Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218971 5 警告 Apache Software Foundation - Apache Syncope におけるパスワードを推測される脆弱性 CWE-310
暗号の問題
CVE-2014-3503 2014-07-14 17:29 2014-05-21 Show GitHub Exploit DB Packet Storm
218972 7.2 危険 Docker
Fedora Project
- Docker における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3499 2014-07-14 17:28 2014-07-1 Show GitHub Exploit DB Packet Storm
218973 4.3 警告 PNP4Nagios - PNP4Nagios におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4908 2014-07-14 16:21 2014-06-12 Show GitHub Exploit DB Packet Storm
218974 4.3 警告 op5
PNP4Nagios
- PNP4Nagios の share/pnp/application/views/kohana_error_page.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4907 2014-07-14 16:20 2014-04-6 Show GitHub Exploit DB Packet Storm
218975 4.3 警告 Polldaddy Polls & Ratings plugin project - WordPress 用 Polldaddy Polls & Ratings プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4856 2014-07-14 15:53 2014-07-2 Show GitHub Exploit DB Packet Storm
218976 4.3 警告 Polylang project - WordPress 用 Polylang プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4855 2014-07-14 15:50 2014-06-24 Show GitHub Exploit DB Packet Storm
218977 4.3 警告 Ottawa PC & Mobile - WordPress 用 WP Construction Mode プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4854 2014-07-14 15:50 2014-06-28 Show GitHub Exploit DB Packet Storm
218978 6.5 警告 Dolibarr ERP & CRM - Dolibarr ERP/CRM における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-3992 2014-07-14 14:02 2014-07-8 Show GitHub Exploit DB Packet Storm
218979 4.3 警告 Dolibarr ERP & CRM - Dolibarr ERP/CRM におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3991 2014-07-14 14:00 2014-07-8 Show GitHub Exploit DB Packet Storm
218980 4.3 警告 Free Document Management Software - OpenDocMan の odm-init.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4853 2014-07-14 13:53 2014-07-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290901 - ibm websphere_portal IBM WebSphere Portal 6.0.0.x through 6.0.0.1, 6.0.1.x through 6.0.1.7, 6.1.0.x through 6.1.0.6 CF27, 6.1.5.x through 6.1.5.3 CF27, 7.0.0.x through 7.0.0.2 CF26, and 8.0.0.x through 8.0.0.1 CF08 allow… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-6735 2024-11-21 10:59 2013-12-23 Show GitHub Exploit DB Packet Storm
290902 - ibm websphere_portal IBM WebSphere Portal 8.0.0.1 before CF09 does not properly handle references in compute="always" Web Content Manager (WCM) navigator components, which allows remote attackers to obtain sensitive comp… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-6723 2024-11-21 10:59 2013-12-23 Show GitHub Exploit DB Packet Storm
290903 - ibm websphere_portal Cross-site scripting (XSS) vulnerability in the Web Content Manager (WCM) UI in IBM WebSphere Portal 6.1.0.x through 6.1.0.6 CF27, 6.1.5.x through 6.1.5.3 CF27, 7.0.0.x through 7.0.0.2 CF26, and 8.0.… CWE-79
Cross-site Scripting
CVE-2013-6328 2024-11-21 10:59 2013-12-23 Show GitHub Exploit DB Packet Storm
290904 - quickheal antivirus_pro Stack-based buffer overflow in pepoly.dll in Quick Heal AntiVirus Pro 7.0.0.1 allows local users to execute arbitrary code or cause a denial of service (process crash) via a long *.text value in a PE… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-6767 2024-11-21 10:59 2013-12-21 Show GitHub Exploit DB Packet Storm
290905 - realnetworks realplayer Heap-based buffer overflow in RealNetworks RealPlayer before 17.0.4.61 on Windows, and Mac RealPlayer before 12.0.1.1738, allows remote attackers to execute arbitrary code via a long string in the TR… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-6877 2024-11-21 10:59 2013-12-20 Show GitHub Exploit DB Packet Storm
290906 - ibm db2_connect
db2
db2_purescale_feature_9.8
The OLAP query engine in IBM DB2 and DB2 Connect 9.7 through FP9, 9.8 through FP5, 10.1 through FP3, and 10.5 through FP2, and the DB2 pureScale Feature 9.8 for Enterprise Server Edition, allows remo… NVD-CWE-noinfo
CVE-2013-6717 2024-11-21 10:59 2013-12-20 Show GitHub Exploit DB Packet Storm
290907 - no-margin-for-errors prettyphoto Cross-site scripting (XSS) vulnerability in the setTimeout function in js/jquery.prettyPhoto.js in prettyPhoto 3.1.4 and earlier allows remote attackers to inject arbitrary web script or HTML via a c… CWE-79
Cross-site Scripting
CVE-2013-6837 2024-11-21 10:59 2013-12-19 Show GitHub Exploit DB Packet Storm
290908 - gnome gnumeric Heap-based buffer overflow in the ms_escher_get_data function in plugins/excel/ms-escher.c in GNOME Office Gnumeric before 1.12.9 allows remote attackers to cause a denial of service (crash) via a cr… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-6836 2024-11-21 10:59 2013-12-19 Show GitHub Exploit DB Packet Storm
290909 - zabbix zabbix Zabbix before 1.8.19rc1, 2.0 before 2.0.10rc1, and 2.2 before 2.2.1rc1 allows remote Zabbix servers and proxies to execute arbitrary commands via a newline in a flexible user parameter. CWE-94
Code Injection
CVE-2013-6824 2024-11-21 10:59 2013-12-19 Show GitHub Exploit DB Packet Storm
290910 - cisco cisco_ons_15454_system_software
ons_15454_mspp
ons_15454_mstp
ons_15454e_optical_transport_platform
ons_15454
ons_15454_multiservice_transport_platform
ons_15454_sdh_multiservice_pr…
The tNetTaskLimit process on the Transport Node Controller (TNC) on Cisco ONS 15454 devices with software 9.6 and earlier does not properly prioritize health pings, which allows remote attackers to c… CWE-20
 Improper Input Validation 
CVE-2013-6701 2024-11-21 10:59 2013-12-19 Show GitHub Exploit DB Packet Storm