Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
203121 8.8 重要
Network
Apache Software Foundation - Apache Archiva におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2016-4469 2016-08-1 17:45 2016-07-11 Show GitHub Exploit DB Packet Storm
203122 6.5 警告
Adjacent
シスコシステムズ - Cisco Videoscape Session Resource Manager におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-1467 2016-08-1 16:55 2016-07-27 Show GitHub Exploit DB Packet Storm
203123 6.5 警告
Adjacent
シスコシステムズ - Cisco Nexus 1000v Application Virtual Switch デバイスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-1465 2016-08-1 16:55 2016-07-27 Show GitHub Exploit DB Packet Storm
203124 7.5 重要
Network
シスコシステムズ - Cisco FireSIGHT システム ソフトウェアにおける Snort ルールを回避される脆弱性 CWE-20
不適切な入力確認
CVE-2016-1463 2016-08-1 16:55 2016-07-27 Show GitHub Exploit DB Packet Storm
203125 6.1 警告
Network
シスコシステムズ - Cisco Prime Service Catalog の Web ベースの管理インターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-1462 2016-08-1 16:55 2016-07-27 Show GitHub Exploit DB Packet Storm
203126 6.5 警告
Adjacent
シスコシステムズ - Cisco Wireless LAN Controller デバイスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-1460 2016-08-1 16:55 2016-07-27 Show GitHub Exploit DB Packet Storm
203127 8.8 重要
Network
シスコシステムズ - Cisco Unified Computing System Performance Manager の Web フレームワークにおける任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-1374 2016-08-1 16:55 2016-07-20 Show GitHub Exploit DB Packet Storm
203128 6.2 警告
Local
Debian
openSUSE project
cronic project
- cronic における任意のファイルに書き込まれる脆弱性 CWE-Other
その他
CVE-2016-3992 2016-08-1 16:28 2016-04-11 Show GitHub Exploit DB Packet Storm
203129 7.5 重要
Network
シーメンス - Siemens SIMATIC WinCC における任意の WinCC ステーションファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2016-5744 2016-08-1 16:10 2016-07-22 Show GitHub Exploit DB Packet Storm
203130 9.8 緊急
Network
シーメンス - 複数の Siemens SIMATIC 製品における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2016-5743 2016-08-1 16:10 2016-07-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
289881 7.5 HIGH
Network
redhat openshift The deployment script in the unsupported "OpenShift Extras" set of add-on scripts, in Red Hat Openshift 1, installs a default public key in the root user's authorized_keys file. CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2013-4253 2024-11-21 10:55 2022-10-20 Show GitHub Exploit DB Packet Storm
289882 9.1 CRITICAL
Network
redhat openshift In a openshift node, there is a cron job to update mcollective facts that mishandles a temporary file. This may lead to loss of confidentiality and integrity. CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2013-4561 2024-11-21 10:55 2022-07-1 Show GitHub Exploit DB Packet Storm
289883 6.1 MEDIUM
Network
emberjs ember.js In general, Ember.js escapes or strips any user-supplied content before inserting it in strings that will be sent to innerHTML. However, the `tagName` property of an `Ember.View` was inserted into su… CWE-79
Cross-site Scripting
CVE-2013-4170 2024-11-21 10:55 2022-06-30 Show GitHub Exploit DB Packet Storm
289884 7.8 HIGH
Local
qemu qemu An user able to alter the savevm data (either on the disk or over the wire during migration) could use this flaw to to corrupt QEMU process memory on the (destination) host, which could potentially r… - CVE-2013-4536 2024-11-21 10:55 2021-05-29 Show GitHub Exploit DB Packet Storm
289885 4.3 MEDIUM
Network
organic_groups_project organic_groups The OG access fields (visibility fields) implementation in Organic Groups (OG) module 7.x-2.x before 7.x-2.3 for Drupal does not properly restrict access to private groups, which allows remote authen… CWE-863
 Incorrect Authorization
CVE-2013-4228 2024-11-21 10:55 2020-02-19 Show GitHub Exploit DB Packet Storm
289886 6.5 MEDIUM
Network
drupal authenticated_user_page_caching The Authenticated User Page Caching (Authcache) module 7.x-1.x before 7.x-1.5 for Drupal does not properly restrict access to cached pages, which allows remote attackers with the same role-combinatio… CWE-862
 Missing Authorization
CVE-2013-4226 2024-11-21 10:55 2020-02-19 Show GitHub Exploit DB Packet Storm
289887 8.8 HIGH
Network
mozilla persona Cross-site request forgery (CSRF) vulnerability in the persona_xsrf_token function in persona.module in the Mozilla Persona module 7.x-1.x before 7.x-1.11 for Drupal allows remote attackers to hijack… CWE-352
 Origin Validation Error
CVE-2013-4227 2024-11-21 10:55 2020-02-19 Show GitHub Exploit DB Packet Storm
289888 9.1 CRITICAL
Network
getbutterfly portable-phpmyadmin WordPress Portable phpMyAdmin Plugin 1.4.1 has Multiple Security Bypass Vulnerabilities CWE-287
Improper Authentication
CVE-2013-4454 2024-11-21 10:55 2020-02-18 Show GitHub Exploit DB Packet Storm
289889 9.8 CRITICAL
Network
openx openx A Code Execution Vulnerability exists in OpenX Ad Server 2.8.10 due to a backdoor in flowplayer-3.1.1.min.js library, which could let a remote malicious user execute arbitrary PHP code CWE-94
Code Injection
CVE-2013-4211 2024-11-21 10:55 2020-02-15 Show GitHub Exploit DB Packet Storm
289890 5.5 MEDIUM
Local
avira antivir_mailgate
antivir_mailgate_suite
exchange_security
antivir_webgate
antivir_webgate_suite
antivir_sharepoint
professional_security
antivir_personal
savapi
antivirus_s…
A Denial of Service (infinite loop) vulnerability exists in Avira AntiVir Engine before 8.2.12.58 via an unspecified function in the PDF Scanner Engine. CWE-400
 Uncontrolled Resource Consumption
CVE-2013-4602 2024-11-21 10:55 2020-02-13 Show GitHub Exploit DB Packet Storm