Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217081 5 警告 Level Four Development - WordPress 用 EasyCart プラグインにおける設定情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-4942 2014-07-15 18:24 2014-05-28 Show GitHub Exploit DB Packet Storm
217082 5 警告 Cross-RSS plugin project - WordPress 用 Cross-RSS プラグインにおける絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-4941 2014-07-15 18:23 2014-05-29 Show GitHub Exploit DB Packet Storm
217083 5 警告 tera-charts project - WordPress 用 Tera Charts プラグインにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-4940 2014-07-15 18:22 2014-05-28 Show GitHub Exploit DB Packet Storm
217084 6.5 警告 Darell Sun - WordPress 用 ENL Newsletter プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-4939 2014-07-15 18:21 2014-05-28 Show GitHub Exploit DB Packet Storm
217085 7.5 危険 Darell Sun - WordPress 用 WP Rss Poster プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-4938 2014-07-15 18:19 2014-05-28 Show GitHub Exploit DB Packet Storm
217086 5 警告 BookX plugin project - WordPress 用 includes/bookx_export.php の BookX プラグインにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-4937 2014-07-15 18:18 2014-05-28 Show GitHub Exploit DB Packet Storm
217087 4.9 警告 アルバネットワークス株式会社 - Aruba Networks ClearPass の Policy Manager における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-4013 2014-07-15 15:34 2014-07-3 Show GitHub Exploit DB Packet Storm
217088 4.3 警告 フォーティネット - FortiGuard FortiWeb におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4738 2014-07-15 15:27 2014-07-10 Show GitHub Exploit DB Packet Storm
217089 7.5 危険 Dahua Technology Co., Ltd - Dahua DVR における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2013-6117 2014-07-15 13:54 2013-11-13 Show GitHub Exploit DB Packet Storm
217090 7.5 危険 特定非営利活動法人 Seasar ファウンデーション - S2Struts において ClassLoader が操作可能な脆弱性 CWE-DesignError
CVE-2014-3893 2014-07-15 12:17 2014-07-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291701 - ibm lotus_inotes
lotus_notes
lotus_notes_traveler
ntmulti.exe in the Multi User Profile Cleanup service in IBM Notes 8.0, 8.0.1, 8.0.2, 8.5, 8.5.1, 8.5.2, 8.5.3 before FP5, and 9.0 before IF2 allows local users to gain privileges via vectors that ar… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0536 2024-11-21 10:47 2013-06-22 Show GitHub Exploit DB Packet Storm
291702 - ibm lotus_sametime
sametime
The Connect client in IBM Sametime 8.5.1, 8.5.1.1, 8.5.1.2, 8.5.2, and 8.5.2.1, as used in the Lotus Notes client and separately, might allow local users to obtain sensitive information by leveraging… CWE-255
Credentials Management
CVE-2013-0534 2024-11-21 10:47 2013-06-21 Show GitHub Exploit DB Packet Storm
291703 - ibm sterling_connect_direct_user_interface The Browser in IBM Sterling Connect:Direct 1.4 before 1.4.0.11 and 1.5 through 1.5.0.1 does not set the secure flag for the session cookie in an https session, which makes it easier for remote attack… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0529 2024-11-21 10:47 2013-06-21 Show GitHub Exploit DB Packet Storm
291704 - ibm sterling_connect_direct_user_interface The Browser in IBM Sterling Connect:Direct 1.4 before 1.4.0.11 and 1.5 through 1.5.0.1 does not close pages upon the timeout of a session, which allows physically proximate attackers to obtain sensit… CWE-200
Information Exposure
CVE-2013-0527 2024-11-21 10:47 2013-06-21 Show GitHub Exploit DB Packet Storm
291705 - ibm cognos_tm1 The server process in IBM Cognos TM1 10.1.x before 10.1.1 FP1 allows remote attackers to cause a denial of service (daemon crash) via an undocumented API call that triggers the transmission of unexpe… NVD-CWE-noinfo
CVE-2013-0484 2024-11-21 10:47 2013-06-19 Show GitHub Exploit DB Packet Storm
291706 - ibm tivoli_netcool_system_service_monitors
tivoli_netcool_application_service_monitors
Buffer overflow in the Transaction MIB agent in IBM Tivoli Netcool System Service Monitors (SSM) and Application Service Monitors (ASM) 4.0.0 before FP14 allows remote attackers to execute arbitrary … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-0509 2024-11-21 10:47 2013-06-5 Show GitHub Exploit DB Packet Storm
291707 - ibm tivoli_netcool_system_service_monitors
tivoli_netcool_application_service_monitors
Multiple buffer overflows in IBM Tivoli Netcool System Service Monitors (SSM) and Application Service Monitors (ASM) 4.0.0 before FP14 and 4.0.1 before FP1 allow context-dependent attackers to execut… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-0508 2024-11-21 10:47 2013-06-5 Show GitHub Exploit DB Packet Storm
291708 - ibm spss_data_collection
eclipse_help_system
Multiple cross-site scripting (XSS) vulnerabilities in IBM Eclipse Help System (IEHS) 3.4.3 and 3.6.2, as used in IBM SPSS Data Collection 6.0, 6.0.1, and 7.0, allow remote attackers to inject arbitr… CWE-79
Cross-site Scripting
CVE-2013-0464 2024-11-21 10:47 2013-06-4 Show GitHub Exploit DB Packet Storm
291709 - ibm websphere_portal Cross-site scripting (XSS) vulnerability in the Web Content Manager - Web Content Viewer Portlet in the server in IBM WebSphere Portal 7.0.0.x through 7.0.0.2 CF22 and 8.0.0.x through 8.0.0.1 CF5, wh… CWE-79
Cross-site Scripting
CVE-2013-0549 2024-11-21 10:47 2013-06-4 Show GitHub Exploit DB Packet Storm
291710 - ibm websphere_message_broker
websphere_application_server
IBM WebSphere Application Server (WAS) 7.0 before 7.0.0.29, 8.0 before 8.0.0.6, and 8.5 through 8.5.0.2 and WebSphere Message Broker 6.1, 7.0 through 7.0.0.5, and 8.0 through 8.0.0.2, when WS-Securit… NVD-CWE-Other
CVE-2013-0482 2024-11-21 10:47 2013-05-29 Show GitHub Exploit DB Packet Storm