0 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2013-4424 2024-11-21 10:55 2013-12-24 Show GitHub Exploit DB Packet Storm
295256 - digia
qt
qt QXmlSimpleReader in Qt before 5.2 allows context-dependent attackers to cause a denial of service (memory consumption) via an XML Entity Expansion (XEE) attack. CWE-20
 Improper Input Validation 
CVE-2013-4549 2024-11-21 10:55 2013-12-24 Show GitHub Exploit DB Packet Storm
295257 - redhat enterprise_mrg SQL injection vulnerability in the web interface for cumin in Red Hat Enterprise MRG Grid 2.4 allows remote attackers to execute arbitrary SQL commands via vectors related to the "filtering table ope… CWE-89
SQL Injection
CVE-2013-4461 2024-11-21 10:55 2013-12-24 Show GitHub Exploit DB Packet Storm
295258 - redhat enterprise_mrg Cross-site scripting (XSS) vulnerability in the web interface for cumin in Red Hat Enterprise MRG Grid 2.4 allows remote attackers to inject arbitrary web script or HTML via the "Max allowance" field… CWE-79
Cross-site Scripting
CVE-2013-4414 2024-11-21 10:55 2013-12-24 Show GitHub Exploit DB Packet Storm
295259 - redhat enterprise_mrg Multiple cross-site request forgery (CSRF) vulnerabilities in the web interface for cumin in Red Hat Enterprise MRG Grid 2.4 allow remote attackers to hijack the authentication of cumin users for uns… CWE-352
 Origin Validation Error
CVE-2013-4405 2024-11-21 10:55 2013-12-24 Show GitHub Exploit DB Packet Storm
295260 - redhat enterprise_mrg cumin in Red Hat Enterprise MRG Grid 2.4 does not properly enforce user roles, which allows remote authenticated users to bypass intended role restrictions and obtain sensitive information or perform… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4404 2024-11-21 10:55 2013-12-24 Show GitHub Exploit DB Packet Storm