Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219731 4 警告 TorrentFlux - TorrentFlux における他のユーザの Cookie を取得される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-6028 2014-09-8 17:16 2014-08-28 Show GitHub Exploit DB Packet Storm
219732 4.3 警告 Apache Software Foundation - Apache POI におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2014-3574 2014-09-8 16:57 2014-08-18 Show GitHub Exploit DB Packet Storm
219733 4.3 警告 Apache Software Foundation - Apache POI の OPC SAX セットアップにおける任意のファイルを読まれる脆弱性 CWE-Other
その他
CVE-2014-3529 2014-09-8 16:56 2014-08-18 Show GitHub Exploit DB Packet Storm
219734 3.5 注意 openSUSE project - srvx の HelpServ モジュールにおける整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2014-5508 2014-09-8 16:35 2014-08-28 Show GitHub Exploit DB Packet Storm
219735 6.8 警告 SAP - SAP Crystal Reports におけるメモリ二重解放の脆弱性 CWE-Other
その他
CVE-2014-5506 2014-09-8 16:05 2014-09-3 Show GitHub Exploit DB Packet Storm
219736 6.8 警告 SAP - SAP Crystal Reports におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-5505 2014-09-8 16:05 2014-09-3 Show GitHub Exploit DB Packet Storm
219737 7.5 危険 SolarWinds - SolarWinds Log and Event Manager におけるデータベースへのアクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-5504 2014-09-8 15:47 2014-08-27 Show GitHub Exploit DB Packet Storm
219738 4.6 警告 Exim Development - Exim の expand.c における権限を取得される脆弱性 CWE-189
数値処理の問題
CVE-2014-2972 2014-09-8 15:37 2014-07-16 Show GitHub Exploit DB Packet Storm
219739 6.8 警告 Exim Development - Exim の dmarc.c 内の dmarc_process 関数における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2014-2957 2014-09-8 15:36 2014-05-26 Show GitHub Exploit DB Packet Storm
219740 7.5 危険 Zend Technologies Ltd. - ZendOpenId の Consumer コンポーネントの GenericConsumer クラスおよび Zend Framework の Zend_OpenId_Consumer クラスにおける認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2014-2685 2014-09-8 14:39 2014-03-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296891 - apache xml_security_for_c\+\+ Stack-based buffer overflow in the XML Signature Reference functionality (xsec/dsig/DSIGReference.cpp) in Apache Santuario XML Security for C++ (aka xml-security-c) before 1.7.1 allows context-depend… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-2154 2024-11-21 10:51 2013-08-21 Show GitHub Exploit DB Packet Storm
296892 - apache xml_security_for_c\+\+ The XML digital signature functionality (xsec/dsig/DSIGReference.cpp) in Apache Santuario XML Security for C++ (aka xml-security-c) before 1.7.1 allows context-dependent attackers to reuse signatures… CWE-310
Cryptographic Issues
CVE-2013-2153 2024-11-21 10:51 2013-08-21 Show GitHub Exploit DB Packet Storm
296893 - apache cxf The streaming XML parser in Apache CXF 2.5.x before 2.5.10, 2.6.x before 2.6.7, and 2.7.x before 2.7.4 allows remote attackers to cause a denial of service (CPU and memory consumption) via crafted XM… CWE-399
 Resource Management Errors
CVE-2013-2160 2024-11-21 10:51 2013-08-20 Show GitHub Exploit DB Packet Storm
296894 - canonical
opensuse
perlmonks
ubuntu_linux
opensuse
module\
The cpansign verify functionality in the Module::Signature module before 0.72 for Perl allows attackers to bypass the signature check and execute arbitrary code via a SIGNATURE file with a "special u… CWE-20
 Improper Input Validation 
CVE-2013-2145 2024-11-21 10:51 2013-08-20 Show GitHub Exploit DB Packet Storm
296895 - apache cloudstack Multiple cross-site scripting (XSS) vulnerabilities in Apache CloudStack before 4.1.1 allow remote attackers to inject arbitrary web script or HTML via the (1) Physical network name to the Zone wizar… CWE-79
Cross-site Scripting
CVE-2013-2136 2024-11-21 10:51 2013-08-20 Show GitHub Exploit DB Packet Storm
296896 - debian
canonical
redhat
haproxy
debian_linux
ubuntu_linux
enterprise_linux_load_balancer
haproxy
HAProxy 1.4 before 1.4.24 and 1.5 before 1.5-dev19, when configured to use hdr_ip or other "hdr_*" functions with a negative occurrence count, allows remote attackers to cause a denial of service (ne… CWE-20
CWE-284
 Improper Input Validation 
Improper Access Control
CVE-2013-2175 2024-11-21 10:51 2013-08-19 Show GitHub Exploit DB Packet Storm
296897 - canonical ubuntu_linux Race condition in the post-installation script (mysql-server-5.5.postinst) for MySQL Server 5.5 for Debian GNU/Linux and Ubuntu Linux creates a configuration file with world-readable permissions befo… CWE-362
Race Condition
CVE-2013-2162 2024-11-21 10:51 2013-08-19 Show GitHub Exploit DB Packet Storm
296898 - mongodb
canonical
opensuse
mongodb
ubuntu_linux
opensuse
bson/_cbsonmodule.c in the mongo-python-driver (aka. pymongo) before 2.5.2, as used in MongoDB, allows context-dependent attackers to cause a denial of service (NULL pointer dereference and crash) vi… NVD-CWE-Other
CVE-2013-2132 2024-11-21 10:51 2013-08-16 Show GitHub Exploit DB Packet Storm
296899 - apache ofbiz Apache Open For Business Project (aka OFBiz) 10.04.01 through 10.04.05, 11.04.01 through 11.04.02, and 12.04.01 allows remote attackers to execute arbitrary Unified Expression Language (UEL) function… CWE-20
 Improper Input Validation 
CVE-2013-2250 2024-11-21 10:51 2013-08-16 Show GitHub Exploit DB Packet Storm
296900 - apache ofbiz Cross-site scripting (XSS) vulnerability in the "View Log" screen in the Webtools application in Apache Open For Business Project (aka OFBiz) 10.04.01 through 10.04.05, 11.04.01 through 11.04.02, and… CWE-79
Cross-site Scripting
CVE-2013-2137 2024-11-21 10:51 2013-08-16 Show GitHub Exploit DB Packet Storm