Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224161 10 危険 アップル
Ruby on Rails project
- Ruby on Rails の ActiveRecord におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-0277 2013-06-7 12:09 2013-02-11 Show GitHub Exploit DB Packet Storm
224162 4.3 警告 アップル
Ruby on Rails project
- Ruby on Rails の ActiveRecord における attr_protected 保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0276 2013-06-7 12:07 2013-02-11 Show GitHub Exploit DB Packet Storm
224163 2.6 注意 日本ケンタッキー・フライド・チキン株式会社 - Android 版 ピザハット公式アプリ 宅配ピザのPizzaHut における SSL サーバ証明書の検証不備の脆弱性 CWE-Other
その他
CVE-2013-3641 2013-06-7 12:01 2013-06-7 Show GitHub Exploit DB Packet Storm
224164 2.6 注意 マイクロソフト - Internet Explorer における情報漏えいの脆弱性 CWE-Other
その他
- 2013-06-7 12:00 2013-06-7 Show GitHub Exploit DB Packet Storm
224165 6.4 警告 アップル
Ruby on Rails project
- Ruby on Rails におけるデータベースのクエリ制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0155 2013-06-7 11:58 2013-01-8 Show GitHub Exploit DB Packet Storm
224166 7.2 危険 アップル - CUPS における root として任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5519 2013-06-7 11:50 2012-11-20 Show GitHub Exploit DB Packet Storm
224167 7.5 危険 アップル
OpenSSL Project
- OpenSSL の crypto/buffer/buffer.c における整数符号エラーの脆弱性 CWE-189
数値処理の問題
CVE-2012-2131 2013-06-7 11:36 2012-04-23 Show GitHub Exploit DB Packet Storm
224168 7.5 危険 アップル
VMware
OpenSSL Project
- OpenSSL の asn1_d2i_read_bio 関数におけるバッファオーバーフロー攻撃を誘発される脆弱性 CWE-119
バッファエラー
CVE-2012-2110 2013-06-7 11:33 2012-04-19 Show GitHub Exploit DB Packet Storm
224169 5 警告 アップル
VMware
OpenSSL Project
- OpenSSL の Server Gated Cryptography の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-4619 2013-06-7 11:26 2012-01-4 Show GitHub Exploit DB Packet Storm
224170 4.3 警告 アップル
VMware
OpenSSL Project
- OpenSSL におけるサービス運用妨害 (表明違反) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-4577 2013-06-7 11:21 2012-01-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
277791 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, validation of buffer lengths was missing in Keymaster. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-9974 2024-11-21 11:22 2017-08-19 Show GitHub Exploit DB Packet Storm
277792 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, validation of a buffer length was missing in a PlayReady DRM routine. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-9973 2024-11-21 11:22 2017-08-19 Show GitHub Exploit DB Packet Storm
277793 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, disabling asserts can potentially cause a NULL pointer dereference during an out-of-memory condition. CWE-476
 NULL Pointer Dereference
CVE-2014-9972 2024-11-21 11:22 2017-08-19 Show GitHub Exploit DB Packet Storm
277794 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, disabling asserts causes an instruction inside of an assert to not be executed resulting in incorrect control flow. CWE-20
 Improper Input Validation 
CVE-2014-9971 2024-11-21 11:22 2017-08-19 Show GitHub Exploit DB Packet Storm
277795 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, the GPS client may use an insecure cryptographic algorithm. CWE-327
 Use of a Broken or Risky Cryptographic Algorithm
CVE-2014-9969 2024-11-21 11:22 2017-08-19 Show GitHub Exploit DB Packet Storm
277796 9.8 CRITICAL
Network
google android In all Qualcomm products with Android releases from CAF using the Linux kernel, a buffer overflow vulnerability exists in the UIMDIAG interface. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-9968 2024-11-21 11:22 2017-08-19 Show GitHub Exploit DB Packet Storm
277797 6.5 MEDIUM
Network
ibm sterling_b2b_integrator
sterling_file_gateway
XML External Entity (XXE) vulnerability in IBM Sterling B2B Integrator 5.1 and 5.2 and IBM Sterling File Gateway 2.1 and 2.2 allows remote attackers to read arbitrary files via a crafted XML data. CWE-611
XXE
CVE-2015-0194 2024-11-21 11:22 2017-08-3 Show GitHub Exploit DB Packet Storm
277798 7.2 HIGH
Network
apache roller The weblog page template in Apache Roller 5.1 through 5.1.1 allows remote authenticated users with admin privileges for a weblog to execute arbitrary Java code via crafted Velocity Text Language (aka… CWE-94
Code Injection
CVE-2015-0249 2024-11-21 11:22 2017-07-17 Show GitHub Exploit DB Packet Storm
277799 7.8 HIGH
Local
google android In all Android releases from CAF using the Linux kernel, an untrusted pointer dereference vulnerability exists in WideVine DRM. CWE-476
 NULL Pointer Dereference
CVE-2014-9967 2024-11-21 11:22 2017-06-14 Show GitHub Exploit DB Packet Storm
277800 7.0 HIGH
Local
google android In all Android releases from CAF using the Linux kernel, a Time-of-check Time-of-use (TOCTOU) Race Condition vulnerability exists in Secure Display. CWE-362
Race Condition
CVE-2014-9966 2024-11-21 11:22 2017-06-14 Show GitHub Exploit DB Packet Storm