Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241901 4.3 警告 Palo Alto Networks - 複数の Palo Alto Networks 製品 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4043 2012-07-30 16:20 2012-07-26 Show GitHub Exploit DB Packet Storm
241902 5 警告 アップル - Apple Xcode におけるキーチェーンエントリを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3698 2012-07-30 16:19 2012-07-26 Show GitHub Exploit DB Packet Storm
241903 3.7 注意 SystemTap - SystemTap の systemtap ランタイムツールにおける権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2011-2503 2012-07-30 16:06 2011-07-25 Show GitHub Exploit DB Packet Storm
241904 4.4 警告 SystemTap - SystemTap の systemtap ランタイムツールにおける権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2011-2502 2012-07-30 16:05 2011-07-25 Show GitHub Exploit DB Packet Storm
241905 5 警告 Stichting NLnet Labs - NSD の query.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-2978 2012-07-30 16:01 2012-07-19 Show GitHub Exploit DB Packet Storm
241906 3.5 注意 IBM - IBM Lotus Protector for Mail Security および IBM ISS Proventia Network Mail Security System におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-2202 2012-07-30 15:59 2012-07-27 Show GitHub Exploit DB Packet Storm
241907 2.6 注意 マイクロソフト
Mozilla Foundation
- 複数のウェブブラウザにおける Transfer-Encoding ヘッダの処理に関する脆弱性 CWE-DesignError
- 2012-07-30 14:00 2012-07-30 Show GitHub Exploit DB Packet Storm
241908 6.8 警告 Novell - Novell ZENworks Configuration Management の AdminStudio におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-3174 2012-07-30 13:53 2011-10-14 Show GitHub Exploit DB Packet Storm
241909 6.8 警告 Novell - Novell ZENworks Configuration Management の AdminStudio における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-2658 2012-07-30 13:51 2011-10-14 Show GitHub Exploit DB Packet Storm
241910 6.8 警告 Novell - Novell ZENworks Configuration Management の AdminStudio におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-2657 2012-07-30 13:49 2011-10-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266261 6.5 MEDIUM
Network
apple itunes
safari
iphone_os
WebKit in Apple iOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 allows remote attackers to conduct DNS rebinding attacks against non-HTTP Safari sessions by leveraging HTTP/0.9 s… CWE-284
Improper Access Control
CVE-2016-4760 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266262 8.8 HIGH
Network
apple tvos
iphone_os
safari
itunes
WebKit in Apple iOS before 10, tvOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption)… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4759 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266263 6.5 MEDIUM
Network
apple safari
iphone_os
itunes
WebKit in Apple iOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 does not properly restrict access to the location variable, which allows remote attackers to obtain sensitive info… CWE-200
Information Exposure
CVE-2016-4758 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266264 5.5 MEDIUM
Local
apple mac_os_x Terminal in Apple OS X before 10.12 uses weak permissions for the .bash_history and .bash_session files, which allows local users to obtain sensitive information via unspecified vectors. CWE-200
Information Exposure
CVE-2016-4755 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266265 7.5 HIGH
Network
apple os_x_server ServerDocs Server in Apple OS X Server before 5.2 supports the RC4 cipher, which might allow remote attackers to defeat cryptographic protection mechanisms via unspecified vectors. CWE-310
Cryptographic Issues
CVE-2016-4754 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266266 7.8 HIGH
Local
apple watchos
tvos
iphone_os
mac_os_x
Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 mishandle signed disk images, which allows attackers to execute arbitrary code in a privileged context via a crafted app. CWE-20
 Improper Input Validation 
CVE-2016-4753 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266267 5.5 MEDIUM
Local
apple mac_os_x The SecKeyDeriveFromPassword function in Apple OS X before 10.12 does not use the CF_RETURNS_RETAINED keyword, which allows attackers to obtain sensitive information from process memory by triggering… CWE-200
Information Exposure
CVE-2016-4752 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266268 3.5 LOW
Network
apple safari The Safari Tabs component in Apple Safari before 10 allows remote attackers to spoof the address bar of a tab via a crafted web site. CWE-254
 7PK - Security Features
CVE-2016-4751 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266269 7.8 HIGH
Local
apple iphone_os
mac_os_x
S2 Camera in Apple iOS before 10 and OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4750 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266270 5.3 MEDIUM
Local
apple mac_os_x Perl in Apple OS X before 10.12 allows local users to bypass the taint-mode protection mechanism via a crafted environment variable. CWE-254
 7PK - Security Features
CVE-2016-4748 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm