Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217071 6.4 警告 Apache Software Foundation - Apache Solr の XML 用 UpdateRequestHandler における脆弱性 CWE-noinfo
情報不足
CVE-2013-6407 2014-04-7 17:56 2013-12-9 Show GitHub Exploit DB Packet Storm
217072 4.3 警告 Apache Software Foundation - Apache Solr の SolrResourceLoader におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-6397 2014-04-7 17:55 2013-09-21 Show GitHub Exploit DB Packet Storm
217073 5.7 警告 Linux
レッドハット
- Linux Kernel の KVM サブシステムの arch/x86/kvm/lapic.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2013-6367 2014-04-7 17:54 2013-12-12 Show GitHub Exploit DB Packet Storm
217074 1.9 注意 LIGHTTPD - Debian GNU/Linux 上の lighthttpd における PHP 制御ソケットを乗っ取られる脆弱性 CWE-DesignError
CVE-2013-1427 2014-04-7 17:49 2013-03-15 Show GitHub Exploit DB Packet Storm
217075 5 警告 LIGHTTPD
オラクル
- lighttpd におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2010-0295 2014-04-7 17:47 2010-02-3 Show GitHub Exploit DB Packet Storm
217076 5 警告 The PHP Group - PHP の SQLite における open_basedir 保護機能を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3365 2014-04-7 17:46 2012-07-19 Show GitHub Exploit DB Packet Storm
217077 10 危険 The PHP Group
アップル
- PHP の stream の実装における脆弱性 - CVE-2012-2688 2014-04-7 17:45 2012-07-19 Show GitHub Exploit DB Packet Storm
217078 4.3 警告 The PHP Group - PHP の Fileinfo コンポーネントの libmagic/softmagic.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-4636 2014-04-7 17:44 2013-06-20 Show GitHub Exploit DB Packet Storm
217079 5 警告 The PHP Group - PHP の Calendar コンポーネントの jewish.c における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2013-4635 2014-04-7 17:43 2013-06-20 Show GitHub Exploit DB Packet Storm
217080 5 警告 The PHP Group
アップル
- PHP の ext/standard/quot_print.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-2110 2014-04-7 17:40 2013-06-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294921 - vbulletin vbulletin Open redirect vulnerability in forum/login.php in vBulletin 4.1.3 and earlier allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via the url parameter in a … CWE-20
 Improper Input Validation 
CVE-2011-5251 2024-11-21 10:33 2013-01-1 Show GitHub Exploit DB Packet Storm
294922 - redhat resteasy The readFrom function in providers.jaxb.JAXBXmlTypeProvider in RESTEasy before 2.3.2 allows remote attackers to read arbitrary files via an external entity reference in a Java Architecture for XML Bi… CWE-200
Information Exposure
CVE-2011-5245 2024-11-21 10:33 2012-11-24 Show GitHub Exploit DB Packet Storm
294923 - tetex
gnome
t1lib
tetex
evince
t1lib
Multiple off-by-one errors in the (1) token and (2) linetoken functions in backend/dvi/mdvi-lib/afmparse.c in t1lib, as used in teTeX 3.0.x, GNOME evince, and possibly other products, allow remote at… CWE-189
Numeric Errors
CVE-2011-5244 2024-11-21 10:33 2012-11-19 Show GitHub Exploit DB Packet Storm
294924 - abraham_williams twitteroauth TwitterOAuth does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attacker… CWE-20
 Improper Input Validation 
CVE-2011-5243 2024-11-21 10:33 2012-11-6 Show GitHub Exploit DB Packet Storm
294925 - themattharris tmhoauth tmhOAuth before 0.61 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle … CWE-20
 Improper Input Validation 
CVE-2011-5242 2024-11-21 10:33 2012-11-6 Show GitHub Exploit DB Packet Storm
294926 - services_twitter_group services_twitter Services_Twitter 0.6.3 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middl… CWE-20
 Improper Input Validation 
CVE-2011-5241 2024-11-21 10:33 2012-11-6 Show GitHub Exploit DB Packet Storm
294927 - magentocommerce magento Magento 1.5 and 1.6.2 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle… CWE-20
 Improper Input Validation 
CVE-2011-5240 2024-11-21 10:33 2012-11-6 Show GitHub Exploit DB Packet Storm
294928 - civicrm civicrm CiviCRM 4.0.5 and 4.1.1 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-midd… CWE-20
 Improper Input Validation 
CVE-2011-5239 2024-11-21 10:33 2012-11-6 Show GitHub Exploit DB Packet Storm
294929 - google checkout-php google-checkout-php-sample-code before 1.3.2 does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which a… CWE-20
 Improper Input Validation 
CVE-2011-5238 2024-11-21 10:33 2012-11-6 Show GitHub Exploit DB Packet Storm
294930 - paypal wps_toolkit PayPal WPS ToolKit does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle at… CWE-20
 Improper Input Validation 
CVE-2011-5237 2024-11-21 10:33 2012-11-6 Show GitHub Exploit DB Packet Storm