|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":June 1, 2026, 2:01 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 220081 | 3.3 | 注意 | freedesktop.org | - | Xpdf および Poppler の goo/gfile.cc 内の openTempFile 関数における任意のファイルを上書きされる脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2013-4472 | 2014-04-25 14:59 | 2013-10-26 | Show | GitHub Exploit DB Packet Storm |
| 220082 | 3.3 | 注意 | npm, Inc. | - | Node Packaged Modules の lib/npm.js における任意のファイルを上書きされる脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2013-4116 | 2014-04-25 14:26 | 2013-07-8 | Show | GitHub Exploit DB Packet Storm |
| 220083 | 4.3 | 警告 | Apache Software Foundation | - | Apache Archiva におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2013-2187 | 2014-04-25 14:14 | 2013-02-19 | Show | GitHub Exploit DB Packet Storm |
| 220084 | 3.3 | 注意 | Jonathan Leung | - | Ruby 用 Show In Browser gem における任意の Web スクリプトまたは HTML を挿入される脆弱性 |
CWE-59
リンク解釈の問題 |
CVE-2013-2105 | 2014-04-25 14:06 | 2013-05-18 | Show | GitHub Exploit DB Packet Storm |
| 220085 | 4.3 | 警告 | k5n.us | - | Craig Knudsen WebCalendar におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2013-1421 | 2014-04-25 13:57 | 2013-02-22 | Show | GitHub Exploit DB Packet Storm |
| 220086 | 6.8 | 警告 | PaperCut Software International Pty | - | Papercut MF および NG の管理 UI におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2014-2659 | 2014-04-25 13:39 | 2014-04-10 | Show | GitHub Exploit DB Packet Storm |
| 220087 | 4.3 | 警告 | CJ Niemira | - | phpMyID の MyID.php の wrap_html 関数におけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2014-2890 | 2014-04-25 12:26 | 2014-04-17 | Show | GitHub Exploit DB Packet Storm |
| 220088 | 4.9 | 警告 | アップル | - | Apple OS X のカーネルにおける ASLR 保護メカニズムを回避される脆弱性 |
CWE-200
情報漏えい |
CVE-2014-1322 | 2014-04-25 12:21 | 2014-04-22 | Show | GitHub Exploit DB Packet Storm |
| 220089 | 3.3 | 注意 | アップル | - | Apple OS X のパワーマネジメントにおける画面ロック状態への遷移を回避される脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2014-1321 | 2014-04-25 12:21 | 2014-04-22 | Show | GitHub Exploit DB Packet Storm |
| 220090 | 4.9 | 警告 | アップル | - | 複数の Apple 製品の IOKit における ASLR 保護メカニズムを回避される脆弱性 |
CWE-200
情報漏えい |
CVE-2014-1320 | 2014-04-25 12:20 | 2014-04-22 | Show | GitHub Exploit DB Packet Storm |
Update Date:June 1, 2026, 4:12 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 293791 | 9.8 |
CRITICAL
Network |
yabb | yabb | YaBB through 2.5.2: 'guestlanguage' Cookie Parameter Local File Include Vulnerability |
CWE-434
Unrestricted Upload of File with Dangerous Type |
CVE-2013-2057 | 2024-11-21 10:50 | 2020-02-12 | Show | GitHub Exploit DB Packet Storm |
| 293792 | 6.1 |
MEDIUM
Network |
thebuggenie | the_bug_genie | The Bug Genie before 3.2.6 has Multiple XSS and HTML Injection Vulnerabilities |
CWE-79
Cross-site Scripting |
CVE-2013-1760 | 2024-11-21 10:50 | 2020-02-12 | Show | GitHub Exploit DB Packet Storm |
| 293793 | 8.8 |
HIGH
Network |
automattic | wp_super_cache | WordPress WP Super Cache Plugin 1.2 has Remote PHP Code Execution |
NVD-CWE-Other
|
CVE-2013-2009 | 2024-11-21 10:50 | 2020-02-7 | Show | GitHub Exploit DB Packet Storm |
| 293794 | 6.1 |
MEDIUM
Network |
automattic | wp_super_cache | WordPress Super Cache Plugin 1.3 has XSS. |
CWE-79
Cross-site Scripting |
CVE-2013-2008 | 2024-11-21 10:50 | 2020-02-7 | Show | GitHub Exploit DB Packet Storm |
| 293795 | 6.1 |
MEDIUM
Physics |
apple | tokend | Gemalto Tokend 2013 has an Arbitrary File Creation/Overwrite Vulnerability |
CWE-59
Link Following |
CVE-2013-1867 | 2024-11-21 10:50 | 2020-01-30 | Show | GitHub Exploit DB Packet Storm |
| 293796 | 6.1 |
MEDIUM
Physics |
opensc_project | opensc | OpenSC OpenSC.tokend has an Arbitrary File Creation/Overwrite Vulnerability |
CWE-59
Link Following |
CVE-2013-1866 | 2024-11-21 10:50 | 2020-01-30 | Show | GitHub Exploit DB Packet Storm |
| 293797 | 5.3 |
MEDIUM
Network |
veraxsystems | network_management_system | Verax NMS prior to 2.1.0 leaks connection details when any user executes a Repair Table action |
CWE-200
Information Exposure |
CVE-2013-1631 | 2024-11-21 10:50 | 2020-01-30 | Show | GitHub Exploit DB Packet Storm |
| 293798 | 9.8 |
CRITICAL
Network |
redhat | openshift | The download_from_url function in OpenShift Origin allows remote attackers to execute arbitrary commands via shell metacharacters in the URL of a request to download a cart. |
CWE-78
OS Command |
CVE-2013-2060 | 2024-11-21 10:50 | 2020-01-29 | Show | GitHub Exploit DB Packet Storm |
| 293799 | 7.5 |
HIGH
Network |
python fedoraproject |
py-bcrypt fedora |
The py-bcrypt module before 0.3 for Python does not properly handle concurrent memory access, which allows attackers to bypass authentication via multiple authentication requests, which trigger the p… |
CWE-307
mproper Restriction of Excessive Authentication Attempts |
CVE-2013-1895 | 2024-11-21 10:50 | 2020-01-29 | Show | GitHub Exploit DB Packet Storm |
| 293800 | 9.8 |
CRITICAL
Network |
iris_citations_management_tool_project | iris_citations_management_tool | IRIS citations management tool through 1.3 allows remote attackers to execute arbitrary commands. |
NVD-CWE-noinfo
|
CVE-2013-1744 | 2024-11-21 10:50 | 2020-01-26 | Show | GitHub Exploit DB Packet Storm |