Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219491 4.3 警告 Roundup - Roundup におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6132 2014-04-14 18:31 2012-05-15 Show GitHub Exploit DB Packet Storm
219492 6.8 警告 Lester Chan - WordPress 用 WP-PostViews プラグインのオプションの管理者ページにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-3252 2014-04-14 18:26 2013-05-7 Show GitHub Exploit DB Packet Storm
219493 6.8 警告 Qian Qin - WordPress 用 qTranslate プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-3251 2014-04-14 18:26 2013-06-4 Show GitHub Exploit DB Packet Storm
219494 6.8 警告 Jeremy Massel - WordPress 用 underConstruction プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-2699 2014-04-14 18:26 2013-06-3 Show GitHub Exploit DB Packet Storm
219495 6.8 警告 Lester Chan - WordPress 用 WP-Print プラグインのオプションにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-2693 2014-04-14 18:25 2013-04-5 Show GitHub Exploit DB Packet Storm
219496 6.8 警告 Dean Adjie Minwarie - WordPress 用 DVS Custom Notification プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-4921 2014-04-14 18:24 2012-09-14 Show GitHub Exploit DB Packet Storm
219497 5.8 警告 kernel.org - Linux-PAM 用 pam_timestamp モジュールの pam_timestamp.c におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-2583 2014-04-14 18:04 2014-03-26 Show GitHub Exploit DB Packet Storm
219498 7.5 危険 Pearson Education, Inc. - Pearson eSIS Enterprise Student Information System のパスワードリセット機能における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-1455 2014-04-14 17:52 2014-04-6 Show GitHub Exploit DB Packet Storm
219499 2.1 注意 CloudBees - CloudBees Jenkins におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2033 2014-04-14 17:38 2013-05-2 Show GitHub Exploit DB Packet Storm
219500 6.5 警告 レッドハット (KIE Group)
レッドハット
- 複数の Red Hat Jboss 製品における任意の Java コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-6468 2014-04-14 17:23 2013-11-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
346371 - ecometry sgdynamo Cross-site scripting vulnerability in sgdynamo.exe for Sgdynamo allows remote attackers to execute arbitrary Javascript via a URL with the script in the HTNAME parameter. NVD-CWE-Other
CVE-2002-0375 2017-07-11 10:29 2002-05-29 Show GitHub Exploit DB Packet Storm
346372 - vignette storyserver
vignette
Vignette Story Server 4.1 and 6.0 allows remote attackers to obtain sensitive information via a request that contains a large number of '"' (double quote) and and '>' characters, which causes the TCL… NVD-CWE-Other
CVE-2002-0385 2017-07-11 10:29 2004-06-1 Show GitHub Exploit DB Packet Storm
346373 - red-m 1050ap_lan_acess_point Buffer overflow in Red-M 1050 (Bluetooth Access Point) management web interface allows remote attackers to cause a denial of service and possibly execute arbitrary code via a long administration pass… NVD-CWE-Other
CVE-2002-0393 2017-07-11 10:29 2002-07-26 Show GitHub Exploit DB Packet Storm
346374 - workforceroi xpede Intellisol Xpede 4.1 uses weak encryption to store authentication information in cookies, which could allow local users with access to the cookies to gain privileges. NVD-CWE-Other
CVE-2002-0486 2017-07-11 10:29 2002-08-12 Show GitHub Exploit DB Packet Storm
346375 - inn inn Vulnerability in (1) inews or (2) rnews for INN 2.2.3 and earlier, related to insecure open() calls. NVD-CWE-Other
CVE-2002-0526 2017-07-11 10:29 2002-08-12 Show GitHub Exploit DB Packet Storm
346376 - postboard
postnuke_software_foundation
postboard
postnuke
Cross-site scripting vulnerabilities in PostBoard 2.0.1 and earlier allows remote attackers to execute script as other users via (1) an [IMG] tag when BBCode is enabled, or (2) in a topic title. NVD-CWE-Other
CVE-2002-0535 2017-07-11 10:29 2002-07-3 Show GitHub Exploit DB Packet Storm
346377 - oracle application_server
application_server_web_cache
oracle8i
oracle9i
The default configuration of Oracle 9i Application Server 1.0.2.x allows remote anonymous users to access sensitive services without authentication, including Dynamic Monitoring Services (1) dms0, (2… CWE-287
Improper Authentication
CVE-2002-0563 2017-07-11 10:29 2002-07-3 Show GitHub Exploit DB Packet Storm
346378 - aol instant_messenger AOL Instant Messenger (AIM) allows remote attackers to steal files that are being transferred to other clients by connecting to port 4443 (Direct Connection) or port 5190 (file transfer) before the i… NVD-CWE-Other
CVE-2002-0592 2017-07-11 10:29 2002-06-18 Show GitHub Exploit DB Packet Storm
346379 - snapgear snapgear_lite\+_firewall Snapgear Lite+ firewall 1.5.4 and 1.5.3 allows remote attackers to cause a denial of service (crash) via a large number of connections to (1) the HTTP web management port, or (2) the PPTP port. NVD-CWE-Other
CVE-2002-0602 2017-07-11 10:29 2002-06-18 Show GitHub Exploit DB Packet Storm
346380 - entrust entrust_authority_security_manager Entrust Authority Security Manager (EASM) 6.0 does not properly require multiple master users to change the password of a master user, which could allow a master user to perform operations that requi… NVD-CWE-Other
CVE-2002-0712 2017-07-11 10:29 2004-02-3 Show GitHub Exploit DB Packet Storm