Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217161 10 危険 Jgaa - War FTP Daemon におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-2278 2014-04-2 14:43 2013-02-25 Show GitHub Exploit DB Packet Storm
217162 4 警告 Jgaa - War FTP Daemon におけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2009-5141 2014-04-2 14:43 2009-09-12 Show GitHub Exploit DB Packet Storm
217163 10 危険 アライドテレシス - 複数の Allied Telesis ルータ製品における権限を取得される脆弱性 CWE-287
CWE-78
CVE-2014-1982 2014-04-2 13:41 2014-03-26 Show GitHub Exploit DB Packet Storm
217164 10 危険 Chainfire - Android 用 Chainfire SuperSU パッケージにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6775 2014-04-2 12:19 2013-11-13 Show GitHub Exploit DB Packet Storm
217165 10 危険 AndroidSU.com
Koushik Dutta
Chainfire
- Android 用 ChainsDD Superuser パッケージなどの製品における任意の .jar ファイルをロードされる脆弱性 CWE-Other
その他
CVE-2013-6774 2014-04-2 12:19 2013-11-13 Show GitHub Exploit DB Packet Storm
217166 6.8 警告 Koushik Dutta - Android 用 CyanogenMod/ClockWorkMod/Koush Superuser パッケージにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6770 2014-04-2 12:18 2013-11-13 Show GitHub Exploit DB Packet Storm
217167 10 危険 Koushik Dutta - Android 用 CyanogenMod/ClockWorkMod/Koush Superuser パッケージにおける権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2013-6769 2014-04-2 12:18 2013-11-13 Show GitHub Exploit DB Packet Storm
217168 5 警告 Koushik Dutta - Android 用 CyanogenMod/ClockWorkMod/Koush Superuser パッケージにおけるトロイの木馬の app_process プログラムの起動を誘発される脆弱性 CWE-22
パス・トラバーサル
CVE-2013-6768 2014-04-2 12:17 2013-11-13 Show GitHub Exploit DB Packet Storm
217169 6.9 警告 オラクル - Oracle VirtualBox における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2014-0983 2014-04-2 10:56 2014-02-13 Show GitHub Exploit DB Packet Storm
217170 6.5 警告 Zoho Corporation - ManageEngine OpStor に複数の脆弱性 CWE-264
CWE-79
CWE-Other
CVE-2014-0344 2014-04-1 18:27 2014-03-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292531 - alexis_wilke protected_node The Protected Node module 6.x-1.x before 6.x-1.6 for Drupal does not properly "protect node access when nodes are accessed outside of the standard node view," which allows remote attackers to bypass … CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2730 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm
292532 - adcillc simplemeta Multiple cross-site request forgery (CSRF) vulnerabilities in the SimpleMeta module 6.x-1.x before 6.x-2.0 for Drupal allow remote attackers to hijack the authentication of administrators for request… CWE-352
 Origin Validation Error
CVE-2012-2729 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm
292533 - ronan_dowling node_hierarchy Multiple cross-site request forgery (CSRF) vulnerabilities in the Node Hierarchy module 6.x-1.x before 6.x-1.5 for Drupal allow remote attackers to hijack the authentication of administrators for req… CWE-352
 Origin Validation Error
CVE-2012-2728 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm
292534 - bryce_hamrick janrain_capture Open redirect vulnerability in the Janrain Capture module 6.x-1.0 and 7.x-1.0 for Drupal, when synchronizing user data, allows remote attackers to redirect users to arbitrary web sites and conduct ph… CWE-20
 Improper Input Validation 
CVE-2012-2727 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm
292535 - alberto_trujillo_gonzalez protest Cross-site scripting (XSS) vulnerability in the Protest module 6.x-1.x before 6.x-1.2 or 7.x-1.x before 7.x-1.2 for Drupal allows remote authenticated users with the "administer protest" permission t… CWE-79
Cross-site Scripting
CVE-2012-2726 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm
292536 - authoring_html 6.x-1.0 classes/Filter/WhitelistedExternalFilter.php in the Authoring HTML module 6.x-1.x before 6.x-1.1 for Drupal does not properly validate sources with the host white list, which allows remote authentica… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2725 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm
292537 - blaine_lang maestro Cross-site scripting (XSS) vulnerability in the Maestro module 7.x-1.x before 7.x-1.2 for Drupal allows remote authenticated users with maestro admin permissions to inject arbitrary web script or HTM… CWE-79
Cross-site Scripting
CVE-2012-2723 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm
292538 - scott_reynen node_embed The node selection interface in the WYSIWYG editor (CKEditor) in the Node Embed module 6.x-1.x before 6.x-1.5 and 7.x-1.x before 7.x-1.0 for Drupal does not properly check permissions, which allows r… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2722 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm
292539 - moshe_weitzman organic_groups The default views in the Organic Groups (OG) module 6.x-2.x before 6.x-2.4 for Drupal do not properly check permissions when all users have the "access content" permission removed, which allows remot… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2721 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm
292540 - adam_ross tokenauth The Token Authentication (tokenauth) module 6.x-1.x before 6.x-1.7 for Drupal does not properly revert user sessions, which might allow remote attackers to perform requests with extra privileges. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2720 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm