Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
222471 7.1 危険 David King
Canonical
- GNOME Vino の vino-server.c の vino_server_client_data_pending 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-5745 2014-03-5 17:26 2013-09-12 Show GitHub Exploit DB Packet Storm
222472 3.6 注意 Samba Project - Samba の nsswitch/pam_winbind.c の winbind_name_list_to_sid_string_list 関数におけるアクセス制限を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2012-6150 2014-03-5 17:22 2012-06-12 Show GitHub Exploit DB Packet Storm
222473 6.8 警告 Gentoo Linux - Xdg-utils における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-0386 2014-03-5 17:22 2008-01-30 Show GitHub Exploit DB Packet Storm
222474 6.8 警告 Google - Android OS において任意の Java のメソッドが実行される脆弱性 CWE-DesignError
CVE-2013-4710 2014-03-5 17:21 2013-12-17 Show GitHub Exploit DB Packet Storm
222475 6 警告 シスコシステムズ - Cisco Unified Communications Manager における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0686 2014-03-5 17:20 2014-02-3 Show GitHub Exploit DB Packet Storm
222476 4.3 警告 AITpro - WordPress 用 BulletProof Security プラグインのセキュリティログにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3487 2014-03-5 17:14 2013-08-1 Show GitHub Exploit DB Packet Storm
222477 4.3 警告 Andy Bailey - WordPress 用 CommentLuv プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1409 2014-03-5 17:13 2013-02-6 Show GitHub Exploit DB Packet Storm
222478 4.3 警告 アイファイ - Eye-Fi Helper におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-4696 2014-03-5 16:56 2011-11-17 Show GitHub Exploit DB Packet Storm
222479 4.3 警告 DrinkedIn - Android 用 DrinkedIn BarFinder アプリケーションにおける任意の JavaScript コードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1887 2014-03-5 16:42 2014-02-7 Show GitHub Exploit DB Packet Storm
222480 6.4 警告 HS Group - Android 用 ForzeArmate アプリケーションにおける任意の JavaScript コードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1885 2014-03-5 16:40 2014-02-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268631 5.3 MEDIUM
Network
sap trex The NameServer in SAP TREX 7.10 Revision 63 allows remote attackers to obtain sensitive TNS information via an unspecified query, aka SAP Security Note 2234226. CWE-200
Information Exposure
CVE-2016-6146 2024-11-21 11:55 2016-09-28 Show GitHub Exploit DB Packet Storm
268632 9.8 CRITICAL
Network
sap trex An unspecified function in SAP TREX 7.10 Revision 63 allows remote attackers to execute arbitrary OS commands via unknown vectors, aka SAP Security Note 2203591. NVD-CWE-noinfo
CVE-2016-6137 2024-11-21 11:55 2016-09-28 Show GitHub Exploit DB Packet Storm
268633 9.8 CRITICAL
Network
openssl openssl statem/statem.c in OpenSSL 1.1.0a does not consider memory-block movement after a realloc call, which allows remote attackers to cause a denial of service (use-after-free) or possibly execute arbitra… CWE-416
 Use After Free
CVE-2016-6309 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
268634 5.9 MEDIUM
Network
openssl openssl statem/statem_dtls.c in the DTLS implementation in OpenSSL 1.1.0 before 1.1.0a allocates memory before checking for an excessive length, which might allow remote attackers to cause a denial of servic… CWE-399
 Resource Management Errors
CVE-2016-6308 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
268635 5.9 MEDIUM
Network
openssl openssl The state-machine implementation in OpenSSL 1.1.0 before 1.1.0a allocates memory before checking for an excessive length, which might allow remote attackers to cause a denial of service (memory consu… CWE-400
 Uncontrolled Resource Consumption
CVE-2016-6307 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
268636 5.9 MEDIUM
Network
openssl
hp
novell
nodejs
debian
canonical
openssl
icewall_sso
icewall_mcrp
icewall_sso_agent_option
icewall_federation_agent
suse_linux_enterprise_module_for_web_scripting
node.js
debian_linux
ubuntu_linux
The certificate parser in OpenSSL before 1.0.1u and 1.0.2 before 1.0.2i might allow remote attackers to cause a denial of service (out-of-bounds read) via crafted certificate operations, related to s… CWE-125
Out-of-bounds Read
CVE-2016-6306 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
268637 7.5 HIGH
Network
openssl openssl The ssl3_read_bytes function in record/rec_layer_s3.c in OpenSSL 1.1.0 before 1.1.0a allows remote attackers to cause a denial of service (infinite loop) by triggering a zero-length record in an SSL_… CWE-20
 Improper Input Validation 
CVE-2016-6305 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
268638 7.5 HIGH
Network
openssl
nodejs
novell
openssl
node.js
suse_linux_enterprise_module_for_web_scripting
Multiple memory leaks in t1_lib.c in OpenSSL before 1.0.1u, 1.0.2 before 1.0.2i, and 1.1.0 before 1.1.0a allow remote attackers to cause a denial of service (memory consumption) via large OCSP Status… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2016-6304 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
268639 6.5 MEDIUM
Network
ibm aix Directory traversal vulnerability in Eclipse Help in IBM Tivoli Lightweight Infrastructure (aka LWI), as used in AIX 5.3, 6.1, and 7.1, allows remote authenticated users to read arbitrary files via a… CWE-22
Path Traversal
CVE-2016-6038 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm
268640 6.8 MEDIUM
Network
opensuse
powerdns
leap
opensuse
authoritative_server
PowerDNS (aka pdns) Authoritative Server before 4.0.1 allows remote primary DNS servers to cause a denial of service (memory exhaustion and secondary DNS server crash) via a large (1) AXFR or (2) IXF… CWE-400
 Uncontrolled Resource Consumption
CVE-2016-6172 2024-11-21 11:55 2016-09-27 Show GitHub Exploit DB Packet Storm