Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202631 7.5 重要
Network
SUSE
libarchive
Canonical
- libarchive の archive_read_support_format_lha.c の lha_read_file_extended_header 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2015-8919 2016-09-23 16:31 2015-04-12 Show GitHub Exploit DB Packet Storm
202632 7.5 重要
Network
libarchive
SUSE
- libarchive の archive_string.c の archive_string_append 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2015-8918 2016-09-23 16:31 2015-04-12 Show GitHub Exploit DB Packet Storm
202633 7.5 重要
Network
libarchive
Debian
Canonical
- libarchive の bsdtar におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-8917 2016-09-23 16:31 2015-04-12 Show GitHub Exploit DB Packet Storm
202634 6.5 警告
Network
libarchive
Debian
Canonical
- libarchive の bsdtar におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-8916 2016-09-23 16:31 2015-04-12 Show GitHub Exploit DB Packet Storm
202635 5.5 警告
Local
libarchive - libarchive の bsdcpio におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-8915 2016-09-23 16:31 2015-04-12 Show GitHub Exploit DB Packet Storm
202636 6.1 警告
Network
Pivotal Software, Inc. - Pivotal Cloud Foundry Elastic Runtime の Apps Manager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-0926 2016-09-21 17:33 2016-07-7 Show GitHub Exploit DB Packet Storm
202637 7.3 重要
Network
Pivotal Software, Inc. - Pivotal Cloud Foundry Elastic Runtime におけるネットワークの接続制限を回避される脆弱性 CWE-Other
その他
CVE-2016-0896 2016-09-21 17:33 2016-07-27 Show GitHub Exploit DB Packet Storm
202638 5.4 警告
Network
ownCloud
Nextcloud
- ownCloud および Nextcloud サーバの gallery アプリケーションの share.js におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-7419 2016-09-21 17:21 2016-07-19 Show GitHub Exploit DB Packet Storm
202639 5.9 警告
Network
cryptopp project - Crypto++ における情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2016-7420 2016-09-21 17:00 2016-09-15 Show GitHub Exploit DB Packet Storm
202640 9.4 緊急
Network
OTRS プロジェクト - Open Ticket Request System の FAQ パッケージにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-5843 2016-09-21 17:00 2016-06-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
289651 - linux linux_kernel The dgram_recvmsg function in net/ieee802154/dgram.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which al… CWE-200
Information Exposure
CVE-2013-7281 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
289652 - hansotools hanso_player Buffer overflow in HansoTools Hanso Player 2.1.0, 2.5.0, and earlier allows remote attackers to cause a denial of service (crash) via a long string in a .m3u file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-7280 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
289653 - anthony_mills s3_video Cross-site scripting (XSS) vulnerability in views/video-management/preview_video.php in the S3 Video plugin before 0.983 for WordPress allows remote attackers to inject arbitrary web script or HTML v… CWE-79
Cross-site Scripting
CVE-2013-7279 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
289654 - naxtech cms_afroditi SQL injection vulnerability in Naxtech CMS Afroditi 1.0 allows remote attackers to execute arbitrary SQL commands via the id parameter to default.asp. CWE-89
SQL Injection
CVE-2013-7278 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
289655 - aphpkb aphpkb Multiple cross-site scripting (XSS) vulnerabilities in Andy's PHP Knowledgebase (Aphpkb) before 0.95.8 allow remote attackers to inject arbitrary web script or HTML via the (1) HTTP Referer header to… CWE-79
Cross-site Scripting
CVE-2013-7277 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
289656 - recommend_to_a_friend_project recommend_to_a_friend Cross-site scripting (XSS) vulnerability in inc/raf_form.php in the Recommend to a friend plugin 2.0.2 for WordPress allows remote attackers to inject arbitrary web script or HTML via the current_url… CWE-79
Cross-site Scripting
CVE-2013-7276 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
289657 - mybb mybb Cross-site scripting (XSS) vulnerability in misc.php in MyBB (aka MyBulletinBoard) before 1.6.12 allows remote attackers to inject arbitrary web script or HTML via the editor parameter in a smilie li… CWE-79
Cross-site Scripting
CVE-2013-7275 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
289658 - wallpaperscript wallpaperscript Cross-site scripting (XSS) vulnerability in Wallpaper Script 3.5.0082 allows remote authenticated users to inject arbitrary web script or HTML via the title field in a wallpaper file upload. CWE-79
Cross-site Scripting
CVE-2013-7274 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
289659 - 7mediaws edutrac Directory traversal vulnerability in 7 Media Web Solutions eduTrac before 1.1.2 allows remote attackers to read arbitrary files via a .. (dot dot) in the showmask parameter to installer/overview.php. CWE-22
Path Traversal
CVE-2013-7097 2024-11-21 11:00 2014-01-9 Show GitHub Exploit DB Packet Storm
289660 - linux linux_kernel The x25_recvmsg function in net/x25/af_x25.c in the Linux kernel before 3.12.4 updates a certain length value without ensuring that an associated data structure has been initialized, which allows loc… CWE-20
 Improper Input Validation 
CVE-2013-7271 2024-11-21 11:00 2014-01-7 Show GitHub Exploit DB Packet Storm