Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223421 4.3 警告 オラクル - Oracle E-Business Suite の Oracle Applications Manager における HTML OAM クライアントの処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-2396 2013-11-8 16:37 2013-04-16 Show GitHub Exploit DB Packet Storm
223422 6.8 警告 オラクル - Oracle MySQL における Data Manipulation Language の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-2395 2013-11-8 16:36 2013-04-16 Show GitHub Exploit DB Packet Storm
223423 4 警告 MySQL AB
オラクル
- Oracle MySQL における Server Optimizer の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-2392 2013-11-8 16:25 2013-04-16 Show GitHub Exploit DB Packet Storm
223424 3 注意 MySQL AB
オラクル
- Oracle MySQL における Server Install の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-2391 2013-11-8 16:24 2013-04-16 Show GitHub Exploit DB Packet Storm
223425 4.3 警告 オラクル - Oracle Fusion Middleware の Oracle WebLogic Server における WebLogic Console の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-2390 2013-11-8 16:22 2013-04-16 Show GitHub Exploit DB Packet Storm
223426 4 警告 MySQL AB
オラクル
- Oracle MySQL における InnoDB の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-2389 2013-11-8 16:22 2013-04-16 Show GitHub Exploit DB Packet Storm
223427 5 警告 オラクル - Oracle E-Business Suite の Oracle Applications Technology Stack における Mid Tier File Management の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-2388 2013-11-8 16:20 2013-04-16 Show GitHub Exploit DB Packet Storm
223428 3.6 注意 オラクル - Oracle Financial Services Software における BASE の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-2387 2013-11-8 16:20 2013-04-16 Show GitHub Exploit DB Packet Storm
223429 4.9 警告 オラクル - Oracle Financial Services Software における BASE の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-2386 2013-11-8 16:19 2013-04-16 Show GitHub Exploit DB Packet Storm
223430 4 警告 オラクル - Oracle Financial Services Software における BASE の処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-2385 2013-11-8 16:18 2013-04-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
277921 - certify_project certify The Certify module before 6.x-2.3 for Drupal does not properly perform node access checks, which allows remote authenticated users to bypass intended access restrictions and obtain sensitive PDF cert… CWE-200
Information Exposure
CVE-2015-3404 2024-11-21 11:29 2015-04-23 Show GitHub Exploit DB Packet Storm
277922 - fibonacciorange wedeal Open redirect vulnerability in the Commerce WeDeal module before 7.x-1.3 for Drupal allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via an unspecified pa… NVD-CWE-Other
CVE-2015-3393 2024-11-21 11:29 2015-04-22 Show GitHub Exploit DB Packet Storm
277923 - ajax_timeline_project ajax_timeline Cross-site scripting (XSS) vulnerability in the Ajax Timeline module before 7.x-1.1 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via a node title. CWE-79
Cross-site Scripting
CVE-2015-3392 2024-11-21 11:29 2015-04-22 Show GitHub Exploit DB Packet Storm
277924 - path_breadcrumbs_project path_breadcrumbs The Path Breadcrumbs module before 7.x-3.2 for Drupal allows remote attackers to bypass intended access restrictions and obtain sensitive node titles by reading a 403 Not Found page. CWE-200
Information Exposure
CVE-2015-3391 2024-11-21 11:29 2015-04-22 Show GitHub Exploit DB Packet Storm
277925 - facebook_album_fetcher_project facebook_album_fetcher Cross-site scripting (XSS) vulnerability in the Facebook Album Fetcher module for Drupal allows remote authenticated users with the "access administration pages" permission to inject arbitrary web sc… CWE-79
Cross-site Scripting
CVE-2015-3390 2024-11-21 11:29 2015-04-22 Show GitHub Exploit DB Packet Storm
277926 - public_download_count_project public_download_count Cross-site scripting (XSS) vulnerability in the Download counts report page in the Public Download Count module (pubdlcnt) 7.x-1.x-dev and earlier for Drupal allows remote authenticated users to inje… CWE-79
Cross-site Scripting
CVE-2015-3389 2024-11-21 11:29 2015-04-22 Show GitHub Exploit DB Packet Storm
277927 - balanced commerce_balanced_payments Cross-site request forgery (CSRF) vulnerability in the Commerce Balanced Payments module for Drupal allows remote attackers to hijack the authentication of arbitrary users for requests that delete th… CWE-352
 Origin Validation Error
CVE-2015-3388 2024-11-21 11:29 2015-04-22 Show GitHub Exploit DB Packet Storm
277928 - taxonomy_tools_project taxonomy_tools Multiple cross-site scripting (XSS) vulnerabilities in the Taxonomy Tools module before 7.x-1.4 for Drupal allow remote authenticated users to inject arbitrary web script or HTML via a (1) node or (2… CWE-79
Cross-site Scripting
CVE-2015-3387 2024-11-21 11:29 2015-04-22 Show GitHub Exploit DB Packet Storm
277929 - node_access_product_project node_access_product Cross-site scripting (XSS) vulnerability in the Node Access Product module for Drupal allows remote authenticated users to inject arbitrary web script or HTML via a node title. CWE-79
Cross-site Scripting
CVE-2015-3386 2024-11-21 11:29 2015-04-22 Show GitHub Exploit DB Packet Storm
277930 - taxonomy_path_project taxonomy_path Cross-site scripting (XSS) vulnerability in the Taxonomy Path module before 7.x-1.2 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via the "Link to path" field fo… CWE-79
Cross-site Scripting
CVE-2015-3385 2024-11-21 11:29 2015-04-22 Show GitHub Exploit DB Packet Storm