Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220821 4 警告 Debian - apt におけるトロイの木馬のパッケージをダウンロードされる脆弱性 CWE-20
不適切な入力確認
CVE-2014-0478 2014-06-25 14:25 2014-06-12 Show GitHub Exploit DB Packet Storm
220822 10 危険 Mozilla Foundation - Mozilla Firefox の nsTextEditRules::CreateMozBR 関数における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2014-1538 2014-06-25 12:16 2014-06-10 Show GitHub Exploit DB Packet Storm
220823 10 危険 Mozilla Foundation - Mozilla Firefox および Thunderbird のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2014-1533 2014-06-25 12:15 2014-06-10 Show GitHub Exploit DB Packet Storm
220824 7.1 危険 IBM - IBM WebSphere Application Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2014-0964 2014-06-25 12:13 2014-05-7 Show GitHub Exploit DB Packet Storm
220825 6.8 警告 NetIQ - NetIQ Sentinel の Agent Manager の NQMcsVarSet ActiveX コントロールの DumpToFile メソッドにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-3460 2014-06-25 12:13 2014-05-19 Show GitHub Exploit DB Packet Storm
220826 4.3 警告 シマンテック - OS X 上で稼働する Symantec PGP Desktop および Encryption Desktop Professional におけるファイル操作時の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3431 2014-06-24 18:38 2014-06-20 Show GitHub Exploit DB Packet Storm
220827 4 警告 シスコシステムズ - Cisco WebEx Meeting Server の XML programmatic interface における重要なミーティング情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-3296 2014-06-24 18:26 2014-06-20 Show GitHub Exploit DB Packet Storm
220828 10 危険 IBM - IBM Security Access Manager for Mobile および IBM Security Access Manager for Web における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2014-3073 2014-06-24 18:08 2014-06-21 Show GitHub Exploit DB Packet Storm
220829 8 危険 IBM - IBM Security Access Manager for Mobile および IBM Security Access Manager for Web のファームウェアにおける認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2014-3053 2014-06-24 18:07 2014-06-21 Show GitHub Exploit DB Packet Storm
220830 3.3 注意 IBM - IBM Security Access Manager for Web のファームウェアにおける重要な情報を取得される脆弱性 CWE-16
環境設定
CVE-2014-3052 2014-06-24 18:05 2014-06-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295121 - redhat
rubygems
ruby-lang
enterprise_linux
rubygems
ruby
Algorithmic complexity vulnerability in Gem::Version::VERSION_PATTERN in lib/rubygems/version.rb in RubyGems before 1.8.23.1, 1.8.24 through 1.8.25, 2.0.x before 2.0.8, and 2.1.x before 2.1.0, as use… CWE-310
Cryptographic Issues
CVE-2013-4287 2024-11-21 10:55 2013-10-18 Show GitHub Exploit DB Packet Storm
295122 - rubyonrails
opensuse
debian
rails
opensuse
debian_linux
Multiple format string vulnerabilities in log_subscriber.rb files in the log subscriber component in Action Mailer in Ruby on Rails 3.x before 3.2.15 allow remote attackers to cause a denial of servi… CWE-134
Use of Externally-Controlled Format String
CVE-2013-4389 2024-11-21 10:55 2013-10-17 Show GitHub Exploit DB Packet Storm
295123 - videolan vlc_media_player Buffer overflow in the mp4a packetizer (modules/packetizer/mpeg4audio.c) in VideoLAN VLC Media Player before 2.0.8 allows remote attackers to cause a denial of service (crash) and possibly execute ar… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-4388 2024-11-21 10:55 2013-10-12 Show GitHub Exploit DB Packet Storm
295124 - qemu qemu Use-after-free vulnerability in the virtio-pci implementation in Qemu 1.4.0 through 1.6.0 allows local users to cause a denial of service (daemon crash) by "hot-unplugging" a virtio device. CWE-399
 Resource Management Errors
CVE-2013-4377 2024-11-21 10:55 2013-10-12 Show GitHub Exploit DB Packet Storm
295125 - adaptivecomputing torque_resource_manager pbs_mom in Terascale Open-Source Resource and Queue Manager (aka TORQUE Resource Manager) 2.5.x, 4.x, and earlier does not properly restrict access by unprivileged ports, which allows remote authenti… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4319 2024-11-21 10:55 2013-10-12 Show GitHub Exploit DB Packet Storm
295126 - condor_project
redhat
condor
enterprise_mrg
The policy definition evaluator in Condor 7.5.4, 8.0.0, and earlier does not properly handle attributes in a (1) PREEMPT, (2) SUSPEND, (3) CONTINUE, (4) WANT_VACATE, or (5) KILL policy that evaluate … CWE-20
 Improper Input Validation 
CVE-2013-4255 2024-11-21 10:55 2013-10-12 Show GitHub Exploit DB Packet Storm
295127 - richard_cook rgpg The self.run_gpg function in lib/rgpg/gpg_helper.rb in the rgpg gem before 0.2.3 for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in unspecified vectors. CWE-94
Code Injection
CVE-2013-4203 2024-11-21 10:55 2013-10-12 Show GitHub Exploit DB Packet Storm
295128 - xymon xymon Directory traversal vulnerability in the trend-data daemon (xymond_rrd) in Xymon 4.x before 4.3.12 allows remote attackers to delete arbitrary files via a .. (dot dot) in the host name in a "drophost… CWE-22
Path Traversal
CVE-2013-4173 2024-11-21 10:55 2013-10-12 Show GitHub Exploit DB Packet Storm
295129 - cmsmadesimple cms_made_simple Cross-site scripting (XSS) vulnerability in CMS Made Simple (CMSMS) before 1.11.7 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2013-4167 2024-11-21 10:55 2013-10-12 Show GitHub Exploit DB Packet Storm
295130 - mediawiki mediawiki Cross-site request forgery (CSRF) vulnerability in api/ApiQueryCheckUser.php in the CheckUser extension for MediaWiki, possibly Checkuser before 2.3, allows remote attackers to hijack the authenticat… CWE-352
 Origin Validation Error
CVE-2013-4306 2024-11-21 10:55 2013-10-12 Show GitHub Exploit DB Packet Storm