Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223441 2.1 注意 OpenStack - OpenStack Image Registry and Delivery Service の API における任意のテナントに画像を挿入される脆弱性 CWE-20
不適切な入力確認
CVE-2013-4354 2013-11-26 14:52 2013-09-26 Show GitHub Exploit DB Packet Storm
223442 6.8 警告 ヒューレット・パッカード - HP 2620 Switch Series の html/json.html におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-6852 2013-11-25 16:44 2013-09-26 Show GitHub Exploit DB Packet Storm
223443 4.7 警告 General Electric Company
Catapult Software
- GE Intelligent Platforms 製品で使用される Catapult および GE Intelligent Platforms Proficy の DNP3 I/O ドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-2823 2013-11-25 16:42 2013-10-7 Show GitHub Exploit DB Packet Storm
223444 5.4 警告 シスコシステムズ - Cisco 7600 シリーズルータ上で稼働する Cisco IOS の MLDP の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-6693 2013-11-25 16:33 2013-11-21 Show GitHub Exploit DB Packet Storm
223445 6.3 警告 シスコシステムズ - Cisco IOS XE におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-6692 2013-11-25 16:32 2013-11-21 Show GitHub Exploit DB Packet Storm
223446 5 警告 オラクル - Oracle Supply Chain Products Suite の Oracle Transportation Management における Install / Installation に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5826 2013-11-25 15:34 2013-10-15 Show GitHub Exploit DB Packet Storm
223447 7.8 危険 ISC, Inc.
アップル
- UNIX プラットフォーム上の ISC BIND におけるサービス運用妨害 (メモリ消費) の脆弱性 CWE-119
バッファエラー
CVE-2013-2266 2013-11-25 10:53 2013-03-26 Show GitHub Exploit DB Packet Storm
223448 4.6 警告 The phpMyAdmin Project - phpMyAdmin における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-3239 2013-11-25 10:52 2013-04-24 Show GitHub Exploit DB Packet Storm
223449 6 警告 The phpMyAdmin Project - phpMyAdmin における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-3238 2013-11-25 10:51 2013-04-24 Show GitHub Exploit DB Packet Storm
223450 4.9 警告 FreeBSD - FreeBSD の sys/dev/qlxgbe/ql_ioctl.c 内の ql_eioctl 関数における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2013-6834 2013-11-22 15:13 2013-11-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 4, 2026, 4:17 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
277391 - canonical
redhat
apple
xmlsoft
hp
debian
ubuntu_linux
enterprise_linux_hpc_node
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
watchos
iphone_os
mac_os_x
tvos
libxml2
icewall_file…
The xmlStringLenDecodeEntities function in parser.c in libxml2 before 2.9.3 does not properly prevent entity expansion, which allows context-dependent attackers to cause a denial of service (CPU cons… CWE-399
 Resource Management Errors
CVE-2015-5312 2024-11-21 11:32 2015-12-16 Show GitHub Exploit DB Packet Storm
277392 - ibm websphere_application_server The Edge Component Caching Proxy in IBM WebSphere Application Server (WAS) 8.0 before 8.0.0.12 and 8.5 before 8.5.5.8 does not properly encrypt data, which allows remote authenticated users to obtain… CWE-200
Information Exposure
CVE-2015-5004 2024-11-21 11:32 2015-12-15 Show GitHub Exploit DB Packet Storm
277393 - opensuse
simon_tatham
leap
opensuse
putty
Integer overflow in the terminal emulator in PuTTY before 0.66 allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via an ECH (erase characters… CWE-189
Numeric Errors
CVE-2015-5309 2024-11-21 11:32 2015-12-8 Show GitHub Exploit DB Packet Storm
277394 - ibm
redhat
suse
java_2_sdk
java_sdk
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
satellite
enterprise_linux_server_eus
linux_enterprise_server
linux_enterpris…
IBM Java Security Components in IBM SDK, Java Technology Edition 8 before SR2, 7 R1 before SR3 FP20, 7 before SR9 FP20, 6 R1 before SR8 FP15, and 6 before SR16 FP15 allow physically proximate attacke… CWE-200
Information Exposure
CVE-2015-5006 2024-11-21 11:32 2015-12-8 Show GitHub Exploit DB Packet Storm
277395 - redhat libreport libreport 2.0.7 before 2.6.3 only saves changes to the first file when editing a crash report, which allows remote attackers to obtain sensitive information via unspecified vectors related to the (1)… CWE-200
Information Exposure
CVE-2015-5302 2024-11-21 11:32 2015-12-8 Show GitHub Exploit DB Packet Storm
277396 - redhat automatic_bug_reporting_tool
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_hpc_node
The abrt-hook-ccpp help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows local users with certain permissions to gain privileges via a symlink attack on a file with a predictable na… CWE-59
Link Following
CVE-2015-5287 2024-11-21 11:32 2015-12-8 Show GitHub Exploit DB Packet Storm
277397 - redhat automatic_bug_reporting_tool
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_hpc_node
The abrt-action-install-debuginfo-to-abrt-cache help program in Automatic Bug Reporting Tool (ABRT) before 2.7.1 allows local users to write to arbitrary files via a symlink attack on unpacked.cpio i… CWE-59
Link Following
CVE-2015-5273 2024-11-21 11:32 2015-12-8 Show GitHub Exploit DB Packet Storm
277398 - redhat ceph CRLF injection vulnerability in the Ceph Object Gateway (aka radosgw or RGW) in Ceph before 0.94.4 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks… NVD-CWE-Other
CVE-2015-5245 2024-11-21 11:32 2015-12-4 Show GitHub Exploit DB Packet Storm
277399 - jenkins
redhat
jenkins
openshift
Cross-site scripting (XSS) vulnerability in the slave overview page in Jenkins before 1.638 and LTS before 1.625.2 allows remote authenticated users with certain permissions to inject arbitrary web s… CWE-79
Cross-site Scripting
CVE-2015-5326 2024-11-21 11:32 2015-11-26 Show GitHub Exploit DB Packet Storm
277400 - redhat
jenkins
openshift
jenkins
Jenkins before 1.638 and LTS before 1.625.2 allow attackers to bypass intended slave-to-master access restrictions by leveraging a JNLP slave. NOTE: this vulnerability exists because of an incomplete… CWE-284
Improper Access Control
CVE-2015-5325 2024-11-21 11:32 2015-11-26 Show GitHub Exploit DB Packet Storm