Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220431 7.5 危険 Advanced Forum Signatures Project - MyBB 用 Advanced Forum Signatures プラグインの signature.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-5277 2014-04-9 11:59 2011-10-10 Show GitHub Exploit DB Packet Storm
220432 4.3 警告 SilverStripe - SilverStripe の SSViewer.php の process 関数におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4958 2014-04-9 11:02 2011-10-17 Show GitHub Exploit DB Packet Storm
220433 6.9 警告 Fedora Project
David Paleino
- WICD の D-Bus インターフェースの SetWiredProperty 関数における任意の構成設定を書き込まれる脆弱性 CWE-20
不適切な入力確認
CVE-2012-2095 2014-04-9 10:55 2012-04-11 Show GitHub Exploit DB Packet Storm
220434 5 警告 ZNC - ZNC の bouncedcc モジュール内の bouncedcc.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-0033 2014-04-9 10:50 2012-01-1 Show GitHub Exploit DB Packet Storm
220435 4.3 警告 Par Thernstrom - WordPress 用 CMS Tree Page View プラグインの functions.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1834 2014-04-9 10:38 2012-03-26 Show GitHub Exploit DB Packet Storm
220436 4.3 警告 PrestaShop - PrestaShop の Socolissimo モジュールの redirect.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6641 2014-04-9 10:31 2012-03-26 Show GitHub Exploit DB Packet Storm
220437 5 警告 Rock Lobster - Rock Lobster Contact Form 7 における CAPTCHA 保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-2265 2014-04-8 17:49 2014-02-26 Show GitHub Exploit DB Packet Storm
220438 5 警告 アップル - Apple Safari などで使用される WebKit におけるサンドボックス保護メカニズムを回避される脆弱性 CWE-20
不適切な入力確認
CVE-2014-1297 2014-04-8 17:33 2014-04-1 Show GitHub Exploit DB Packet Storm
220439 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品の vmtypedarrayobject.cpp における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2014-1514 2014-04-8 17:09 2014-03-18 Show GitHub Exploit DB Packet Storm
220440 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品の TypedArrayObject.cpp における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2014-1513 2014-04-8 17:08 2014-03-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295891 - linux
redhat
linux_kernel
enterprise_linux
The translate_desc function in drivers/vhost/vhost.c in the Linux kernel before 3.7 does not properly handle cross-region descriptors, which allows guest OS users to obtain host OS privileges by leve… NVD-CWE-Other
CVE-2013-0311 2024-11-21 10:47 2013-02-22 Show GitHub Exploit DB Packet Storm
295892 - linux
redhat
linux_kernel
enterprise_linux
The cipso_v4_validate function in net/ipv4/cipso_ipv4.c in the Linux kernel before 3.4.8 allows local users to cause a denial of service (NULL pointer dereference and system crash) or possibly have u… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-0310 2024-11-21 10:47 2013-02-22 Show GitHub Exploit DB Packet Storm
295893 - linux
redhat
linux_kernel
enterprise_linux
arch/x86/include/asm/pgtable.h in the Linux kernel before 3.6.2, when transparent huge pages are used, does not properly support PROT_NONE memory regions, which allows local users to cause a denial o… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-0309 2024-11-21 10:47 2013-02-22 Show GitHub Exploit DB Packet Storm
295894 - ibm tivoli_storage_manager The Web GUI in the client in IBM Tivoli Storage Manager (TSM) 6.3 before 6.3.1.0 and 6.4 before 6.4.0.1 allows man-in-the-middle attackers to obtain unspecified client access, and consequently obtain… NVD-CWE-noinfo
CVE-2013-0472 2024-11-21 10:47 2013-02-21 Show GitHub Exploit DB Packet Storm
295895 - ibm tivoli_storage_manager The traditional scheduler in the client in IBM Tivoli Storage Manager (TSM) before 6.2.5.0, 6.3 before 6.3.1.0, and 6.4 before 6.4.0.1, when Prompted mode is enabled, allows remote attackers to cause… NVD-CWE-noinfo
CVE-2013-0471 2024-11-21 10:47 2013-02-21 Show GitHub Exploit DB Packet Storm
295896 - ibm infosphere_master_data_management_collaboration_server
infosphere_master_data_management_server_for_product_information_management
Cross-site scripting (XSS) vulnerability in IBM InfoSphere Master Data Management - Collaborative Edition 10.0 and 10.1 before FP1 and InfoSphere Master Data Management Server for Product Information… CWE-79
Cross-site Scripting
CVE-2013-0478 2024-11-21 10:47 2013-02-21 Show GitHub Exploit DB Packet Storm
295897 - ibm infosphere_master_data_management_collaboration_server
infosphere_master_data_management_server_for_product_information_management
Multiple cross-site scripting (XSS) vulnerabilities in IBM InfoSphere Master Data Management - Collaborative Edition 10.0 and 10.1 before FP1 and InfoSphere Master Data Management Server for Product … CWE-79
Cross-site Scripting
CVE-2013-0477 2024-11-21 10:47 2013-02-21 Show GitHub Exploit DB Packet Storm
295898 - ibm data_studio IBM Eclipse Help System (IEHS), as used in IBM Data Studio 3.1 and 3.1.1 and other products, allows remote authenticated users to read source code via a crafted URL. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0467 2024-11-21 10:47 2013-02-21 Show GitHub Exploit DB Packet Storm
295899 - ibm websphere_message_broker Cross-site scripting (XSS) vulnerability in IBM WebSphere Message Broker 7.0 before 7.0.0.6 and 8.0 before 8.0.0.2, when wsdl support is enabled on a SOAPInput node, allows remote attackers to inject… CWE-79
Cross-site Scripting
CVE-2013-0466 2024-11-21 10:47 2013-02-20 Show GitHub Exploit DB Packet Storm
295900 - ibm maximo_asset_management_essentials
smartcloud_control_desk
maximo_asset_management
Cross-site scripting (XSS) vulnerability in IBM Maximo Asset Management 7.5, Maximo Asset Management Essentials 7.5, and SmartCloud Control Desk 7.5 allows remote authenticated users to inject arbitr… CWE-79
Cross-site Scripting
CVE-2013-0457 2024-11-21 10:47 2013-02-20 Show GitHub Exploit DB Packet Storm