Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202751 7.5 重要
Network
The PHP Group - PHP の ext/wddx/wddx.c の php_wddx_push_element 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-7418 2016-10-7 16:40 2016-09-15 Show GitHub Exploit DB Packet Storm
202752 9.8 緊急
Network
The PHP Group - PHP の ext/wddx/wddx.c の wddx_stack_destroy 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-7413 2016-10-7 16:40 2016-09-15 Show GitHub Exploit DB Packet Storm
202753 8.8 重要
Network
The PHP Group - PHP の ext/zip/zip_stream.c の php_stream_zip_opener 関数における整数オーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2016-6297 2016-10-7 16:37 2016-07-21 Show GitHub Exploit DB Packet Storm
202754 9.8 緊急
Network
The PHP Group - PHP で使用される xmlrpc-epi の simplestring.c の simplestring_addn 関数における整数符号エラーの脆弱性 CWE-119
バッファエラー
CVE-2016-6296 2016-10-7 16:37 2016-07-21 Show GitHub Exploit DB Packet Storm
202755 9.8 緊急
Network
The PHP Group - PHP の ext/snmp/snmp.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-6295 2016-10-7 16:37 2016-07-21 Show GitHub Exploit DB Packet Storm
202756 9.8 緊急
Network
The PHP Group - PHP の ext/intl/locale/locale_methods.c の locale_accept_from_http 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-6294 2016-10-7 16:37 2016-07-21 Show GitHub Exploit DB Packet Storm
202757 6.5 警告
Network
The PHP Group - PHP の ext/exif/exif.c の exif_process_user_comment 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-6292 2016-10-7 16:37 2016-07-21 Show GitHub Exploit DB Packet Storm
202758 9.8 緊急
Network
The PHP Group - PHP の ext/exif/exif.c の exif_process_IFD_in_MAKERNOTE 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-6291 2016-10-7 16:37 2016-07-21 Show GitHub Exploit DB Packet Storm
202759 9.8 緊急
Network
The PHP Group - PHP の ext/session/session.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-6290 2016-10-7 16:37 2016-07-21 Show GitHub Exploit DB Packet Storm
202760 7.8 重要
Local
The PHP Group - PHP の TSRM/tsrm_virtual_cwd.c の virtual_file_ex 関数における整数オーバーフローの脆弱性 CWE-Other
その他
CVE-2016-6289 2016-10-7 16:37 2016-07-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292201 - projeqtor projeqtor Multiple cross-site scripting (XSS) vulnerabilities in ProjeQtOr (formerly Project'Or RIA) before 4.0.0 allow remote attackers to inject arbitrary web script or HTML via the (1) type parameter to vie… CWE-79
Cross-site Scripting
CVE-2013-6163 2024-11-21 10:58 2013-11-15 Show GitHub Exploit DB Packet Storm
292202 - apprain apprain SQL injection vulnerability in appRain CMF 3.0.2 and earlier allows remote attackers to execute arbitrary SQL commands via the PATH_INFO to blog-by-cat/. CWE-89
SQL Injection
CVE-2013-6058 2024-11-21 10:58 2013-11-15 Show GitHub Exploit DB Packet Storm
292203 - justsystems ichitaro_pro
ichitaro_portable_with_oreplug
ichitaro
ichitaro_viewer
Unspecified vulnerability in JustSystems Ichitaro 2006 through 2011; Ichitaro Government 6, 7, and 2006 through 2010; Ichitaro 2011 Sou; Ichitaro 2012 Shou; Ichitaro 2013 Gen and Gen Trial Edition; I… NVD-CWE-noinfo
CVE-2013-5990 2024-11-21 10:58 2013-11-14 Show GitHub Exploit DB Packet Storm
292204 - tapbots tweetbot Tweetbot 1.3.3 for Mac, and 2.8.5 for iPad and iPhone, does not require confirmation of (1) follow or (2) favorite actions, which allows remote attackers to automatically force the user to perform un… CWE-352
 Origin Validation Error
CVE-2013-5726 2024-11-21 10:58 2013-11-13 Show GitHub Exploit DB Packet Storm
292205 - qualcomm quic_mobile_station_modem_kernel goodix_tool.c in the Goodix gt915 touchscreen driver for the Linux kernel 3.x, as used in Qualcomm Innovation Center (QuIC) Android contributions for MSM devices and other products, does not properly… CWE-20
 Improper Input Validation 
CVE-2013-6122 2024-11-21 10:58 2013-11-12 Show GitHub Exploit DB Packet Storm
292206 - isc bind The Winsock WSAIoctl API in Microsoft Windows Server 2008, as used in ISC BIND 9.6-ESV before 9.6-ESV-R10-P1, 9.8 before 9.8.6-P1, 9.9 before 9.9.4-P1, 9.9.3-S1, 9.9.4-S1, and other products, does no… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-6230 2024-11-21 10:58 2013-11-8 Show GitHub Exploit DB Packet Storm
292207 - roundcube webmail steps/utils/save_pref.inc in Roundcube webmail before 0.8.7 and 0.9.x before 0.9.5 allows remote attackers to modify configuration settings via the _session parameter, which can be leveraged to read … CWE-89
SQL Injection
CVE-2013-6172 2024-11-21 10:58 2013-11-6 Show GitHub Exploit DB Packet Storm
292208 - citrix xendesktop Citrix XenDesktop 7.0, when upgraded from XenDesktop 5.x, does not properly enforce policy rule permissions, which allows remote attackers to bypass intended restrictions. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-6077 2024-11-21 10:58 2013-11-6 Show GitHub Exploit DB Packet Storm
292209 - apple motion Integer overflow in the OZDocument::parseElement function in Apple Motion 5.0.7 allows remote attackers to cause a denial of service (application crash) via a (1) large or (2) small value in the subv… CWE-190
 Integer Overflow or Wraparound
CVE-2013-6114 2024-11-21 10:58 2013-11-5 Show GitHub Exploit DB Packet Storm
292210 - modpagespeed mod_pagespeed Cross-site scripting (XSS) vulnerability in the mod_pagespeed module 0.x, 1.0.22.7, 1.1.x, 1.24.1, 1.3.25.1 through 1.3.25.4, 1.4.26.1 through 1.4.26.4, 1.5.27.1 through 1.5.27.3, and 1.6.29.1 throug… CWE-79
Cross-site Scripting
CVE-2013-6111 2024-11-21 10:58 2013-11-3 Show GitHub Exploit DB Packet Storm