Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218941 3.5 注意 OTRS プロジェクト - Open Ticket Request System におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2553 2014-04-4 12:03 2014-04-1 Show GitHub Exploit DB Packet Storm
218942 6.8 警告 HitMyServer - WordPress 用 HMS Testimonials プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-4240 2014-04-4 11:19 2013-08-8 Show GitHub Exploit DB Packet Storm
218943 3.5 注意 IBM - IBM WebSphere Portal の IBM Connections 統合におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0901 2014-04-3 18:29 2014-03-31 Show GitHub Exploit DB Packet Storm
218944 4.3 警告 IBM - IBM WebSphere Portal の WCM UI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0828 2014-04-3 18:29 2014-03-31 Show GitHub Exploit DB Packet Storm
218945 4.3 警告 シスコシステムズ - Cisco Security Manager の Web フレームワークにおける CRLF インジェクションの脆弱性 CWE-20
不適切な入力確認
CVE-2014-2138 2014-04-3 18:22 2014-04-1 Show GitHub Exploit DB Packet Storm
218946 4.3 警告 シスコシステムズ - Cisco Web セキュリティ アプライアンスの Web フレームワークにおける CRLF インジェクションの脆弱性 CWE-20
不適切な入力確認
CVE-2014-2137 2014-04-3 18:18 2014-04-1 Show GitHub Exploit DB Packet Storm
218947 4.3 警告 シスコシステムズ - Cisco Unity Connection の Web Inbox におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2125 2014-04-3 18:17 2014-04-1 Show GitHub Exploit DB Packet Storm
218948 5 警告 Posh portal project - POSH の portal/scr_authentif.php の Remember Me 機能における重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-2212 2014-04-3 18:14 2014-02-20 Show GitHub Exploit DB Packet Storm
218949 7.5 危険 Horde - Horde Application Framework の Util ライブラリにおけるオブジェクトインジェクション攻撃を実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-1691 2014-04-3 17:00 2014-01-28 Show GitHub Exploit DB Packet Storm
218950 7.5 危険 Vtiger - Vtiger CRM における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-3213 2014-04-3 16:41 2013-03-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291841 - emc smarts_network_configuration_manager EMC Smarts Network Configuration Manager (NCM) before 9.2 does not require authentication for all Java RMI method calls, which allows remote attackers to execute arbitrary code via unspecified vector… CWE-287
Improper Authentication
CVE-2013-0935 2024-11-21 10:48 2013-03-29 Show GitHub Exploit DB Packet Storm
291842 - google chrome Google Chrome before 26.0.1410.43 does not properly handle active content in an EMBED element during a copy-and-paste operation, which allows user-assisted remote attackers to have an unspecified imp… CWE-20
 Improper Input Validation 
CVE-2013-0926 2024-11-21 10:48 2013-03-28 Show GitHub Exploit DB Packet Storm
291843 - google chrome Google Chrome before 26.0.1410.43 does not ensure that an extension has the tabs (aka APIPermission::kTab) permission before providing a URL to this extension, which has unspecified impact and remote… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0925 2024-11-21 10:48 2013-03-28 Show GitHub Exploit DB Packet Storm
291844 - google chrome The extension functionality in Google Chrome before 26.0.1410.43 does not verify that use of the permissions API is consistent with file permissions, which has unspecified impact and attack vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0924 2024-11-21 10:48 2013-03-28 Show GitHub Exploit DB Packet Storm
291845 - google chrome The USB Apps API in Google Chrome before 26.0.1410.43 allows remote attackers to cause a denial of service (memory corruption) via unspecified vectors. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-0923 2024-11-21 10:48 2013-03-28 Show GitHub Exploit DB Packet Storm
291846 - google chrome Google Chrome before 26.0.1410.43 does not properly restrict brute-force access attempts against web sites that require HTTP Basic Authentication, which has unspecified impact and attack vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0922 2024-11-21 10:48 2013-03-28 Show GitHub Exploit DB Packet Storm
291847 - google chrome The Isolated Sites feature in Google Chrome before 26.0.1410.43 does not properly enforce the use of separate processes, which makes it easier for remote attackers to bypass intended access restricti… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0921 2024-11-21 10:48 2013-03-28 Show GitHub Exploit DB Packet Storm
291848 - google chrome Use-after-free vulnerability in the extension bookmarks API in Google Chrome before 26.0.1410.43 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unk… CWE-399
 Resource Management Errors
CVE-2013-0920 2024-11-21 10:48 2013-03-28 Show GitHub Exploit DB Packet Storm
291849 - google chrome Use-after-free vulnerability in Google Chrome before 26.0.1410.43 on Linux allows remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging the presence of… CWE-399
 Resource Management Errors
CVE-2013-0919 2024-11-21 10:48 2013-03-28 Show GitHub Exploit DB Packet Storm
291850 - google chrome Google Chrome before 26.0.1410.43 does not prevent navigation to developer tools in response to a drag-and-drop operation, which allows user-assisted remote attackers to have an unspecified impact vi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0918 2024-11-21 10:48 2013-03-28 Show GitHub Exploit DB Packet Storm