Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 4, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218541 4.3 警告 Open-Xchange - Open-Xchange AppSuite におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7142 2014-01-28 18:22 2013-12-18 Show GitHub Exploit DB Packet Storm
218542 3.3 注意 CMU Speech Software - Flite の audio/auserver.c 内の play_wave_from_socket 関数における任意のファイルを変更される脆弱性 CWE-59
リンク解釈の問題
CVE-2014-0027 2014-01-28 18:21 2014-01-6 Show GitHub Exploit DB Packet Storm
218543 4.3 警告 Open-Xchange - Open-Xchange AppSuite におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7141 2014-01-28 18:21 2013-12-18 Show GitHub Exploit DB Packet Storm
218544 4 警告 Open-Xchange - Open-Xchange AppSuite の CalDAV インターフェースにおける XML 外部エンティティの脆弱性 CWE-Other
その他
CVE-2013-7140 2014-01-28 18:19 2013-12-18 Show GitHub Exploit DB Packet Storm
218545 5 警告 Libreswan Project - Libreswan におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2013-6467 2014-01-28 18:18 2013-11-4 Show GitHub Exploit DB Packet Storm
218546 7.5 危険 Brion Vibber (MediaWiki)
MediaWiki
- MediaWiki 用 CentralAuth 拡張機能におけるパスワードなしで認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2013-4304 2014-01-28 18:16 2013-09-3 Show GitHub Exploit DB Packet Storm
218547 5 警告 freedesktop.org - Poppler の JBIG2Stream.cc 内の JBIG2Stream::readSegments メソッドにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-7296 2014-01-28 18:05 2013-12-7 Show GitHub Exploit DB Packet Storm
218548 4.3 警告 Gapless Player - SimZip (Simple Zip Viewer) におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-0809 2014-01-28 18:04 2014-01-24 Show GitHub Exploit DB Packet Storm
218549 8.3 危険 Xen プロジェクト - Xen の do_physdev_op 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1666 2014-01-28 18:02 2014-01-23 Show GitHub Exploit DB Packet Storm
218550 5 警告 チェック・ポイント・ソフトウェア・テクノロジーズ - Check Point Session Authentication Agent における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2014-1673 2014-01-28 18:01 2014-01-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295191 - moodle moodle comment/lib.php in Moodle 2.0.x before 2.0.4 and 2.1.x before 2.1.1 does not properly restrict comment capabilities, which allows remote attackers to post a comment by leveraging the guest role and o… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-4297 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm
295192 - moodle moodle lib/db/access.php in Moodle 2.0.x before 2.0.4 and 2.1.x before 2.1.1 assigns incorrect capabilities to the course-creator role, which allows remote authenticated users to modify course filters by le… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-4296 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm
295193 - moodle moodle The moodle_enrol_external:role_assign function in enrol/externallib.php in Moodle 2.0.x before 2.0.4 and 2.1.x before 2.1.1 does not have an authorization check, which allows remote authenticated use… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-4295 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm
295194 - moodle moodle The error-message functionality in Moodle 1.9.x before 1.9.13, 2.0.x before 2.0.4, and 2.1.x before 2.1.1 does not ensure that a continuation link refers to an http or https URL for the local Moodle … CWE-20
 Improper Input Validation 
CVE-2011-4294 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm
295195 - moodle moodle The theme implementation in Moodle 2.0.x before 2.0.4 and 2.1.x before 2.1.1 triggers duplicate caching of Cascading Style Sheets (CSS) and JavaScript content, which allows remote attackers to bypass… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-4293 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm
295196 - moodle moodle Moodle 2.0.x before 2.0.3 allows remote authenticated users to cause a denial of service (invalid database records) via a series of crafted comments operations. CWE-89
SQL Injection
CVE-2011-4292 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm
295197 - moodle moodle Moodle 2.0.x before 2.0.3 allows remote authenticated users to cause a denial of service (invalid database records) via a series of crafted ratings operations. NVD-CWE-noinfo
CVE-2011-4291 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm
295198 - moodle moodle Multiple cross-site scripting (XSS) vulnerabilities in lib/weblib.php in Moodle 1.9.x before 1.9.12 allow remote attackers to inject arbitrary web script or HTML via vectors related to URL encoding. CWE-79
Cross-site Scripting
CVE-2011-4290 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm
295199 - moodle moodle Moodle 2.0.x before 2.0.3 does not recognize the configuration setting that makes e-mail addresses visible only to course members, which allows remote authenticated users to obtain sensitive address … CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-4289 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm
295200 - moodle moodle Moodle 1.9.x before 1.9.12 and 2.0.x before 2.0.3 does not properly implement associations between teachers and groups, which allows remote authenticated users to read quiz reports of arbitrary stude… CWE-264
Permissions, Privileges, and Access Controls
CVE-2011-4288 2024-11-21 10:32 2012-07-16 Show GitHub Exploit DB Packet Storm