Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
221831 5 警告 Zarafa - Zarafa の provider/libserver/ECSession.cpp の ValidateUserLogon 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-0079 2014-05-1 15:16 2014-02-14 Show GitHub Exploit DB Packet Storm
221832 5 警告 Zarafa - Zarafa の provider/libserver/ECSession.cpp の ValidateUserLogon 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-0037 2014-05-1 15:01 2014-01-30 Show GitHub Exploit DB Packet Storm
221833 2.1 注意 dkorunic - PAM S/Key モジュール用の特定の Gentoo パッチにおける重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-4285 2014-05-1 14:51 2013-06-12 Show GitHub Exploit DB Packet Storm
221834 4.4 警告 zlib.org - pigz におけるアクセス権限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0296 2014-05-1 14:17 2013-02-15 Show GitHub Exploit DB Packet Storm
221835 4.4 警告 Litech Systems Design - router advertisement daemon における radvd デーモンを root として実行される脆弱性 CWE-DesignError
CVE-2011-3603 2014-05-1 13:54 2011-10-6 Show GitHub Exploit DB Packet Storm
221836 6.4 警告 Litech Systems Design - router advertisement daemon の device-linux.c におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2011-3602 2014-05-1 10:00 2011-10-4 Show GitHub Exploit DB Packet Storm
221837 6.4 警告 OpenJPEG project - OpenJPEG におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-6887 2014-04-30 19:20 2013-12-4 Show GitHub Exploit DB Packet Storm
221838 5 警告 OpenJPEG project - OpenJPEG における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2013-6053 2014-04-30 19:20 2013-12-2 Show GitHub Exploit DB Packet Storm
221839 10 危険 Fredrik Lundh
Python Software Foundation
- Python Image Library および Pillow における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2014-3007 2014-04-30 18:51 2014-01-29 Show GitHub Exploit DB Packet Storm
221840 10 危険 Acunetix - Acunetix Web Vulnerability Scanner におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-2994 2014-04-30 18:50 2014-04-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
2861 4.0 MEDIUM
Local
- - Contact Form by WD 1.13.1 contains a cross-site request forgery vulnerability combined with local file inclusion that allows unauthenticated attackers to include arbitrary files by exploiting unsanit… CWE-22
Path Traversal
CVE-2019-25734 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
2862 8.4 HIGH
Local
- - AllPlayer 7.4 contains a local buffer overflow vulnerability in URL handling that allows attackers to overwrite structured exception handling pointers by supplying an excessively long URL string. Att… CWE-120
Classic Buffer Overflow
CVE-2019-25735 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
2863 8.4 HIGH
Local
- - LabF nfsAxe 3.7 Ping Client contains a buffer overflow vulnerability that allows local attackers to execute arbitrary code by supplying a malicious payload in the Host IP field. Attackers can craft a… CWE-120
Classic Buffer Overflow
CVE-2019-25736 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
2864 9.8 CRITICAL
Network
- - WordPress Hybrid Composer 1.4.6 contains an unauthenticated settings change vulnerability that allows unauthenticated attackers to modify WordPress options by exploiting the hc_ajax_save_option actio… CWE-306
Missing Authentication for Critical Function
CVE-2019-25738 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
2865 6.5 MEDIUM
Network
- - Joomla com_jsjobs 1.2.6 contains an arbitrary file deletion vulnerability that allows authenticated attackers to delete files by manipulating custom userfield parameters. Attackers can send POST requ… CWE-22
Path Traversal
CVE-2019-25740 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
2866 9.8 CRITICAL
Network
- - Mobatek MobaXterm 12.1 contains a structured exception handling (SEH) based buffer overflow vulnerability in the username field of session files that allows remote attackers to execute arbitrary code… CWE-120
Classic Buffer Overflow
CVE-2019-25741 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
2867 8.2 HIGH
Network
- - WordPress Plugin Google Review Slider 6.1 contains a time-based blind SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through th… CWE-89
SQL Injection
CVE-2019-25745 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
2868 7.3 HIGH
Network
- - A vulnerability was detected in SourceCodester Pizzafy E-Commerce System 1.0. Affected by this vulnerability is the function Login of the file /admin/admin_class_novo.php of the component Administrat… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10704 2026-06-4 23:58 2026-06-3 Show GitHub Exploit DB Packet Storm
2869 7.3 HIGH
Network
- - A vulnerability was identified in DedeCMS 5.7.88. The impacted element is the function dede_htmlspecialchars of the file /plus/flink.php. The manipulation of the argument msg leads to sql injection. … CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10607 2026-06-4 23:56 2026-06-3 Show GitHub Exploit DB Packet Storm
2870 7.3 HIGH
Network
- - A security flaw has been discovered in DedeCMS 5.7.88. This affects the function RemoveXSS of the file /plus/carbuyaction.php. The manipulation of the argument postname/des results in sql injection. … CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10608 2026-06-4 23:56 2026-06-3 Show GitHub Exploit DB Packet Storm