Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220611 6.8 警告 レッドハット - IcedTea6 および IcedTea-Web の Java Network Launching Protocol の実装におけるローカルファイルへのアクセスを許可される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-2514 2014-05-16 14:47 2011-07-27 Show GitHub Exploit DB Packet Storm
220612 5 警告 レッドハット - IcedTea6 および IcedTea-Web の Java Network Launching Protocol の実装におけるユーザ名などを取得される脆弱性 CWE-200
情報漏えい
CVE-2011-2513 2014-05-16 14:47 2011-07-27 Show GitHub Exploit DB Packet Storm
220613 6.9 警告 BMC Software - BMC PATROL for AIX における権限を取得される脆弱性 CWE-Other
その他
CVE-2014-2591 2014-05-16 14:12 2014-04-9 Show GitHub Exploit DB Packet Storm
220614 6.8 警告 Open Assessment Technologies S.A. - Open Assessment Technologies TAO におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-2989 2014-05-16 12:24 2014-05-7 Show GitHub Exploit DB Packet Storm
220615 10 危険 ShenZhen Foscam Intelligent Technology - Foscam IP camera における任意のカメラを偽装またはハイジャックされる脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-1849 2014-05-16 12:19 2014-05-8 Show GitHub Exploit DB Packet Storm
220616 6.8 警告 OpenVPN Technologies - OpenVPN Access Server の管理 Web インターフェースにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-2692 2014-05-16 12:18 2013-05-8 Show GitHub Exploit DB Packet Storm
220617 6.8 警告 Tips and Tricks HQ - WordPress 用 WordPress Simple Paypal Shopping Cart プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-2705 2014-05-16 12:11 2013-06-5 Show GitHub Exploit DB Packet Storm
220618 4.3 警告 NetWebLogic - WordPress 用 Events Manager プラグインおよび Events Manager Pro プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1407 2014-05-16 12:10 2013-01-22 Show GitHub Exploit DB Packet Storm
220619 7.5 危険 Drupalauth Project - simpleSAMLphp 用 drupalauth モジュールの lib/Auth/Source/External.php における任意のユーザとして認証される脆弱性 CWE-287
不適切な認証
CVE-2013-4552 2014-05-16 11:16 2013-11-4 Show GitHub Exploit DB Packet Storm
220620 2.6 注意 Dan Wilga - Monster Menus モジュールにおける任意のノードコメントを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4504 2014-05-16 11:05 2013-10-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295511 - gimp
redhat
gimp
enterprise_linux
Integer overflow in the load_image function in file-xwd.c in the X Window Dump (XWD) plug-in in GIMP 2.6.9 and earlier, when used with glib before 2.24, allows remote attackers to cause a denial of s… CWE-190
 Integer Overflow or Wraparound
CVE-2013-1913 2024-11-21 10:50 2013-12-13 Show GitHub Exploit DB Packet Storm
295512 - fedoraproject
janrain
fedora
ruby-openid
The ruby-openid gem before 2.2.2 for Ruby allows remote OpenID providers to cause a denial of service (CPU consumption) via (1) a large XRDS document or (2) an XML Entity Expansion (XEE) attack. CWE-399
 Resource Management Errors
CVE-2013-1812 2024-11-21 10:50 2013-12-13 Show GitHub Exploit DB Packet Storm
295513 - autotrace_project autotrace Integer underflow in the input_bmp_reader function in input-bmp.c in AutoTrace 0.31.1 allows context-dependent attackers to have an unspecified impact via a small value in the biSize field in the hea… CWE-189
Numeric Errors
CVE-2013-1953 2024-11-21 10:50 2013-12-10 Show GitHub Exploit DB Packet Storm
295514 - redhat openstack nagios.upgrade_to_v3.sh, as distributed by Red Hat and possibly others for Nagios Core 3.4.4, 3.5.1, and earlier, allows local users to overwrite arbitrary files via a symlink attack on a temporary n… CWE-59
Link Following
CVE-2013-2029 2024-11-21 10:50 2013-11-24 Show GitHub Exploit DB Packet Storm
295515 - redhat
t-mobile
busybox
enterprise_linux
tm-ac1900
busybox
util-linux/mdev.c in BusyBox before 1.21.0 uses 0777 permissions for parent directories when creating nested directories under /dev/, which allows local users to have unknown impact and attack vector… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1813 2024-11-21 10:50 2013-11-23 Show GitHub Exploit DB Packet Storm
295516 - mozilla network_security_services Integer overflow in Mozilla Network Security Services (NSS) 3.15 before 3.15.3 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a large size value. CWE-189
Numeric Errors
CVE-2013-1741 2024-11-21 10:50 2013-11-18 Show GitHub Exploit DB Packet Storm
295517 - openvpn
opensuse
openvpn
openvpn_access_server
opensuse
The openvpn_decrypt function in crypto.c in OpenVPN 2.3.0 and earlier, when running in UDP mode, allows remote attackers to obtain sensitive information via a timing attack involving an HMAC comparis… CWE-200
Information Exposure
CVE-2013-2061 2024-11-21 10:50 2013-11-18 Show GitHub Exploit DB Packet Storm
295518 - mediawiki
fedoraproject
gentoo
mediawiki
fedora
linux
MediaWiki before 1.19.6 and 1.20.x before 1.20.5 does not allow extensions to prevent password changes without using both Special:PasswordReset and Special:ChangePassword, which allows remote attacke… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-2032 2024-11-21 10:50 2013-11-18 Show GitHub Exploit DB Packet Storm
295519 - gentoo
mediawiki
linux
mediawiki
MediaWiki before 1.19.6 and 1.20.x before 1.20.5 allows remote attackers to conduct cross-site scripting (XSS) attacks, as demonstrated by a CDATA section containing valid UTF-7 encoded sequences in … CWE-79
Cross-site Scripting
CVE-2013-2031 2024-11-21 10:50 2013-11-18 Show GitHub Exploit DB Packet Storm
295520 - linux linux_kernel The host_start function in drivers/usb/chipidea/host.c in the Linux kernel before 3.7.4 does not properly support a certain non-streaming option, which allows local users to cause a denial of service… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-2058 2024-11-21 10:50 2013-11-5 Show GitHub Exploit DB Packet Storm