Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228431 9.3 危険 マイクロソフト - Microsoft Internet Explorer 6 から 10 における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2013-1338 2013-05-7 10:51 2013-04-24 Show GitHub Exploit DB Packet Storm
228432 5 警告 シスコシステムズ - Cisco Unified Communications Domain Manager におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-1230 2013-05-2 15:23 2013-04-30 Show GitHub Exploit DB Packet Storm
228433 5 警告 シスコシステムズ - 64-bit プラットフォーム上で稼働する Cisco TelePresence Management Suite におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-1229 2013-05-2 15:22 2013-04-30 Show GitHub Exploit DB Packet Storm
228434 4.3 警告 シスコシステムズ - Cisco Prime Central for Hosted Collaboration Solution におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1160 2013-05-2 15:20 2013-04-30 Show GitHub Exploit DB Packet Storm
228435 4.3 警告 シスコシステムズ - Cisco Prime Central for Hosted Collaboration Solution におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1159 2013-05-2 15:18 2013-04-30 Show GitHub Exploit DB Packet Storm
228436 4.3 警告 シスコシステムズ - Cisco Prime Central for Hosted Collaboration Solution におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1158 2013-05-2 15:17 2013-04-30 Show GitHub Exploit DB Packet Storm
228437 4.3 警告 シスコシステムズ - Cisco Prime Central for Hosted Collaboration Solution におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1157 2013-05-2 15:16 2013-04-30 Show GitHub Exploit DB Packet Storm
228438 5 警告 シスコシステムズ - Cisco Prime Central for Hosted Collaboration Solution におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-1156 2013-05-2 15:15 2013-04-30 Show GitHub Exploit DB Packet Storm
228439 4.3 警告 VMware - VMware vCenter Server における認証を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3107 2013-05-2 14:59 2013-04-25 Show GitHub Exploit DB Packet Storm
228440 9 危険 VMware - VMware vCenter Server Appliance における任意のファイルを作成または上書きされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3080 2013-05-2 14:49 2013-04-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
275761 6.2 MEDIUM
Physics
google android Android 6.0 has an authentication bypass for attackers with root and physical access. Cryptographic authentication tokens (AuthTokens) used by the Trusted Execution Environment (TEE) are protected by… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-10398 2024-11-21 11:43 2017-07-17 Show GitHub Exploit DB Packet Storm
275762 7.5 HIGH
Network
php php In PHP before 5.6.28 and 7.x before 7.0.13, incorrect handling of various URI components in the URL parser could be used by attackers to bypass hostname-specific URL checks, as demonstrated by evil.e… CWE-20
 Improper Input Validation 
CVE-2016-10397 2024-11-21 11:43 2017-07-10 Show GitHub Exploit DB Packet Storm
275763 7.5 HIGH
Network
ipsec-tools ipsec-tools The racoon daemon in IPsec-Tools 0.8.2 contains a remotely exploitable computational-complexity attack when parsing and storing ISAKMP fragments. The implementation permits a remote attacker to exhau… CWE-407
 Inefficient Algorithmic Complexity
CVE-2016-10396 2024-11-21 11:43 2017-07-6 Show GitHub Exploit DB Packet Storm
275764 7.5 HIGH
Network
arcadyan swisscom_internet-box_firmware Authorization Bypass in the Web interface of Arcadyan SLT-00 Star* (aka Swisscom Internet-Box) devices before R7.7 allows unauthorized reconfiguration of the static routing table via an unauthenticat… CWE-284
Improper Access Control
CVE-2016-10042 2024-11-21 11:43 2017-06-29 Show GitHub Exploit DB Packet Storm
275765 6.1 MEDIUM
Network
elastic kibana Kibana versions after and including 4.3 and before 4.6.2 are vulnerable to a cross-site scripting (XSS) attack. CWE-79
Cross-site Scripting
CVE-2016-10366 2024-11-21 11:43 2017-06-17 Show GitHub Exploit DB Packet Storm
275766 6.1 MEDIUM
Network
elastic kibana Kibana versions before 4.6.3 and 5.0.1 have an open redirect vulnerability that would enable an attacker to craft a link in the Kibana domain that redirects to an arbitrary website. CWE-601
Open Redirect
CVE-2016-10365 2024-11-21 11:43 2017-06-17 Show GitHub Exploit DB Packet Storm
275767 6.5 MEDIUM
Network
elastic kibana With X-Pack installed, Kibana versions 5.0.0 and 5.0.1 were not properly authenticating requests to advanced settings and the short URL service, any authenticated user could make requests to those se… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-10364 2024-11-21 11:43 2017-06-17 Show GitHub Exploit DB Packet Storm
275768 7.5 HIGH
Network
elastic logstash Logstash versions prior to 2.3.3, when using the Netflow Codec plugin, a remote attacker crafting malicious Netflow v5, Netflow v9 or IPFIX packets could perform a denial of service attack on the Log… CWE-404
 Improper Resource Shutdown or Release
CVE-2016-10363 2024-11-21 11:43 2017-06-17 Show GitHub Exploit DB Packet Storm
275769 6.5 MEDIUM
Network
elasticsearch output_plugin Prior to Logstash version 5.0.1, Elasticsearch Output plugin when updating connections after sniffing, would log to file HTTP basic auth credentials. CWE-200
Information Exposure
CVE-2016-10362 2024-11-21 11:43 2017-06-17 Show GitHub Exploit DB Packet Storm
275770 7.5 HIGH
Network
elastic logstash Logstash prior to version 2.1.2, the CSV output can be attacked via engineered input that will create malicious formulas in the CSV data. CWE-88
Argument Injection
CVE-2016-1000222 2024-11-21 11:43 2017-06-17 Show GitHub Exploit DB Packet Storm