Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
208961 2.1 注意 AVAST Software s.r.o. - Avast! Internet Security の aswFW.sys における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2010-5075 2015-01-6 14:45 2010-08-3 Show GitHub Exploit DB Packet Storm
208962 6 警告 IBM - IBM Security Identity Manager におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-6168 2015-01-6 14:39 2014-12-16 Show GitHub Exploit DB Packet Storm
208963 2.1 注意 IBM - IBM WebSphere Service Registry and Repository におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-6160 2015-01-6 14:36 2014-12-19 Show GitHub Exploit DB Packet Storm
208964 2.1 注意 IBM - IBM Rational AppScan Source および Security AppScan Source における重要な資格情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-6123 2015-01-6 14:26 2014-12-16 Show GitHub Exploit DB Packet Storm
208965 7.5 危険 Redmine - Redmine 用 redmine_git_hosting プラグインの git_http_controller.rb における任意のコマンドを実行される脆弱性 CWE-Other
その他
CVE-2013-4663 2015-01-6 14:16 2013-08-16 Show GitHub Exploit DB Packet Storm
208966 6.8 警告 SyndeoCMS - SyndeoCMS の starnet/index.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-1203 2015-01-6 14:08 2012-02-19 Show GitHub Exploit DB Packet Storm
208967 7.5 危険 OpenBSD - LibreSSL の d1_srtp.c 内の ssl_parse_clienthello_use_srtp_ext 関数におけるメモリ二重解放の脆弱性 CWE-Other
その他
CVE-2014-9424 2015-01-6 14:06 2014-12-12 Show GitHub Exploit DB Packet Storm
208968 5 警告 Hillstone Software - Hillstone HS TFTP Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2011-4720 2015-01-6 14:01 2011-12-2 Show GitHub Exploit DB Packet Storm
208969 4.3 警告 SiliSoftware - phpThumb のデフォルト設定におけるサーバサイドのリクエストフォージェリの脆弱性 CWE-Other
その他
CVE-2013-6919 2015-01-6 13:55 2013-11-30 Show GitHub Exploit DB Packet Storm
208970 5 警告 Facebook - Facebook HipHop Virtual Machine の hphp/runtime/ext/ext_hash.cpp の HashContext クラスにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-6229 2015-01-6 13:50 2014-09-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
251711 - - - : Relative Path Traversal vulnerability in LiteSpeed Technologies LiteSpeed Cache allows Path Traversal.This issue affects LiteSpeed Cache: from n/a through 6.4.1. CWE-23
 Relative Path Traversal
CVE-2024-47637 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm
251712 - - - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in The CSSIgniter Team MaxSlider allows Path Traversal.This issue affects MaxSlider: from n/a through 1.2.… CWE-22
Path Traversal
CVE-2024-47351 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm
251713 - - - Attackers could put the special files in .osc into the actual package sources (e.g. _apiurl). This allows the attacker to change the configuration of osc for the victim - CVE-2024-22034 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm
251714 - - - The OBS service obs-service-download_url was vulnerable to a command injection vulnerability. The attacker could provide a configuration to the service that allowed to execute command in later steps CWE-78
OS Command 
CVE-2024-22033 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm
251715 - - - A vulnerability has been identified in which an RKE1 cluster keeps constantly reconciling when secrets encryption configuration is enabled. When reconciling, the Kube API secret values are written … CWE-200
Information Exposure
CVE-2024-22032 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm
251716 - - - A vulnerability has been identified within Rancher that can be exploited in narrow circumstances through a man-in-the-middle (MITM) attack. An attacker would need to have control of an expired doma… CWE-295
Improper Certificate Validation 
CVE-2024-22030 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm
251717 - - - Insecure permissions in the packaging of tomcat allow local users that win a race during package installation to escalate to root CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2024-22029 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm
251718 - - - : Improper Neutralization of Special Elements Used in a Template Engine vulnerability in Unlimited Elements Unlimited Elements For Elementor (Free Widgets, Addons, Templates) allows : Command Injecti… CWE-1336
 Improper Neutralization of Special Elements Used in a Template Engine
CVE-2024-49271 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm
251719 - - - Unrestricted Upload of File with Dangerous Type vulnerability in Denis Azz Anonim Posting allows Upload a Web Shell to a Web Server.This issue affects Azz Anonim Posting: from n/a through 0.9. - CVE-2024-49257 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm
251720 - - - : Authentication Bypass Using an Alternate Path or Channel vulnerability in sooskriszta, webforza BuddyPress Better Registration allows : Authentication Bypass.This issue affects BuddyPress Better Re… CWE-288
Authentication Bypass Using an Alternate Path or Channel
CVE-2024-49247 2024-10-17 01:38 2024-10-16 Show GitHub Exploit DB Packet Storm