Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
222291 5.4 警告 ブロケード コミュニケーションズ システムズ株式会社 - Brocade Vyatta vRouter のソフトウェアの OSPF の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2013-7307 2014-01-27 14:09 2013-08-1 Show GitHub Exploit DB Packet Storm
222292 6.8 警告 レッドハット - CloudForms Management Engine における Ruby on Rails の protect_from_forgery メカニズムを回避される脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-6443 2014-01-27 12:37 2013-12-17 Show GitHub Exploit DB Packet Storm
222293 4.6 警告 Hercules Team
レッドハット
- Augeas の transform.c の transform_save 関数におけるファイルを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6412 2014-01-27 12:14 2013-12-2 Show GitHub Exploit DB Packet Storm
222294 5 警告 レッドハット - JBoss Seam 2 framework の JBoss Seam Remoting における WebRemote アノテーションの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6448 2014-01-27 11:45 2013-12-18 Show GitHub Exploit DB Packet Storm
222295 5 警告 レッドハット - JBoss Seam 2 framework の JBoss Seam Remoting における複数の XML 外部エンティティの脆弱性 CWE-200
情報漏えい
CVE-2013-6447 2014-01-27 11:36 2013-12-18 Show GitHub Exploit DB Packet Storm
222296 4.3 警告 CS-Cart - CS-Cart にクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7317 2014-01-27 11:22 2014-01-23 Show GitHub Exploit DB Packet Storm
222297 6.5 警告 Avanset - Avanset Visual CertExam Manager に SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-7175 2014-01-27 11:16 2014-01-23 Show GitHub Exploit DB Packet Storm
222298 4.3 警告 フェンリル株式会社 - Sleipnir Mobile for Android における位置情報漏えいの脆弱性 CWE-Other
その他
CVE-2014-0806 2014-01-27 09:46 2014-01-22 Show GitHub Exploit DB Packet Storm
222299 9.3 危険 MW6 Technologies - MW6 Technologies の ActiveX コントロールに複数の脆弱性 CWE-noinfo
情報不足
CVE-2013-6040 2014-01-27 09:41 2014-01-20 Show GitHub Exploit DB Packet Storm
222300 4.3 警告 e107.org - e107 の fpw.php におけるパスワードをリセットされる脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-7305 2014-01-24 20:55 2013-07-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268401 6.5 MEDIUM
Network
fortinet fortiwan Fortinet FortiWan (formerly AscernLink) before 4.2.5 allows remote authenticated users to obtain sensitive information from (1) a backup of the device configuration via script/cfg_show.php or (2) PCA… CWE-200
Information Exposure
CVE-2016-4967 2024-11-21 11:53 2016-09-21 Show GitHub Exploit DB Packet Storm
268402 6.5 MEDIUM
Network
fortinet fortiwan The diagnosis_control.php page in Fortinet FortiWan (formerly AscernLink) before 4.2.5 allows remote authenticated users to download PCAP files via vectors related to the UserName GET parameter. CWE-287
Improper Authentication
CVE-2016-4966 2024-11-21 11:53 2016-09-21 Show GitHub Exploit DB Packet Storm
268403 8.8 HIGH
Network
fortinet fortiwan Fortinet FortiWan (formerly AscernLink) before 4.2.5 allows remote authenticated users with access to the nslookup functionality to execute arbitrary commands with root privileges via the graph param… CWE-78
OS Command 
CVE-2016-4965 2024-11-21 11:53 2016-09-21 Show GitHub Exploit DB Packet Storm
268404 7.5 HIGH
Network
redhat
oracle
libarchive
enterprise_linux_hpc_node
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
enterprise_linux_server_aus
enterprise_linux_server_eus
enterprise_linux_hpc_…
The archive_read_format_cpio_read_header function in archive_read_support_format_cpio.c in libarchive before 3.2.1 allows remote attackers to cause a denial of service (application crash) via a CPIO … CWE-20
 Improper Input Validation 
CVE-2016-4809 2024-11-21 11:53 2016-09-21 Show GitHub Exploit DB Packet Storm
268405 7.3 HIGH
Network
yokogawa stardom_fcn\/fcj Yokogawa STARDOM FCN/FCJ controller R1.01 through R4.01 does not require authentication for Logic Designer connections, which allows remote attackers to reconfigure the device or cause a denial of se… CWE-287
Improper Authentication
CVE-2016-4860 2024-11-21 11:53 2016-09-19 Show GitHub Exploit DB Packet Storm
268406 6.5 MEDIUM
Network
aki-null yorufukurou YoruFukurou (NightOwl) before 2.85 relies on support for emoji skin-tone modifiers even though this support is missing from the CoreText CTFramesetter API on OS X 10.9, which allows remote attackers … CWE-20
 Improper Input Validation 
CVE-2016-4852 2024-11-21 11:53 2016-09-12 Show GitHub Exploit DB Packet Storm
268407 8.8 HIGH
Network
opensuse
google
leap
chrome
Multiple unspecified vulnerabilities in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux allow attackers to cause a denial of service or possibly have other impa… NVD-CWE-noinfo
CVE-2016-5167 2024-11-21 11:53 2016-09-11 Show GitHub Exploit DB Packet Storm
268408 3.1 LOW
Network
google
opensuse
chrome
leap
The download implementation in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux does not properly restrict saving a file:// URL that is referenced by an http:// … CWE-200
Information Exposure
CVE-2016-5166 2024-11-21 11:53 2016-09-11 Show GitHub Exploit DB Packet Storm
268409 6.1 MEDIUM
Network
google
opensuse
chrome
leap
Cross-site scripting (XSS) vulnerability in the Developer Tools (aka DevTools) subsystem in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Linux allows remote attack… CWE-79
Cross-site Scripting
CVE-2016-5165 2024-11-21 11:53 2016-09-11 Show GitHub Exploit DB Packet Storm
268410 6.1 MEDIUM
Network
google
opensuse
chrome
leap
Cross-site scripting (XSS) vulnerability in WebKit/Source/platform/v8_inspector/V8Debugger.cpp in Blink, as used in Google Chrome before 53.0.2785.89 on Windows and OS X and before 53.0.2785.92 on Li… CWE-79
Cross-site Scripting
CVE-2016-5164 2024-11-21 11:53 2016-09-11 Show GitHub Exploit DB Packet Storm