Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218421 3.5 注意 Jayj.dk - WordPress 用テーマ Cakifo におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3903 2014-08-20 16:29 2014-08-18 Show GitHub Exploit DB Packet Storm
218422 7.5 危険 株式会社OSK - Advance-Flow における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-3906 2014-08-20 16:22 2014-08-19 Show GitHub Exploit DB Packet Storm
218423 5 警告 シスコシステムズ - Cisco Nexus 5000 および 6000 デバイス上で稼動する Cisco NX-OS の SNMP モジュールにおける VLAN を列挙される脆弱性 CWE-200
情報漏えい
CVE-2014-3341 2014-08-20 14:37 2014-08-18 Show GitHub Exploit DB Packet Storm
218424 6.8 警告 シマンテック - Symantec Endpoint Protection にバッファオーバーフローの脆弱性 CWE-119
CWE-Other
CVE-2014-3434 2014-08-19 18:04 2014-08-4 Show GitHub Exploit DB Packet Storm
218425 2.6 注意 tenfourzero - Shutter におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3905 2014-08-19 16:58 2014-08-15 Show GitHub Exploit DB Packet Storm
218426 2.6 注意 Piwigo - Piwigo におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3900 2014-08-19 16:46 2014-08-8 Show GitHub Exploit DB Packet Storm
218427 5 警告 Drupal
WordPress.org
- WordPress および Drupal で使用される Incutio XML-RPC ライブラリにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-5266 2014-08-19 16:42 2014-08-6 Show GitHub Exploit DB Packet Storm
218428 5 警告 Drupal
WordPress.org
- WordPress および Drupal で使用される Incutio XML-RPC ライブラリにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-5265 2014-08-19 16:40 2014-08-6 Show GitHub Exploit DB Packet Storm
218429 2.1 注意 WordPress.org - WordPress の wp-includes/pluggable.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5240 2014-08-19 16:40 2014-08-6 Show GitHub Exploit DB Packet Storm
218430 6.8 警告 WordPress.org - WordPress の wp-includes/pluggable.php における CSRF 保護メカニズムを回避される脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-5205 2014-08-19 16:39 2014-08-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290641 - cisco webex_meeting_center Cross-site scripting (XSS) vulnerability in the Collaboration Partner Access Console (CPAC) in Cisco WebEx Meeting Center allows remote attackers to inject arbitrary web script or HTML via a crafted … CWE-79
Cross-site Scripting
CVE-2013-6961 2024-11-21 11:00 2013-12-15 Show GitHub Exploit DB Packet Storm
290642 - cisco webex_meeting_center Multiple cross-site scripting (XSS) vulnerabilities in Cisco WebEx Meeting Center allow remote attackers to inject arbitrary web script or HTML via a crafted URL, aka Bug ID CSCul36248. CWE-79
Cross-site Scripting
CVE-2013-6960 2024-11-21 11:00 2013-12-15 Show GitHub Exploit DB Packet Storm
290643 - cisco webex_sales_center Open redirect vulnerability in Cisco WebEx Sales Center allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via unspecified vectors, aka Bug ID CSCul25557. CWE-20
 Improper Input Validation 
CVE-2013-6959 2024-11-21 11:00 2013-12-15 Show GitHub Exploit DB Packet Storm
290644 - fujitsu interstage_studio
interstage_application_server
Buffer overflow in the Interstage HTTP Server log functionality, as used in Fujitsu Interstage Application Server 9.0.0, 9.1.0, 9.2.0, 9.3.1, and 10.0.0; and Interstage Studio 9.0.0, 9.1.0, 9.2.0, an… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-7105 2024-11-21 11:00 2013-12-15 Show GitHub Exploit DB Packet Storm
290645 - mcafee email_gateway McAfee Email Gateway 7.6 allows remote authenticated administrators to execute arbitrary commands by specifying them in the value attribute in a (1) Command or (2) Script XML element. NOTE: this iss… CWE-78
OS Command 
CVE-2013-7104 2024-11-21 11:00 2013-12-15 Show GitHub Exploit DB Packet Storm
290646 - mcafee email_gateway McAfee Email Gateway 7.6 allows remote authenticated administrators to execute arbitrary commands via shell metacharacters in the value attribute in a (1) TestFile XML element or the (2) hostname. N… CWE-78
OS Command 
CVE-2013-7103 2024-11-21 11:00 2013-12-15 Show GitHub Exploit DB Packet Storm
290647 - devscripts_devel_team devscripts Uscan in devscripts 2.13.5, when USCAN_EXCLUSION is enabled, allows remote attackers to delete arbitrary files via a whitespace character in a filename. CWE-20
 Improper Input Validation 
CVE-2013-7085 2024-11-21 11:00 2013-12-15 Show GitHub Exploit DB Packet Storm
290648 - beyondgrep ack ack 2.00 through 2.11_02 allows remote attackers to execute arbitrary code via a (1) --pager, (2) --regex, or (3) --output option in a .ackrc file in a directory to be searched. CWE-94
Code Injection
CVE-2013-7069 2024-11-21 11:00 2013-12-15 Show GitHub Exploit DB Packet Storm
290649 - sap emr_unwired Multiple SQL injection vulnerabilities in SAP EMR Unwired allow remote attackers to execute arbitrary SQL commands via unspecified vectors. CWE-89
SQL Injection
CVE-2013-7096 2024-11-21 11:00 2013-12-14 Show GitHub Exploit DB Packet Storm
290650 - sap customer_relationship_management The XML parser (crm_flex_data) in SAP Customer Relationship Management (CRM) 7.02 EHP 2 has unknown impact and attack vectors related to an XML External Entity (XXE) issue. NVD-CWE-noinfo
CVE-2013-7095 2024-11-21 11:00 2013-12-14 Show GitHub Exploit DB Packet Storm