Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
221381 4.6 警告 アップル - Apple OS X の Dock におけるウィンドウを表示される脆弱性 CWE-287
不適切な認証
CVE-2014-4431 2014-10-22 16:55 2014-10-16 Show GitHub Exploit DB Packet Storm
221382 4 警告 アップル - Apple OS X の CoreStorage における平文データを取得される脆弱性 CWE-310
暗号の問題
CVE-2014-4430 2014-10-22 16:53 2014-10-16 Show GitHub Exploit DB Packet Storm
221383 5 警告 アップル - Apple OS X のアプリケーションのサンドボックスにおけるサンドボックス保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-4427 2014-10-22 16:51 2014-10-16 Show GitHub Exploit DB Packet Storm
221384 4.6 警告 アップル - Apple OS X の CFPreferences におけるアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2014-4425 2014-10-22 16:49 2014-10-16 Show GitHub Exploit DB Packet Storm
221385 6.8 警告 アップル - Apple OS X のコード署名機能におけるアプリ作者の制限を回避される脆弱性 CWE-310
暗号の問題
CVE-2014-4391 2014-10-22 16:48 2014-10-16 Show GitHub Exploit DB Packet Storm
221386 6.8 警告 アップル - Apple OS X の QuickTime におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-4351 2014-10-22 16:47 2014-10-16 Show GitHub Exploit DB Packet Storm
221387 7.5 危険 Drupal - Drupal core の データベース抽象化 API の expandArguments 関数における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-3704 2014-10-22 14:54 2014-10-15 Show GitHub Exploit DB Packet Storm
221388 9.3 危険 マイクロソフト - 複数の Microsoft Windows 製品のカーネルモードドライバの win32k.sys における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-4148 2014-10-22 11:29 2014-10-14 Show GitHub Exploit DB Packet Storm
221389 7.8 危険 ジュニパーネットワークス - Juniper Junos におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2014-6380 2014-10-21 16:10 2014-10-10 Show GitHub Exploit DB Packet Storm
221390 7.5 危険 ジュニパーネットワークス - Juniper Junos における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2014-6379 2014-10-21 16:09 2014-10-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293641 - python python Race condition in the _get_masked_mode function in Lib/os.py in Python 3.2 through 3.5, when exist_ok is set to true and multiple threads are used, might allow local users to bypass intended file per… CWE-362
Race Condition
CVE-2014-2667 2024-11-21 11:06 2014-11-16 Show GitHub Exploit DB Packet Storm
293642 - zend zendopenid
zend_framework
The GenericConsumer class in the Consumer component in ZendOpenId before 2.0.2 and the Zend_OpenId_Consumer class in Zend Framework 1 before 1.12.4 does not verify that the openid_op_endpoint value i… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-2684 2024-11-21 11:06 2014-11-16 Show GitHub Exploit DB Packet Storm
293643 - zend zendrest
zend_framework
zendservice_slideshare
zendservice_api
zendservice_audioscrobbler
zendservice_amazon
zendservice_technorati
zendservice_windowsazure
zendopenid
zend…
Zend Framework 1 (ZF1) before 1.12.4, Zend Framework 2 before 2.1.6 and 2.2.x before 2.2.6, ZendOpenId, ZendRest, ZendService_AudioScrobbler, ZendService_Nirvanix, ZendService_SlideShare, ZendService… CWE-17
Code
CVE-2014-2683 2024-11-21 11:06 2014-11-16 Show GitHub Exploit DB Packet Storm
293644 - zend zendrest
zend_framework
zendservice_slideshare
zendservice_api
zendservice_audioscrobbler
zendservice_amazon
zendservice_technorati
zendservice_windowsazure
zendopenid
zend…
Zend Framework 1 (ZF1) before 1.12.4, Zend Framework 2 before 2.1.6 and 2.2.x before 2.2.6, ZendOpenId, ZendRest, ZendService_AudioScrobbler, ZendService_Nirvanix, ZendService_SlideShare, ZendService… CWE-19
 Data Processing Errors
CVE-2014-2682 2024-11-21 11:06 2014-11-16 Show GitHub Exploit DB Packet Storm
293645 - zend zendrest
zend_framework
zendservice_slideshare
zendservice_api
zendservice_audioscrobbler
zendservice_amazon
zendservice_technorati
zendservice_windowsazure
zendopenid
zend…
Zend Framework 1 (ZF1) before 1.12.4, Zend Framework 2 before 2.1.6 and 2.2.x before 2.2.6, ZendOpenId, ZendRest, ZendService_AudioScrobbler, ZendService_Nirvanix, ZendService_SlideShare, ZendService… CWE-19
 Data Processing Errors
CVE-2014-2681 2024-11-21 11:06 2014-11-16 Show GitHub Exploit DB Packet Storm
293646 - accuenergy axm-net
acuvim_ii
The AXN-NET Ethernet module accessory 3.04 for the Accuenergy Acuvim II allows remote attackers to discover passwords and modify settings via vectors involving JavaScript. CWE-200
Information Exposure
CVE-2014-2374 2024-11-21 11:06 2014-11-5 Show GitHub Exploit DB Packet Storm
293647 - accuenergy axm-net
acuvim_ii
The web server on the AXN-NET Ethernet module accessory 3.04 for the Accuenergy Acuvim II allows remote attackers to bypass authentication and modify settings via a direct request to an unspecified U… CWE-287
Improper Authentication
CVE-2014-2373 2024-11-21 11:06 2014-11-5 Show GitHub Exploit DB Packet Storm
293648 - t-mobile
asus
tm-ac1900
rt_series_firmware
ASUS RT-AC68U, RT-AC66R, RT-AC66U, RT-AC56R, RT-AC56U, RT-N66R, RT-N66U, RT-N56R, RT-N56U, and possibly other RT-series routers before firmware 3.0.0.4.376.x do not verify the integrity of firmware (… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2014-2718 2024-11-21 11:06 2014-11-5 Show GitHub Exploit DB Packet Storm
293649 - fortinet fortimanager
fortianalyzer_firmware
Multiple cross-site scripting (XSS) vulnerabilities in the Web User Interface in Fortinet FortiManager before 5.0.7 and FortiAnalyzer before 5.0.7 allow remote attackers to inject arbitrary web scrip… CWE-79
Cross-site Scripting
CVE-2014-2336 2024-11-21 11:06 2014-10-31 Show GitHub Exploit DB Packet Storm
293650 - fortinet fortianalyzer_firmware Multiple cross-site scripting (XSS) vulnerabilities in the Web User Interface in Fortinet FortiManager before 5.0.7 allow remote attackers to inject arbitrary web script or HTML via unspecified vecto… CWE-79
Cross-site Scripting
CVE-2014-2335 2024-11-21 11:06 2014-10-31 Show GitHub Exploit DB Packet Storm