Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202681 5.1 警告
Local
YaST
openSUSE project
- libstorage および libstorage-ng ならびに yast-storage における重要な情報を取得される脆弱性 CWE-Other
その他
CVE-2016-5746 2016-10-4 15:34 2016-07-14 Show GitHub Exploit DB Packet Storm
202682 6.5 警告
Network
OpenStack - OpenStack Compute におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-7498 2016-10-4 15:10 2016-09-21 Show GitHub Exploit DB Packet Storm
202683 9.8 緊急
Network
OpenStack - 複数の OpenStack 製品における任意の Python オブジェクトを作成される脆弱性 CWE-20
不適切な入力確認
CVE-2016-4972 2016-10-4 15:10 2016-06-23 Show GitHub Exploit DB Packet Storm
202684 9.8 緊急
Network
iperf project
openSUSE project
SUSE
- cJSON ライブラリの cjson.c 内の parse_string 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-4303 2016-10-4 14:26 2016-06-8 Show GitHub Exploit DB Packet Storm
202685 5.9 警告
Local
openSUSE project
SQLite
Fedora Project
- SQLite の os_unix.c における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2016-6153 2016-10-4 14:07 2016-05-18 Show GitHub Exploit DB Packet Storm
202686 7.8 重要
Local
シトリックス・システムズ - Citrix Linux Virtual Delivery Agent における root 権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-6276 2016-10-4 13:43 2016-09-15 Show GitHub Exploit DB Packet Storm
202687 6.5 警告
Network
IBM - IBM AIX で使用される Tivoli Lightweight Infrastructure の Eclipse Help におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-6038 2016-10-4 11:52 2016-09-22 Show GitHub Exploit DB Packet Storm
202688 6.5 警告
Network
IBM - IBM Tealeaf Customer Experience の Web ポータルにおけるアクセス権を取得される脆弱性 CWE-Other
その他
CVE-2016-5997 2016-10-4 11:45 2016-09-14 Show GitHub Exploit DB Packet Storm
202689 7.5 重要
Network
IBM - IBM Tealeaf Customer Experience の Web ポータルにおけるアクセス権を取得される脆弱性 CWE-Other
その他
CVE-2016-5996 2016-10-4 11:45 2016-09-14 Show GitHub Exploit DB Packet Storm
202690 5.4 警告
Network
IBM - IBM Tealeaf Customer Experience の Web ポータルの Web UI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-5978 2016-10-4 11:45 2016-09-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292001 6.1 MEDIUM
Network
codeigniter codeigniter The xss_clean function in CodeIgniter before 2.1.4 might allow remote attackers to bypass an intended protection mechanism and conduct cross-site scripting (XSS) attacks via an unclosed HTML tag. CWE-79
Cross-site Scripting
CVE-2013-4891 2024-11-21 10:56 2018-02-22 Show GitHub Exploit DB Packet Storm
292002 9.8 CRITICAL
Network
asus
trendnet
rt-ac66u_firmware
tew-812dru_firmware
Buffer overflow in Broadcom ACSD allows remote attackers to execute arbitrary code via a long string to TCP port 5916. This component is used on routers of multiple vendors including ASUS RT-AC66U an… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4659 2024-11-21 10:56 2017-03-14 Show GitHub Exploit DB Packet Storm
292003 - lixil my_satis_genius_toilet The LIXIL Corporation My SATIS Genius Toilet application for Android has a hardcoded Bluetooth PIN, which allows physically proximate attackers to trigger physical resource consumption (water or heat… NVD-CWE-noinfo
CVE-2013-4866 2024-11-21 10:56 2015-04-17 Show GitHub Exploit DB Packet Storm
292004 - redmine redmine_git_hosting_plugin git_http_controller.rb in the redmine_git_hosting plugin for Redmine allows remote attackers to execute arbitrary commands via shell metacharacters in (1) the service parameter to info/refs, related … CWE-77
Command Injection
CVE-2013-4663 2024-11-21 10:56 2014-12-28 Show GitHub Exploit DB Packet Storm
292005 - umbraco umbraco_cms The update function in umbraco.webservices/templates/templateService.cs in the TemplateService component in Umbraco CMS before 6.0.4 does not require authentication, which allows remote attackers to … CWE-287
Improper Authentication
CVE-2013-4793 2024-11-21 10:56 2014-12-28 Show GitHub Exploit DB Packet Storm
292006 - eucalyptus eucalyptus The cloud controller (aka CLC) component in Eucalyptus 3.3.x and 3.4.x before 3.4.2, when the dns.recursive.enabled setting is used, allows remote attackers to cause a denial of service (traffic ampl… CWE-19
 Data Processing Errors
CVE-2013-4769 2024-11-21 10:56 2014-12-27 Show GitHub Exploit DB Packet Storm
292007 - owl intranet_knowledgebase Multiple cross-site scripting (XSS) vulnerabilities in Owl Intranet Knowledgebase 1.10 allow remote authenticated users to inject arbitrary web script or HTML via (1) the Search field to browse.php o… CWE-79
Cross-site Scripting
CVE-2013-4754 2024-11-21 10:56 2014-12-27 Show GitHub Exploit DB Packet Storm
292008 - claroline claroline Multiple cross-site scripting (XSS) vulnerabilities in Claroline 1.11.9 and earlier allow remote authenticated users to inject arbitrary web script or HTML via (1) the Search field in an inbox action… CWE-79
Cross-site Scripting
CVE-2013-4753 2024-11-21 10:56 2014-12-27 Show GitHub Exploit DB Packet Storm
292009 - h3c
hp
secbladefw
secpath1000fe
f1000-e_vpn_firewall
s5820_secblade_vpn_firewall_module
s7500e_secblade_vpn_firewall_module
s9500e_secblade_vpn_firewall_module
sr66_gigabit_firewall_module…
Unspecified vulnerability in HP and H3C VPN Firewall Module products SECPATH1000FE before 5.20.R3177 and SECBLADEFW before 5.20.R3177 allows remote attackers to cause a denial of service via unknown … NVD-CWE-noinfo
CVE-2013-4840 2024-11-21 10:56 2014-07-29 Show GitHub Exploit DB Packet Storm
292010 9.8 CRITICAL
Network
symantec web_gateway SNMPConfig.php in the management console in Symantec Web Gateway (SWG) before 5.2.1 allows remote attackers to execute arbitrary commands via unspecified vectors. NVD-CWE-noinfo
CVE-2013-5017 2024-11-21 10:56 2014-06-19 Show GitHub Exploit DB Packet Storm