Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 18, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228181 6.8 警告 IBM - UNIX 用の IBM Sterling Connect:Direct におけるファイルシステムの読み取り権限および書き込み権限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2989 2013-05-30 16:37 2013-05-14 Show GitHub Exploit DB Packet Storm
228182 4.3 警告 IBM - IBM Tivoli Monitoring の Tivoli Enterprise Portal browser クライアントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0576 2013-05-30 16:36 2013-05-17 Show GitHub Exploit DB Packet Storm
228183 4.3 警告 IBM - IBM WebSphere DataPower SOA アプライアンスにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0499 2013-05-30 16:34 2013-05-17 Show GitHub Exploit DB Packet Storm
228184 7.2 危険 レッドハット - Red Hat livecd-tools における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2069 2013-05-30 14:07 2013-05-23 Show GitHub Exploit DB Packet Storm
228185 4.9 警告 マイクロソフト - Microsoft Windows の win32k.sys の EPATHOBJ::bFlatten 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-22
パス・トラバーサル
CVE-2013-3661 2013-05-29 16:54 2013-05-17 Show GitHub Exploit DB Packet Storm
228186 5 警告 IBM - IBM InfoSphere Optim Data Growth for Oracle E-Business Suite における重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-2959 2013-05-29 16:37 2013-05-13 Show GitHub Exploit DB Packet Storm
228187 3.5 注意 IBM - IBM InfoSphere Optim Data Growth for Oracle E-Business Suite におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2957 2013-05-29 16:37 2013-05-13 Show GitHub Exploit DB Packet Storm
228188 7.5 危険 IBM - IBM InfoSphere Optim Data Growth for Oracle E-Business Suite における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-2956 2013-05-29 16:36 2013-05-13 Show GitHub Exploit DB Packet Storm
228189 3.5 注意 IBM - IBM InfoSphere Optim Data Growth for Oracle E-Business Suite におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2955 2013-05-29 16:35 2013-05-13 Show GitHub Exploit DB Packet Storm
228190 5 警告 IBM - IBM InfoSphere Optim Data Growth for Oracle E-Business Suite におけるアクセス権を取得される脆弱性 CWE-287
不適切な認証
CVE-2013-2954 2013-05-29 16:35 2013-05-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
275561 8.1 HIGH
Network
uxebu webdrvr webdrvr is a npm wrapper for Selenium Webdriver including Chromedriver / IEDriver / IOSDriver / Ghostdriver. webdrvr downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. … CWE-310
Cryptographic Issues
CVE-2016-10601 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
275562 8.1 HIGH
Network
interactivebrokers ibapi ibapi is an Interactive Brokers API addon for NodeJS. ibapi downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. Before 2.5.6, it may be possible to cause remote code exe… CWE-310
Cryptographic Issues
CVE-2016-10593 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
275563 8.1 HIGH
Network
prince_project prince Prince is a Node API for executing XML/HTML to PDF renderer PrinceXML via prince(1) CLI. prince downloads zipped resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to… CWE-310
Cryptographic Issues
CVE-2016-10591 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
275564 8.1 HIGH
Network
cue-sdk-node_project cue-sdk-node cue-sdk-node is a Corsair Cue SDK wrapper for node.js. cue-sdk-node downloads zipped resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution… CWE-310
Cryptographic Issues
CVE-2016-10590 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
275565 8.1 HIGH
Network
spunjs selenium-binaries selenium-binaries downloads Selenium related binaries for your OS. selenium-binaries downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remo… CWE-310
Cryptographic Issues
CVE-2016-10589 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
275566 8.1 HIGH
Network
macacajs macaca-chromedriver macaca-chromedriver is a Node.js wrapper for the selenium chromedriver. macaca-chromedriver before 1.0.29 downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be p… CWE-310
Cryptographic Issues
CVE-2016-10586 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
275567 8.1 HIGH
Network
dalekjs dalekjs dalek-browser-chrome-canary provides Google Chrome bindings for DalekJS. dalek-browser-chrome-canary downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possib… CWE-310
Cryptographic Issues
CVE-2016-10584 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
275568 8.1 HIGH
Network
unicode_project unicode unicode loads unicode data downloaded from unicode.org into nodejs. Unicode before 9.0.0 downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. CWE-310
Cryptographic Issues
CVE-2016-10578 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
275569 8.1 HIGH
Network
ibm ibm_db ibm_db is an asynchronous/synchronous interface for node.js to IBM DB2 and IBM Informix. ibm_db before 1.0.2 downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may b… CWE-310
Cryptographic Issues
CVE-2016-10577 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
275570 8.1 HIGH
Network
baryton-saxophone_project baryton-saxophone baryton-saxophone is a module to install and launch Selenium Server for Mac, Linux and Windows. baryton-saxophone versions below 3.0.1 download binary resources over HTTP, which leaves it vulnerable … CWE-310
Cryptographic Issues
CVE-2016-10573 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm