Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
211031 4.3 警告 IBM - IBM Security Identity Manager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-6096 2014-11-19 15:30 2014-11-13 Show GitHub Exploit DB Packet Storm
211032 5 警告 IBM - IBM Security Identity Manager におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-6095 2014-11-19 15:30 2014-11-13 Show GitHub Exploit DB Packet Storm
211033 4.3 警告 Star Host Design, LLC - phpMoneyBooks の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-6665 2014-11-19 12:21 2012-03-16 Show GitHub Exploit DB Packet Storm
211034 4.3 警告 Star Host Design, LLC - phpMoneyBooks の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-1669 2014-11-19 12:20 2012-03-16 Show GitHub Exploit DB Packet Storm
211035 6.8 警告 Php Scriptlerim. - Php Scriptlerim Who's Who スクリプトにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-8953 2014-11-19 12:13 2014-10-30 Show GitHub Exploit DB Packet Storm
211036 4.3 警告 Meg Nicholas - WordPress 用 Contact Form Clean and Simple プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8955 2014-11-19 11:37 2014-11-4 Show GitHub Exploit DB Packet Storm
211037 6 警告 iMember360 - WordPress 用 iMember360 プラグインにおける任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-8949 2014-11-19 11:37 2014-04-24 Show GitHub Exploit DB Packet Storm
211038 4.3 警告 Pricop - phpSound におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8954 2014-11-19 11:25 2014-08-10 Show GitHub Exploit DB Packet Storm
211039 4.3 警告 phpMemcachedAdmin project - phpMemcachedAdmin におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8732 2014-11-19 11:15 2014-11-12 Show GitHub Exploit DB Packet Storm
211040 6.2 警告 F5 Networks - F5 BIG-IP におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-8727 2014-11-19 10:58 2014-09-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306991 - windowmaker windowmaker Multiple buffer overflows in WindowMaker 0.52 through 0.60.0 allow attackers to cause a denial of service and possibly execute arbitrary commands by executing WindowMaker with a long program name (ar… NVD-CWE-Other
CVE-1999-1064 2016-10-18 11:00 1999-08-22 Show GitHub Exploit DB Packet Storm
306992 - palm_pilot hotsync_manager Palm Pilot HotSync Manager 3.0.4 in Windows 98 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long string to port 14238 while the manager is in n… NVD-CWE-Other
CVE-1999-1065 2016-10-18 11:00 1999-11-4 Show GitHub Exploit DB Packet Storm
306993 - sgi quake_1_server Quake 1 server responds to an initial UDP game connection request with a large amount of traffic, which allows remote attackers to use the server as an amplifier in a "Smurf" style attack on another … NVD-CWE-Other
CVE-1999-1066 2016-10-18 11:00 1999-12-22 Show GitHub Exploit DB Packet Storm
306994 - sgi irix SGI MachineInfo CGI program, installed by default on some web servers, prints potentially sensitive system status information, which could be used by remote attackers for information gathering activi… NVD-CWE-Other
CVE-1999-1067 2016-10-18 11:00 1997-05-7 Show GitHub Exploit DB Packet Storm
306995 - oracle http_server Oracle Webserver 2.1, when serving PL/SQL stored procedures, allows remote attackers to cause a denial of service via a long HTTP GET request. NVD-CWE-Other
CVE-1999-1068 2016-10-18 11:00 1997-07-23 Show GitHub Exploit DB Packet Storm
306996 - excite ews Excite for Web Servers (EWS) 1.1 allows local users to gain privileges by obtaining the encrypted password from the world-readable Architext.conf authentication file and replaying the encrypted passw… NVD-CWE-Other
CVE-1999-1072 2016-10-18 11:00 1998-11-30 Show GitHub Exploit DB Packet Storm
306997 - excite ews Excite for Web Servers (EWS) 1.1 records the first two characters of a plaintext password in the beginning of the encrypted password, which makes it easier for an attacker to guess passwords via a br… NVD-CWE-Other
CVE-1999-1073 2016-10-18 11:00 1998-11-30 Show GitHub Exploit DB Packet Storm
306998 - ibm aix AIX infod allows local users to gain root access through an X display. NVD-CWE-Other
CVE-1999-0118 2016-10-18 10:59 1998-11-1 Show GitHub Exploit DB Packet Storm
306999 - dan_bernstein qmail Denial of service in Qmail through long SMTP commands. NVD-CWE-Other
CVE-1999-0250 2016-10-18 10:59 1997-07-1 Show GitHub Exploit DB Packet Storm
307000 - - - The Java Web Server would allow remote users to obtain the source code for CGI programs. NVD-CWE-Other
CVE-1999-0283 2016-10-18 10:59 1999-01-1 Show GitHub Exploit DB Packet Storm