Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223791 6.8 警告 マイクロソフト - Android 用 Microsoft Bing アプリケーションにおける任意の APK ファイルをインストールされる脆弱性 CWE-94
コード・インジェクション
CVE-2014-1670 2014-01-28 15:48 2014-01-21 Show GitHub Exploit DB Packet Storm
223792 9.3 危険 SmartBear Software - SoapUI の WSDL/WADL インポート機能における任意の Java コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-1202 2014-01-28 15:38 2014-01-14 Show GitHub Exploit DB Packet Storm
223793 4.3 警告 レッドハット - libvirt における ACL の domain:getattr および connect:search_domains の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0028 2014-01-28 10:57 2014-01-16 Show GitHub Exploit DB Packet Storm
223794 4 警告 Drupal - Drupal の Taxonomy モジュールにおける重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1476 2014-01-28 10:11 2014-01-15 Show GitHub Exploit DB Packet Storm
223795 7.5 危険 Drupal - Drupal の OpenID モジュールにおける他のユーザとして認証される脆弱性 CWE-noinfo
情報不足
CVE-2014-1475 2014-01-28 10:11 2014-01-15 Show GitHub Exploit DB Packet Storm
223796 7.5 危険 live555 - VideoLAN VLC media player で使用される Live Networks Live555 Streaming Media におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
CWE-189
CVE-2013-6934 2014-01-27 18:54 2013-12-30 Show GitHub Exploit DB Packet Storm
223797 7.5 危険 live555 - VideoLAN VLC media player で使用される Live Networks Live555 Streaming Media におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
CWE-189
CVE-2013-6933 2014-01-27 18:53 2013-12-30 Show GitHub Exploit DB Packet Storm
223798 2.1 注意 IBM - Windows 上で稼働する IBM Tivoli Storage Manager のクライアントにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-5371 2014-01-27 18:52 2013-08-22 Show GitHub Exploit DB Packet Storm
223799 4.3 警告 IBM - IBM System X および Flex System サーバの Integrated Management Module 2 における暗号保護メカニズムを回避される脆弱性 CWE-310
暗号の問題
CVE-2013-4030 2014-01-27 18:48 2013-09-10 Show GitHub Exploit DB Packet Storm
223800 7.8 危険 Thecus - Thecus NAS サーバの N8800 ファームウェアにおける重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-5669 2014-01-27 18:10 2013-08-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
651 5.3 MEDIUM
Network
- - Authorization bypass through User-Controlled key vulnerability in Essential Plugin WP Logo Showcase Responsive Slider and Carousel allows Exploiting Incorrectly Configured Access Control Security Lev… New CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2023-40200 2026-06-11 23:42 2026-06-11 Show GitHub Exploit DB Packet Storm
652 4.3 MEDIUM
Network
- - Cross-Site request forgery (CSRF) vulnerability in Magepeople inc. WpEvently allows Cross Site Request Forgery. This issue affects WpEvently: from n/a through 4.1.2. New CWE-352
 Origin Validation Error
CVE-2024-32110 2026-06-11 23:42 2026-06-11 Show GitHub Exploit DB Packet Storm
653 5.4 MEDIUM
Network
- - Missing Authorization vulnerability in TemplateHouse Soledad allows Accessing Functionality Not Properly Constrained by ACLs. This issue affects Soledad: from n/a through 8.2.5. New CWE-862
 Missing Authorization
CVE-2022-42479 2026-06-11 23:42 2026-06-11 Show GitHub Exploit DB Packet Storm
654 4.6 MEDIUM
Network
- - Cross-Site request forgery (CSRF) vulnerability in YITH YITH WooCommerce Product Slider Carousel allows Cross Site Request Forgery. This issue affects YITH WooCommerce Product Slider Carousel: from … New CWE-352
 Origin Validation Error
CVE-2022-44630 2026-06-11 23:42 2026-06-11 Show GitHub Exploit DB Packet Storm
655 5.4 MEDIUM
Network
- - Missing Authorization vulnerability in BeRocket Advanced AJAX Product Filters allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Advanced AJAX Product Filter… New CWE-862
 Missing Authorization
CVE-2022-45813 2026-06-11 23:42 2026-06-11 Show GitHub Exploit DB Packet Storm
656 4.3 MEDIUM
Network
- - Cross-Site request forgery (CSRF) vulnerability in weDevs WooCommerce Conversion Tracking allows Cross Site Request Forgery. This issue affects WooCommerce Conversion Tracking: from n/a through 2.0.… New CWE-352
 Origin Validation Error
CVE-2022-47150 2026-06-11 23:42 2026-06-11 Show GitHub Exploit DB Packet Storm
657 5.4 MEDIUM
Network
- - Missing Authorization vulnerability in ThemeHunk Contact Form & Lead Form Elementor Builder allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects Contact Form &… New CWE-862
 Missing Authorization
CVE-2023-25969 2026-06-11 23:42 2026-06-11 Show GitHub Exploit DB Packet Storm
658 4.3 MEDIUM
Network
- - Missing Authorization vulnerability in Sparkle WP MetroStore metrostore allows Exploiting Incorrectly Configured Access Control Security Levels. This issue affects MetroStore: from n/a through 1.3.2. New CWE-862
 Missing Authorization
CVE-2023-32959 2026-06-11 23:42 2026-06-11 Show GitHub Exploit DB Packet Storm
659 6.1 MEDIUM
Network
- - draw.io is a configurable diagramming and whiteboarding application. Prior to version 29.7.12, a crafted .drawio file can execute arbitrary JavaScript in the editor's origin when the file is opened. … New CWE-79
Cross-site Scripting
CVE-2026-46642 2026-06-11 23:16 2026-06-11 Show GitHub Exploit DB Packet Storm
660 8.1 HIGH
Network
- - Roxy-WI is a web interface for managing Haproxy, Nginx, Apache and Keepalived servers. In versions 8.2.6.4 and prior, ommit d4d10006 ("Expand validation to block .. in config_file_name and configver … New CWE-22
CWE-697
Path Traversal
 Incorrect Comparison
CVE-2026-45569 2026-06-11 23:16 2026-06-11 Show GitHub Exploit DB Packet Storm