Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220451 4.3 警告 Digital Junkies - dompdf の dompdf.php における chroot の保護を回避される脆弱性 CWE-200
情報漏えい
CVE-2014-2383 2014-05-1 18:18 2014-03-11 Show GitHub Exploit DB Packet Storm
220452 4.3 警告 VideoWhisper.com - Drupal 用 VideoWhisper Webcam プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2715 2014-05-1 18:10 2014-04-25 Show GitHub Exploit DB Packet Storm
220453 6.8 警告 Ubercart - Drupal 用 Ubercart モジュールにおける Web セッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2013-7302 2014-05-1 18:09 2013-12-17 Show GitHub Exploit DB Packet Storm
220454 4.3 警告 Gizra - Drupal 用 Entity reference モジュールにおけるプライベートノードのタイトルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-7066 2014-05-1 18:08 2013-11-20 Show GitHub Exploit DB Packet Storm
220455 4.9 警告 Gizra - Drupal 用 Organic Groups モジュールにおけるノード上のグループの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-7068 2014-05-1 18:07 2013-11-20 Show GitHub Exploit DB Packet Storm
220456 5.8 警告 Gizra - Drupal 用 Organic Groups モジュールにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-7065 2014-05-1 18:07 2013-11-20 Show GitHub Exploit DB Packet Storm
220457 2.1 注意 Marcin Pajdzik - Drupal 用 EU Cookie Compliance モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7064 2014-05-1 18:06 2013-11-20 Show GitHub Exploit DB Packet Storm
220458 5 警告 PlusFront - Drupal 用 Invitation モジュールにおける重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-7063 2014-05-1 18:05 2013-11-20 Show GitHub Exploit DB Packet Storm
220459 4.3 警告 Joachim Noreiko - Drupal 用 Flag モジュールの管理者ページにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4336 2014-05-1 18:04 2013-08-28 Show GitHub Exploit DB Packet Storm
220460 5 警告 PaperCut Software International Pty - PaperCut MF および NG におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2014-2658 2014-05-1 17:34 2014-04-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292671 - cisco identity_services_engine_software Cross-site scripting (XSS) vulnerability in the troubleshooting page in Cisco Identity Services Engine (ISE) 1.2 and earlier allows remote attackers to inject arbitrary web script or HTML via an unsp… CWE-79
Cross-site Scripting
CVE-2013-5524 2024-11-21 10:57 2013-10-10 Show GitHub Exploit DB Packet Storm
292672 - cisco identity_services_engine_software The Sponsor Portal in Cisco Identity Services Engine (ISE) 1.2 and earlier does not properly restrict use of IFRAME elements, which makes it easier for remote attackers to conduct clickjacking attack… CWE-20
 Improper Input Validation 
CVE-2013-5523 2024-11-21 10:57 2013-10-10 Show GitHub Exploit DB Packet Storm
292673 - cisco ios The remember feature in the DHCP server in Cisco IOS allows remote attackers to cause a denial of service (device reload) by acquiring a lease and then sending a DHCPRELEASE message, aka Bug ID CSCuh… NVD-CWE-noinfo
CVE-2013-5499 2024-11-21 10:57 2013-10-10 Show GitHub Exploit DB Packet Storm
292674 - joomla joomla\! administrator/components/com_media/helpers/media.php in the media manager in Joomla! 2.5.x before 2.5.14 and 3.x before 3.1.5 allows remote authenticated users or remote attackers to bypass intended … CWE-20
 Improper Input Validation 
CVE-2013-5576 2024-11-21 10:57 2013-10-9 Show GitHub Exploit DB Packet Storm
292675 - adobe robohelp MDBMS.dll in Adobe RoboHelp 10 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-5327 2024-11-21 10:57 2013-10-9 Show GitHub Exploit DB Packet Storm
292676 - adobe acrobat
acrobat_reader
Adobe Reader and Acrobat 11.x before 11.0.05 on Windows allow remote attackers to execute arbitrary JavaScript code in a javascript: URL via a crafted PDF document. CWE-94
Code Injection
CVE-2013-5325 2024-11-21 10:57 2013-10-9 Show GitHub Exploit DB Packet Storm
292677 - ibm aix Multiple buffer overflows in (1) mkque and (2) mkquedev in bos.rte.printers in IBM AIX 6.1 and 7.1 allow local users to gain privileges by leveraging printq group membership. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-5419 2024-11-21 10:57 2013-10-4 Show GitHub Exploit DB Packet Storm
292678 - apple mac_os_x Directory Services in Apple Mac OS X before 10.8.5 Supplemental Update allows local users to bypass password-based authentication and modify arbitrary Directory Services records via unspecified vecto… CWE-287
Improper Authentication
CVE-2013-5163 2024-11-21 10:57 2013-10-4 Show GitHub Exploit DB Packet Storm
292679 - watchguard server_center Multiple untrusted search path vulnerabilities in (1) Watchguard Log Collector (wlcollector.exe) and (2) Watchguard WebBlocker Server (wbserver.exe) in WatchGuard Server Center 11.7.4, 11.7.3, and po… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-5701 2024-11-21 10:57 2013-10-4 Show GitHub Exploit DB Packet Storm
292680 - open-xchange open-xchange_appsuite Multiple cross-site scripting (XSS) vulnerabilities in Open-Xchange AppSuite before 7.2.2 allow remote authenticated users to inject arbitrary web script or HTML via (1) content with the text/xml MIM… CWE-79
Cross-site Scripting
CVE-2013-5690 2024-11-21 10:57 2013-10-4 Show GitHub Exploit DB Packet Storm