Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
222061 4.9 警告 WordPress.org - WordPress の wp-includes/capabilities.php におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-5296 2014-01-22 18:43 2010-09-4 Show GitHub Exploit DB Packet Storm
222062 4.3 警告 WordPress.org - WordPress の wp-admin/plugins.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-5295 2014-01-22 18:41 2010-11-14 Show GitHub Exploit DB Packet Storm
222063 4.3 警告 WordPress.org - WordPress の wp-admin/includes/file.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-5294 2014-01-22 18:38 2010-11-14 Show GitHub Exploit DB Packet Storm
222064 5.8 警告 WordPress.org - WordPress の wp-includes/comment.php におけるスパム制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-5293 2014-01-22 18:35 2010-11-30 Show GitHub Exploit DB Packet Storm
222065 4.3 警告 シスコシステムズ - Cisco Secure Access Control System のポータルにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0668 2014-01-22 16:37 2014-01-21 Show GitHub Exploit DB Packet Storm
222066 2.6 注意 TYPO3 Association - TYPO3 の Extbase Framework の ActionController ベースクラスにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7078 2014-01-22 16:32 2013-12-10 Show GitHub Exploit DB Packet Storm
222067 3.3 注意 libimobiledevice - libimobiledevice の userpref.c における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2013-2142 2014-01-22 16:31 2013-08-14 Show GitHub Exploit DB Packet Storm
222068 2.6 注意 Drupal - Drupal におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0244 2014-01-22 16:31 2013-01-16 Show GitHub Exploit DB Packet Storm
222069 2.7 注意 Fabrice Bellard
Xen プロジェクト
- Xen および QEMU の qemu-xen の qdisk PV ディスクバックエンドにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-4375 2014-01-22 16:22 2013-10-10 Show GitHub Exploit DB Packet Storm
222070 1.9 注意 Linux - Linux Kernel の drivers/net/hamradio/yam.c の yam_ioctl 関数における重要な情報を取得される脆弱性 CWE-399
リソース管理の問題
CVE-2014-1446 2014-01-22 16:05 2014-01-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
272881 5.1 MEDIUM
Local
opensuse
debian
oracle
ibm
redhat
mariadb
leap
debian_linux
mysql
powerkvm
enterprise_linux
linux
mariadb
Unspecified vulnerability in Oracle MySQL 5.5.47 and earlier, 5.6.28 and earlier, and 5.7.10 and earlier and MariaDB before 5.5.48, 10.0.x before 10.0.24, and 10.1.x before 10.1.12 allows local users… NVD-CWE-noinfo
CVE-2016-0641 2024-11-21 11:42 2016-04-21 Show GitHub Exploit DB Packet Storm
272882 6.1 MEDIUM
Local
oracle
opensuse
mariadb
debian
redhat
ibm
mysql
linux
leap
mariadb
debian_linux
enterprise_linux
powerkvm
Unspecified vulnerability in Oracle MySQL 5.5.47 and earlier, 5.6.28 and earlier, and 5.7.10 and earlier and MariaDB before 5.5.48, 10.0.x before 10.0.24, and 10.1.x before 10.1.12 allows local users… NVD-CWE-noinfo
CVE-2016-0640 2024-11-21 11:42 2016-04-21 Show GitHub Exploit DB Packet Storm
272883 9.8 CRITICAL
Network
redhat
oracle
enterprise_linux
mysql
Unspecified vulnerability in Oracle MySQL 5.6.29 and earlier and 5.7.11 and earlier allows remote attackers to affect confidentiality, integrity, and availability via vectors related to Pluggable Aut… NVD-CWE-noinfo
CVE-2016-0639 2024-11-21 11:42 2016-04-21 Show GitHub Exploit DB Packet Storm
272884 9.8 CRITICAL
Network
oracle weblogic_server Unspecified vulnerability in the Oracle WebLogic Server component in Oracle Fusion Middleware 10.3.6, 12.1.2, 12.1.3, and 12.2.1 allows remote attackers to affect confidentiality, integrity, and avai… NVD-CWE-noinfo
CVE-2016-0638 2024-11-21 11:42 2016-04-21 Show GitHub Exploit DB Packet Storm
272885 4.7 MEDIUM
Network
oracle solaris Unspecified vulnerability in Oracle Sun Solaris 11.3 allows remote attackers to affect integrity via vectors related to the Automated Installer sub-component. NVD-CWE-noinfo
CVE-2016-0623 2024-11-21 11:42 2016-04-21 Show GitHub Exploit DB Packet Storm
272886 8.8 HIGH
Network
emc vipr_srm Multiple cross-site request forgery (CSRF) vulnerabilities in administrative pages in EMC ViPR SRM before 3.7 allow remote attackers to hijack the authentication of administrators. CWE-352
 Origin Validation Error
CVE-2016-0891 2024-11-21 11:42 2016-04-21 Show GitHub Exploit DB Packet Storm
272887 7.5 HIGH
Network
redhat
fedoraproject
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux
enterprise_linux_server
enterprise_linux_hpc_node
389_directory_server
slapd/connection.c in 389 Directory Server (formerly Fedora Directory Server) 1.3.4.x before 1.3.4.7 allows remote attackers to cause a denial of service (infinite loop and connection blocking) by le… CWE-399
 Resource Management Errors
CVE-2016-0741 2024-11-21 11:42 2016-04-20 Show GitHub Exploit DB Packet Storm
272888 8.8 HIGH
Adjacent
google android The PORCHE_PAIRING_CONFLICT feature in Bluetooth in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allows remote attackers to bypass intended pairing rest… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-0850 2024-11-21 11:42 2016-04-18 Show GitHub Exploit DB Packet Storm
272889 8.4 HIGH
Local
google android Multiple integer overflows in minzip/SysUtil.c in the Recovery Procedure in Android 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allow attackers to gain privileges via a crafted … CWE-189
Numeric Errors
CVE-2016-0849 2024-11-21 11:42 2016-04-18 Show GitHub Exploit DB Packet Storm
272890 8.4 HIGH
Local
google android Race condition in Download Manager in Android 4.x before 4.4.4, 5.0.x before 5.0.2, 5.1.x before 5.1.1, and 6.x before 2016-04-01 allows attackers to bypass private-storage file-access restrictions v… CWE-362
Race Condition
CVE-2016-0848 2024-11-21 11:42 2016-04-18 Show GitHub Exploit DB Packet Storm