Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218981 3.3 注意 Jonathan Leung - Ruby 用 Show In Browser gem における任意の Web スクリプトまたは HTML を挿入される脆弱性 CWE-59
リンク解釈の問題
CVE-2013-2105 2014-04-25 14:06 2013-05-18 Show GitHub Exploit DB Packet Storm
218982 4.3 警告 k5n.us - Craig Knudsen WebCalendar におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1421 2014-04-25 13:57 2013-02-22 Show GitHub Exploit DB Packet Storm
218983 6.8 警告 PaperCut Software International Pty - Papercut MF および NG の管理 UI におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-2659 2014-04-25 13:39 2014-04-10 Show GitHub Exploit DB Packet Storm
218984 4.3 警告 CJ Niemira - phpMyID の MyID.php の wrap_html 関数におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2890 2014-04-25 12:26 2014-04-17 Show GitHub Exploit DB Packet Storm
218985 4.9 警告 アップル - Apple OS X のカーネルにおける ASLR 保護メカニズムを回避される脆弱性 CWE-200
情報漏えい
CVE-2014-1322 2014-04-25 12:21 2014-04-22 Show GitHub Exploit DB Packet Storm
218986 3.3 注意 アップル - Apple OS X のパワーマネジメントにおける画面ロック状態への遷移を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1321 2014-04-25 12:21 2014-04-22 Show GitHub Exploit DB Packet Storm
218987 4.9 警告 アップル - 複数の Apple 製品の IOKit における ASLR 保護メカニズムを回避される脆弱性 CWE-200
情報漏えい
CVE-2014-1320 2014-04-25 12:20 2014-04-22 Show GitHub Exploit DB Packet Storm
218988 5.8 警告 yaSSL - wolfSSL CyaSSL におけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-2900 2014-04-25 12:19 2014-04-9 Show GitHub Exploit DB Packet Storm
218989 5 警告 yaSSL - wolfSSL CyaSSL におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2899 2014-04-25 12:12 2014-04-9 Show GitHub Exploit DB Packet Storm
218990 4 警告 シスコシステムズ - Cisco IOS の Cisco IOS Unified Border Element におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-5427 2014-04-24 18:45 2012-11-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346521 - cpaint cpaint Incomplete blacklist vulnerability in the checkBlacklist function in CPAINT allows remote attackers to execute arbitrary commands via the (1) ExecuteGlobal function or (2) GetRef statement, which is … NVD-CWE-Other
CVE-2005-2625 2016-10-18 12:29 2005-08-19 Show GitHub Exploit DB Packet Storm
346522 - phptb topic_boards Multiple PHP file inclusion vulnerabilities in (1) admin_o.php, (2) board_o.php, (3) dev_o.php, (4) file_o.php or (5) tech_o.php in PHPTB Topic Board 2.0 and earlier allow remote attackers to execute… NVD-CWE-Other
CVE-2005-2633 2016-10-18 12:29 2005-08-23 Show GitHub Exploit DB Packet Storm
346523 - phpfreenews phpfreenews Multiple SQL injection vulnerabilities in PHPFreeNews 1.40 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) Match or (2) CatID parameter to SearchResults.php, or (3) t… NVD-CWE-Other
CVE-2005-2637 2016-10-18 12:29 2005-08-23 Show GitHub Exploit DB Packet Storm
346524 - phpfreenews phpfreenews Multiple cross-site scripting (XSS) vulnerabilities in PHPFreeNews 1.40 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) NewsMode parameter to NewsCategoryForm.ph… NVD-CWE-Other
CVE-2005-2638 2016-10-18 12:29 2005-08-23 Show GitHub Exploit DB Packet Storm
346525 - valusoft chris_moneymakers_world_poker_championship Buffer overflow in Chris Moneymaker's World Poker Championship 1.0 allows remote attackers to cause a denial of service (application crash) and possibly execute arbitrary code via a long nickname. NVD-CWE-Other
CVE-2005-2639 2016-10-18 12:29 2005-08-23 Show GitHub Exploit DB Packet Storm
346526 - neoteris
juniper
netscreen
instant_virtual_extranet
netscreen_screenos
ns-10
ns-100
ns-204
ns-500
ns-50ns25
netscreen-5gt
netscreen-idp
netscreen-idp_10
netscreen-idp_100
netscreen-idp_1000
Behavioral discrepancy information leak in Juniper Netscreen VPN running ScreenOS 5.2.0 and earlier, when using IKE with pre-shared key authentication, allows remote attackers to enumerate valid user… NVD-CWE-Other
CVE-2005-2640 2016-10-18 12:29 2005-08-23 Show GitHub Exploit DB Packet Storm
346527 - tor tor Tor 0.1.0.13 and earlier, and experimental versions 0.1.1.4-alpha and earlier, does not reject certain weak keys when using ephemeral Diffie-Hellman (DH) handshakes, which allows malicious Tor server… NVD-CWE-Other
CVE-2005-2643 2016-10-18 12:29 2005-08-23 Show GitHub Exploit DB Packet Storm
346528 - whisper32 whisper32 Whisper 32 1.16, and possibly earlier versions, stores passwords in plaintext in memory, which allows local users to obtain the password using a debugger or another mechanism to read process memory. NVD-CWE-Other
CVE-2005-2664 2016-10-18 12:29 2005-08-23 Show GitHub Exploit DB Packet Storm
346529 - elm_development_group elm Stack-based buffer overflow in expires.c in Elm 2.5 PL5 through PL7, and possibly other versions, allows remote attackers to execute arbitrary code via an e-mail message with a long Expires header. NVD-CWE-Other
CVE-2005-2665 2016-10-18 12:29 2005-08-23 Show GitHub Exploit DB Packet Storm
346530 - phpkit phpkit Multiple SQL injection vulnerabilities in PHPKit 1.6.1 allow remote attackers to execute arbitrary SQL commands via the (1) letter parameter to login/member.php or (2) im_receiver parameter to login/… NVD-CWE-Other
CVE-2005-2683 2016-10-18 12:29 2005-08-23 Show GitHub Exploit DB Packet Storm