Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 12, 2026, 12:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
215061 6.8 警告 Acobot Live Chat & Contact Form project - WordPress 用 Acobot Live Chat & Contact Form プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2015-2039 2015-02-24 16:43 2015-01-26 Show GitHub Exploit DB Packet Storm
215062 4.3 警告 CFDB Plugin - WordPress 用 Contact Form DB プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-2040 2015-02-24 16:43 2015-01-26 Show GitHub Exploit DB Packet Storm
215063 4.3 警告 有限会社クレアル - AL-Mail32 におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2015-0878 2015-02-24 16:31 2015-02-20 Show GitHub Exploit DB Packet Storm
215064 4.3 警告 有限会社クレアル - AL-Mail32 におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-0879 2015-02-24 16:25 2015-02-20 Show GitHub Exploit DB Packet Storm
215065 6.8 警告 有限会社クレアル - AL-Mail32 におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2015-0880 2015-02-24 16:24 2015-02-20 Show GitHub Exploit DB Packet Storm
215066 8.5 危険 Lenovo - Komodia Redirector がルート CA 証明書と秘密鍵をインストールする問題 - - 2015-02-24 16:09 2015-02-19 Show GitHub Exploit DB Packet Storm
215067 6.5 警告 レッドハット - KIE Workbench の デフォルトの認証制約における任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-8115 2015-02-24 16:05 2014-12-24 Show GitHub Exploit DB Packet Storm
215068 6.8 警告 レッドハット - UberFire Framework における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-8114 2015-02-24 15:57 2014-12-23 Show GitHub Exploit DB Packet Storm
215069 7.5 危険 レッドハット - jbpm-designer の designer/bpmn2/resource/JBPMBpmn2ResourceImpl.java の JBPMBpmn2ResourceImpl 関数における XML 外部エンティティの脆弱性 CWE-Other
その他
CVE-2014-3682 2015-02-24 15:48 2014-10-28 Show GitHub Exploit DB Packet Storm
215070 4.3 警告 danlester - WordPress 用 Google Doc Embedder プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2015-1879 2015-02-24 15:46 2015-01-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 12, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293961 - mozilla firefox
thunderbird
thunderbird_esr
firefox_esr
seamonkey
Unspecified vulnerability in the browser engine in Mozilla Firefox before 25.0, Firefox ESR 24.x before 24.1, Thunderbird before 24.1, and SeaMonkey before 2.22 allows remote attackers to cause a den… NVD-CWE-noinfo
CVE-2013-5591 2024-11-21 10:57 2013-10-30 Show GitHub Exploit DB Packet Storm
293962 - mozilla seamonkey
firefox
firefox_esr
thunderbird
thunderbird_esr
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 25.0, Firefox ESR 17.x before 17.0.10 and 24.x before 24.1, Thunderbird before 24.1, Thunderbird ESR 17.x before 1… NVD-CWE-noinfo
CVE-2013-5590 2024-11-21 10:57 2013-10-30 Show GitHub Exploit DB Packet Storm
293963 - ibm security_appscan The Jazz Team Server component in IBM Security AppScan Enterprise 8.x before 8.8 has a default username and password, which makes it easier for remote authenticated users to obtain unspecified access… CWE-255
Credentials Management
CVE-2013-5430 2024-11-21 10:57 2013-10-28 Show GitHub Exploit DB Packet Storm
293964 - ibm flex_system_manager IBM Flex System Manager (FSM) 1.3.0 allows remote attackers to bypass intended access restrictions, and create new user accounts or execute tasks, by leveraging an expired password for the system-lev… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5424 2024-11-21 10:57 2013-10-26 Show GitHub Exploit DB Packet Storm
293965 - cisco ios_xr Cisco IOS XR 3.8.1 through 4.2.0 does not properly process fragmented packets within the RP-A, RP-B, PRP, and DRP-B route-processor components, which allows remote attackers to cause a denial of serv… NVD-CWE-noinfo
CVE-2013-5549 2024-11-21 10:57 2013-10-25 Show GitHub Exploit DB Packet Storm
293966 - cisco identity_services_engine_software Cisco Identity Services Engine (ISE) 1.x before 1.1.1 allows remote attackers to bypass authentication, and read support-bundle configuration and credentials data, via a crafted session on TCP port 4… CWE-287
Improper Authentication
CVE-2013-5531 2024-11-21 10:57 2013-10-25 Show GitHub Exploit DB Packet Storm
293967 - cisco identity_services_engine_software The web framework in Cisco Identity Services Engine (ISE) 1.0 and 1.1.0 before 1.1.0.665-5, 1.1.1 before 1.1.1.268-7, 1.1.2 before 1.1.2.145-10, 1.1.3 before 1.1.3.124-7, 1.1.4 before 1.1.4.218-7, an… CWE-78
OS Command 
CVE-2013-5530 2024-11-21 10:57 2013-10-25 Show GitHub Exploit DB Packet Storm
293968 - cisco ios
catalyst_3750-x
Cisco IOS on Catalyst 3750X switches has default Service Module credentials, which makes it easier for local users to gain privileges via a Service Module login, aka Bug ID CSCue92286. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5522 2024-11-21 10:57 2013-10-25 Show GitHub Exploit DB Packet Storm
293969 - cisco identity_services_engine_software Cisco Identity Services Engine does not properly restrict the creation of guest accounts, which allows remote attackers to cause a denial of service (exhaustion of the account supply) via a series of… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5521 2024-11-21 10:57 2013-10-25 Show GitHub Exploit DB Packet Storm
293970 - cisco web_security_appliance
content_security_management_appliance
email_security_appliance_firmware
The web framework on Cisco Web Security Appliance (WSA), Email Security Appliance (ESA), and Content Security Management Appliance (SMA) devices does not properly manage the state of HTTP and HTTPS s… CWE-20
 Improper Input Validation 
CVE-2013-5537 2024-11-21 10:57 2013-10-24 Show GitHub Exploit DB Packet Storm