Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224631 4.3 警告 IBM - IBM WebSphere Commerce Enterprise における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-0523 2013-06-25 16:11 2013-06-14 Show GitHub Exploit DB Packet Storm
224632 4.3 警告 IBM - IBM Application Manager for Smart Business などの製品で使用される ITM における HTTP リクエストの不特定のリダイレクションを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-2961 2013-06-25 16:10 2013-06-17 Show GitHub Exploit DB Packet Storm
224633 5 警告 IBM - IBM Application Manager for Smart Business などの製品で使用される ITM におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-2960 2013-06-25 16:08 2013-06-17 Show GitHub Exploit DB Packet Storm
224634 5 警告 IBM - IBM Application Manager for Smart Business などの製品で使用される ITM におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-0551 2013-06-25 16:08 2013-06-17 Show GitHub Exploit DB Packet Storm
224635 4.3 警告 IBM - IBM Application Manager for Smart Business などの製品で使用される ITM におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0548 2013-06-25 16:07 2013-06-17 Show GitHub Exploit DB Packet Storm
224636 7.2 危険 IBM - IBM Notes の Multi User Profile Cleanup サービスにおける権限を取得される脆弱性(DoS) CWE-264
認可・権限・アクセス制御
CVE-2013-0536 2013-06-25 16:05 2013-06-12 Show GitHub Exploit DB Packet Storm
224637 7.1 危険 IBM - IBM AIX および VIOS の inet サブシステムの IPv6 の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-3035 2013-06-25 15:57 2013-06-4 Show GitHub Exploit DB Packet Storm
224638 1.9 注意 IBM - Lotus Notes クライアントおよび単独で使用される IBM Sametime の Connect クライアントにおける重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-0534 2013-06-25 15:56 2013-05-31 Show GitHub Exploit DB Packet Storm
224639 5 警告 IBM - IBM Sterling Connect:Direct のブラウザにおける Cookie をキャプチャされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0529 2013-06-25 15:48 2013-06-11 Show GitHub Exploit DB Packet Storm
224640 1.9 注意 IBM - IBM Sterling Connect:Direct のブラウザにおける管理者コンソールの重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-0527 2013-06-25 15:48 2013-06-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
278841 6.5 MEDIUM
Network
libdwarf_project libdwarf Use-after-free vulnerability in dwarfdump in libdwarf 20130126 through 20140805 might allow remote attackers to cause a denial of service (program crash) via a crafted ELF file. CWE-416
 Use After Free
CVE-2014-9482 2024-11-21 11:20 2018-01-17 Show GitHub Exploit DB Packet Storm
278842 8.8 HIGH
Network
dasanzhone znid_2426a_firmware The web administrative portal in Zhone zNID GPON 2426A before S3.0.501 allows remote attackers to execute arbitrary commands via shell metacharacters in the ipAddr parameter to zhnping.cmd. CWE-77
Command Injection
CVE-2014-9118 2024-11-21 11:20 2017-10-18 Show GitHub Exploit DB Packet Storm
278843 9.8 CRITICAL
Network
fiyo fiyo_cms Fiyo CMS 2.0.1.8 allows remote attackers to bypass intended access restrictions and execute the (1) "Install and Update" or (2) Backup super administrator function via the view parameter in a direct … CWE-284
Improper Access Control
CVE-2014-9148 2024-11-21 11:20 2017-10-17 Show GitHub Exploit DB Packet Storm
278844 7.5 HIGH
Network
fiyo fiyo_cms Fiyo CMS 2.0.1.8 allows remote attackers to obtain sensitive information via a direct request to the database backup file in .backup/. CWE-200
Information Exposure
CVE-2014-9147 2024-11-21 11:20 2017-10-17 Show GitHub Exploit DB Packet Storm
278845 6.5 MEDIUM
Network
libjpeg-turbo
fedoraproject
canonical
libjpeg-turbo
fedora
ubuntu_linux
libjpeg-turbo before 1.3.1 allows remote attackers to cause a denial of service (crash) via a crafted JPEG file, related to the Exif marker. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-9092 2024-11-21 11:20 2017-10-10 Show GitHub Exploit DB Packet Storm
278846 9.8 CRITICAL
Network
mpfr gnu_mpfr Buffer overflow in the mpfr_strtofr function in GNU MPFR before 3.1.2-p11 allows context-dependent attackers to have unspecified impact via vectors related to incorrect documentation for mpn_set_str. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2014-9474 2024-11-21 11:20 2017-10-10 Show GitHub Exploit DB Packet Storm
278847 5.4 MEDIUM
Network
openkm openkm Cross-site scripting (XSS) vulnerability in OpenKM before 6.4.19 allows remote authenticated users to inject arbitrary web script or HTML via the Tasks parameter. CWE-79
Cross-site Scripting
CVE-2014-8957 2024-11-21 11:20 2017-10-7 Show GitHub Exploit DB Packet Storm
278848 8.8 HIGH
Network
vbseo vbseo functions_vbseo_hook.php in the VBSEO module for vBulletin allows remote authenticated users to execute arbitrary code via the HTTP Referer header to visitormessage.php. CWE-94
Code Injection
CVE-2014-9463 2024-11-21 11:20 2017-09-16 Show GitHub Exploit DB Packet Storm
278849 7.5 HIGH
Network
gnu emacs Emacs 24.4 allows remote attackers to bypass security restrictions. CWE-200
Information Exposure
CVE-2014-9483 2024-11-21 11:20 2017-08-29 Show GitHub Exploit DB Packet Storm
278850 6.1 MEDIUM
Network
vbulletin vbulletin Cross-site scripting (XSS) vulnerability in vBulletin 3.5.4, 3.6.0, 3.6.7, 3.8.7, 4.2.2, 5.0.5, and 5.1.3. CWE-79
Cross-site Scripting
CVE-2014-9469 2024-11-21 11:20 2017-08-29 Show GitHub Exploit DB Packet Storm