Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219331 5 警告 Canonical - Ubuntu 用 OpenStack Nova および Openstack Cinder パッケージにおける権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1068 2014-06-23 13:46 2013-01-11 Show GitHub Exploit DB Packet Storm
219332 9.3 危険 アドビシステムズ - Adobe Photoshop CS5 の U3D.8BI library プラグインにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-2052 2014-06-23 13:46 2012-05-8 Show GitHub Exploit DB Packet Storm
219333 6.8 警告 ARRIS Group - ARRIS SBG901 SURFboard Wireless Cable Modem の goform/RgDdns におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-3778 2014-06-23 12:11 2014-06-17 Show GitHub Exploit DB Packet Storm
219334 6.8 警告 BoonEx - Dolphin の administration/profiles.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-4333 2014-06-23 12:07 2014-06-17 Show GitHub Exploit DB Packet Storm
219335 6.5 警告 BoonEx - BoonEx Dolphin の administration/profiles.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-3810 2014-06-23 11:55 2014-06-17 Show GitHub Exploit DB Packet Storm
219336 4.3 警告 edward mindreantre - WordPress 用 ThreeWP Email Reflector プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2572 2014-06-23 11:12 2012-08-8 Show GitHub Exploit DB Packet Storm
219337 4.3 警告 Synametrics Technologies - Synametrics Technologies Xeams におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2569 2014-06-23 11:04 2012-08-8 Show GitHub Exploit DB Packet Storm
219338 7.5 危険 オラクル - Oracle データベース TNS リスナーに脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-1675 2014-06-23 10:47 2012-05-2 Show GitHub Exploit DB Packet Storm
219339 2.9 注意 シマンテック - Symantec Web Gateway の管理コンソールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1652 2014-06-23 09:57 2014-06-16 Show GitHub Exploit DB Packet Storm
219340 5.8 警告 シマンテック - Symantec Web Gateway の管理コンソールの clientreport.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-1651 2014-06-23 09:56 2014-06-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291081 - google chrome Use-after-free vulnerability in the HTMLMediaElement::didMoveToNewDocument function in core/html/HTMLMediaElement.cpp in Blink, as used in Google Chrome before 31.0.1650.48, allows remote attackers t… CWE-399
 Resource Management Errors
CVE-2013-6622 2024-11-21 10:59 2013-11-14 Show GitHub Exploit DB Packet Storm
291082 - opensuse
google
debian
opensuse
chrome
debian_linux
Use-after-free vulnerability in Google Chrome before 31.0.1650.48 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the x-webkit-sp… CWE-399
 Resource Management Errors
CVE-2013-6621 2024-11-21 10:59 2013-11-14 Show GitHub Exploit DB Packet Storm
291083 - apache tomcat Cross-site request forgery (CSRF) vulnerability in the Manager application in Apache Tomcat 5.5.25 and earlier allows remote attackers to hijack the authentication of administrators for requests that… CWE-352
 Origin Validation Error
CVE-2013-6357 2024-11-21 10:59 2013-11-14 Show GitHub Exploit DB Packet Storm
291084 - silverstripe silverstripe security/MemberLoginForm.php in SilverStripe 3.0.3 supports credentials in a GET request, which allows remote or local attackers to obtain sensitive information by reading web-server access logs, web… CWE-200
Information Exposure
CVE-2013-6789 2024-11-21 10:59 2013-11-13 Show GitHub Exploit DB Packet Storm
291085 - linux linux_kernel The uio_mmap_physical function in drivers/uio/uio.c in the Linux kernel before 3.12 does not validate the size of a memory block, which allows local users to cause a denial of service (memory corrupt… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-6763 2024-11-21 10:59 2013-11-12 Show GitHub Exploit DB Packet Storm
291086 - juniper junos jsdm/ajax/port.php in J-Web in Juniper Junos before 10.4R13, 11.4 before 11.4R7, 12.1 before 12.1R5, 12.2 before 12.2R3, and 12.3 before 12.3R1 allows remote authenticated users to execute arbitrary … CWE-20
 Improper Input Validation 
CVE-2013-6618 2024-11-21 10:59 2013-11-6 Show GitHub Exploit DB Packet Storm
291087 - saltstack salt The salt master in Salt (aka SaltStack) 0.11.0 through 0.17.0 does not properly drop group privileges, which makes it easier for remote attackers to gain privileges. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-6617 2024-11-21 10:59 2013-11-6 Show GitHub Exploit DB Packet Storm
291088 - vmware hyperic_hq The Groovy script console in VMware Hyperic HQ 4.6.6 allows remote authenticated administrators to execute arbitrary code via a Runtime.getRuntime().exec call. CWE-94
Code Injection
CVE-2013-6366 2024-11-21 10:59 2013-11-5 Show GitHub Exploit DB Packet Storm
291089 - wireshark wireshark epan/dissectors/packet-tcp.c in the TCP dissector in Wireshark 1.8.x before 1.8.11 and 1.10.x before 1.10.3 does not properly determine the amount of remaining data, which allows remote attackers to … CWE-20
 Improper Input Validation 
CVE-2013-6340 2024-11-21 10:59 2013-11-5 Show GitHub Exploit DB Packet Storm
291090 - wireshark wireshark The dissect_openwire_type function in epan/dissectors/packet-openwire.c in the OpenWire dissector in Wireshark 1.8.x before 1.8.11 and 1.10.x before 1.10.3 allows remote attackers to cause a denial o… CWE-20
 Improper Input Validation 
CVE-2013-6339 2024-11-21 10:59 2013-11-5 Show GitHub Exploit DB Packet Storm