Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217281 10 危険 アップル
日立
サン・マイクロシステムズ
オラクル
- Oracle Java SE の Java Runtime Environment における 2D に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-2473 2015-03-18 15:08 2013-06-18 Show GitHub Exploit DB Packet Storm
217282 9.3 危険 アップル
日立
サン・マイクロシステムズ
オラクル
- Oracle Java SE の Java Runtime Environment における AWT に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-3743 2015-03-18 15:05 2013-06-18 Show GitHub Exploit DB Packet Storm
217283 6.4 警告 アップル
日立
サン・マイクロシステムズ
- Oracle Java SE の Java Runtime Environment における Hotspot の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-4416 2015-03-18 14:44 2012-10-16 Show GitHub Exploit DB Packet Storm
217284 2.6 注意 アップル
日立
サン・マイクロシステムズ
- Oracle Java SE の Java Runtime Environment における Security の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-5077 2015-03-18 14:39 2012-10-16 Show GitHub Exploit DB Packet Storm
217285 0 注意 サン・マイクロシステムズ
日立
- Oracle Java SE の Java Runtime Environment における Networking の処理に関する脆弱性 CWE-Other
その他
CVE-2012-5085 2015-03-18 14:32 2012-10-16 Show GitHub Exploit DB Packet Storm
217286 10 危険 アップル
日立
サン・マイクロシステムズ
- Oracle Java SE の Java Runtime Environment における Beans の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-5086 2015-03-18 14:31 2012-10-16 Show GitHub Exploit DB Packet Storm
217287 10 危険 D-Link Systems, Inc. - D-Link DAP-1320 のファームウェアにおける任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2015-2050 2015-03-18 12:24 2015-02-12 Show GitHub Exploit DB Packet Storm
217288 9 危険 D-Link Systems, Inc. - D-Link DCS-931L のファームウェアにおける任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2015-2049 2015-03-18 12:23 2015-02-12 Show GitHub Exploit DB Packet Storm
217289 5 警告 Linux - 64-bit プラットフォーム上で稼働する Linux Kernel のスタックランダム化機能における ASLR 保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2015-1593 2015-03-18 12:20 2015-03-6 Show GitHub Exploit DB Packet Storm
217290 4.9 警告 Linux - Linux Kernel のファイルシステムの実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2014-8172 2015-03-18 12:20 2014-10-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
297341 - graphite_project graphite Multiple cross-site scripting (XSS) vulnerabilities in Graphite before 0.9.11 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2013-5943 2024-11-21 10:58 2013-09-27 Show GitHub Exploit DB Packet Storm
297342 - graphite_project graphite Graphite 0.9.5 through 0.9.10 uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary code via a crafted serialized object, related to (1) remote_storage.py, (2) st… CWE-94
Code Injection
CVE-2013-5942 2024-11-21 10:58 2013-09-27 Show GitHub Exploit DB Packet Storm
297343 - click2sell click2sell_suite_module Cross-site scripting (XSS) vulnerability in the Click2Sell Suite module 6.x-1.x for Drupal allows remote attackers to inject arbitrary web script or HTML via a confirmation form. CWE-79
Cross-site Scripting
CVE-2013-5938 2024-11-21 10:58 2013-09-25 Show GitHub Exploit DB Packet Storm
297344 - click2sell click2sell_suite_module Cross-site request forgery (CSRF) vulnerability in the Click2Sell Suite module 6.x-1.x for Drupal allows remote attackers to hijack the authentication of administrators for requests that delete datab… CWE-352
 Origin Validation Error
CVE-2013-5937 2024-11-21 10:58 2013-09-25 Show GitHub Exploit DB Packet Storm
297345 - open-xchange open-xchange_appsuite The Hazelcast cluster API in Open-Xchange AppSuite 7.0.x before 7.0.2-rev15 and 7.2.x before 7.2.2-rev16 allows remote attackers to obtain sensitive information about (1) runtime activity, (2) networ… CWE-200
Information Exposure
CVE-2013-5936 2024-11-21 10:58 2013-09-25 Show GitHub Exploit DB Packet Storm
297346 - open-xchange open-xchange_appsuite The Hazelcast cluster API in Open-Xchange AppSuite 7.0.x before 7.0.2-rev15 and 7.2.x before 7.2.2-rev16 does not properly restrict the set of network interfaces that can receive API calls, which mak… CWE-200
Information Exposure
CVE-2013-5935 2024-11-21 10:58 2013-09-25 Show GitHub Exploit DB Packet Storm
297347 - open-xchange open-xchange_appsuite Open-Xchange AppSuite 7.0.x before 7.0.2-rev15 and 7.2.x before 7.2.2-rev16 has a hardcoded password for node join operations, which allows remote attackers to expand a cluster by finding this passwo… CWE-255
Credentials Management
CVE-2013-5934 2024-11-21 10:58 2013-09-25 Show GitHub Exploit DB Packet Storm
297348 - google
motorola
android
defy_xt
Stack-based buffer overflow in the sub_E110 function in init in a certain configuration of Android 2.3.7 on the Motorola Defy XT phone for Republic Wireless allows local users to gain privileges or c… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-5933 2024-11-21 10:58 2013-09-25 Show GitHub Exploit DB Packet Storm
297349 - friends_of_symfony_project fosuserbundle The login form in the FriendsOfSymfony FOSUserBundle bundle before 1.3.3 for Symfony allows remote attackers to cause a denial of service (CPU consumption) via a long password that triggers an expens… CWE-399
 Resource Management Errors
CVE-2013-5750 2024-11-21 10:58 2013-09-25 Show GitHub Exploit DB Packet Storm
297350 - tenable securitycenter Cross-site scripting (XSS) vulnerability in devform.php in Tenable SecurityCenter 4.6 through 4.7 allows remote attackers to inject arbitrary web script or HTML via the message parameter. CWE-79
Cross-site Scripting
CVE-2013-5911 2024-11-21 10:58 2013-09-24 Show GitHub Exploit DB Packet Storm