Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
215291 4.4 警告 日立
IBM
オラクル
- OpenJDK および Oracle Java JDK の unpack200 における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2014-1876 2015-03-16 18:02 2014-02-3 Show GitHub Exploit DB Packet Storm
215292 5 警告 PNG Development Group
日立
IBM
オラクル
- libpng に NULL ポインタ参照の脆弱性 CWE-Other
その他
CVE-2013-6954 2015-03-16 18:01 2013-01-9 Show GitHub Exploit DB Packet Storm
215293 5 警告 IBM
Artifex Software
アップル
Mozilla Foundation
オラクル
Google
日立
- Google Chrome および Ghostscript などで使用される libjpeg 6b および libjpeg-turbo における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-6629 2015-03-16 18:01 2013-11-12 Show GitHub Exploit DB Packet Storm
215294 7.5 危険 日立
IBM
オラクル
- Oracle Java SE および Java SE Embedded における AWT に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2412 2015-03-16 17:54 2014-04-15 Show GitHub Exploit DB Packet Storm
215295 4.3 警告 日立
オラクル
- Oracle Java SE および Java SE Embedded におけるライブラリに関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2413 2015-03-16 17:54 2014-04-15 Show GitHub Exploit DB Packet Storm
215296 9.3 危険 日立
IBM
オラクル
- Oracle Java SE および Java SE Embedded における ライブラリに関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0461 2015-03-16 17:54 2014-04-15 Show GitHub Exploit DB Packet Storm
215297 9.3 危険 日立
オラクル
- Oracle Java SE および Java SE Embedded における Hotspot に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2397 2015-03-16 17:54 2014-04-15 Show GitHub Exploit DB Packet Storm
215298 3.5 注意 日立
IBM
オラクル
- 複数の Oracle Java 製品における Javadoc に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2398 2015-03-16 17:54 2014-04-15 Show GitHub Exploit DB Packet Storm
215299 5 警告 日立
IBM
オラクル
- 複数の Oracle Java 製品における 2D に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2401 2015-03-16 17:54 2014-04-15 Show GitHub Exploit DB Packet Storm
215300 4.3 警告 日立
IBM
オラクル
- Oracle Java SE および Java SE Embedded における 2D に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0459 2015-03-16 17:54 2014-04-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295481 - redhat cloudforms_management_engine The Red Hat CloudForms Management Engine 5.1 allow remote administrators to execute arbitrary Ruby code via unspecified vectors. CWE-94
Code Injection
CVE-2013-4172 2024-11-21 10:55 2013-08-24 Show GitHub Exploit DB Packet Storm
295482 - monster_menus_module_project monster_menus The mm_webform submodule in the Monster Menus module 6.x-6.x before 6.x-6.61 and 7.x-1.x before 7.x-1.13 for Drupal does not properly restrict access to webform submissions, which allows remote authe… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4230 2024-11-21 10:55 2013-08-21 Show GitHub Exploit DB Packet Storm
295483 - monster_menus_module_project monster_menus Cross-site scripting (XSS) vulnerability in the Monster Menus module 7.x-1.x before 7.x-1.12 for Drupal allows remote authenticated users with permissions to add pages to inject arbitrary web script … CWE-79
Cross-site Scripting
CVE-2013-4229 2024-11-21 10:55 2013-08-21 Show GitHub Exploit DB Packet Storm
295484 - alcatel-lucent omnitouch_8670_automated_delivery_message_delivery_system
omnitouch_8660_my_teamwork
omnitouch_8400_instant_communications_suite
omnitouch_8460_advanced_communication_server
Multiple cross-site scripting (XSS) vulnerabilities in the signin functionality of ics in MyTeamwork services in Alcatel-Lucent Omnitouch 8660 My Teamwork before 6.7, Omnitouch 8670 Automated Message… CWE-79
Cross-site Scripting
CVE-2013-4653 2024-11-21 10:55 2013-08-20 Show GitHub Exploit DB Packet Storm
295485 - canonical
debian
gnupg
opensuse
ubuntu_linux
debian_linux
gnupg
libgcrypt
opensuse
GnuPG before 1.4.14, and Libgcrypt before 1.5.3 as used in GnuPG 2.0.x and possibly other products, allows local users to obtain private RSA keys via a cache side-channel attack involving the L3 cach… CWE-200
Information Exposure
CVE-2013-4242 2024-11-21 10:55 2013-08-20 Show GitHub Exploit DB Packet Storm
295486 - redhat enterprise_virtualization VDSM in Red Hat Enterprise Virtualization 3 and 3.2 allows privileged guest users to cause the host to become "unavailable to the managment server" via invalid XML characters in a guest agent respons… NVD-CWE-Other
CVE-2013-4236 2024-11-21 10:55 2013-08-20 Show GitHub Exploit DB Packet Storm
295487 - putty
simon_tatham
putty The rsa_verify function in PuTTY before 0.63 (1) does not clear sensitive process memory after use and (2) does not free certain structures containing sensitive process memory, which might allow loca… CWE-200
Information Exposure
CVE-2013-4208 2024-11-21 10:55 2013-08-20 Show GitHub Exploit DB Packet Storm
295488 - putty
simon_tatham
putty Buffer overflow in sshbn.c in PuTTY before 0.63 allows remote SSH servers to cause a denial of service (crash) via an invalid DSA signature that is not properly handled during computation of a modula… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4207 2024-11-21 10:55 2013-08-20 Show GitHub Exploit DB Packet Storm
295489 - putty
simon_tatham
putty Heap-based buffer underflow in the modmul function in sshbn.c in PuTTY before 0.63 allows remote SSH servers to cause a denial of service (crash) and possibly trigger memory corruption or code execut… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4206 2024-11-21 10:55 2013-08-20 Show GitHub Exploit DB Packet Storm
295490 - ows scald Multiple cross-site scripting (XSS) vulnerabilities in the Scald module 7.x-1.x before 7.x-1.1 for Drupal allow remote attackers to inject arbitrary web script or HTML via the (1) flash_uri, (2) flas… CWE-79
Cross-site Scripting
CVE-2013-4174 2024-11-21 10:55 2013-08-20 Show GitHub Exploit DB Packet Storm