Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220141 5 警告 The PHP Group - PHP の SQLite における open_basedir 保護機能を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3365 2014-04-7 17:46 2012-07-19 Show GitHub Exploit DB Packet Storm
220142 10 危険 The PHP Group
アップル
- PHP の stream の実装における脆弱性 - CVE-2012-2688 2014-04-7 17:45 2012-07-19 Show GitHub Exploit DB Packet Storm
220143 4.3 警告 The PHP Group - PHP の Fileinfo コンポーネントの libmagic/softmagic.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-4636 2014-04-7 17:44 2013-06-20 Show GitHub Exploit DB Packet Storm
220144 5 警告 The PHP Group - PHP の Calendar コンポーネントの jewish.c における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2013-4635 2014-04-7 17:43 2013-06-20 Show GitHub Exploit DB Packet Storm
220145 5 警告 The PHP Group
アップル
- PHP の ext/standard/quot_print.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-2110 2014-04-7 17:40 2013-06-20 Show GitHub Exploit DB Packet Storm
220146 9.3 危険 オラクル - Oracle Java SE および JavaFX における JavaFX に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5844 2014-04-7 17:39 2013-10-15 Show GitHub Exploit DB Packet Storm
220147 9.3 危険 IBM
オラクル
- Oracle Java SE および Java SE Embedded における Libraries に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5838 2014-04-7 17:37 2013-10-15 Show GitHub Exploit DB Packet Storm
220148 6.8 警告 The PHP Group - PHP の Sessions サブシステムにおける Web セッションをハイジャックされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-4718 2014-04-7 17:37 2011-12-2 Show GitHub Exploit DB Packet Storm
220149 6.8 警告 The PHP Group
アップル
- PHP の ext/xml/xml.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-4113 2014-04-7 17:36 2013-07-11 Show GitHub Exploit DB Packet Storm
220150 6.5 警告 X.Org Foundation - X.Org X11 の xorg-server モジュールの dix/dixfonts.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-4396 2014-04-7 17:35 2013-10-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292951 - mozilla bugzilla Multiple cross-site scripting (XSS) vulnerabilities in editflagtypes.cgi in Bugzilla 2.x, 3.x, and 4.0.x before 4.0.11; 4.1.x and 4.2.x before 4.2.7; and 4.3.x and 4.4.x before 4.4.1 allow remote att… CWE-79
Cross-site Scripting
CVE-2013-1742 2024-11-21 10:50 2013-10-24 Show GitHub Exploit DB Packet Storm
292952 - mozilla bugzilla Cross-site request forgery (CSRF) vulnerability in attachment.cgi in Bugzilla 2.x, 3.x, and 4.0.x before 4.0.11; 4.1.x and 4.2.x before 4.2.7; and 4.3.x and 4.4.x before 4.4.1 allows remote attackers… CWE-352
 Origin Validation Error
CVE-2013-1734 2024-11-21 10:50 2013-10-24 Show GitHub Exploit DB Packet Storm
292953 - mozilla bugzilla Cross-site request forgery (CSRF) vulnerability in process_bug.cgi in Bugzilla 4.4.x before 4.4.1 allows remote attackers to hijack the authentication of arbitrary users for requests that modify bugs… CWE-352
 Origin Validation Error
CVE-2013-1733 2024-11-21 10:50 2013-10-24 Show GitHub Exploit DB Packet Storm
292954 - mozilla network_security_services Mozilla Network Security Services (NSS) before 3.15.2 does not ensure that data structures are initialized before read operations, which allows remote attackers to cause a denial of service or possib… NVD-CWE-noinfo
CVE-2013-1739 2024-11-21 10:50 2013-10-23 Show GitHub Exploit DB Packet Storm
292955 - gnome librsvg GNOME libsvg before 2.39.0 allows remote attackers to read arbitrary files via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML Ext… CWE-20
 Improper Input Validation 
CVE-2013-1881 2024-11-21 10:50 2013-10-10 Show GitHub Exploit DB Packet Storm
292956 - openstack python-keystoneclient The user-password-update command in python-keystoneclient before 0.2.4 accepts the new password in the --password argument, which allows local users to obtain sensitive information by listing the pro… CWE-200
Information Exposure
CVE-2013-2013 2024-11-21 10:50 2013-10-2 Show GitHub Exploit DB Packet Storm
292957 - mongodb
redhat
mongodb
enterprise_mrg
MongoDB before 2.0.9 and 2.2.x before 2.2.4 does not properly validate requests to the nativeHelper function in SpiderMonkey, which allows remote authenticated users to cause a denial of service (inv… CWE-20
 Improper Input Validation 
CVE-2013-1892 2024-11-21 10:50 2013-10-2 Show GitHub Exploit DB Packet Storm
292958 - squid-cache squid The strHdrAcptLangGetItem function in errorpage.cc in Squid 3.2.x before 3.2.9 and 3.3.x before 3.3.3 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a ",… CWE-20
 Improper Input Validation 
CVE-2013-1839 2024-11-21 10:50 2013-10-1 Show GitHub Exploit DB Packet Storm
292959 - redhat cloudforms_management_engine Multiple directory traversal vulnerabilities in the AgentController in Red Hat CloudForms Management Engine 2.0 allow remote attackers to create and overwrite arbitrary files via a .. (dot dot) in th… CWE-22
Path Traversal
CVE-2013-2068 2024-11-21 10:50 2013-09-29 Show GitHub Exploit DB Packet Storm
292960 - redhat jboss_enterprise_application_platform PicketBox, as used in Red Hat JBoss Enterprise Application Platform before 6.1.1, allows local users to obtain the admin encryption key by reading the Vault data file. CWE-310
Cryptographic Issues
CVE-2013-1921 2024-11-21 10:50 2013-09-29 Show GitHub Exploit DB Packet Storm