Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 22, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223251 6.8 警告 Qian Qin - WordPress 用 qTranslate プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-3251 2014-04-14 18:26 2013-06-4 Show GitHub Exploit DB Packet Storm
223252 6.8 警告 Jeremy Massel - WordPress 用 underConstruction プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-2699 2014-04-14 18:26 2013-06-3 Show GitHub Exploit DB Packet Storm
223253 6.8 警告 Lester Chan - WordPress 用 WP-Print プラグインのオプションにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-2693 2014-04-14 18:25 2013-04-5 Show GitHub Exploit DB Packet Storm
223254 6.8 警告 Dean Adjie Minwarie - WordPress 用 DVS Custom Notification プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-4921 2014-04-14 18:24 2012-09-14 Show GitHub Exploit DB Packet Storm
223255 5.8 警告 kernel.org - Linux-PAM 用 pam_timestamp モジュールの pam_timestamp.c におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-2583 2014-04-14 18:04 2014-03-26 Show GitHub Exploit DB Packet Storm
223256 7.5 危険 Pearson Education, Inc. - Pearson eSIS Enterprise Student Information System のパスワードリセット機能における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-1455 2014-04-14 17:52 2014-04-6 Show GitHub Exploit DB Packet Storm
223257 2.1 注意 CloudBees - CloudBees Jenkins におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2033 2014-04-14 17:38 2013-05-2 Show GitHub Exploit DB Packet Storm
223258 6.5 警告 レッドハット (KIE Group)
レッドハット
- 複数の Red Hat Jboss 製品における任意の Java コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-6468 2014-04-14 17:23 2013-11-4 Show GitHub Exploit DB Packet Storm
223259 7.5 危険 SAP - SAP Business Object Processing Framework for ABAP におけるアクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-2752 2014-04-14 17:23 2014-03-9 Show GitHub Exploit DB Packet Storm
223260 7.5 危険 SAP - SAP Print and Output Management におけるアクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-2751 2014-04-14 17:22 2014-03-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
273551 3.1 LOW
Network
ibm qradar_security_information_and_event_manager IBM QRadar SIEM 7.1 before MR2 Patch 13 and 7.2 before 7.2.7 mishandles authorization, which allows remote authenticated users to obtain sensitive information via unspecified vectors. CWE-284
Improper Access Control
CVE-2016-2874 2024-11-21 11:48 2016-12-1 Show GitHub Exploit DB Packet Storm
273552 8.8 HIGH
Network
ibm qradar_security_information_and_event_manager SQL injection vulnerability in IBM QRadar SIEM 7.1 before MR2 Patch 13 and 7.2 before 7.2.7 allows remote authenticated users to execute arbitrary SQL commands via unspecified vectors. CWE-89
SQL Injection
CVE-2016-2873 2024-11-21 11:48 2016-12-1 Show GitHub Exploit DB Packet Storm
273553 7.8 HIGH
Local
ibm qradar_security_information_and_event_manager IBM QRadar SIEM 7.1 before MR2 Patch 13 and 7.2 before 7.2.7 uses cleartext storage for unspecified passwords, which allows local users to obtain sensitive information by reading a configuration file. CWE-255
Credentials Management
CVE-2016-2871 2024-11-21 11:48 2016-12-1 Show GitHub Exploit DB Packet Storm
273554 5.4 MEDIUM
Network
ibm qradar_security_information_and_event_manager Multiple cross-site scripting (XSS) vulnerabilities in the UI in IBM QRadar SIEM 7.1 before MR2 Patch 13 and 7.2 before 7.2.7 allow remote authenticated users to inject arbitrary web script or HTML v… CWE-79
Cross-site Scripting
CVE-2016-2869 2024-11-21 11:48 2016-12-1 Show GitHub Exploit DB Packet Storm
273555 5.4 MEDIUM
Network
ibm rational_quality_manager
rational_engineering_lifecycle_manager
rational_team_concert
rational_collaborative_lifecycle_management
rational_rhapsody_design_manager
rational_doors_next_g…
Cross-site scripting (XSS) vulnerability in IBM Rational Collaborative Lifecycle Management 3.0.1.6 before iFix8, 4.0 before 4.0.7 iFix11, 5.0 before 5.0.2 iFix18, and 6.0 before 6.0.2 iFix5; Rationa… CWE-79
Cross-site Scripting
CVE-2016-2864 2024-11-21 11:48 2016-11-25 Show GitHub Exploit DB Packet Storm
273556 7.5 HIGH
Network
isc bind ISC BIND 9.1.0 through 9.8.4-P2 and 9.9.0 through 9.9.2-P2 allows remote attackers to cause a denial of service (assertion failure and daemon exit) via malformed options data in an OPT resource recor… CWE-20
 Improper Input Validation 
CVE-2016-2848 2024-11-21 11:48 2016-10-21 Show GitHub Exploit DB Packet Storm
273557 8.6 HIGH
Network
american_auto-matrix aspect-matrix_building_automation_front-end_solutions_application
aspect-nexus_building_automation_front-end_solutions_application
American Auto-Matrix Aspect-Nexus Building Automation Front-End Solutions application before 3.0.0 and Aspect-Matrix Building Automation Front-End Solutions application store passwords in cleartext, … NVD-CWE-Other
CVE-2016-2308 2024-11-21 11:48 2016-10-5 Show GitHub Exploit DB Packet Storm
273558 7.5 HIGH
Network
american_auto-matrix aspect-matrix_building_automation_front-end_solutions_application
aspect-nexus_building_automation_front-end_solutions_application
American Auto-Matrix Aspect-Nexus Building Automation Front-End Solutions application before 3.0.0 and Aspect-Matrix Building Automation Front-End Solutions application allow remote attackers to read… CWE-200
Information Exposure
CVE-2016-2307 2024-11-21 11:48 2016-10-5 Show GitHub Exploit DB Packet Storm
273559 7.5 HIGH
Network
oracle
isc
hp
linux
vm_server
bind
hp-ux
solaris
buffer.c in named in ISC BIND 9 before 9.9.9-P3, 9.10.x before 9.10.4-P3, and 9.11.x before 9.11.0rc3 does not properly construct responses, which allows remote attackers to cause a denial of service… CWE-20
 Improper Input Validation 
CVE-2016-2776 2024-11-21 11:48 2016-09-28 Show GitHub Exploit DB Packet Storm
273560 6.5 MEDIUM
Network
mozilla firefox The mozilla::net::IsValidReferrerPolicy function in Mozilla Firefox before 49.0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a Content Security … CWE-125
Out-of-bounds Read
CVE-2016-2827 2024-11-21 11:48 2016-09-23 Show GitHub Exploit DB Packet Storm