Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218241 4.3 警告 Feng Office - Feng Office におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5744 2013-10-30 18:02 2013-10-9 Show GitHub Exploit DB Packet Storm
218242 4.6 警告 Linux - Linux Kernel の fs/xfs/xfs_buf.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-1819 2013-10-30 17:54 2013-02-3 Show GitHub Exploit DB Packet Storm
218243 4.3 警告 CA Technologies - CA SiteMinder および SiteMinder Web エージェントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5968 2013-10-30 17:51 2013-10-24 Show GitHub Exploit DB Packet Storm
218244 4.3 警告 Ingo Renner - TYPO3 用 Apache Solr for TYPO3 エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6289 2013-10-30 17:27 2013-09-25 Show GitHub Exploit DB Packet Storm
218245 10 危険 Ingo Renner - TYPO3 用 Apache Solr for TYPO3 エクステンションにおける脆弱性 CWE-noinfo
情報不足
CVE-2013-6288 2013-10-30 17:24 2013-09-25 Show GitHub Exploit DB Packet Storm
218246 4.3 警告 Novell - Libzypp の RPM GPG 鍵のインポートおよび処理機能におけるリポジトリが署名されたと信じさせる脆弱性 CWE-310
暗号の問題
CVE-2013-3704 2013-10-30 16:55 2013-09-12 Show GitHub Exploit DB Packet Storm
218247 6.8 警告 OpenText - OpenText/IXOS ECM for SAP NetWeaver における任意の ABAP コードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-3243 2013-10-30 16:37 2013-04-24 Show GitHub Exploit DB Packet Storm
218248 6.8 警告 KTH - WaveSurfer で使用される The Snack Sound Toolkit におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-6303 2013-10-30 16:25 2013-09-11 Show GitHub Exploit DB Packet Storm
218249 6.8 警告 Aircrack-ng
Gentoo Linux
- Aircrack-ng におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1159 2013-10-30 16:15 2010-04-24 Show GitHub Exploit DB Packet Storm
218250 3.3 注意 レッドハット - Red Hat JBoss Enterprise Portal Platform のデフォルト設定における重要な情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2013-2102 2013-10-30 15:41 2013-10-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
307951 - mirabilis icq ICQ 2001a Alpha and earlier allows remote attackers to automatically add arbitrary UINs to an ICQ user's contact list via a URL to a web page with a Content-Type of application/x-icq, which is proces… NVD-CWE-Other
CVE-2001-1305 2016-10-18 11:14 2001-08-17 Show GitHub Exploit DB Packet Storm
307952 - phpslash phpslash Block_render_url.class in PHPSlash 0.6.1 allows remote attackers with PHPSlash administrator privileges to read arbitrary files by creating a block and specifying the target file as the source URL. NVD-CWE-Other
CVE-2001-1334 2016-10-18 11:14 2002-05-19 Show GitHub Exploit DB Packet Storm
307953 - namazu namazu Cross-site scripting vulnerability in namazu.cgi for Namazu 2.0.7 and earlier allows remote attackers to execute arbitrary Javascript as other web users via the lang parameter. NVD-CWE-Other
CVE-2001-1350 2016-10-18 11:14 2001-11-25 Show GitHub Exploit DB Packet Storm
307954 - aladdin_enterprises ghostscript ghostscript before 6.51 allows local users to read and write arbitrary files as the 'lp' user via the file operator, even with -dSAFER enabled. NVD-CWE-Other
CVE-2001-1353 2016-10-18 11:14 2001-09-18 Show GitHub Exploit DB Packet Storm
307955 - phplib_team phplib prepend.php3 in PHPLib before 7.2d, when register_globals is enabled for PHP, allows remote attackers to execute arbitrary scripts via an HTTP request that modifies $_PHPLIB[libdir] to point to malic… NVD-CWE-Other
CVE-2001-1370 2016-10-18 11:14 2001-07-21 Show GitHub Exploit DB Packet Storm
307956 - oracle application_server The default configuration of Oracle Application Server 9iAS 1.0.2.2 enables SOAP and allows anonymous users to deploy applications by default via urn:soap-service-manager and urn:soap-provider-manage… NVD-CWE-noinfo
CWE-264
Permissions, Privileges, and Access Controls
CVE-2001-1371 2016-10-18 11:14 2002-02-6 Show GitHub Exploit DB Packet Storm
307957 - linux linux_kernel ptrace in Linux 2.2.x through 2.2.19, and 2.4.x through 2.4.9, allows local users to gain root privileges by running ptrace on a setuid or setgid program that itself calls an unprivileged program, su… NVD-CWE-Other
CVE-2001-1384 2016-10-18 11:14 2001-10-18 Show GitHub Exploit DB Packet Storm
307958 - php
mandrakesoft
php
mandrake_linux
The Apache module for PHP 4.0.0 through PHP 4.0.4, when disabled with the 'engine = off' option for a virtual host, may disable PHP for other virtual hosts, which could cause Apache to serve the sour… NVD-CWE-Other
CVE-2001-1385 2016-10-18 11:14 2001-01-12 Show GitHub Exploit DB Packet Storm
307959 - xinetd xinetd Multiple vulnerabilities in xinetd 2.3.0 and earlier, and additional variants until 2.3.3, may allow remote attackers to cause a denial of service or execute arbitrary code, primarily via buffer over… NVD-CWE-Other
CVE-2001-1389 2016-10-18 11:14 2001-08-29 Show GitHub Exploit DB Packet Storm
307960 - intel high-bandwidth_digital_content_protection Linear key exchange process in High-bandwidth Digital Content Protection (HDCP) System allows remote attackers to access data as plaintext, avoid device blacklists, clone devices, and create new devi… NVD-CWE-Other
CVE-2001-0903 2016-10-18 11:13 2001-11-20 Show GitHub Exploit DB Packet Storm