Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218641 2.6 注意 httplib2 Project
Canonical
- httplib2 における SSL サーバになりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2013-2037 2014-01-23 16:11 2013-04-23 Show GitHub Exploit DB Packet Storm
218642 7.5 危険 UAEPD - UAEPD Shopping Cart Script における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-1618 2014-01-23 15:57 2014-01-8 Show GitHub Exploit DB Packet Storm
218643 5.8 警告 FreeBSD - FreeBSD で使用される bsnmpd の lib/snmpagent.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-1452 2014-01-23 15:49 2014-01-14 Show GitHub Exploit DB Packet Storm
218644 6.5 警告 Open Dynamics - Collabtive の managetimetracker.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-6872 2014-01-23 15:44 2013-11-26 Show GitHub Exploit DB Packet Storm
218645 4.3 警告 IBM - 複数の IBM 製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6746 2014-01-23 15:36 2013-12-23 Show GitHub Exploit DB Packet Storm
218646 10 危険 IBM - IBM Java SDK における脆弱性 CWE-noinfo
情報不足
CVE-2013-0485 2014-01-23 15:36 2013-04-9 Show GitHub Exploit DB Packet Storm
218647 4.3 警告 IBM - IBM Platform Symphony における重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2013-6305 2014-01-23 15:33 2013-10-31 Show GitHub Exploit DB Packet Storm
218648 2.1 注意 IBM - IBM Tivoli Federated Identity Manager および Tivoli Federated Identity Manager Business Gateway におけるトランザクションを完了される脆弱性 CWE-287
不適切な認証
CVE-2013-5429 2014-01-23 15:33 2013-12-31 Show GitHub Exploit DB Packet Storm
218649 4 警告 The Tor Project - Tor における暗号保護メカニズムを回避される脆弱性 CWE-310
暗号の問題
CVE-2013-7295 2014-01-23 12:13 2013-12-22 Show GitHub Exploit DB Packet Storm
218650 7.8 危険 デル - Dell PowerConnect スイッチ上で稼働する GoAhead Web Server のログインページにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-3606 2014-01-22 19:13 2014-01-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295201 - rack_project rack Rack before 1.1.3, 1.2.x before 1.2.5, and 1.3.x before 1.3.6 computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote atta… CWE-310
Cryptographic Issues
CVE-2011-5036 2024-11-21 10:33 2011-12-30 Show GitHub Exploit DB Packet Storm
295202 - oracle glassfish_server Oracle Glassfish 2.1.1, 3.0.1, and 3.1.1, as used in Communications Server 2.0, Sun Java System Application Server 8.1 and 8.2, and possibly other products, computes hash values for form parameters w… CWE-20
 Improper Input Validation 
CVE-2011-5035 2024-11-21 10:33 2011-12-30 Show GitHub Exploit DB Packet Storm
295203 - apache geronimo Apache Geronimo 2.2.1 and earlier computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of s… CWE-20
 Improper Input Validation 
CVE-2011-5034 2024-11-21 10:33 2011-12-30 Show GitHub Exploit DB Packet Storm
295204 - php php PHP before 5.3.9 computes hash values for form parameters without restricting the ability to trigger hash collisions predictably, which allows remote attackers to cause a denial of service (CPU consu… CWE-20
 Improper Input Validation 
CVE-2011-4885 2024-11-21 10:33 2011-12-30 Show GitHub Exploit DB Packet Storm
295205 - jruby jruby JRuby before 1.6.5.1 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consumptio… CWE-400
 Uncontrolled Resource Consumption
CVE-2011-4838 2024-11-21 10:33 2011-12-30 Show GitHub Exploit DB Packet Storm
295206 - ruby-lang ruby Ruby (aka CRuby) before 1.8.7-p357 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (… CWE-20
 Improper Input Validation 
CVE-2011-4815 2024-11-21 10:33 2011-12-30 Show GitHub Exploit DB Packet Storm
295207 - configserver configserver_security_firewall Stack-based buffer overflow in CFS.c in ConfigServer Security & Firewall (CSF) before 5.43, when running on a DirectAdmin server, allows local users to cause a denial of service (crash) via a long st… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-5033 2024-11-21 10:33 2011-12-30 Show GitHub Exploit DB Packet Storm
295208 - winmount winmount WMDrive.sys 3.4.181.224 in WinMount 3.5.1018 allows local users to cause a denial of service (NULL pointer dereference and system crash) via a crafted 0x87342000 IOCTL request to the WMDriver device. NVD-CWE-Other
CVE-2011-5032 2024-11-21 10:33 2011-12-30 Show GitHub Exploit DB Packet Storm
295209 - shilpisoft capexweb Multiple SQL injection vulnerabilities in servlet/capexweb.parentvalidatepassword in cApexWEB 1.1 allow remote attackers to execute arbitrary SQL commands via the (1) dfuserid and (2) dfpassword para… CWE-89
SQL Injection
CVE-2011-5031 2024-11-21 10:33 2011-12-30 Show GitHub Exploit DB Packet Storm
295210 - valthbald meta_tags_quick Cross-site scripting (XSS) vulnerability in the Meta tags quick module 7.x-2.x before 7.x-2.3 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script or H… CWE-79
Cross-site Scripting
CVE-2011-5030 2024-11-21 10:33 2011-12-30 Show GitHub Exploit DB Packet Storm