Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
209021 4 警告 IBM - IBM WebSphere Service Registry and Repository におけるオブジェクトアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-6186 2015-01-5 12:05 2014-12-19 Show GitHub Exploit DB Packet Storm
209022 3.5 注意 IBM - IBM WebSphere Service Registry and Repository の Web UI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-6180 2015-01-5 12:05 2014-12-19 Show GitHub Exploit DB Packet Storm
209023 3.5 注意 IBM - IBM WebSphere Service Registry and Repository のウィジェットにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-6178 2015-01-5 12:04 2014-12-19 Show GitHub Exploit DB Packet Storm
209024 4 警告 IBM - IBM WebSphere Service Registry and Repository における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-6177 2015-01-5 12:04 2014-12-19 Show GitHub Exploit DB Packet Storm
209025 4 警告 IBM - IBM WebSphere Service Registry and Repository の ServiceRegistry UI におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-6155 2015-01-5 12:03 2014-12-19 Show GitHub Exploit DB Packet Storm
209026 4.3 警告 IBM - IBM WebSphere Service Registry and Repository の Web UI における Cookie をキャプチャされる脆弱性 CWE-310
暗号の問題
CVE-2014-6153 2015-01-5 12:03 2014-12-19 Show GitHub Exploit DB Packet Storm
209027 7.7 危険 シスコシステムズ - 複数の Cisco-Meraki デバイスのファームウェアにおける任意のファームウェアをインストールされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-7999 2015-01-5 11:13 2014-12-23 Show GitHub Exploit DB Packet Storm
209028 7.2 危険 シスコシステムズ - 複数の Cisco-Meraki デバイスのファームウェアにおけるシェルアクセスを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-7995 2015-01-5 11:10 2014-12-23 Show GitHub Exploit DB Packet Storm
209029 2.1 注意 MIT Kerberos - MIT Kerberos 5 の kadmind の lib/kadm5/srv/svr_principal.c の kadm5_randkey_principal_3 関数におけるチケットを偽造される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-5351 2014-12-26 09:57 2014-09-22 Show GitHub Exploit DB Packet Storm
209030 4.3 警告 シスコシステムズ - Cisco Prime Security Manager の Web フレームワークにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3364 2014-12-25 20:30 2014-12-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
251511 - - - Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultIDs: CVE-2024-37295. Reason: This candidate is a reservation duplicate of CVE-2024-37295. Notes: All CVE users should reference CVE-2024-3729… - CVE-2024-36811 2024-10-29 06:15 2024-06-8 Show GitHub Exploit DB Packet Storm
251512 - - - Android before 2024-10-05 on Google Pixel devices allows privilege escalation in the ABL component, A-329163861. - CVE-2024-47031 2024-10-29 05:35 2024-10-25 Show GitHub Exploit DB Packet Storm
251513 - - - Android before 2024-10-05 on Google Pixel devices allows information disclosure in the ACPM component, A-315191818. - CVE-2024-47030 2024-10-29 05:35 2024-10-25 Show GitHub Exploit DB Packet Storm
251514 - - - An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. The params parameter in the call method of the /rpc endpoint is vulnerable to arbitrar… - CVE-2024-45262 2024-10-29 05:35 2024-10-25 Show GitHub Exploit DB Packet Storm
251515 - - - An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. The SID generated for a specific user is not tied to that user itself, which allows ot… - CVE-2024-45261 2024-10-29 05:35 2024-10-25 Show GitHub Exploit DB Packet Storm
251516 - - - An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. Users who belong to unauthorized groups can invoke any interface of the device, thereb… - CVE-2024-45260 2024-10-29 05:35 2024-10-25 Show GitHub Exploit DB Packet Storm
251517 - - - An issue was discovered on certain GL-iNet devices, including MT6000, MT3000, MT2500, AXT1800, and AX1800 4.6.2. By intercepting an HTTP request and changing the filename property in the download int… - CVE-2024-45259 2024-10-29 05:35 2024-10-25 Show GitHub Exploit DB Packet Storm
251518 - - - A prompt injection vulnerability in the chatbox of Netangular Technologies ChatNet AI Version v1.0 allows attackers to access and exfiltrate all previous and subsequent chat data between the user and… - CVE-2024-48145 2024-10-29 05:35 2024-10-25 Show GitHub Exploit DB Packet Storm
251519 - - - A prompt injection vulnerability in the chatbox of Fusion Chat Chat AI Assistant Ask Me Anything v1.2.4.0 allows attackers to access and exfiltrate all previous and subsequent chat data between the u… - CVE-2024-48144 2024-10-29 05:35 2024-10-25 Show GitHub Exploit DB Packet Storm
251520 8.8 HIGH
Network
dmytropopov light_poll The Light Poll WordPress plugin through 1.0.0 does not have CSRF checks in some places, which could allow attackers to make logged in users perform unwanted actions via CSRF attacks CWE-352
 Origin Validation Error
CVE-2024-6720 2024-10-29 05:35 2024-08-7 Show GitHub Exploit DB Packet Storm