Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202981 6.1 警告
Network
openSUSE project
Canonical
Debian
Google
SUSE
レッドハット
- Google Chrome で使用される Blink におけるコンテンツセキュリティポリシー保護メカニズムを回避される脆弱性 CWE-Other
その他
CVE-2016-1682 2016-08-31 18:10 2016-05-25 Show GitHub Exploit DB Packet Storm
202982 8.8 重要
Network
openSUSE project
Canonical
Debian
Google
SUSE
レッドハット
- Google Chrome で使用される Skia の ports/SkFontHost_FreeType.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-1680 2016-08-31 18:10 2016-05-25 Show GitHub Exploit DB Packet Storm
202983 8.8 重要
Network
openSUSE project
Canonical
Debian
Google
SUSE
レッドハット
- Google Chrome の V8 バインディングの content/child/v8_value_converter_impl.cc におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2016-1679 2016-08-31 18:10 2016-05-25 Show GitHub Exploit DB Packet Storm
202984 8.8 重要
Network
openSUSE project
Canonical
Debian
Google
SUSE
レッドハット
- Google Chrome で使用される Google V8 の objects.cc におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2016-1678 2016-08-31 18:10 2016-05-25 Show GitHub Exploit DB Packet Storm
202985 8.8 重要
Network
レッドハット
Debian
openSUSE project
SUSE
Google
- Google Chrome の拡張サブシステムの extensions/renderer/resources/binding.js における同一生成元ポリシーを回避される脆弱性 CWE-Other
その他
CVE-2016-1676 2016-08-31 18:10 2016-05-25 Show GitHub Exploit DB Packet Storm
202986 8.8 重要
Network
openSUSE project
Canonical
Debian
Google
SUSE
レッドハット
- Google Chrome で使用される Blink における同一生成元ポリシーを回避される脆弱性 CWE-Other
その他
CVE-2016-1675 2016-08-31 18:10 2016-05-25 Show GitHub Exploit DB Packet Storm
202987 8.8 重要
Network
レッドハット
Debian
openSUSE project
SUSE
Google
- Google Chrome の拡張サブシステムにおける同一生成元ポリシーを回避される脆弱性 CWE-noinfo
情報不足
CVE-2016-1674 2016-08-31 18:10 2016-05-25 Show GitHub Exploit DB Packet Storm
202988 8.8 重要
Network
openSUSE project
Canonical
Debian
Google
SUSE
レッドハット
- Google Chrome で使用される Blink における同一生成元ポリシーを回避される脆弱性 CWE-noinfo
情報不足
CVE-2016-1673 2016-08-31 18:10 2016-05-25 Show GitHub Exploit DB Packet Storm
202989 8.8 重要
Network
レッドハット
Debian
openSUSE project
SUSE
Google
- Google Chrome の拡張バインディングの extensions/renderer/module_system.cc における bindings-interception 攻撃を実行される脆弱性 CWE-Other
その他
CVE-2016-1672 2016-08-31 18:10 2016-05-25 Show GitHub Exploit DB Packet Storm
202990 7.5 重要
Network
SAP - SAP JAVA AS の Internet Communication Manager におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2016-3979 2016-08-31 16:14 2016-04-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291781 9.8 CRITICAL
Network
pydio pydio Ajaxeplorer before 5.0.1 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) archive_name parameter to the Power FS module (plugins/action.powerfs/class.PowerFSC… CWE-78
OS Command 
CVE-2013-4267 2024-11-21 10:55 2020-02-11 Show GitHub Exploit DB Packet Storm
291782 9.8 CRITICAL
Network
openpne opopensocialplugin opOpenSocialPlugin 0.8.2.1, > 0.9.9.2, 0.9.13, 1.2.6: Multiple XML External Entity Injection Vulnerabilities CWE-776
XML Entity Expansion
CVE-2013-4335 2024-11-21 10:55 2020-02-8 Show GitHub Exploit DB Packet Storm
291783 9.8 CRITICAL
Network
tejimaya opwebapiplugin opWebAPIPlugin 0.5.1, 0.4.0, and 0.1.0: XXE Vulnerabilities CWE-611
XXE
CVE-2013-4334 2024-11-21 10:55 2020-02-7 Show GitHub Exploit DB Packet Storm
291784 9.8 CRITICAL
Network
nuxeo nuxeo RichFaces implementation in Nuxeo Platform 5.6.0 before HF27 and 5.8.0 before HF-01 does not restrict the classes for which deserialization methods can be called, which allows remote attackers to exe… CWE-502
 Deserialization of Untrusted Data
CVE-2013-4521 2024-11-21 10:55 2020-02-7 Show GitHub Exploit DB Packet Storm
291785 7.5 HIGH
Network
mediawiki
fedoraproject
mediawiki
fedora
The CentralNotice extension for MediaWiki before 1.19.9, 1.20.x before 1.20.8, and 1.21.x before 1.21.3 sets the Cache-Control header to cache session cookies when a user is autocreated, which allows… CWE-384
 Session Fixation
CVE-2013-4572 2024-11-21 10:55 2020-02-7 Show GitHub Exploit DB Packet Storm
291786 7.5 HIGH
Network
gnome
redhat
evolution
evolution_data_server
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
The gpg_ctx_add_recipient function in camel/camel-gpg-context.c in GNOME Evolution 3.8.4 and earlier and Evolution Data Server 3.9.5 and earlier does not properly select the GPG key to use for email … CWE-200
Information Exposure
CVE-2013-4166 2024-11-21 10:55 2020-02-7 Show GitHub Exploit DB Packet Storm
291787 6.1 MEDIUM
Network
hitmyserver hms_testimonials Multiple cross-site scripting (XSS) vulnerabilities in the HMS Testimonials plugin before 2.0.11 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) name, (2) imag… CWE-79
Cross-site Scripting
CVE-2013-4241 2024-11-21 10:55 2020-01-31 Show GitHub Exploit DB Packet Storm
291788 6.5 MEDIUM
Network
flippy_project flippy The Flippy module 7.x-1.x before 7.x-1.2 for Drupal does not properly restrict access to nodes, which allows remote authenticated users with the permission to access content to read a link or alias t… CWE-200
Information Exposure
CVE-2013-4187 2024-11-21 10:55 2020-01-31 Show GitHub Exploit DB Packet Storm
291789 8.8 HIGH
Network
gitlab gitlab
gitlab-shell
The parse_cmd function in lib/gitlab_shell.rb in GitLab 5.0 before 5.4.2, Community Edition before 6.2.4, and Enterprise Edition before 6.2.1 and gitlab-shell before 1.7.8 allows remote authenticated… CWE-269
 Improper Privilege Management
CVE-2013-4583 2024-11-21 10:55 2020-01-29 Show GitHub Exploit DB Packet Storm
291790 6.5 MEDIUM
Network
gitlab gitlab
gitlab-shell
The (1) create_branch, (2) create_tag, (3) import_project, and (4) fork_project functions in lib/gitlab_projects.rb in GitLab 5.0 before 5.4.2, Community Edition before 6.2.4, Enterprise Edition befo… CWE-829
 Inclusion of Functionality from Untrusted Control Sphere
CVE-2013-4582 2024-11-21 10:55 2020-01-29 Show GitHub Exploit DB Packet Storm