Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220671 6.5 警告 Ando Saabas - Sphider の admin/admin.php における任意の PHP コードを settings/conf.php に挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2014-5194 2014-08-11 11:57 2014-07-28 Show GitHub Exploit DB Packet Storm
220672 4.3 警告 Ando Saabas - Sphider の admin/admin.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5193 2014-08-11 11:56 2014-07-28 Show GitHub Exploit DB Packet Storm
220673 7.5 危険 Ando Saabas - Sphider の admin/admin.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-5192 2014-08-11 11:56 2014-07-28 Show GitHub Exploit DB Packet Storm
220674 7.5 危険 Ando Saabas - 複数の Sphider 製品における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-5082 2014-08-11 11:56 2014-06-20 Show GitHub Exploit DB Packet Storm
220675 7.2 危険 Ayatana Project - Ubuntu で使用される Unity におけるロック画面を回避される脆弱性 CWE-362
競合状態
CVE-2014-5195 2014-08-11 11:46 2014-07-31 Show GitHub Exploit DB Packet Storm
220676 4.3 警告 CKEditor Team - CKEditor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5191 2014-08-11 11:36 2014-07-15 Show GitHub Exploit DB Packet Storm
220677 4.3 警告 freelinking Project
Freelinking for Case Tracker Project
- Freelinking for Case Tracker モジュールで使用される Drupal 用 freelinking モジュールにおける重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-5179 2014-08-8 19:11 2014-07-23 Show GitHub Exploit DB Packet Storm
220678 6.8 警告 Debian
Canonical
- reportbug における任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-0479 2014-08-8 19:11 2014-08-5 Show GitHub Exploit DB Packet Storm
220679 4.3 警告 Mike Challis - WordPress 用 SI CAPTCHA Anti-Spam プラグインの captcha-secureimage/test/index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5190 2014-08-8 18:59 2014-08-3 Show GitHub Exploit DB Packet Storm
220680 7.5 危険 Ariel Sanders - WordPress 用 Lead Octopus プラグインの lib/optin/optin_page.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-5189 2014-08-8 18:54 2014-07-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294841 - adobe shockwave_player Adobe Shockwave Player before 12.0.7.148 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2013-5… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-5334 2024-11-21 10:57 2013-12-12 Show GitHub Exploit DB Packet Storm
294842 - adobe shockwave_player Adobe Shockwave Player before 12.0.7.148 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a different vulnerability than CVE-2013-5… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-5333 2024-11-21 10:57 2013-12-12 Show GitHub Exploit DB Packet Storm
294843 - adobe flash_player
air
air_sdk
Adobe Flash Player before 11.7.700.257 and 11.8.x and 11.9.x before 11.9.900.170 on Windows and Mac OS X and before 11.2.202.332 on Linux, Adobe AIR before 3.9.0.1380, Adobe AIR SDK before 3.9.0.1380… CWE-94
Code Injection
CVE-2013-5332 2024-11-21 10:57 2013-12-12 Show GitHub Exploit DB Packet Storm
294844 - mozilla
fedoraproject
oracle
canonical
redhat
suse
opensuse
firefox
seamonkey
fedora
solaris
ubuntu_linux
enterprise_linux_server
enterprise_linux_server_eus
enterprise_linux_workstation
enterprise_linux_server_aus
enterprise_linux_…
Mozilla Firefox before 26.0 and SeaMonkey before 2.23 do not properly consider the sandbox attribute of an IFRAME element during processing of a contained OBJECT element, which allows remote attacker… CWE-1021
 Improper Restriction of Rendered UI Layers or Frames
CVE-2013-5614 2024-11-21 10:57 2013-12-12 Show GitHub Exploit DB Packet Storm
294845 9.8 CRITICAL
Network
mozilla
fedoraproject
opensuse
suse
redhat
canonical
firefox_esr
firefox
thunderbird
seamonkey
fedora
opensuse
suse_linux_enterprise_software_development_kit
suse_linux_enterprise_desktop
suse_linux_enterprise_server
enterpri…
Use-after-free vulnerability in the PresShell::DispatchSynthMouseMove function in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 allows … CWE-416
 Use After Free
CVE-2013-5613 2024-11-21 10:57 2013-12-12 Show GitHub Exploit DB Packet Storm
294846 - mozilla
fedoraproject
oracle
canonical
redhat
suse
opensuse
firefox
seamonkey
fedora
solaris
ubuntu_linux
enterprise_linux_server
enterprise_linux_server_eus
enterprise_linux_workstation
enterprise_linux_server_aus
enterprise_linux_…
Cross-site scripting (XSS) vulnerability in Mozilla Firefox before 26.0 and SeaMonkey before 2.23 makes it easier for remote attackers to inject arbitrary web script or HTML by leveraging a Same Orig… CWE-79
Cross-site Scripting
CVE-2013-5612 2024-11-21 10:57 2013-12-12 Show GitHub Exploit DB Packet Storm
294847 9.8 CRITICAL
Network
mozilla
fedoraproject
opensuse
suse
canonical
redhat
firefox_esr
firefox
thunderbird
seamonkey
fedora
opensuse
suse_linux_enterprise_software_development_kit
suse_linux_enterprise_desktop
suse_linux_enterprise_server
ubuntu_l…
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 allow remote attackers to c… NVD-CWE-noinfo
CVE-2013-5609 2024-11-21 10:57 2013-12-12 Show GitHub Exploit DB Packet Storm
294848 - adobe flash_player
air
air_sdk
Adobe Flash Player before 11.7.700.257 and 11.8.x and 11.9.x before 11.9.900.170 on Windows and Mac OS X and before 11.2.202.332 on Linux, Adobe AIR before 3.9.0.1380, Adobe AIR SDK before 3.9.0.1380… CWE-94
Code Injection
CVE-2013-5331 2024-11-21 10:57 2013-12-12 Show GitHub Exploit DB Packet Storm
294849 - ibm rational_requirements_composer
rational_quality_manager
rational_team_concert
Cross-site scripting (XSS) vulnerability in the search implementation in IBM Rational Quality Manager (RQM) 2.0 through 2.0.1.1, 3.x before 3.0.1.6 iFix 1, and 4.x before 4.0.5, as used in Rational T… CWE-79
Cross-site Scripting
CVE-2013-5404 2024-11-21 10:57 2013-12-11 Show GitHub Exploit DB Packet Storm
294850 - ibm forms_viewer Stack-based buffer overflow in IBM Forms Viewer 4.x before 4.0.0.3 and 8.x before 8.0.1.1 allows remote attackers to execute arbitrary code via an XFDL form with a long fontname value. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-5447 2024-11-21 10:57 2013-12-10 Show GitHub Exploit DB Packet Storm