Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220701 7.5 危険 MediaWiki - MediaWiki 用 Scribuntu 拡張機能の php-luasandbox におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-4571 2014-05-13 12:20 2013-06-17 Show GitHub Exploit DB Packet Storm
220702 5 警告 MediaWiki - MediaWiki 用 Scribuntu 拡張機能の php-luasandbox におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2013-4570 2014-05-13 12:20 2013-09-24 Show GitHub Exploit DB Packet Storm
220703 4.3 警告 IBM - IBM Operational Decision Manager の Rule Execution Server における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-0946 2014-05-12 18:42 2014-04-30 Show GitHub Exploit DB Packet Storm
220704 3.5 注意 IBM - IBM Operational Decision Manager の Rule Execution Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0945 2014-05-12 18:38 2014-04-30 Show GitHub Exploit DB Packet Storm
220705 6 警告 IBM - IBM Operational Decision Manager の Rule Execution Server の Rule Execution Server コンソールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-0944 2014-05-12 18:33 2014-04-30 Show GitHub Exploit DB Packet Storm
220706 4.3 警告 IBM - IBM iNotes および Domino におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0913 2014-05-12 18:20 2014-05-7 Show GitHub Exploit DB Packet Storm
220707 5 警告 ISC, Inc. - ISC BIND の named のプリフェッチの実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-3214 2014-05-12 18:11 2014-05-8 Show GitHub Exploit DB Packet Storm
220708 4.3 警告 SemanticTitle project - MediaWiki 用 SemanticTitle 拡張機能 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2854 2014-05-12 18:04 2014-03-7 Show GitHub Exploit DB Packet Storm
220709 4.3 警告 SKS Keyserver project - SKS Keyserver の wserver.ml におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3207 2014-05-12 17:54 2014-05-1 Show GitHub Exploit DB Packet Storm
220710 4.3 警告 株式会社エヌ・ティ・ティ・データ・イントラマート - intra-mart におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2014-1991 2014-05-12 17:44 2014-05-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295701 - kde kdelibs kioslave/http/http.cpp in KIO in kdelibs 4.10.3 and earlier allows attackers to discover credentials via a crafted request that triggers an "internal server error," which includes the username and pa… CWE-200
Information Exposure
CVE-2013-2074 2024-11-21 10:50 2014-02-6 Show GitHub Exploit DB Packet Storm
295702 - apache activemq Cross-site scripting (XSS) vulnerability in the Portfolio publisher servlet in the demo web application in Apache ActiveMQ before 5.9.0 allows remote attackers to inject arbitrary web script or HTML … CWE-79
Cross-site Scripting
CVE-2013-1880 2024-11-21 10:50 2014-02-6 Show GitHub Exploit DB Packet Storm
295703 - mediaelementjs
owncloud
mediaelement.js
owncloud
Cross-site scripting (XSS) vulnerability in flashmediaelement.swf in MediaElement.js before 2.11.2, as used in ownCloud Server 5.0.x before 5.0.5 and 4.5.x before 4.5.10, allows remote attackers to i… CWE-79
Cross-site Scripting
CVE-2013-1967 2024-11-21 10:50 2014-02-6 Show GitHub Exploit DB Packet Storm
295704 - kolja_schleich leaguemanager SQL injection vulnerability in leaguemanager.php in the LeagueManager plugin before 3.8.1 for WordPress allows remote attackers to execute arbitrary SQL commands via the league_id parameter in the le… CWE-89
SQL Injection
CVE-2013-1852 2024-11-21 10:50 2014-02-6 Show GitHub Exploit DB Packet Storm
295705 - almanah_project almanah Almanah Diary 0.9.0 and 0.10.0 does not encrypt the database when closed, which allows local users to obtain sensitive information by reading the database. CWE-310
Cryptographic Issues
CVE-2013-1853 2024-11-21 10:50 2014-01-25 Show GitHub Exploit DB Packet Storm
295706 - redhat dogtag_certificate_system
certificate_system
Format string vulnerability in the token processing system (pki-tps) in Red Hat Certificate System (RHCS) 8.1 and possibly Dogtag Certificate System 9 and 10 allows remote authenticated users to caus… CWE-134
Use of Externally-Controlled Format String
CVE-2013-1886 2024-11-21 10:50 2014-01-25 Show GitHub Exploit DB Packet Storm
295707 - redhat dogtag_certificate_system
certificate_system
Multiple cross-site scripting (XSS) vulnerabilities in the token processing system (pki-tps) in Red Hat Certificate System (RHCS) 8.1 and possibly Dogtag Certificate System 9 and 10 allow remote atta… CWE-79
Cross-site Scripting
CVE-2013-1885 2024-11-21 10:50 2014-01-25 Show GitHub Exploit DB Packet Storm
295708 - linux-nfs nfs-utils rpc-gssd in nfs-utils before 1.2.8 performs reverse DNS resolution for server names during GSSAPI authentication, which might allow remote attackers to read otherwise-restricted files via DNS spoofin… CWE-200
Information Exposure
CVE-2013-1923 2024-11-21 10:50 2014-01-22 Show GitHub Exploit DB Packet Storm
295709 - simon_mcvittie telepathy_gabble A certain hashing algorithm in Telepathy Gabble 0.16.x before 0.16.5 and 0.17.x before 0.17.3 allows remote attackers to cause a denial of service (NULL pointer dereference and crash) via a crafted m… CWE-310
Cryptographic Issues
CVE-2013-1769 2024-11-21 10:50 2014-01-22 Show GitHub Exploit DB Packet Storm
295710 - mozilla network_security_services The ssl_Do1stHandshake function in sslsecur.c in libssl in Mozilla Network Security Services (NSS) before 3.15.4, when the TLS False Start feature is enabled, allows man-in-the-middle attackers to sp… CWE-310
Cryptographic Issues
CVE-2013-1740 2024-11-21 10:50 2014-01-19 Show GitHub Exploit DB Packet Storm