Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 25, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220851 10 危険 アドビシステムズ - Windows および Mac OS X 上で稼働する Adobe Reader および Acrobat における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2014-0565 2014-09-25 17:52 2014-09-16 Show GitHub Exploit DB Packet Storm
220852 2.6 注意 Dotclear - Dotclear におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5316 2014-09-25 17:50 2014-09-19 Show GitHub Exploit DB Packet Storm
220853 10 危険 アドビシステムズ - Windows および Mac OS X 上で稼働する Adobe Reader および Acrobat におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-0567 2014-09-25 17:49 2014-09-16 Show GitHub Exploit DB Packet Storm
220854 10 危険 アドビシステムズ - Windows 上で稼働する Adobe Reader および Acrobat におけるサンドボックス保護メカニズムを回避される脆弱性 CWE-noinfo
情報不足
CVE-2014-0568 2014-09-25 17:47 2014-09-16 Show GitHub Exploit DB Packet Storm
220855 2.6 注意 Bump Technologies, Inc. - Android 版 Bump における暗黙的 Intent の扱いに関する脆弱性 CWE-DesignError
CVE-2014-5320 2014-09-25 17:43 2014-09-19 Show GitHub Exploit DB Packet Storm
220856 6.5 警告 Huge-IT - WordPress 用 Huge-IT Image Gallery プラグインの admin/gallery_func.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-7153 2014-09-25 12:18 2014-08-25 Show GitHub Exploit DB Packet Storm
220857 4 警告 ヤフー株式会社 - Yahoo!ボックス(Android版) における SSL サーバ証明書の検証不備の脆弱性 CWE-Other
その他
CVE-2014-5881 2014-09-25 12:09 2014-09-25 Show GitHub Exploit DB Packet Storm
220858 5 警告 アップル - Safari におけるアプリケーションキャッシュの取扱いに関する問題 CWE-DesignError
CVE-2014-4409 2014-09-25 12:01 2014-09-17 Show GitHub Exploit DB Packet Storm
220859 7.2 危険 Cobham plc - Cobham AVIATOR 700D および 700E 衛星通信用端末における特権的端末セッションを取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-2942 2014-09-25 11:57 2014-08-7 Show GitHub Exploit DB Packet Storm
220860 4 警告 FileMaker, Inc - FileMaker Pro における SSL サーバ証明書の検証不備の脆弱性 CWE-Other
その他
CVE-2014-5321 2014-09-24 18:04 2014-09-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 25, 2026, 4:04 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291961 - apple iphone_os Siri in Apple iOS before 7.1.2 allows physically proximate attackers to bypass an intended lock-screen passcode requirement, and read a contact list, via a Siri request that refers to a contact ambig… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-1351 2024-11-21 11:04 2014-07-1 Show GitHub Exploit DB Packet Storm
291962 - apple iphone_os Settings in Apple iOS before 7.1.2 allows physically proximate attackers to bypass an intended iCloud password requirement, and turn off the Find My iPhone service, by leveraging incorrect state mana… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-1350 2024-11-21 11:04 2014-07-1 Show GitHub Exploit DB Packet Storm
291963 - apple iphone_os Use-after-free vulnerability in Safari in Apple iOS before 7.1.2 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via an invalid URL. NVD-CWE-Other
CVE-2014-1349 2024-11-21 11:04 2014-07-1 Show GitHub Exploit DB Packet Storm
291964 - apple iphone_os Mail in Apple iOS before 7.1.2 advertises the availability of data protection for attachments but stores cleartext attachments under mobile/Library/Mail/, which makes it easier for physically proxima… CWE-310
Cryptographic Issues
CVE-2014-1348 2024-11-21 11:04 2014-07-1 Show GitHub Exploit DB Packet Storm
291965 - apple safari
iphone_os
WebKit in Apple iOS before 7.1.2 and Apple Safari before 6.1.5 and 7.x before 7.0.5 does not properly encode domain names in URLs, which allows remote attackers to spoof the address bar via a crafted… NVD-CWE-Other
CVE-2014-1345 2024-11-21 11:04 2014-07-1 Show GitHub Exploit DB Packet Storm
291966 - apple safari WebKit, as used in Apple Safari before 6.1.5 and 7.x before 7.0.5, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a craft… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1340 2024-11-21 11:04 2014-07-1 Show GitHub Exploit DB Packet Storm
291967 - apple safari
iphone_os
tvos
WebKit, as used in Apple iOS before 7.1.2, Apple Safari before 6.1.5 and 7.x before 7.0.5, and Apple TV before 6.1.2, allows remote attackers to execute arbitrary code or cause a denial of service (m… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-1325 2024-11-21 11:04 2014-07-1 Show GitHub Exploit DB Packet Storm
291968 - apple mac_os_x iBooks Commerce in Apple OS X before 10.9.4 places Apple ID credentials in the iBooks log, which allows local users to obtain sensitive information by reading this file. CWE-200
Information Exposure
CVE-2014-1317 2024-11-21 11:04 2014-07-1 Show GitHub Exploit DB Packet Storm
291969 - linux
canonical
suse
linux_kernel
ubuntu_linux
suse_linux_enterprise_desktop
suse_linux_enterprise_server
linux_enterprise_high_availability_extension
The media_device_enum_entities function in drivers/media/media-device.c in the Linux kernel before 3.14.6 does not initialize a certain data structure, which allows local users to obtain sensitive in… CWE-200
Information Exposure
CVE-2014-1739 2024-11-21 11:04 2014-06-23 Show GitHub Exploit DB Packet Storm
291970 - symantec web_gateway Multiple cross-site scripting (XSS) vulnerabilities in the management console in Symantec Web Gateway (SWG) before 5.2 allow remote authenticated users to inject arbitrary web script or HTML via unsp… CWE-79
Cross-site Scripting
CVE-2014-1652 2024-11-21 11:04 2014-06-19 Show GitHub Exploit DB Packet Storm