Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218101 5.4 警告 oi - Android 用 Minha Oi アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5916 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
218102 5.4 警告 tigo - Android 用 Tigo Copa Mundial FIFA 2014 アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5915 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
218103 5.4 警告 finansbank - Android 用 Finansbank Cep Subesi アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5914 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
218104 5.4 警告 game-lion - Android 用 Allies in War アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5913 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
218105 5.4 警告 IntSig Information - Android 用 InNote アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5912 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
218106 5.4 警告 jellytap - Android 用 Free App Icons & Icon Packs アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5911 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
218107 5.4 警告 dog whistle project - Android 用 Dog Whistle アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5910 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
218108 5.4 警告 watcha - Android 用 watcha アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5909 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
218109 5.4 警告 kmart - Android 用 Kmart アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5908 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
218110 5.4 警告 libiitech - Android 用 Pet Salon アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5907 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 20, 2026, 4:01 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
297781 - php-fusion php-fusion Multiple SQL injection vulnerabilities in PHP-Fusion before 7.02.06 allow remote attackers to execute arbitrary SQL commands via the (1) orderby parameter to downloads.php; or remote authenticated us… CWE-89
SQL Injection
CVE-2013-1803 2024-11-21 10:50 2014-05-6 Show GitHub Exploit DB Packet Storm
297782 - transifex transifex Transifex command-line client before 0.9 does not validate X.509 certificates, which allows man-in-the-middle attackers to spoof a Transifex server via an arbitrary certificate. CWE-20
 Improper Input Validation 
CVE-2013-2073 2024-11-21 10:50 2014-05-2 Show GitHub Exploit DB Packet Storm
297783 - php-fusion php-fusion PHP-Fusion before 7.02.06 stores backup files with predictable filenames in an unrestricted directory under the web document root, which might allow remote attackers to obtain sensitive information v… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1807 2024-11-21 10:50 2014-05-1 Show GitHub Exploit DB Packet Storm
297784 - php-fusion php-fusion Multiple directory traversal vulnerabilities in PHP-Fusion before 7.02.06 allow remote authenticated users to include and execute arbitrary files via a .. (dot dot) in the (1) user_theme parameter to… CWE-22
Path Traversal
CVE-2013-1806 2024-11-21 10:50 2014-05-1 Show GitHub Exploit DB Packet Storm
297785 - php-fusion php-fusion Multiple cross-site scripting (XSS) vulnerabilities in PHP-Fusion before 7.02.06 allow remote attackers to inject arbitrary web script or HTML via the (1) highlight parameter to forum/viewthread.php;… CWE-79
Cross-site Scripting
CVE-2013-1804 2024-11-21 10:50 2014-04-30 Show GitHub Exploit DB Packet Storm
297786 - ushahidi ushahidi_platform Cross-site scripting (XSS) vulnerability in Ushahidi Platform 2.5.x through 2.6.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2013-2025 2024-11-21 10:50 2014-04-26 Show GitHub Exploit DB Packet Storm
297787 - packagekit_project packagekit The Zypper (aka zypp) backend in PackageKit before 0.8.8 allows local users to downgrade packages via the "install updates" method. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1764 2024-11-21 10:50 2014-04-17 Show GitHub Exploit DB Packet Storm
297788 - jenkins
cloudbees
jenkins Cross-site scripting (XSS) vulnerability in Jenkins before 1.514, LTS before 1.509.1, and Enterprise 1.466.x before 1.466.14.1 and 1.480.x before 1.480.4.1 allows remote authenticated users with writ… CWE-79
Cross-site Scripting
CVE-2013-2033 2024-11-21 10:50 2014-04-11 Show GitHub Exploit DB Packet Storm
297789 - restful_web_services_project restful_web_services The RESTful Web Services (RESTWS) module 7.x-1.x before 7.x-1.3 and 7.x-2.x before 7.x-2.0-alpha5 for Drupal, when page caching is enabled and anonymous users are assigned RESTWS permissions, allows … CWE-20
 Improper Input Validation 
CVE-2013-1946 2024-11-21 10:50 2014-04-7 Show GitHub Exploit DB Packet Storm
297790 - ganglia ganglia-web Cross-site scripting (XSS) vulnerability in views_view.php in Ganglia Web 3.5.7 allows remote attackers to inject arbitrary web script or HTML via the view_name parameter. CWE-79
Cross-site Scripting
CVE-2013-1770 2024-11-21 10:50 2014-04-3 Show GitHub Exploit DB Packet Storm