Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202521 7.8 重要
Local
Linux - Linux Kernel の kernel/bpf/verifier.c の replace_map_fd_with_map_ptr 関数における権限を取得される脆弱性 CWE-Other
その他
CVE-2016-4557 2016-05-26 15:22 2016-05-18 Show GitHub Exploit DB Packet Storm
202522 7.5 重要
Network
Linux - Linux Kernel の net/llc/af_llc.c の llc_cmsg_rcv 関数における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-4485 2016-05-26 15:22 2016-05-18 Show GitHub Exploit DB Packet Storm
202523 6.1 警告
Network
株式会社シロハチ - 株式会社シロハチ製の複数の EC-CUBE 用フリーエリア追加プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-1205 2016-05-25 17:48 2016-04-26 Show GitHub Exploit DB Packet Storm
202524 6.1 警告
Network
John Dyer
WordPress.org
- WordPress で使用される MediaElement.js の flash/FlashMediaElement.as におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-4567 2016-05-25 16:57 2016-05-5 Show GitHub Exploit DB Packet Storm
202525 6.1 警告
Network
WordPress.org
Moxiecode Systems
- WordPress で使用される Plupload の plupload.flash.swf におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-4566 2016-05-25 16:57 2016-05-15 Show GitHub Exploit DB Packet Storm
202526 8.6 重要
Network
WordPress.org - WordPress の wp-includes/http.php の wp_http_validate_url 関数におけるサーバサイドのリクエストフォージェリ攻撃を実行される脆弱性 CWE-Other
その他
CVE-2016-2222 2016-05-25 16:57 2016-02-2 Show GitHub Exploit DB Packet Storm
202527 7.4 重要
Network
WordPress.org - WordPress の wp-includes/pluggable.php の wp_validate_redirect 関数におけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2016-2221 2016-05-25 16:57 2016-02-2 Show GitHub Exploit DB Packet Storm
202528 6.1 警告
Network
WordPress.org - WordPress の wp-includes/class-wp-theme.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-1564 2016-05-25 16:57 2016-01-6 Show GitHub Exploit DB Packet Storm
202529 6.1 警告
Network
WordPress.org - WordPress の wp-includes/wp-db.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-8834 2016-05-25 16:57 2015-05-6 Show GitHub Exploit DB Packet Storm
202530 5.4 警告
Network
WordPress.org - WordPress のユーザリストのテーブルにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-7989 2016-05-25 16:57 2015-09-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290601 - git-scm git The imap-send command in GIT before 1.8.1.4 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which al… CWE-20
 Improper Input Validation 
CVE-2013-0308 2024-11-21 10:47 2013-03-9 Show GitHub Exploit DB Packet Storm
290602 - openstack essex
folsom
manifests/base.pp in the puppetlabs-cinder module, as used in PackStack, uses world-readable permissions for the (1) cinder.conf and (2) api-paste.ini configuration files, which allows local users to… CWE-362
Race Condition
CVE-2013-0266 2024-11-21 10:47 2013-03-9 Show GitHub Exploit DB Packet Storm
290603 - openstack essex
folsom
(1) installer/basedefs.py and (2) modules/ospluginutils.py in PackStack allows local users to overwrite arbitrary files via a symlink attack on a temporary file with a predictable name in /tmp. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0261 2024-11-21 10:47 2013-03-9 Show GitHub Exploit DB Packet Storm
290604 - oracle javafx
jdk
jre
Heap-based buffer overflow in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier and JavaFX 2.2.7 and earlier allows remote attackers to execute arbitrary code via… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-0402 2024-11-21 10:47 2013-03-9 Show GitHub Exploit DB Packet Storm
290605 - oracle jdk
jre
The Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 17 and earlier, 6 Update 43 and earlier, and 5.0 Update 41 and earlier; and OpenJDK 6 and 7; allows remote attackers to execute… CWE-94
Code Injection
CVE-2013-0401 2024-11-21 10:47 2013-03-9 Show GitHub Exploit DB Packet Storm
290606 - xen xen oxenstored in Xen 4.1.x, Xen 4.2.x, and xen-unstable does not properly consider the state of the Xenstore ring during read operations, which allows guest OS users to cause a denial of service (daemon… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0215 2024-11-21 10:47 2013-03-7 Show GitHub Exploit DB Packet Storm
290607 - hp
redhat
linux_imaging_and_printing_project
enterprise_linux
HP Linux Imaging and Printing (HPLIP) through 3.12.4 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/hpcupsfilterc_#.bmp, (2) /tmp/hpcupsfilterk_#.bmp, (3) /tmp/h… CWE-59
Link Following
CVE-2013-0200 2024-11-21 10:47 2013-03-7 Show GitHub Exploit DB Packet Storm
290608 - freedesktop dbus-glib The dbus_g_proxy_manager_filter function in dbus-gproxy in Dbus-glib before 0.100.1 does not properly verify the sender of NameOwnerChanged signals, which allows local users to gain privileges via a … CWE-20
 Improper Input Validation 
CVE-2013-0292 2024-11-21 10:47 2013-03-6 Show GitHub Exploit DB Packet Storm
290609 - arthurdejong nss-pam-ldapd nss-pam-ldapd before 0.7.18 and 0.8.x before 0.8.11 allows context-dependent attackers to cause a denial of service (application crash) and possibly execute arbitrary code by performing a name lookup… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-0288 2024-11-21 10:47 2013-03-6 Show GitHub Exploit DB Packet Storm
290610 - thekelleys dnsmasq Dnsmasq before 2.66test2, when used with certain libvirt configurations, replies to queries from prohibited interfaces, which allows remote attackers to cause a denial of service (traffic amplificati… CWE-20
 Improper Input Validation 
CVE-2013-0198 2024-11-21 10:47 2013-03-6 Show GitHub Exploit DB Packet Storm