Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217951 4.3 警告 Openfiler - Openfiler におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4309 2014-06-20 16:52 2014-06-11 Show GitHub Exploit DB Packet Storm
217952 4.3 警告 NICE Systems - NICE Recording eXpress におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4308 2014-06-20 16:38 2014-05-28 Show GitHub Exploit DB Packet Storm
217953 7.5 危険 NICE Systems - NICE Recording eXpress における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-4305 2014-06-20 16:38 2014-05-28 Show GitHub Exploit DB Packet Storm
217954 9 危険 ヒューレット・パッカード - HP Executive Scorecard の fndwar Web アプリケーションにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-2611 2014-06-20 15:58 2014-06-17 Show GitHub Exploit DB Packet Storm
217955 7.1 危険 ヒューレット・パッカード - HP Executive Scorecard の Content Acceleration Pack Web アプリケーションにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-2610 2014-06-20 15:57 2014-06-17 Show GitHub Exploit DB Packet Storm
217956 10 危険 ヒューレット・パッカード - HP Executive Scorecard の Java Glassfish 管理コンソールにおける任意のコードを実行される脆弱性 CWE-287
不適切な認証
CVE-2014-2609 2014-06-20 15:57 2014-06-17 Show GitHub Exploit DB Packet Storm
217957 10 危険 ヒューレット・パッカード - HP Service Virtualization の CommunicationServlet におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-6221 2014-06-20 15:55 2013-12-9 Show GitHub Exploit DB Packet Storm
217958 3.5 注意 IBM - IBM Curam Social Program Management におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3013 2014-06-20 14:05 2014-06-9 Show GitHub Exploit DB Packet Storm
217959 3.5 注意 IBM - IBM Curam Social Program Management における CRLF インジェクションの脆弱性 CWE-Other
その他
CVE-2014-3012 2014-06-20 14:05 2014-06-9 Show GitHub Exploit DB Packet Storm
217960 3.5 注意 IBM - IBM WebSphere Portal におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0910 2014-06-20 14:04 2014-06-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291291 - openstack keystone OpenStack Identity (Keystone) Folsom 2012.2.4 and earlier, Grizzly before 2013.1.1, and Havana does not immediately revoke the authentication token when deleting a user through the Keystone v2 API, w… CWE-287
Improper Authentication
CVE-2013-2059 2024-11-21 10:50 2013-05-22 Show GitHub Exploit DB Packet Storm
291292 - qemu qemu The qemu guest agent in Qemu 1.4.1 and earlier, as used by Xen, when started in daemon mode, uses weak permissions for certain files, which allows local users to read and write to these files. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-2007 2024-11-21 10:50 2013-05-22 Show GitHub Exploit DB Packet Storm
291293 - openstack keystone OpenStack Identity (Keystone) Grizzly 2013.1.1, when DEBUG mode logging is enabled, logs the (1) admin_token and (2) LDAP password in plaintext, which allows local users to obtain sensitive by readin… CWE-200
Information Exposure
CVE-2013-2006 2024-11-21 10:50 2013-05-22 Show GitHub Exploit DB Packet Storm
291294 - openstack devstack OpenStack devstack uses world-readable permissions for keystone.conf, which allows local users to obtain sensitive information such as the LDAP password and admin_token secret by reading the file. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1977 2024-11-21 10:50 2013-05-22 Show GitHub Exploit DB Packet Storm
291295 - xen xen Xen 4.0.x and 4.1.x incorrectly releases a grant reference when releasing a non-v1, non-transitive grant, which allows local guest administrators to cause a denial of service (host crash), obtain sen… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1964 2024-11-21 10:50 2013-05-22 Show GitHub Exploit DB Packet Storm
291296 - mozilla firefox
thunderbird
thunderbird_esr
Use-after-free vulnerability in the nsContentUtils::RemoveScriptBlocker function in Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x be… CWE-399
 Resource Management Errors
CVE-2013-1681 2024-11-21 10:50 2013-05-16 Show GitHub Exploit DB Packet Storm
291297 - mozilla firefox
thunderbird
thunderbird_esr
Use-after-free vulnerability in the nsFrameList::FirstChild function in Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x before 17.0.6 … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-1680 2024-11-21 10:50 2013-05-16 Show GitHub Exploit DB Packet Storm
291298 - mozilla firefox
thunderbird
thunderbird_esr
Use-after-free vulnerability in the mozilla::plugins::child::_geturlnotify function in Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x… CWE-399
 Resource Management Errors
CVE-2013-1679 2024-11-21 10:50 2013-05-16 Show GitHub Exploit DB Packet Storm
291299 - mozilla firefox
thunderbird
thunderbird_esr
The _cairo_xlib_surface_add_glyph function in Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x before 17.0.6 allows remote attackers to… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-1678 2024-11-21 10:50 2013-05-16 Show GitHub Exploit DB Packet Storm
291300 - mozilla firefox
thunderbird
thunderbird_esr
The gfxSkipCharsIterator::SetOffsets function in Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x before 17.0.6 allows remote attackers… CWE-399
 Resource Management Errors
CVE-2013-1677 2024-11-21 10:50 2013-05-16 Show GitHub Exploit DB Packet Storm