Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219981 5 警告 Mozilla Foundation - Android 上で稼動する Mozilla Firefox におけるアドレスバーを偽装される脆弱性 CWE-noinfo
情報不足
CVE-2014-1527 2014-05-1 19:35 2014-04-29 Show GitHub Exploit DB Packet Storm
219982 5.8 警告 Mozilla Foundation - Mozilla Firefox および SeaMonkey の XrayWrapper 実装におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1526 2014-05-1 19:28 2014-04-29 Show GitHub Exploit DB Packet Storm
219983 9.3 危険 Mozilla Foundation - Mozilla Firefox および SeaMonkey の mozilla::dom::TextTrack::AddCue 関数における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2014-1525 2014-05-1 19:12 2014-04-29 Show GitHub Exploit DB Packet Storm
219984 10 危険 Mozilla Foundation - Mozilla Firefox および SeaMonkey の Web Audio サブシステムの mozilla::dom::OscillatorNodeEngine::ComputeCustom 関数における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2014-1522 2014-05-1 18:38 2014-04-29 Show GitHub Exploit DB Packet Storm
219985 6.9 警告 Mozilla Foundation - Windows 上で稼働する Mozilla Firefox の Maintenance Service Installer の maintenservice_installer.exe における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1520 2014-05-1 18:35 2014-04-29 Show GitHub Exploit DB Packet Storm
219986 10 危険 Mozilla Foundation - Mozilla Firefox および SeaMonkey のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2014-1519 2014-05-1 18:29 2014-04-29 Show GitHub Exploit DB Packet Storm
219987 4.3 警告 Digital Junkies - dompdf の dompdf.php における chroot の保護を回避される脆弱性 CWE-200
情報漏えい
CVE-2014-2383 2014-05-1 18:18 2014-03-11 Show GitHub Exploit DB Packet Storm
219988 4.3 警告 VideoWhisper.com - Drupal 用 VideoWhisper Webcam プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2715 2014-05-1 18:10 2014-04-25 Show GitHub Exploit DB Packet Storm
219989 6.8 警告 Ubercart - Drupal 用 Ubercart モジュールにおける Web セッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2013-7302 2014-05-1 18:09 2013-12-17 Show GitHub Exploit DB Packet Storm
219990 4.3 警告 Gizra - Drupal 用 Entity reference モジュールにおけるプライベートノードのタイトルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-7066 2014-05-1 18:08 2013-11-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291601 - adobe acrobat
acrobat_reader
Adobe Reader and Acrobat 11.x before 11.0.05 on Windows allow remote attackers to execute arbitrary JavaScript code in a javascript: URL via a crafted PDF document. CWE-94
Code Injection
CVE-2013-5325 2024-11-21 10:57 2013-10-9 Show GitHub Exploit DB Packet Storm
291602 - ibm aix Multiple buffer overflows in (1) mkque and (2) mkquedev in bos.rte.printers in IBM AIX 6.1 and 7.1 allow local users to gain privileges by leveraging printq group membership. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-5419 2024-11-21 10:57 2013-10-4 Show GitHub Exploit DB Packet Storm
291603 - apple mac_os_x Directory Services in Apple Mac OS X before 10.8.5 Supplemental Update allows local users to bypass password-based authentication and modify arbitrary Directory Services records via unspecified vecto… CWE-287
Improper Authentication
CVE-2013-5163 2024-11-21 10:57 2013-10-4 Show GitHub Exploit DB Packet Storm
291604 - watchguard server_center Multiple untrusted search path vulnerabilities in (1) Watchguard Log Collector (wlcollector.exe) and (2) Watchguard WebBlocker Server (wbserver.exe) in WatchGuard Server Center 11.7.4, 11.7.3, and po… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5701 2024-11-21 10:57 2013-10-4 Show GitHub Exploit DB Packet Storm
291605 - open-xchange open-xchange_appsuite Multiple cross-site scripting (XSS) vulnerabilities in Open-Xchange AppSuite before 7.2.2 allow remote authenticated users to inject arbitrary web script or HTML via (1) content with the text/xml MIM… CWE-79
Cross-site Scripting
CVE-2013-5690 2024-11-21 10:57 2013-10-4 Show GitHub Exploit DB Packet Storm
291606 - cisco wireless_lan_controller Cross-site scripting (XSS) vulnerability in the management interface on Cisco Wireless LAN Controller (WLC) devices allows remote attackers to inject arbitrary web script or HTML via a crafted URL, a… CWE-79
Cross-site Scripting
CVE-2013-5519 2024-11-21 10:57 2013-10-3 Show GitHub Exploit DB Packet Storm
291607 - cisco unified_communications_domain_manager SQL injection vulnerability in the web framework in Cisco Unified Communications Domain Manager allows remote authenticated users to execute arbitrary SQL commands via a crafted URL, aka Bug ID CSCuh… CWE-89
SQL Injection
CVE-2013-5517 2024-11-21 10:57 2013-10-3 Show GitHub Exploit DB Packet Storm
291608 - cisco ios_xr The UDP process in Cisco IOS XR 4.3.1 does not free packet memory upon detecting full packet queues, which allows remote attackers to cause a denial of service (memory consumption) via UDP packets to… CWE-399
 Resource Management Errors
CVE-2013-5503 2024-11-21 10:57 2013-10-3 Show GitHub Exploit DB Packet Storm
291609 - barton ngircd The (1) Conn_StartLogin and (2) cb_Read_Resolver_Result functions in conn.c in ngIRCd 18 through 20.2, when the configuration option NoticeAuth is enabled, does not properly handle the return code fo… CWE-20
 Improper Input Validation 
CVE-2013-5580 2024-11-21 10:57 2013-10-2 Show GitHub Exploit DB Packet Storm
291610 - ibm maximo_asset_management IBM Maximo Asset Management 6.2 through 6.2.8, 7.1 before 7.1.1.12, and 7.5 before 7.5.0.5 allows remote attackers to bypass intended access restrictions via unspecified vectors. NVD-CWE-noinfo
CVE-2013-5395 2024-11-21 10:57 2013-10-1 Show GitHub Exploit DB Packet Storm