Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
222661 4.3 警告 Apache Software Foundation - Apache ActiveMQ のデモ Web アプリケーションの Portfolio publisher servlet におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1880 2014-02-7 16:32 2013-03-21 Show GitHub Exploit DB Packet Storm
222662 4.3 警告 Oyvind Sean Kinsey - easyXDM の name.html におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1403 2014-02-7 16:01 2014-01-18 Show GitHub Exploit DB Packet Storm
222663 4.3 警告 Xaraya - Xaraya におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3639 2014-02-7 16:00 2013-06-26 Show GitHub Exploit DB Packet Storm
222664 9.3 危険 JetAudio - jetAudio の JetMPG.ax モジュールにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-2691 2014-02-7 16:00 2013-05-2 Show GitHub Exploit DB Packet Storm
222665 4.3 警告 John Dyer
ownCloud
- ownCloud Server で使用される MediaElement.js の flashmediaelement.swf におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1967 2014-02-7 15:59 2013-04-18 Show GitHub Exploit DB Packet Storm
222666 4.3 警告 レッドハット - Red Hat Network Satellite および Proxy の Spacewalk-backend におけるパスワードを取得される脆弱性 CWE-310
暗号の問題
CVE-2012-0059 2014-02-7 12:23 2012-02-6 Show GitHub Exploit DB Packet Storm
222667 4.3 警告 レッドハット - Red Hat Network Satellite で使用される Spacewalk におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-3344 2014-02-7 12:22 2011-09-15 Show GitHub Exploit DB Packet Storm
222668 4.3 警告 レッドハット - Red Hat Network Satellite で使用される Spacewalk におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2927 2014-02-7 12:21 2011-09-15 Show GitHub Exploit DB Packet Storm
222669 4.3 警告 レッドハット - Red Hat Network Satellite で使用される Spacewalk におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2920 2014-02-7 12:20 2011-09-15 Show GitHub Exploit DB Packet Storm
222670 4.3 警告 レッドハット - Red Hat Network Satellite で使用される Spacewalk におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-2919 2014-02-7 12:20 2011-09-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268521 6.1 MEDIUM
Network
ibm inotes
domino
IBM Verse is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leading to crede… CWE-79
Cross-site Scripting
CVE-2016-6113 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268522 9.8 CRITICAL
Network
ibm websphere_commerce IBM WebSphere Commerce contains an unspecified vulnerability that could allow disclosure of user personal data, performing of unauthorized administrative operations, and potentially causing a denial … NVD-CWE-noinfo
CVE-2016-6090 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268523 6.5 MEDIUM
Adjacent
ibm bigfix_platform IBM BigFix Platform could allow an attacker on the local network to crash the BES and relay servers. CWE-284
Improper Access Control
CVE-2016-6085 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268524 6.5 MEDIUM
Adjacent
ibm bigfix_platform IBM BigFix Platform could allow an attacker on the local network to crash the BES server using a specially crafted XMLSchema request. CWE-20
 Improper Input Validation 
CVE-2016-6084 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268525 10.0 CRITICAL
Network
ibm bigfix_platform IBM BigFix Platform could allow a remote attacker to execute arbitrary code on the system, caused by a use-after-free race condition. An attacker could exploit this vulnerability to execute arbitrary… CWE-416
 Use After Free
CVE-2016-6082 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268526 5.3 MEDIUM
Network
ibm websphere_message_broker The WebAdmin context for WebSphere Message Broker allows directory listings which could disclose sensitive information to the attacker. CWE-200
Information Exposure
CVE-2016-6080 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268527 5.4 MEDIUM
Network
ibm maximo_for_transportation
maximo_for_life_sciences
maximo_for_aviation
tivoli_asset_management_for_it
smartcloud_control_desk
tivoli_change_and_configuration_management_database
tiv…
IBM Maximo Asset Management is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentiall… CWE-79
Cross-site Scripting
CVE-2016-6072 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268528 7.8 HIGH
Local
ibm security_guardium IBM Security Guardium Database Activity Monitor appliance could allow a local user to inject commands that would be executed as root. CWE-78
OS Command 
CVE-2016-6065 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268529 5.4 MEDIUM
Network
ibm rational_collaborative_lifecycle_management IBM Jazz Foundation is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially leadin… CWE-79
Cross-site Scripting
CVE-2016-6061 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm
268530 8.1 HIGH
Network
ibm infosphere_information_server
infosphere_datastage
infosphere_information_server_on_cloud
IBM InfoSphere Information Server is vulnerable to a denial of service, caused by an XML External Entity Injection (XXE) error when processing XML data. A remote attacker could exploit this vulnerabi… CWE-611
XXE
CVE-2016-6059 2024-11-21 11:55 2017-02-2 Show GitHub Exploit DB Packet Storm