Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217971 5.8 警告 Mozilla Foundation - Mozilla Firefox および Thunderbird における同一生成元のコンテンツの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1552 2014-07-24 14:50 2014-07-22 Show GitHub Exploit DB Packet Storm
217972 10 危険 Mozilla Foundation - Windows 上で稼動する Mozilla Firefox および Thunderbird の FontTableRec デストラクタにおける任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2014-1551 2014-07-24 14:48 2014-07-22 Show GitHub Exploit DB Packet Storm
217973 10 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird の MediaInputPort クラスにおける任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2014-1550 2014-07-24 14:47 2014-07-22 Show GitHub Exploit DB Packet Storm
217974 9.3 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird の mozilla::dom::AudioBufferSourceNodeEngine::CopyFromInputBuffer 関数における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2014-1549 2014-07-24 14:46 2014-07-22 Show GitHub Exploit DB Packet Storm
217975 10 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2014-1548 2014-07-24 14:44 2014-07-22 Show GitHub Exploit DB Packet Storm
217976 10 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2014-1547 2014-07-24 14:40 2014-07-22 Show GitHub Exploit DB Packet Storm
217977 10 危険 Mozilla Foundation - Firefox および Thunderbird で使用される Mozilla Network Security Services の libnss3.so における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2014-1544 2014-07-24 14:38 2014-07-22 Show GitHub Exploit DB Packet Storm
217978 4.3 警告 Drupal - Drupal の Ajax システムにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5022 2014-07-23 16:52 2014-07-16 Show GitHub Exploit DB Packet Storm
217979 2.1 注意 Drupal - Drupal の Form API におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5021 2014-07-23 16:51 2014-07-16 Show GitHub Exploit DB Packet Storm
217980 4.9 警告 Drupal - Drupal の File モジュールにおける制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-5020 2014-07-23 16:50 2014-07-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 25, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291021 - citrix netscaler_access_gateway_firmware
netscaler_access_gateway
Unspecified vulnerability in Citrix NetScaler Access Gateway Enterprise Edition (AGEE) before 9.3.62.4 and 10.x through 10.0.74.4, and NetScaler AGEE Common Criteria build before 9.3.53.6, allows rem… NVD-CWE-noinfo
CVE-2013-2767 2024-11-21 10:52 2013-04-26 Show GitHub Exploit DB Packet Storm
291022 - crunchify all-in-on-webmaster Cross-site request forgery (CSRF) vulnerability in the All in One Webmaster plugin before 8.2.4 for WordPress allows remote attackers to hijack the authentication of arbitrary users for requests that… CWE-352
 Origin Validation Error
CVE-2013-2696 2024-11-21 10:52 2013-04-26 Show GitHub Exploit DB Packet Storm
291023 - lexmark markvision Lexmark Markvision Enterprise before 1.8 provides a diagnostic interface on TCP port 9789, which allows remote attackers to execute arbitrary code, change the configuration, or obtain sensitive fleet… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-3055 2024-11-21 10:52 2013-04-25 Show GitHub Exploit DB Packet Storm
291024 - linux linux_kernel The crypto API in the Linux kernel through 3.9-rc8 does not initialize certain length variables, which allows local users to obtain sensitive information from kernel stack memory via a crafted recvms… CWE-200
Information Exposure
CVE-2013-3076 2024-11-21 10:52 2013-04-22 Show GitHub Exploit DB Packet Storm
291025 - siemens simatic_s7-1200_firmware
simatic_s7-1200_cpu_1211c_firmware
simatic_s7-1200_cpu_1212c_firmware
simatic_s7-1200_cpu_1212fc_firmware
simatic_s7-1200_cpu_1214_fc_firmware
simatic_s7-1200_…
Siemens SIMATIC S7-1200 PLCs 2.x and 3.x allow remote attackers to cause a denial of service (defect-mode transition and control outage) via crafted packets to UDP port 161 (aka the SNMP port). NVD-CWE-noinfo
CVE-2013-2780 2024-11-21 10:52 2013-04-22 Show GitHub Exploit DB Packet Storm
291026 - apache activemq The web console in Apache ActiveMQ before 5.8.0 does not require authentication, which allows remote attackers to obtain sensitive information or cause a denial of service via HTTP requests. CWE-287
Improper Authentication
CVE-2013-3060 2024-11-21 10:52 2013-04-22 Show GitHub Exploit DB Packet Storm
291027 - mitsubishi-automation
schneider-electric
mitsubishi_mx_component
citectfacilities
citectscada
Multiple buffer overflows in ActUWzd.dll 1.0.0.1 in Mitsubishi MX Component 3, as distributed in Citect CitectFacilities 7.10 and CitectScada 7.10r1, allow remote attackers to execute arbitrary code … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-3075 2024-11-21 10:52 2013-04-19 Show GitHub Exploit DB Packet Storm
291028 - lester_chan wp-downloadmanager Cross-site request forgery (CSRF) vulnerability in the WP-DownloadManager plugin before 1.61 for WordPress allows remote attackers to hijack the authentication of arbitrary users for requests that in… CWE-352
 Origin Validation Error
CVE-2013-2697 2024-11-21 10:52 2013-04-19 Show GitHub Exploit DB Packet Storm
291029 - google chrome_os Google Chrome OS before 26.0.1410.57 does not properly enforce origin restrictions for the O3D and Google Talk plug-ins, which allows remote attackers to bypass the domain-whitelist protection mechan… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-2835 2024-11-21 10:52 2013-04-17 Show GitHub Exploit DB Packet Storm
291030 - google chrome_os Google Chrome OS before 26.0.1410.57 does not properly enforce origin restrictions for the O3D and Google Talk plug-ins, which allows remote attackers to bypass the domain-whitelist protection mechan… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-2834 2024-11-21 10:52 2013-04-17 Show GitHub Exploit DB Packet Storm