Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216911 4.3 警告 オラクル - Oracle E-Business Suite の Oracle Applications Framework における Portal Integration に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-4281 2014-10-17 09:49 2014-10-14 Show GitHub Exploit DB Packet Storm
216912 7.5 危険 オラクル - Oracle E-Business Suite の Oracle Applications Technology Stack における Oracle Forms に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-4278 2014-10-17 09:49 2014-10-14 Show GitHub Exploit DB Packet Storm
216913 4 警告 オラクル - Oracle Database Server の Java VM における脆弱性 CWE-noinfo
情報不足
CVE-2014-6563 2014-10-17 09:46 2014-10-14 Show GitHub Exploit DB Packet Storm
216914 9 危険 オラクル - Oracle Database Server の Java VM における脆弱性 CWE-noinfo
情報不足
CVE-2014-6560 2014-10-17 09:46 2014-10-14 Show GitHub Exploit DB Packet Storm
216915 4 警告 オラクル - Oracle Database Server の JPublisher における脆弱性 CWE-noinfo
情報不足
CVE-2014-6547 2014-10-17 09:46 2014-10-14 Show GitHub Exploit DB Packet Storm
216916 9 危険 オラクル - Oracle Database Server の JPublisher における脆弱性 CWE-noinfo
情報不足
CVE-2014-6546 2014-10-17 09:46 2014-10-14 Show GitHub Exploit DB Packet Storm
216917 9 危険 オラクル - Oracle Database Server の Java VM における脆弱性 CWE-noinfo
情報不足
CVE-2014-6545 2014-10-17 09:46 2014-10-14 Show GitHub Exploit DB Packet Storm
216918 3.6 注意 オラクル - Oracle Database Server の JDBC における脆弱性 CWE-noinfo
情報不足
CVE-2014-6544 2014-10-17 09:46 2014-10-14 Show GitHub Exploit DB Packet Storm
216919 4 警告 オラクル - Oracle Database Server の SQLJ における脆弱性 CWE-noinfo
情報不足
CVE-2014-6542 2014-10-17 09:46 2014-10-14 Show GitHub Exploit DB Packet Storm
216920 4 警告 オラクル - Oracle Database Server の Java VM における脆弱性 CWE-noinfo
情報不足
CVE-2014-6538 2014-10-17 09:46 2014-10-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291301 - phusion passenger ext/common/ServerInstanceDir.h in Phusion Passenger gem before 4.0.6 for Ruby allows local users to gain privileges or possibly change the ownership of arbitrary directories via a symlink attack on a… CWE-59
Link Following
CVE-2013-4136 2024-11-21 10:54 2013-10-1 Show GitHub Exploit DB Packet Storm
291302 - jgroups
redhat
jgroup
jboss_enterprise_application_platform
The DiagnosticsHandler in JGroup 3.0.x, 3.1.x, 3.2.x before 3.2.9, and 3.3.x before 3.3.3 allows remote attackers to obtain sensitive information (diagnostic information) and execute arbitrary code b… CWE-200
Information Exposure
CVE-2013-4112 2024-11-21 10:54 2013-09-29 Show GitHub Exploit DB Packet Storm
291303 - ibm data_studio_web_console
infosphere_optim_configuration_manager
optim_performance_manager
db2_recovery_expert
IBM Data Studio Web Console 3.x before 3.2, Optim Performance Manager 5.x before 5.2, InfoSphere Optim Configuration Manager 2.x before 2.2, and DB2 Recovery Expert 2.x do not have an off autocomplet… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4025 2024-11-21 10:54 2013-09-25 Show GitHub Exploit DB Packet Storm
291304 - ibm data_studio_web_console
infosphere_optim_configuration_manager
optim_performance_manager
db2_recovery_expert
IBM Data Studio Web Console 3.x before 3.2, Optim Performance Manager 5.x before 5.2, InfoSphere Optim Configuration Manager 2.x before 2.2, and DB2 Recovery Expert 2.x support HTTP access to the Web… CWE-200
Information Exposure
CVE-2013-4024 2024-11-21 10:54 2013-09-25 Show GitHub Exploit DB Packet Storm
291305 - ibm data_studio_web_console
infosphere_optim_configuration_manager
optim_performance_manager
db2_recovery_expert
IBM Data Studio Web Console 3.x before 3.2, Optim Performance Manager 5.x before 5.2, InfoSphere Optim Configuration Manager 2.x before 2.2, and DB2 Recovery Expert 2.x store unspecified authenticati… CWE-255
Credentials Management
CVE-2013-4022 2024-11-21 10:54 2013-09-25 Show GitHub Exploit DB Packet Storm
291306 - ibm websphere_application_server
websphere_application_server_feature_pack_for_web_services
The WS-Security implementation in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.31, 8.0 before 8.0.0.8, and 8.5 before 8.5.5.1, and WAS Feature Pack for Web Services 6.… CWE-20
 Improper Input Validation 
CVE-2013-4053 2024-11-21 10:54 2013-09-21 Show GitHub Exploit DB Packet Storm
291307 - ibm websphere_application_server Cross-site scripting (XSS) vulnerability in the UDDI Administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.31, 8.0 before 8.0.0.8, and 8.5 before 8.5.… CWE-79
Cross-site Scripting
CVE-2013-4052 2024-11-21 10:54 2013-09-21 Show GitHub Exploit DB Packet Storm
291308 - ibm lotus_domino
lotus_inotes
Buffer overflow in iNotes in IBM Domino 8.5.3 before FP5 IF1 and 9.0 before IF4 allows remote authenticated users to execute arbitrary code via unspecified vectors, aka SPR PTHN9ADPA8. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4068 2024-11-21 10:54 2013-09-21 Show GitHub Exploit DB Packet Storm
291309 - kde
opensuse
kde_sc
kde-workspace
opensuse
KDE-Workspace 4.10.5 and earlier does not properly handle the return value of the glibc 2.17 crypt and pw_encrypt functions, which allows remote attackers to cause a denial of service (NULL pointer d… CWE-310
Cryptographic Issues
CVE-2013-4132 2024-11-21 10:54 2013-09-17 Show GitHub Exploit DB Packet Storm
291310 - squid-cache
opensuse
squid
opensuse
client_side_request.cc in Squid 3.2.x before 3.2.13 and 3.3.x before 3.3.8 allows remote attackers to cause a denial of service via a crafted port number in a HTTP Host header. CWE-20
 Improper Input Validation 
CVE-2013-4123 2024-11-21 10:54 2013-09-17 Show GitHub Exploit DB Packet Storm