Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216071 7.5 危険 VLD Interactive - vldPersonals における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-9005 2014-11-21 11:55 2014-11-10 Show GitHub Exploit DB Packet Storm
216072 4.3 警告 VLD Interactive - vldPersonals におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-9004 2014-11-21 11:54 2014-11-10 Show GitHub Exploit DB Packet Storm
216073 6.5 警告 MuleSoft Inc. - Mule Enterprise Management Console における管理者権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9000 2014-11-21 11:37 2014-10-22 Show GitHub Exploit DB Packet Storm
216074 6.5 警告 XOOPS - XOOPS の htdocs/modules/system/admin.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-8999 2014-11-21 11:25 2014-06-16 Show GitHub Exploit DB Packet Storm
216075 6.5 警告 X7 Group - X7 Chat の lib/message.php における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-8998 2014-11-21 11:18 2014-11-5 Show GitHub Exploit DB Packet Storm
216076 9 危険 アドバンテック株式会社 - Advantech EKI-6340 Wi-Fi Mesh Access Point の cgi/utility.cgi における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2014-8387 2014-11-21 11:09 2014-11-19 Show GitHub Exploit DB Packet Storm
216077 7.2 危険 Faronics - Faronics Deep Freeze Standard および Enterprise の DfDiskLo.sys ドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-2382 2014-11-21 11:03 2014-11-13 Show GitHub Exploit DB Packet Storm
216078 5 警告 DELL EMC (旧 EMC Corporation) - EMC Avamar Data Store および Avamar Virtual Edition における grid MCUser および GSAN パスワードを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-4624 2014-11-20 17:53 2014-10-22 Show GitHub Exploit DB Packet Storm
216079 3.5 注意 OpenStack - OpenStack Orchestration API におけるプロバイダテンプレートの URL を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-3801 2014-11-20 17:45 2014-05-23 Show GitHub Exploit DB Packet Storm
216080 1.9 注意 Xen プロジェクト - Xen の arch/x86/x86_emulate/x86_emulate.c における権限を取得される脆弱性 CWE-Other
その他
CVE-2014-8595 2014-11-20 17:27 2014-11-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292321 - mozilla firefox
thunderbird
thunderbird_esr
Use-after-free vulnerability in the nsIDocument::GetRootElement function in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.… CWE-399
 Resource Management Errors
CVE-2013-1685 2024-11-21 10:50 2013-06-26 Show GitHub Exploit DB Packet Storm
292322 - mozilla firefox
thunderbird
thunderbird_esr
Use-after-free vulnerability in the mozilla::dom::HTMLMediaElement::LookupMediaElementURITable function in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and … CWE-399
 Resource Management Errors
CVE-2013-1684 2024-11-21 10:50 2013-06-26 Show GitHub Exploit DB Packet Storm
292323 - mozilla firefox Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 22.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly exe… NVD-CWE-noinfo
CVE-2013-1683 2024-11-21 10:50 2013-06-26 Show GitHub Exploit DB Packet Storm
292324 - mozilla firefox
thunderbird
thunderbird_esr
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 allow remo… NVD-CWE-noinfo
CVE-2013-1682 2024-11-21 10:50 2013-06-26 Show GitHub Exploit DB Packet Storm
292325 - jordan_de_laune mp3_player Cross-site scripting (XSS) vulnerability in the MP3 Player module for Drupal 6.x allows remote authenticated users with certain permissions to inject arbitrary web script or HTML via the file name of… CWE-79
Cross-site Scripting
CVE-2013-1971 2024-11-21 10:50 2013-06-26 Show GitHub Exploit DB Packet Storm
292326 - yoran_brault filebrowser Cross-site scripting (XSS) vulnerability in the Filebrowser module 6.x-2.x before 6.x-2.2 for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors, related to… CWE-79
Cross-site Scripting
CVE-2013-2036 2024-11-21 10:50 2013-06-25 Show GitHub Exploit DB Packet Storm
292327 - alexey_sukhotin elfinder Cross-site request forgery (CSRF) vulnerability in the elFinder file manager module 6.x-0.x before 6.x-0.8 and 7.x-0.x before 7.x-0.8 for Drupal allows remote attackers to hijack the authentication o… CWE-79
Cross-site Scripting
CVE-2013-1972 2024-11-21 10:50 2013-06-25 Show GitHub Exploit DB Packet Storm
292328 - wolfgang_ziegler rules Cross-site scripting (XSS) vulnerability in the Rules module 7.x-2.x before 7.x-2.3 for Drupal allows remote authenticated users with the "administer rules" permission to inject arbitrary web script … CWE-79
Cross-site Scripting
CVE-2013-1906 2024-11-21 10:50 2013-06-25 Show GitHub Exploit DB Packet Storm
292329 - catalin_florian_radut zeropoint Cross-site scripting (XSS) vulnerability in the Zero Point theme 7.x-1.x before 7.x-1.9 for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2013-1905 2024-11-21 10:50 2013-06-21 Show GitHub Exploit DB Packet Storm
292330 - x.org
x
libxv Buffer overflow in X.org libXv 1.0.7 and earlier allows X servers to cause a denial of service (crash) and possibly execute arbitrary code via crafted length or index values to the XvQueryPortAttribu… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-2066 2024-11-21 10:50 2013-06-16 Show GitHub Exploit DB Packet Storm