Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218411 4.9 警告 Moodle - Moodle の mod/chat/chat_ajax.php におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0122 2014-03-26 12:29 2014-03-17 Show GitHub Exploit DB Packet Storm
218412 6.5 警告 MailPoet - WordPress 用 MailPoet Newsletters プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-1408 2014-03-26 12:02 2013-01-18 Show GitHub Exploit DB Packet Storm
218413 10 危険 キングソフト株式会社 - Kingsoft WPS Office 2012 の wpsio.dll におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4886 2014-03-26 10:53 2012-09-10 Show GitHub Exploit DB Packet Storm
218414 4.3 警告 stunnel - stunnel における EC または DSA 証明書の秘密鍵を取得される脆弱性 CWE-310
暗号の問題
CVE-2014-0016 2014-03-26 10:36 2014-03-6 Show GitHub Exploit DB Packet Storm
218415 6.8 警告 株式会社NTTドコモ - spモードメールにおいて Java メソッドが実行される脆弱性 CWE-DesignError
CVE-2014-1979 2014-03-25 19:25 2014-03-18 Show GitHub Exploit DB Packet Storm
218416 2.6 注意 株式会社NTTドコモ - spモードメールで作成中のメールへのアクセスに関する問題 CWE-264
認可・権限・アクセス制御
CVE-2014-1978 2014-03-25 19:23 2014-03-18 Show GitHub Exploit DB Packet Storm
218417 2.9 注意 Linux - Linux Kernel の net/netfilter/nfnetlink_queue_core.c 内の nfqnl_zcopy 関数における重要な情報を取得される脆弱性 CWE-399
リソース管理の問題
CVE-2014-2568 2014-03-25 18:09 2014-03-20 Show GitHub Exploit DB Packet Storm
218418 2.9 注意 Linux - Linux Kernel の net/core/skbuff.c 内の skb_segment 関数における重要な情報を取得される脆弱性 CWE-399
リソース管理の問題
CVE-2014-0131 2014-03-25 18:08 2014-03-11 Show GitHub Exploit DB Packet Storm
218419 4.7 警告 Linux - Linux Kernel の net/rds/ib.c 内の rds_ib_laddr_check 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-7339 2014-03-25 18:08 2013-12-27 Show GitHub Exploit DB Packet Storm
218420 4.3 警告 デル - SonicWall Network Security Appliance 2400 の Dashboard Backend サービスにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2589 2014-03-25 18:07 2014-03-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296241 - freeradius freeradius modules/rlm_unix/rlm_unix.c in FreeRADIUS before 2.2.0, when unix mode is enabled for user authentication, does not properly check the password expiration in /etc/shadow, which allows remote authenti… CWE-255
Credentials Management
CVE-2011-4966 2024-11-21 10:33 2013-03-13 Show GitHub Exploit DB Packet Storm
296242 - jquery jquery Cross-site scripting (XSS) vulnerability in jQuery before 1.6.3, when using location.hash to select elements, allows remote attackers to inject arbitrary web script or HTML via a crafted tag. CWE-79
Cross-site Scripting
CVE-2011-4969 2024-11-21 10:33 2013-03-9 Show GitHub Exploit DB Packet Storm
296243 - appthemes classipress Multiple cross-site scripting (XSS) vulnerabilities in the Classipress theme before 3.1.5 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) twitter_id parameter … CWE-79
Cross-site Scripting
CVE-2011-5257 2024-11-21 10:33 2013-02-13 Show GitHub Exploit DB Packet Storm
296244 - limesurvey limesurvey Cross-site scripting (XSS) vulnerability in the tooltips in LimeSurvey before 1.91+ Build 11379-20111116, when viewing survey results, allows remote attackers to inject arbitrary web script or HTML v… CWE-79
Cross-site Scripting
CVE-2011-5256 2024-11-21 10:33 2013-02-13 Show GitHub Exploit DB Packet Storm
296245 - x3cms x3_cms Multiple cross-site scripting (XSS) vulnerabilities in admin/login in X3 CMS 0.4.3.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) PATH_INFO, (2) username, or … CWE-79
Cross-site Scripting
CVE-2011-5255 2024-11-21 10:33 2013-01-31 Show GitHub Exploit DB Packet Storm
296246 - connections_project connections Unspecified vulnerability in the Connections plugin before 0.7.1.6 for WordPress has unknown impact and attack vectors. NVD-CWE-noinfo
CVE-2011-5254 2024-11-21 10:33 2013-01-12 Show GitHub Exploit DB Packet Storm
296247 - thegr dl Dl Download Ticket Service 0.3 through 0.9 allows remote attackers to login as an arbitrary user by supplying an authorization header. CWE-287
Improper Authentication
CVE-2011-5253 2024-11-21 10:33 2013-01-12 Show GitHub Exploit DB Packet Storm
296248 - orchardproject orchard Open redirect vulnerability in Users/Account/LogOff in Orchard 1.0.x before 1.0.21, 1.1.x before 1.1.31, 1.2.x before 1.2.42, and 1.3.x before 1.3.10 allows remote attackers to redirect users to arbi… CWE-20
 Improper Input Validation 
CVE-2011-5252 2024-11-21 10:33 2013-01-12 Show GitHub Exploit DB Packet Storm
296249 - vbulletin vbulletin Open redirect vulnerability in forum/login.php in vBulletin 4.1.3 and earlier allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via the url parameter in a … CWE-20
 Improper Input Validation 
CVE-2011-5251 2024-11-21 10:33 2013-01-1 Show GitHub Exploit DB Packet Storm
296250 - redhat resteasy The readFrom function in providers.jaxb.JAXBXmlTypeProvider in RESTEasy before 2.3.2 allows remote attackers to read arbitrary files via an external entity reference in a Java Architecture for XML Bi… CWE-200
Information Exposure
CVE-2011-5245 2024-11-21 10:33 2012-11-24 Show GitHub Exploit DB Packet Storm