Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219501 3.5 注意 オラクル - Oracle Siebel CRM の Siebel Core - Server OM Frwks における Object Manager に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-4250 2014-07-18 11:03 2014-07-15 Show GitHub Exploit DB Packet Storm
219502 4.3 警告 オラクル - Oracle Siebel CRM の Siebel Travel & Transportation における Diary に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-4231 2014-07-18 11:03 2014-07-15 Show GitHub Exploit DB Packet Storm
219503 4.3 警告 オラクル - Oracle Siebel CRM の Siebel UI Framework における Open_UI に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-4230 2014-07-18 11:02 2014-07-15 Show GitHub Exploit DB Packet Storm
219504 4.3 警告 オラクル - Oracle Siebel CRM の Siebel UI Framework における Portal Framework に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-4205 2014-07-18 11:02 2014-07-15 Show GitHub Exploit DB Packet Storm
219505 4.3 警告 オラクル - Oracle Siebel CRM の Siebel UI Framework における Portal Framework に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2491 2014-07-18 11:01 2014-07-15 Show GitHub Exploit DB Packet Storm
219506 1.4 注意 オラクル - Oracle Siebel CRM の Siebel Core - EAI における Integration Business Services に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2485 2014-07-18 11:01 2014-07-15 Show GitHub Exploit DB Packet Storm
219507 4.3 警告 shopizer-ecommerce - Shopizer におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4965 2014-07-17 17:41 2014-07-10 Show GitHub Exploit DB Packet Storm
219508 6.8 警告 shopizer-ecommerce - Shopizer におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-4964 2014-07-17 17:40 2014-07-10 Show GitHub Exploit DB Packet Storm
219509 6.8 警告 shopizer-ecommerce - Shopizer における任意のユーザのアカウント設定を変更される脆弱性 CWE-noinfo
情報不足
CVE-2014-4963 2014-07-17 17:39 2014-07-10 Show GitHub Exploit DB Packet Storm
219510 6.4 警告 shopizer-ecommerce - Shopizer におけるショッピングカートの総コストを減らされる脆弱性 CWE-189
数値処理の問題
CVE-2014-4962 2014-07-17 17:39 2014-07-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296851 - xmlsoft
canonical
opensuse
libxml2
ubuntu_linux
opensuse
libxml2 2.9.0 and earlier allows context-dependent attackers to cause a denial of service (CPU and memory consumption) via an XML file containing an entity declaration with long replacement text and … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-0338 2024-11-21 10:47 2013-04-26 Show GitHub Exploit DB Packet Storm
296852 - plataformatec
opensuse
devise
opensuse
Devise gem 2.2.x before 2.2.3, 2.1.x before 2.1.3, 2.0.x before 2.0.5, and 1.5.x before 1.5.4 for Ruby, when using certain databases, does not properly perform type conversion when performing databas… CWE-399
 Resource Management Errors
CVE-2013-0233 2024-11-21 10:47 2013-04-26 Show GitHub Exploit DB Packet Storm
296853 - ibm websphere_application_server Cross-site scripting (XSS) vulnerability in the RPC adapter for the Web 2.0 and Mobile toolkit in IBM WebSphere Application Server (WAS) 8.5 before 8.5.0.2 allows remote attackers to inject arbitrary… CWE-79
Cross-site Scripting
CVE-2013-0565 2024-11-21 10:47 2013-04-24 Show GitHub Exploit DB Packet Storm
296854 - ibm websphere_application_server Directory traversal vulnerability in the Administrative Console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.29, 8.0 before 8.0.0.6, and 8.5 before 8.5.0.2 on Linux… CWE-22
Path Traversal
CVE-2013-0544 2024-11-21 10:47 2013-04-24 Show GitHub Exploit DB Packet Storm
296855 - ibm websphere_application_server IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.29, 8.0 before 8.0.0.6, and 8.5 before 8.5.0.2 on Linux, Solaris, and HP-UX, when a Local OS registry is used, does not pr… CWE-863
 Incorrect Authorization
CVE-2013-0543 2024-11-21 10:47 2013-04-24 Show GitHub Exploit DB Packet Storm
296856 - ibm websphere_application_server Cross-site scripting (XSS) vulnerability in the Administrative console in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.29, 8.0 before 8.0.0.6, and 8.5 before 8.5.0.2 a… CWE-79
Cross-site Scripting
CVE-2013-0542 2024-11-21 10:47 2013-04-24 Show GitHub Exploit DB Packet Storm
296857 - ibm websphere_application_server Buffer overflow in IBM WebSphere Application Server (WAS) 6.1 before 6.1.0.47, 7.0 before 7.0.0.29, 8.0 before 8.0.0.6, and 8.5 before 8.5.0.2 on Windows, when a localOS registry is used in conjuncti… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-0541 2024-11-21 10:47 2013-04-24 Show GitHub Exploit DB Packet Storm
296858 - ibm websphere_application_server IBM WebSphere Application Server (WAS) Liberty Profile 8.5 before 8.5.0.2, when SSL is not enabled, does not properly validate authentication cookies, which allows remote authenticated users to bypas… CWE-287
Improper Authentication
CVE-2013-0540 2024-11-21 10:47 2013-04-24 Show GitHub Exploit DB Packet Storm
296859 - ibm infosphere_replication_server The Data Replication Dashboard component in IBM InfoSphere Replication Server 9.7 and 10.x before 10.2.0.0-b113 allows remote attackers to obtain a list of all user accounts, along with information a… CWE-200
Information Exposure
CVE-2013-0584 2024-11-21 10:47 2013-04-23 Show GitHub Exploit DB Packet Storm
296860 - ibm lotus_connections Cross-site scripting (XSS) vulnerability in the Bookmarks component in IBM Lotus Connections before 4.0 CR3 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2013-0503 2024-11-21 10:47 2013-04-23 Show GitHub Exploit DB Packet Storm