Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
215061 6.8 警告 シスコシステムズ - Cisco Unified Communications Manager の Real-Time Monitoring Tool API における絶対パストラバーサルの脆弱性 CWE-200
情報漏えい
CVE-2014-8008 2015-01-27 14:10 2014-10-8 Show GitHub Exploit DB Packet Storm
215062 6.8 警告 Gentoo Linux - xdg-utils における Eval インジェクションの脆弱性 CWE-Other
その他
CVE-2014-9622 2015-01-27 13:57 2014-11-14 Show GitHub Exploit DB Packet Storm
215063 6.5 警告 OpenStack - OpenStack Image Registry and Delivery Service の V2 API における任意のファイルを読まれる脆弱性 CWE-22
パス・トラバーサル
CVE-2015-1195 2015-01-27 13:51 2015-01-8 Show GitHub Exploit DB Packet Storm
215064 4.3 警告 pax project - pax における任意のファイルに書き込まれる脆弱性 CWE-59
リンク解釈の問題
CVE-2015-1194 2015-01-27 13:40 2015-01-6 Show GitHub Exploit DB Packet Storm
215065 5 警告 pax project - pax におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2015-1193 2015-01-27 13:35 2015-01-6 Show GitHub Exploit DB Packet Storm
215066 5 警告 zlib.org - pigz におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2015-1191 2015-01-27 12:18 2015-01-12 Show GitHub Exploit DB Packet Storm
215067 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player における ASLR 保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-0310 2015-01-27 11:46 2015-01-22 Show GitHub Exploit DB Packet Storm
215068 5 警告 KGB - KGB における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2015-1192 2015-01-27 11:36 2015-01-9 Show GitHub Exploit DB Packet Storm
215069 3.5 注意 D-Link Systems, Inc. - D-Link DSL-2730B ルータのファームウェアにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-1028 2015-01-27 11:25 2015-01-11 Show GitHub Exploit DB Packet Storm
215070 4.3 警告 PrestaShop - PrestaShop の blocklayered モジュールの blocklayered-ajax.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-1175 2015-01-27 11:21 2015-01-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293331 - fusedpress buddypress-extended-frienship-request Cross-site scripting (XSS) vulnerability in the BuddyPress Extended Friendship Request plugin before 1.0.2 for WordPress, when the "Friend Connections" component is enabled, allows remote attackers t… CWE-79
Cross-site Scripting
CVE-2013-4944 2024-11-21 10:56 2013-07-30 Show GitHub Exploit DB Packet Storm
293332 - freebsd freebsd The vfs_hang_addrlist function in sys/kern/vfs_export.c in the NFS server implementation in the kernel in FreeBSD 8.3 and 9.x through 9.1-RELEASE-p5 controls authorization for host/subnet export entr… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4851 2024-11-21 10:56 2013-07-29 Show GitHub Exploit DB Packet Storm
293333 - isc
suse
novell
opensuse
freebsd
mandriva
redhat
fedoraproject
hp
slackware
bind
suse_linux_enterprise_software_development_kit
suse_linux
dnsco_bind
opensuse
freebsd
business_server
enterprise_server
enterprise_linux
fedora
hp-ux
slackware_l…
The RFC 5011 implementation in rdata.c in ISC BIND 9.7.x and 9.8.x before 9.8.5-P2, 9.8.6b1, 9.9.x before 9.9.3-P2, and 9.9.4b1, and DNSco BIND 9.9.3-S1 before 9.9.3-S1-P1 and 9.9.4-S1b1, allows remo… NVD-CWE-noinfo
CVE-2013-4854 2024-11-21 10:56 2013-07-29 Show GitHub Exploit DB Packet Storm
293334 - yahoo
moodle
yui
moodle
Cross-site scripting (XSS) vulnerability in flashuploader.swf in the Uploader component in Yahoo! YUI 3.5.0 through 3.9.1, as used in Moodle through 2.1.10, 2.2.x before 2.2.11, 2.3.x before 2.3.8, 2… CWE-79
Cross-site Scripting
CVE-2013-4942 2024-11-21 10:56 2013-07-29 Show GitHub Exploit DB Packet Storm
293335 - yahoo
moodle
yui
moodle
Cross-site scripting (XSS) vulnerability in uploader.swf in the Uploader component in Yahoo! YUI 3.2.0 through 3.9.1, as used in Moodle through 2.1.10, 2.2.x before 2.2.11, 2.3.x before 2.3.8, 2.4.x … CWE-79
Cross-site Scripting
CVE-2013-4941 2024-11-21 10:56 2013-07-29 Show GitHub Exploit DB Packet Storm
293336 - yahoo
moodle
yui
moodle
Cross-site scripting (XSS) vulnerability in io.swf in the IO Utility component in Yahoo! YUI 3.10.2, as used in Moodle through 2.1.10, 2.2.x before 2.2.11, 2.3.x before 2.3.8, 2.4.x before 2.4.5, 2.5… CWE-79
Cross-site Scripting
CVE-2013-4940 2024-11-21 10:56 2013-07-29 Show GitHub Exploit DB Packet Storm
293337 - yahoo
moodle
yui
moodle
Cross-site scripting (XSS) vulnerability in io.swf in the IO Utility component in Yahoo! YUI 3.0.0 through 3.9.1, as used in Moodle through 2.1.10, 2.2.x before 2.2.11, 2.3.x before 2.3.8, 2.4.x befo… CWE-79
Cross-site Scripting
CVE-2013-4939 2024-11-21 10:56 2013-07-29 Show GitHub Exploit DB Packet Storm
293338 - moodle moodle The LTI (aka IMS-LTI) mod_form implementation in Moodle through 2.1.10, 2.2.x before 2.2.11, 2.3.x before 2.3.8, 2.4.x before 2.4.5, and 2.5.x before 2.5.1 does not properly support the sendname, sen… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4938 2024-11-21 10:56 2013-07-29 Show GitHub Exploit DB Packet Storm
293339 - hp loadrunner Unspecified vulnerability in HP LoadRunner before 11.52 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1736. NVD-CWE-noinfo
CVE-2013-4801 2024-11-21 10:56 2013-07-29 Show GitHub Exploit DB Packet Storm
293340 - hp loadrunner Unspecified vulnerability in HP LoadRunner before 11.52 allows remote attackers to execute arbitrary code via unknown vectors, aka ZDI-CAN-1735. NVD-CWE-noinfo
CVE-2013-4800 2024-11-21 10:56 2013-07-29 Show GitHub Exploit DB Packet Storm