Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219211 4.3 警告 NetWebLogic - WordPress 用 Events Manager プラグインおよび Events Manager Pro プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1407 2014-05-16 12:10 2013-01-22 Show GitHub Exploit DB Packet Storm
219212 7.5 危険 Drupalauth Project - simpleSAMLphp 用 drupalauth モジュールの lib/Auth/Source/External.php における任意のユーザとして認証される脆弱性 CWE-287
不適切な認証
CVE-2013-4552 2014-05-16 11:16 2013-11-4 Show GitHub Exploit DB Packet Storm
219213 2.6 注意 Dan Wilga - Monster Menus モジュールにおける任意のノードコメントを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4504 2014-05-16 11:05 2013-10-29 Show GitHub Exploit DB Packet Storm
219214 2.1 注意 Alex Barth - Drupal 用 Feed Element Mapper モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4503 2014-05-16 11:03 2013-10-30 Show GitHub Exploit DB Packet Storm
219215 4 警告 Nathan Haug - Drupal 用 FileField Sources モジュールにおける任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4502 2014-05-16 11:03 2013-10-30 Show GitHub Exploit DB Packet Storm
219216 5 警告 Quiz Module Project - Drupal 用 Quiz モジュールのデフォルトの View における重要なクイズ結果を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4501 2014-05-16 11:02 2013-10-30 Show GitHub Exploit DB Packet Storm
219217 4.9 警告 Quiz Module Project - Drupal 用 Quiz モジュールにおける任意のクイズ結果を削除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4500 2014-05-16 11:02 2013-10-30 Show GitHub Exploit DB Packet Storm
219218 6.8 警告 madeofcode - omniauth-facebook gem におけるクロスサイトリクエストフォージェリ攻撃を実行される脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-4562 2014-05-16 10:14 2013-11-12 Show GitHub Exploit DB Packet Storm
219219 6.8 警告 Atlassian - Atlassian Confluence の logout.action におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-6342 2014-05-15 17:17 2012-09-19 Show GitHub Exploit DB Packet Storm
219220 6.5 警告 Open Dynamics - Collabtive における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-3246 2014-05-15 16:50 2014-05-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291761 - moodle moodle The core_grade component in Moodle through 2.2.10, 2.3.x before 2.3.7, and 2.4.x before 2.4.4 does not properly consider the existence of hidden grades, which allows remote authenticated users to obt… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-2080 2024-11-21 10:50 2013-05-25 Show GitHub Exploit DB Packet Storm
291762 - moodle moodle mod/assign/locallib.php in the assignment module in Moodle 2.3.x before 2.3.7 and 2.4.x before 2.4.4 does not consider capability requirements during the processing of ZIP assignment-archive download… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-2079 2024-11-21 10:50 2013-05-25 Show GitHub Exploit DB Packet Storm
291763 - openstack keystone OpenStack Identity (Keystone) Folsom 2012.2.4 and earlier, Grizzly before 2013.1.1, and Havana does not immediately revoke the authentication token when deleting a user through the Keystone v2 API, w… CWE-287
Improper Authentication
CVE-2013-2059 2024-11-21 10:50 2013-05-22 Show GitHub Exploit DB Packet Storm
291764 - qemu qemu The qemu guest agent in Qemu 1.4.1 and earlier, as used by Xen, when started in daemon mode, uses weak permissions for certain files, which allows local users to read and write to these files. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-2007 2024-11-21 10:50 2013-05-22 Show GitHub Exploit DB Packet Storm
291765 - openstack keystone OpenStack Identity (Keystone) Grizzly 2013.1.1, when DEBUG mode logging is enabled, logs the (1) admin_token and (2) LDAP password in plaintext, which allows local users to obtain sensitive by readin… CWE-200
Information Exposure
CVE-2013-2006 2024-11-21 10:50 2013-05-22 Show GitHub Exploit DB Packet Storm
291766 - openstack devstack OpenStack devstack uses world-readable permissions for keystone.conf, which allows local users to obtain sensitive information such as the LDAP password and admin_token secret by reading the file. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1977 2024-11-21 10:50 2013-05-22 Show GitHub Exploit DB Packet Storm
291767 - xen xen Xen 4.0.x and 4.1.x incorrectly releases a grant reference when releasing a non-v1, non-transitive grant, which allows local guest administrators to cause a denial of service (host crash), obtain sen… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1964 2024-11-21 10:50 2013-05-22 Show GitHub Exploit DB Packet Storm
291768 - mozilla firefox
thunderbird
thunderbird_esr
Use-after-free vulnerability in the nsContentUtils::RemoveScriptBlocker function in Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x be… CWE-399
 Resource Management Errors
CVE-2013-1681 2024-11-21 10:50 2013-05-16 Show GitHub Exploit DB Packet Storm
291769 - mozilla firefox
thunderbird
thunderbird_esr
Use-after-free vulnerability in the nsFrameList::FirstChild function in Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x before 17.0.6 … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-1680 2024-11-21 10:50 2013-05-16 Show GitHub Exploit DB Packet Storm
291770 - mozilla firefox
thunderbird
thunderbird_esr
Use-after-free vulnerability in the mozilla::plugins::child::_geturlnotify function in Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x… CWE-399
 Resource Management Errors
CVE-2013-1679 2024-11-21 10:50 2013-05-16 Show GitHub Exploit DB Packet Storm