Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
207231 4.3 警告 s9y - Serendipity の 2k11 テーマ内の js/2k11.min.js におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-6969 2015-09-17 14:40 2015-07-24 Show GitHub Exploit DB Packet Storm
207232 6.5 警告 s9y - Serendipity の include/functions_images.inc.php 内の serendipity_isActiveFile 関数における任意の PHP コードを実行される脆弱性 CWE-Other
その他
CVE-2015-6968 2015-09-17 14:40 2015-07-24 Show GitHub Exploit DB Packet Storm
207233 6 警告 s9y - Serendipity の include/functions_comments.inc.php 内の serendipity_checkCommentToken 関数における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-6943 2015-09-17 14:40 2015-07-24 Show GitHub Exploit DB Packet Storm
207234 5 警告 FreeType Project
Canonical
- FreeType の type1/t1load.c 内の parse_encoding 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-9745 2015-09-17 14:38 2014-02-19 Show GitHub Exploit DB Packet Storm
207235 4.3 警告 Manuel Fernandez Paradela Ledon - JSP/MySQL Administrador Web におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-6945 2015-09-17 14:36 2015-09-4 Show GitHub Exploit DB Packet Storm
207236 6.8 警告 Manuel Fernandez Paradela Ledon - JSP/MySQL Administrador Web におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2015-6944 2015-09-17 14:36 2015-09-4 Show GitHub Exploit DB Packet Storm
207237 9 危険 IBM - IBM WebSphere Application Server などの製品で使用される IBM HTTP Server の管理サーバにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-4947 2015-09-17 14:35 2015-09-2 Show GitHub Exploit DB Packet Storm
207238 10 危険 Impero Inc - Impero Education Pro における任意のプログラムを実行される脆弱性 CWE-287
CWE-Other
CVE-2015-5998 2015-09-17 14:23 2015-09-9 Show GitHub Exploit DB Packet Storm
207239 7.8 危険 Impero Inc - Impero Education Pro における平文データを取得される脆弱性 CWE-Other
CWE-Other
CVE-2015-5997 2015-09-17 14:23 2015-09-9 Show GitHub Exploit DB Packet Storm
207240 4 警告 IBM - IBM WebSphere Commerce における重要な個人情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2015-4980 2015-09-16 10:33 2015-08-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
348061 - kolab kolab_groupware_server Kolab Server 2.0.0 and 2.0.1 does not properly handle when a large email is sent with a "." in the wrong place, which causes kolabfilter to add another ".", which might break clear-text signatures an… NVD-CWE-Other
CVE-2005-4828 2010-04-2 15:31 2005-12-31 Show GitHub Exploit DB Packet Storm
348062 - freeradius freeradius SQL injection vulnerability in the rlm_sqlcounter module in FreeRADIUS 1.0.3 and 1.0.4 allows remote attackers to execute arbitrary SQL commands via unknown attack vectors. NVD-CWE-Other
CVE-2005-4745 2010-04-2 15:30 2005-12-31 Show GitHub Exploit DB Packet Storm
348063 - freeradius freeradius The vendor released version 1.1.1 to address this issue. NVD-CWE-Other
CVE-2005-4745 2010-04-2 15:30 2005-12-31 Show GitHub Exploit DB Packet Storm
348064 - freeradius freeradius Multiple buffer overflows in FreeRADIUS 1.0.3 and 1.0.4 allow remote attackers to cause denial of service (crash) via (1) the rlm_sqlcounter module or (2) unknown vectors "while expanding %t". NVD-CWE-Other
CVE-2005-4746 2010-04-2 15:30 2005-12-31 Show GitHub Exploit DB Packet Storm
348065 - clam_anti-virus clamav Improper boundary checks in petite.c in Clam AntiVirus (ClamAV) before 0.87.1 allows attackers to perform unknown attacks via unknown vectors. NVD-CWE-Other
CVE-2005-3587 2010-04-2 15:06 2005-11-16 Show GitHub Exploit DB Packet Storm
348066 - clam_anti-virus clamav The OLE2 unpacker in clamd in Clam AntiVirus (ClamAV) 0.87-1 allows remote attackers to cause a denial of service (segmentation fault) via a DOC file with an invalid property tree, which triggers an … NVD-CWE-Other
CVE-2005-3239 2010-04-2 14:50 2005-10-15 Show GitHub Exploit DB Packet Storm
348067 - linux linux_kernel A numeric casting discrepancy in sdla_xfer in Linux kernel 2.6.x up to 2.6.5 and 2.4 up to 2.4.29-rc1 allows local users to read portions of kernel memory via a large len argument, which is received … NVD-CWE-Other
CVE-2004-2607 2010-04-2 13:50 2004-12-31 Show GitHub Exploit DB Packet Storm
348068 - apple iphone_os The HTTP client functionality in Apple iPhone OS 3.1 on the iPhone 2G and 3.1.3 on the iPhone 3GS allows remote attackers to cause a denial of service (Safari, Mail, or Springboard crash) via a craft… CWE-20
 Improper Input Validation 
CVE-2010-1226 2010-04-2 13:00 2010-04-2 Show GitHub Exploit DB Packet Storm
348069 - cisco ios Cisco IOS 12.1 through 12.4, when Cisco Unified Communications Manager Express (CME) or Cisco Unified Survivable Remote Site Telephony (SRST) is enabled, allows remote attackers to cause a denial of … NVD-CWE-noinfo
CVE-2010-0585 2010-04-1 14:40 2010-03-26 Show GitHub Exploit DB Packet Storm
348070 - ikiwiki ikiwiki Cross-site scripting (XSS) vulnerability in the htmlscrubber component in ikiwiki 2.x before 2.53.5 and 3.x before 3.20100312 allows remote attackers to inject arbitrary web script or HTML via a craf… CWE-79
Cross-site Scripting
CVE-2010-1195 2010-04-1 13:00 2010-04-1 Show GitHub Exploit DB Packet Storm