Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 25, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226931 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3363 2013-10-31 19:05 2013-09-10 Show GitHub Exploit DB Packet Storm
226932 7.2 危険 Linux
レッドハット
- Linux Kernel の ftrace の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2013-3301 2013-10-31 19:01 2013-04-16 Show GitHub Exploit DB Packet Storm
226933 3.5 注意 WordPress.org - WordPress の wp-admin/includes/post.php における投稿者になりすまされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4340 2013-10-31 18:50 2013-09-10 Show GitHub Exploit DB Packet Storm
226934 7.5 危険 WordPress.org - WordPress におけるリダイレクション制限を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2013-4339 2013-10-31 18:50 2013-09-10 Show GitHub Exploit DB Packet Storm
226935 7.5 危険 WordPress.org - WordPress の wp-includes/functions.php における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-4338 2013-10-31 18:50 2013-09-10 Show GitHub Exploit DB Packet Storm
226936 5 警告 Wireshark - Wireshark の Websocket 解析機能における整数符号エラーの脆弱性 CWE-189
数値処理の問題
CVE-2013-3562 2013-10-31 18:18 2013-05-17 Show GitHub Exploit DB Packet Storm
226937 7.8 危険 Wireshark - Wireshark における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2013-3561 2013-10-31 18:16 2013-05-17 Show GitHub Exploit DB Packet Storm
226938 5 警告 Wireshark - Wireshark の MPEG DSM-CC 解析機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-134
書式文字列の問題
CVE-2013-3560 2013-10-31 18:12 2013-05-17 Show GitHub Exploit DB Packet Storm
226939 6.8 警告 X.Org Foundation - X.org libXp における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2013-2062 2013-10-31 18:11 2013-05-23 Show GitHub Exploit DB Packet Storm
226940 5 警告 Wireshark - Wireshark の PPP CCP 解析機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2013-3558 2013-10-31 18:08 2013-05-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 25, 2026, 4:04 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
310741 - wellsfargo wells_fargo_mobile The Wells Fargo Mobile application 1.1 for Android stores a username and password, along with account balances, in cleartext, which might allow physically proximate attackers to obtain sensitive info… CWE-310
Cryptographic Issues
CVE-2010-4214 2024-11-21 10:20 2010-11-9 Show GitHub Exploit DB Packet Storm
310742 - bankofamerica bank_of_america The Bank of America application 2.12 for Android stores a security question's answer in cleartext, which might allow physically proximate attackers to obtain sensitive information by reading applicat… CWE-310
Cryptographic Issues
CVE-2010-4213 2024-11-21 10:20 2010-11-9 Show GitHub Exploit DB Packet Storm
310743 - usaa usaa The USAA application 3.0 for Android stores a mirror image of each visited web page, which might allow physically proximate attackers to obtain sensitive banking information by reading application da… CWE-264
Permissions, Privileges, and Access Controls
CVE-2010-4212 2024-11-21 10:20 2010-11-9 Show GitHub Exploit DB Packet Storm
310744 - ebay paypal The PayPal app before 3.0.1 for iOS does not verify that the server hostname matches the domain name of the subject of an X.509 certificate, which allows man-in-the-middle attackers to spoof a PayPal… CWE-287
Improper Authentication
CVE-2010-4211 2024-11-21 10:20 2010-11-9 Show GitHub Exploit DB Packet Storm
310745 - yahoo yui Cross-site scripting (XSS) vulnerability in the Flash component infrastructure in YUI 2.8.0 through 2.8.1, as used in Bugzilla 3.7.1 through 3.7.3 and 4.1, allows remote attackers to inject arbitrary… CWE-79
Cross-site Scripting
CVE-2010-4209 2024-11-21 10:20 2010-11-8 Show GitHub Exploit DB Packet Storm
310746 - yahoo yui Cross-site scripting (XSS) vulnerability in the Flash component infrastructure in YUI 2.5.0 through 2.8.1, as used in Bugzilla, Moodle, and other products, allows remote attackers to inject arbitrary… CWE-79
Cross-site Scripting
CVE-2010-4208 2024-11-21 10:20 2010-11-8 Show GitHub Exploit DB Packet Storm
310747 - yahoo yui Cross-site scripting (XSS) vulnerability in the Flash component infrastructure in YUI 2.4.0 through 2.8.1, as used in Bugzilla, Moodle, and other products, allows remote attackers to inject arbitrary… CWE-79
Cross-site Scripting
CVE-2010-4207 2024-11-21 10:20 2010-11-8 Show GitHub Exploit DB Packet Storm
310748 - adobe acrobat_reader
acrobat
The EScript.api plugin in Adobe Reader and Acrobat 10.x before 10.0.1, 9.x before 9.4.1, and 8.x before 8.2.6 on Windows and Mac OS X allows remote attackers to execute arbitrary code or cause a deni… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2010-4091 2024-11-21 10:20 2010-11-8 Show GitHub Exploit DB Packet Storm
310749 8.8 HIGH
Network
google
webkitgtk
fedoraproject
chrome
webkitgtk
fedora
Array index error in the FEBlend::apply function in WebCore/platform/graphics/filters/FEBlend.cpp in WebKit, as used in Google Chrome before 7.0.517.44, webkitgtk before 1.2.6, and other products, al… CWE-787
 Out-of-bounds Write
CVE-2010-4206 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm
310750 9.8 CRITICAL
Network
google chrome Google Chrome before 7.0.517.44 does not properly handle the data types of event objects, which allows remote attackers to cause a denial of service or possibly have unspecified other impact via unkn… NVD-CWE-noinfo
CVE-2010-4205 2024-11-21 10:20 2010-11-6 Show GitHub Exploit DB Packet Storm