Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 12:07 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
222481 2.6 注意 株式会社ロックオン - EC-CUBE におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5992 2014-01-31 16:31 2013-11-20 Show GitHub Exploit DB Packet Storm
222482 4.3 警告 株式会社ロックオン - EC-CUBE における情報漏えいの脆弱性 CWE-200
情報漏えい
CVE-2013-5991 2014-01-31 16:30 2013-11-20 Show GitHub Exploit DB Packet Storm
222483 5 警告 株式会社ロックオン - EC-CUBE におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-3654 2014-01-31 16:29 2013-06-27 Show GitHub Exploit DB Packet Storm
222484 2.6 注意 株式会社ロックオン - EC-CUBE におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3653 2014-01-31 16:28 2013-06-27 Show GitHub Exploit DB Packet Storm
222485 4.3 警告 株式会社ロックオン - EC-CUBE におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3652 2014-01-31 16:28 2013-06-27 Show GitHub Exploit DB Packet Storm
222486 7.5 危険 株式会社ロックオン - EC-CUBE におけるコードインジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2013-3651 2014-01-31 16:27 2013-06-27 Show GitHub Exploit DB Packet Storm
222487 5 警告 株式会社ロックオン - EC-CUBE におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-3650 2014-01-31 16:26 2013-06-27 Show GitHub Exploit DB Packet Storm
222488 5 警告 株式会社ロックオン - EC-CUBE における不適切な入力確認に起因する情報漏えいの脆弱性 CWE-20
不適切な入力確認
CVE-2013-2315 2014-01-31 16:22 2013-05-23 Show GitHub Exploit DB Packet Storm
222489 4 警告 株式会社ロックオン - EC-CUBE におけるセッション固定の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2313 2014-01-31 16:21 2013-05-23 Show GitHub Exploit DB Packet Storm
222490 4.3 警告 株式会社ロックオン - EC-CUBE におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2312 2014-01-31 16:20 2013-05-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268601 5.9 MEDIUM
Network
mozilla firefox Web content could access information in the HTTP cache if e10s is disabled. This can reveal some visited URLs and the contents of those pages. This issue affects Firefox 48 and 49. This vulnerability… CWE-200
Information Exposure
CVE-2016-5288 2024-11-21 11:54 2018-06-12 Show GitHub Exploit DB Packet Storm
268602 9.8 CRITICAL
Network
mozilla firefox A potentially exploitable use-after-free crash during actor destruction with service workers. This issue does not affect releases earlier than Firefox 49. This vulnerability affects Firefox < 49.0.2. CWE-416
 Use After Free
CVE-2016-5287 2024-11-21 11:54 2018-06-12 Show GitHub Exploit DB Packet Storm
268603 8.8 HIGH
Network
libtiff
opensuse
redhat
debian
libtiff
leap
opensuse
enterprise_linux
debian_linux
Buffer overflow in the PixarLogDecode function in tif_pixarlog.c in LibTIFF 4.0.6 and earlier allows remote attackers to cause a denial of service (application crash) or possibly have unspecified oth… CWE-787
 Out-of-bounds Write
CVE-2016-5314 2024-11-21 11:54 2018-03-12 Show GitHub Exploit DB Packet Storm
268604 8.8 HIGH
Network
apache thrift The Apache Thrift Go client library exposed the potential during code generation for command injection due to using an external formatting tool. Affected Apache Thrift 0.9.3 and older, Fixed in Apach… CWE-77
Command Injection
CVE-2016-5397 2024-11-21 11:54 2018-02-13 Show GitHub Exploit DB Packet Storm
268605 7.0 HIGH
Local
google android Buffer overflow in the Qualcomm radio driver in Android before 2017-01-05 on Android One devices allows local users to gain privileges via a crafted application, aka Android internal bug 32639452 and… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-5345 2024-11-21 11:54 2018-01-23 Show GitHub Exploit DB Packet Storm
268606 9.8 CRITICAL
Network
puppet puppet_agent Versions of Puppet Agent prior to 1.6.0 included a version of the Puppet Execution Protocol (PXP) agent that passed environment variables through to Puppet runs. This could allow unauthorized code to… CWE-94
Code Injection
CVE-2016-5713 2024-11-21 11:54 2017-12-7 Show GitHub Exploit DB Packet Storm
268607 7.2 HIGH
Network
puppet puppet_enterprise
puppet_agent
Puppet Enterprise 2015.3.3 and 2016.x before 2016.4.0, and Puppet Agent 1.3.6 through 1.7.0 allow remote attackers to bypass a host whitelist protection mechanism and execute arbitrary code on Puppet… CWE-284
Improper Access Control
CVE-2016-5714 2024-11-21 11:54 2017-10-19 Show GitHub Exploit DB Packet Storm
268608 7.8 HIGH
Local
novell
opensuse
suse_linux_enterprise_server
suse_linux_enterprise_desktop
leap
The mkdumprd script called "dracut" in the current working directory "." allows local users to trick the administrator into executing code as root. CWE-20
 Improper Input Validation 
CVE-2016-5759 2024-11-21 11:54 2017-09-9 Show GitHub Exploit DB Packet Storm
268609 4.7 MEDIUM
Local
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, kernel stack data can be leaked to userspace by an audio driver. CWE-200
Information Exposure
CVE-2016-5347 2024-11-21 11:54 2017-08-17 Show GitHub Exploit DB Packet Storm
268610 8.8 HIGH
Network
puppet puppet_enterprise The console in Puppet Enterprise 2015.x and 2016.x prior to 2016.4.0 includes unsafe string reads that potentially allows for remote code execution on the console node. CWE-134
Use of Externally-Controlled Format String
CVE-2016-5716 2024-11-21 11:54 2017-08-9 Show GitHub Exploit DB Packet Storm