Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224571 10 危険 Mozilla Foundation - Mozilla Firefox および SeaMonkey におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-0789 2013-06-27 17:00 2013-04-2 Show GitHub Exploit DB Packet Storm
224572 10 危険 Mozilla Foundation - 複数の Mozilla 製品のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-0788 2013-06-27 16:57 2013-04-2 Show GitHub Exploit DB Packet Storm
224573 6.5 警告 Linux - Linux Kernel の drivers/vhost/vhost.c における ホスト OS 権限を取得される脆弱性 CWE-DesignError
CVE-2013-0311 2013-06-27 16:46 2013-02-22 Show GitHub Exploit DB Packet Storm
224574 7.5 危険 Christophe Balisky - TYPO3 用 meta_feedit エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-4683 2013-06-27 16:44 2013-06-3 Show GitHub Exploit DB Packet Storm
224575 7.5 危険 Bas van Beek - TYPO3 用 Multishop エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-4682 2013-06-27 16:44 2013-06-3 Show GitHub Exploit DB Packet Storm
224576 7.5 危険 Michael Staatz - TYPO3 用 sofortueberweisung2commerce エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-4681 2013-06-27 16:43 2013-01-28 Show GitHub Exploit DB Packet Storm
224577 6.4 警告 Urs Maag - TYPO3 用 Maag Form Captcha エクステンションにおけるオープンリダイレクトの脆弱性 CWE-noinfo
情報不足
CVE-2013-4680 2013-06-27 16:42 2013-06-3 Show GitHub Exploit DB Packet Storm
224578 4.9 警告 Xen プロジェクト
Linux
- Linux Kernel 用 Xen におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-0231 2013-06-27 16:40 2013-02-5 Show GitHub Exploit DB Packet Storm
224579 5.2 警告 Linux - Linux Kernel の Xen netback 機能におけるサービス運用妨害 (ループ) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-0216 2013-06-27 16:36 2013-02-14 Show GitHub Exploit DB Packet Storm
224580 4.3 警告 Kristof De Jaeger - Drupal 用 Display Suite モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2177 2013-06-27 16:33 2013-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
278961 - reality66 cart66_lite SQL injection vulnerability in models/Cart66Ajax.php in the Cart66 Lite plugin before 1.5.4 for WordPress allows remote authenticated users to execute arbitrary SQL commands via the q parameter in a … CWE-89
SQL Injection
CVE-2014-9442 2024-11-21 11:20 2015-01-3 Show GitHub Exploit DB Packet Storm
278962 - lightbox_photo_gallery_project lightbox_photo_gallery Multiple cross-site request forgery (CSRF) vulnerabilities in the Lightbox Photo Gallery plugin 1.0 for WordPress allow remote attackers to hijack the authentication of administrators for requests th… CWE-352
 Origin Validation Error
CVE-2014-9441 2024-11-21 11:20 2015-01-3 Show GitHub Exploit DB Packet Storm
278963 - phpmyrecipes_project phpmyrecipes SQL injection vulnerability in browse.php in phpMyRecipes 1.2.2 allows remote attackers to execute arbitrary SQL commands via the category parameter. CWE-89
SQL Injection
CVE-2014-9440 2024-11-21 11:20 2015-01-3 Show GitHub Exploit DB Packet Storm
278964 - efssoft easy_file_sharing_web_server Cross-site scripting (XSS) vulnerability in Easy File Sharing Web Server 6.8 allows remote attackers to inject arbitrary web script or HTML via the username field during registration, which is not pr… CWE-79
Cross-site Scripting
CVE-2014-9439 2024-11-21 11:20 2015-01-3 Show GitHub Exploit DB Packet Storm
278965 - vbulletin vbulletin Cross-site request forgery (CSRF) vulnerability in the Moderator Control Panel in vBulletin 4.2.2 allows remote attackers to hijack the authentication of administrators for requests that (1) ban a us… CWE-352
 Origin Validation Error
CVE-2014-9438 2024-11-21 11:20 2015-01-3 Show GitHub Exploit DB Packet Storm
278966 - sliding_social_icons_project sliding_social_icons Multiple cross-site request forgery (CSRF) vulnerabilities in the Sliding Social Icons plugin 1.61 for WordPress allow remote attackers to hijack the authentication of administrators for requests tha… CWE-352
 Origin Validation Error
CVE-2014-9437 2024-11-21 11:20 2015-01-3 Show GitHub Exploit DB Packet Storm
278967 - sysaid sysaid Absolute path traversal vulnerability in SysAid On-Premise before 14.4.2 allows remote attackers to read arbitrary files via a \\\\ (four backslashes) in the fileName parameter to getRdsLogFile. CWE-22
Path Traversal
CVE-2014-9436 2024-11-21 11:20 2015-01-3 Show GitHub Exploit DB Packet Storm
278968 - absolutengine absolut_engine Multiple SQL injection vulnerabilities in Absolut Engine 1.73 allow remote authenticated users to execute arbitrary SQL commands via the (1) sectionID parameter to admin/managersection.php, (2) userI… CWE-89
SQL Injection
CVE-2014-9435 2024-11-21 11:20 2015-01-3 Show GitHub Exploit DB Packet Storm
278969 - absolutengine absolut_engine Cross-site scripting (XSS) vulnerability in admin/managerrelated.php in the administrative backend in Absolut Engine 1.73 allows remote authenticated users to inject arbitrary web script or HTML via … CWE-79
Cross-site Scripting
CVE-2014-9434 2024-11-21 11:20 2015-01-3 Show GitHub Exploit DB Packet Storm
278970 - contenido contendio Multiple cross-site scripting (XSS) vulnerabilities in cms/front_content.php in Contenido before 4.9.6, when advanced mod rewrite (AMR) is disabled, allow remote attackers to inject arbitrary web scr… CWE-79
Cross-site Scripting
CVE-2014-9433 2024-11-21 11:20 2015-01-1 Show GitHub Exploit DB Packet Storm