Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241831 4.3 警告 Mozilla Foundation - 複数の Mozilla 製品におけるクロスサイトスクリプティング (XSS) 攻撃を誘発される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0455 2012-08-24 17:30 2012-03-13 Show GitHub Exploit DB Packet Storm
241832 4.3 警告 Mozilla Foundation - 複数の Mozilla 製品における CRLF インジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2012-0451 2012-08-24 17:26 2012-03-13 Show GitHub Exploit DB Packet Storm
241833 4.3 警告 ウェブセンス - Websense Web Security の TRITON 管理コンソールにおける認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2012-4604 2012-08-24 15:42 2012-08-23 Show GitHub Exploit DB Packet Storm
241834 7.5 危険 ウェブセンス - 複数の Websense 製品の TRITON 管理コンソールにおけるコマンドを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-5102 2012-08-24 15:41 2012-08-23 Show GitHub Exploit DB Packet Storm
241835 5 警告 ウェブセンス - Websense Web Security および Web Filter におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2010-5149 2012-08-24 15:39 2012-08-23 Show GitHub Exploit DB Packet Storm
241836 5 警告 ウェブセンス - Websense Web Security および Web Filter におけるクッキーをキャプチャされる脆弱性 CWE-DesignError
CVE-2010-5148 2012-08-24 15:38 2012-08-23 Show GitHub Exploit DB Packet Storm
241837 5 警告 ウェブセンス - Websense Web Security および Web Filter の Remote Filtering におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2010-5147 2012-08-24 15:26 2012-08-23 Show GitHub Exploit DB Packet Storm
241838 2.1 注意 ウェブセンス - Websense Web Security および Web Filter におけるフィルタリングを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-5146 2012-08-24 15:25 2012-08-23 Show GitHub Exploit DB Packet Storm
241839 4.3 警告 ウェブセンス - Windows 上で稼働する Websense Web Security および Web Filter におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2010-5145 2012-08-24 15:23 2012-08-23 Show GitHub Exploit DB Packet Storm
241840 4.3 警告 ウェブセンス - 複数の Websense 製品におけるフィルタリングおよびモニタリングを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2010-5144 2012-08-24 15:22 2012-08-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266091 7.5 HIGH
Network
apache cordova Product: Apache Cordova Android 5.2.2 and earlier. The application calls methods of the Log class. Messages passed to these methods (Log.v(), Log.d(), Log.i(), Log.w(), and Log.e()) are stored in a s… CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2016-6799 2024-11-21 11:56 2017-05-10 Show GitHub Exploit DB Packet Storm
266092 5.4 MEDIUM
Network
redhat
openstack
openstack
manila
Cross-site scripting (XSS) vulnerability in the "Shares" overview in Openstack Manila before 2.5.1 allows remote authenticated users to inject arbitrary web script or HTML via the Metadata field in t… CWE-79
Cross-site Scripting
CVE-2016-6519 2024-11-21 11:56 2017-04-22 Show GitHub Exploit DB Packet Storm
266093 9.8 CRITICAL
Network
google android The Qualcomm GPS subsystem in Android on Android One devices allows remote attackers to execute arbitrary code. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-6727 2024-11-21 11:56 2017-04-18 Show GitHub Exploit DB Packet Storm
266094 9.8 CRITICAL
Network
google android Unspecified vulnerability in Qualcomm components in Android on Nexus 6 and Android One devices. NVD-CWE-noinfo
CVE-2016-6726 2024-11-21 11:56 2017-04-18 Show GitHub Exploit DB Packet Storm
266095 7.5 HIGH
Network
redhat
canonical
nettle_project
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_hpc_node
ubuntu_linux
nettle
The RSA and DSA decryption code in Nettle makes it easier for attackers to discover private keys via a cache side channel attack. CWE-203
 Information Exposure Through Discrepancy
CVE-2016-6489 2024-11-21 11:56 2017-04-15 Show GitHub Exploit DB Packet Storm
266096 9.8 CRITICAL
Network
sap business_intelligence_platform SQL injection vulnerability in SAP Business Intelligence platform before January 2017 allows remote attackers to obtain sensitive information, modify data, cause a denial of service (data deletion), … CWE-89
SQL Injection
CVE-2016-6818 2024-11-21 11:56 2017-04-14 Show GitHub Exploit DB Packet Storm
266097 9.8 CRITICAL
Network
apache tomcat_jk_connector Buffer overflow in Apache Tomcat Connectors (mod_jk) before 1.2.42. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-6808 2024-11-21 11:56 2017-04-13 Show GitHub Exploit DB Packet Storm
266098 8.8 HIGH
Network
apache hadoop In Apache Hadoop 2.x before 2.7.4, a user who can escalate to yarn user can possibly run arbitrary commands as root user. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-6811 2024-11-21 11:56 2017-04-11 Show GitHub Exploit DB Packet Storm
266099 7.5 HIGH
Network
cloudera cdh Impala in CDH 5.2.0 through 5.7.2 and 5.8.0 allows remote attackers to bypass Setry authorization. CWE-284
Improper Access Control
CVE-2016-6605 2024-11-21 11:56 2017-04-10 Show GitHub Exploit DB Packet Storm
266100 7.5 HIGH
Network
opmantek network_management_information_system Opmantek NMIS before 4.3.7c has command injection via man, finger, ping, trace, and nslookup in the tools.pl CGI script. Versions before 8.5.12G might be affected in non-default configurations. CWE-77
Command Injection
CVE-2016-6534 2024-11-21 11:56 2017-04-10 Show GitHub Exploit DB Packet Storm