Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202671 5 警告 オラクル - Oracle Enterprise Manager Grid Control の Oracle Application Testing Suite における Load Testing for Web Apps に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-0476 2016-06-27 14:12 2016-01-19 Show GitHub Exploit DB Packet Storm
202672 5 警告 オラクル - Oracle Enterprise Manager Grid Control の Oracle Application Testing Suite における Test Manager for Web Apps に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-0486 2016-06-27 13:41 2016-01-19 Show GitHub Exploit DB Packet Storm
202673 5 警告 オラクル - Oracle Enterprise Manager Grid Control の Oracle Application Testing Suite における Test Manager for Web Apps に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-0485 2016-06-27 13:41 2016-01-19 Show GitHub Exploit DB Packet Storm
202674 5 警告 オラクル - Oracle Enterprise Manager Grid Control の Oracle Application Testing Suite における Test Manager for Web Apps に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-0482 2016-06-27 13:41 2016-01-19 Show GitHub Exploit DB Packet Storm
202675 5 警告 オラクル - Oracle Enterprise Manager Grid Control の Oracle Application Testing Suite における Test Manager for Web Apps に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-0481 2016-06-27 13:41 2016-01-19 Show GitHub Exploit DB Packet Storm
202676 5 警告 オラクル - Oracle Enterprise Manager Grid Control の Oracle Application Testing Suite における Test Manager for Web Apps に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-0480 2016-06-27 13:41 2016-01-19 Show GitHub Exploit DB Packet Storm
202677 4.4 警告
Local
Alertus Technologies, LLC. - OS X 向け Alertus Desktop Notification に不適切な権限設定の問題 CWE-Other
その他
CVE-2016-5087 2016-06-27 11:38 2016-06-23 Show GitHub Exploit DB Packet Storm
202678 8.1 重要
Network
山田巧 - DXライブラリにおいて任意のコードが実行可能な脆弱性 CWE-134
書式文字列の問題
CVE-2016-4819 2016-06-27 11:30 2016-06-8 Show GitHub Exploit DB Packet Storm
202679 3.7
Network
株式会社エヌ・ティ・ティ・データ - TERASOLUNA Server Framework for Java(WEB) の拡張子直接アクセス禁止機能における制限回避の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-1183 2016-06-27 11:30 2016-06-7 Show GitHub Exploit DB Packet Storm
202680 8.2 重要
Network
OpenStack - OpenStack Neutron の IPTables ファイアウォールにおける ICMPv6 偽造保護メカニズムを回避される脆弱性 CWE-Other
その他
CVE-2015-8914 2016-06-27 10:38 2015-10-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290341 - smart-flv_plugin_project smart-flv Multiple cross-site scripting (XSS) vulnerabilities in jwplayer.swf in the smart-flv plugin for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) link or (2) playerr… CWE-79
Cross-site Scripting
CVE-2013-1765 2024-11-21 10:50 2014-05-15 Show GitHub Exploit DB Packet Storm
290342 - php-fusion php-fusion Multiple SQL injection vulnerabilities in PHP-Fusion before 7.02.06 allow remote attackers to execute arbitrary SQL commands via the (1) orderby parameter to downloads.php; or remote authenticated us… CWE-89
SQL Injection
CVE-2013-1803 2024-11-21 10:50 2014-05-6 Show GitHub Exploit DB Packet Storm
290343 - transifex transifex Transifex command-line client before 0.9 does not validate X.509 certificates, which allows man-in-the-middle attackers to spoof a Transifex server via an arbitrary certificate. CWE-20
 Improper Input Validation 
CVE-2013-2073 2024-11-21 10:50 2014-05-2 Show GitHub Exploit DB Packet Storm
290344 - php-fusion php-fusion PHP-Fusion before 7.02.06 stores backup files with predictable filenames in an unrestricted directory under the web document root, which might allow remote attackers to obtain sensitive information v… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1807 2024-11-21 10:50 2014-05-1 Show GitHub Exploit DB Packet Storm
290345 - php-fusion php-fusion Multiple directory traversal vulnerabilities in PHP-Fusion before 7.02.06 allow remote authenticated users to include and execute arbitrary files via a .. (dot dot) in the (1) user_theme parameter to… CWE-22
Path Traversal
CVE-2013-1806 2024-11-21 10:50 2014-05-1 Show GitHub Exploit DB Packet Storm
290346 - php-fusion php-fusion Multiple cross-site scripting (XSS) vulnerabilities in PHP-Fusion before 7.02.06 allow remote attackers to inject arbitrary web script or HTML via the (1) highlight parameter to forum/viewthread.php;… CWE-79
Cross-site Scripting
CVE-2013-1804 2024-11-21 10:50 2014-04-30 Show GitHub Exploit DB Packet Storm
290347 - ushahidi ushahidi_platform Cross-site scripting (XSS) vulnerability in Ushahidi Platform 2.5.x through 2.6.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2013-2025 2024-11-21 10:50 2014-04-26 Show GitHub Exploit DB Packet Storm
290348 - packagekit_project packagekit The Zypper (aka zypp) backend in PackageKit before 0.8.8 allows local users to downgrade packages via the "install updates" method. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1764 2024-11-21 10:50 2014-04-17 Show GitHub Exploit DB Packet Storm
290349 - jenkins
cloudbees
jenkins Cross-site scripting (XSS) vulnerability in Jenkins before 1.514, LTS before 1.509.1, and Enterprise 1.466.x before 1.466.14.1 and 1.480.x before 1.480.4.1 allows remote authenticated users with writ… CWE-79
Cross-site Scripting
CVE-2013-2033 2024-11-21 10:50 2014-04-11 Show GitHub Exploit DB Packet Storm
290350 - restful_web_services_project restful_web_services The RESTful Web Services (RESTWS) module 7.x-1.x before 7.x-1.3 and 7.x-2.x before 7.x-2.0-alpha5 for Drupal, when page caching is enabled and anonymous users are assigned RESTWS permissions, allows … CWE-20
 Improper Input Validation 
CVE-2013-1946 2024-11-21 10:50 2014-04-7 Show GitHub Exploit DB Packet Storm