Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202731 5.9 警告
Network
マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player における重要な情報を取得される脆弱性 CWE-362
競合状態
CVE-2016-4247 2016-07-15 17:53 2016-07-12 Show GitHub Exploit DB Packet Storm
202732 9.8 緊急
Network
マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-4246 2016-07-15 17:53 2016-07-12 Show GitHub Exploit DB Packet Storm
202733 9.8 緊急
Network
マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-4245 2016-07-15 17:53 2016-07-12 Show GitHub Exploit DB Packet Storm
202734 9.8 緊急
Network
マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-4244 2016-07-15 17:53 2016-07-12 Show GitHub Exploit DB Packet Storm
202735 9.8 緊急
Network
マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-4243 2016-07-15 17:53 2016-07-12 Show GitHub Exploit DB Packet Storm
202736 9.8 緊急
Network
マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-4242 2016-07-15 17:53 2016-07-12 Show GitHub Exploit DB Packet Storm
202737 9.8 緊急
Network
マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-4241 2016-07-15 17:53 2016-07-12 Show GitHub Exploit DB Packet Storm
202738 9.8 緊急
Network
マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-4240 2016-07-15 17:53 2016-07-12 Show GitHub Exploit DB Packet Storm
202739 9.8 緊急
Network
マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-4239 2016-07-15 17:53 2016-07-12 Show GitHub Exploit DB Packet Storm
202740 9.8 緊急
Network
マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-4238 2016-07-15 17:53 2016-07-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290131 - gwos groundwork_monitor GroundWork Monitor Enterprise 6.7.0 performs authentication on the basis of the HTTP Referer header, which allows remote attackers to obtain administrative privileges or access files via a crafted he… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-3499 2024-11-21 10:53 2013-05-8 Show GitHub Exploit DB Packet Storm
290132 - joomla joomla\! Cross-site scripting (XSS) vulnerability in the highlighter plugin in Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 allows remote attackers to inject arbitrary web script or HTML via unspecified… CWE-79
Cross-site Scripting
CVE-2013-3267 2024-11-21 10:53 2013-05-3 Show GitHub Exploit DB Packet Storm
290133 - joomla joomla\! plugins/system/remember/remember.php in Joomla! 2.5.x before 2.5.10 and 3.0.x before 3.0.4 does not properly handle an object obtained by unserializing a cookie, which allows remote authenticated use… CWE-20
 Improper Input Validation 
CVE-2013-3242 2024-11-21 10:53 2013-05-3 Show GitHub Exploit DB Packet Storm
290134 - freebsd freebsd The nfsrvd_readdir function in sys/fs/nfsserver/nfs_nfsdport.c in the new NFS server in FreeBSD 8.0 through 9.1-RELEASE-p3 does not verify that a READDIR request is for a directory node, which allows… CWE-20
 Improper Input Validation 
CVE-2013-3266 2024-11-21 10:53 2013-05-2 Show GitHub Exploit DB Packet Storm
290135 - vmware vcenter_server_appliance VMware vCenter Server 5.1 before Update 1, when anonymous LDAP binding for Active Directory is enabled, allows remote attackers to bypass authentication by providing a valid username in conjunction w… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-3107 2024-11-21 10:53 2013-05-1 Show GitHub Exploit DB Packet Storm
290136 - linux linux_kernel Race condition in the smb_send_rqst function in fs/cifs/transport.c in the Linux kernel before 3.7.2 allows local users to cause a denial of service (NULL pointer dereference and OOPS) or possibly ha… CWE-362
Race Condition
CVE-2013-3302 2024-11-21 10:53 2013-04-29 Show GitHub Exploit DB Packet Storm
290137 - linux
redhat
suse
linux_kernel
enterprise_linux
enterprise_mrg
linux_enterprise_desktop
linux_enterprise_server
linux_enterprise_high_availability_extension
The ftrace implementation in the Linux kernel before 3.8.8 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have unspecified other impact by lev… NVD-CWE-Other
CVE-2013-3301 2024-11-21 10:53 2013-04-29 Show GitHub Exploit DB Packet Storm
290138 - phpmyadmin phpmyadmin export.php (aka the export script) in phpMyAdmin 4.x before 4.0.0-rc3 overwrites global variables on the basis of the contents of the POST superglobal array, which allows remote authenticated users t… NVD-CWE-noinfo
CVE-2013-3241 2024-11-21 10:53 2013-04-26 Show GitHub Exploit DB Packet Storm
290139 - phpmyadmin phpmyadmin Directory traversal vulnerability in the Export feature in phpMyAdmin 4.x before 4.0.0-rc3 allows remote authenticated users to read arbitrary files or possibly have unspecified other impact via a pa… CWE-22
Path Traversal
CVE-2013-3240 2024-11-21 10:53 2013-04-26 Show GitHub Exploit DB Packet Storm
290140 - phpmyadmin phpmyadmin phpMyAdmin 3.5.x before 3.5.8 and 4.x before 4.0.0-rc3, when a SaveDir directory is configured, allows remote authenticated users to execute arbitrary code by using a double extension in the filename… CWE-94
Code Injection
CVE-2013-3239 2024-11-21 10:53 2013-04-26 Show GitHub Exploit DB Packet Storm