Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228761 6.8 警告 OrangeHRM - OrangeHRM における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-5259 2013-02-15 18:59 2013-02-12 Show GitHub Exploit DB Packet Storm
228762 4.3 警告 OrangeHRM - OrangeHRM におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5258 2013-02-15 18:58 2013-02-12 Show GitHub Exploit DB Packet Storm
228763 4.3 警告 AppThemes - WordPress 用 Classipress テーマにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5257 2013-02-15 18:57 2011-10-7 Show GitHub Exploit DB Packet Storm
228764 2.6 注意 LimeSurvey - LimeSurvey におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5256 2013-02-15 18:56 2012-02-9 Show GitHub Exploit DB Packet Storm
228765 5 警告 Joomla! - Joomla! における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-1455 2013-02-15 16:51 2013-02-4 Show GitHub Exploit DB Packet Storm
228766 2.1 注意 Bitbucket - xNBD の xnbd-server および xndb-wrapperr における任意のファイルを上書きされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0265 2013-02-15 16:48 2013-02-13 Show GitHub Exploit DB Packet Storm
228767 5 警告 LSIロジック株式会社 - 3DM (3ware Disk Manager) におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-0705 2013-02-15 12:00 2013-02-15 Show GitHub Exploit DB Packet Storm
228768 9.3 危険 Fabrice Bellard - Qemu の e1000 デバイスドライバにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-6075 2013-02-15 11:56 2013-02-13 Show GitHub Exploit DB Packet Storm
228769 10 危険 アドビシステムズ - Adobe Shockwave Player におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0636 2013-02-15 11:09 2013-02-12 Show GitHub Exploit DB Packet Storm
228770 10 危険 アドビシステムズ - Adobe Shockwave Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-0635 2013-02-15 11:08 2013-02-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
274991 8.8 HIGH
Network
express-restify-mongoose_project express-restify-mongoose express-restify-mongoose is a module to easily create a flexible REST interface for mongoose models. express-restify-mongoose 2.4.2 and earlier and 3.0.X through 3.0.1 allows a malicious user to send… CWE-200
Information Exposure
CVE-2016-10533 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
274992 9.8 CRITICAL
Network
console-io_project console-io console-io is a module that allows users to implement a web console in their application. A malicious user could bypass the authentication and execute any command that the user who is running the con… CWE-287
Improper Authentication
CVE-2016-10532 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
274993 7.5 HIGH
Network
riot.js riot-compiler The riot-compiler version version 2.3.21 has an issue in a regex (Catastrophic Backtracking) thats make it unusable under certain conditions. CWE-399
 Resource Management Errors
CVE-2016-10527 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
274994 8.6 HIGH
Network
grunt-gh-pages_project grunt-gh-pages A common setup to deploy to gh-pages on every commit via a CI system is to expose a github token to ENV and to use it directly in the auth part of the url. In module versions < 0.9.1 the auth portion… CWE-255
CWE-532
Credentials Management
 Inclusion of Sensitive Information in Log Files
CVE-2016-10526 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
274995 8.2 HIGH
Network
i18n-node-angular_project i18n-node-angular i18n-node-angular is a module used to interact between i18n and angular without using additional resources. A REST API endpoint that is used for development in i18n-node-angular before 1.4.0 was not … CWE-400
 Uncontrolled Resource Consumption
CVE-2016-10524 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
274996 7.5 HIGH
Network
mqtt-packet_project mqtt-packet MQTT before 3.4.6 and 4.0.x before 4.0.5 allows specifically crafted MQTT packets to crash the application, making a DoS attack feasible with very little bandwidth. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-10523 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
274997 7.5 HIGH
Network
jshamcrest_project jshamcrest jshamcrest is vulnerable to regular expression denial of service (ReDoS) when certain types of user input is passed in to the emailAddress validator. CWE-20
 Improper Input Validation 
CVE-2016-10521 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
274998 7.5 HIGH
Network
jadedown_project jadedown jadedown is vulnerable to regular expression denial of service (ReDoS) when certain types of user input is passed in. CWE-20
 Improper Input Validation 
CVE-2016-10520 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
274999 7.5 HIGH
Network
webtorrent bittorrent-dht A security issue was found in bittorrent-dht before 5.1.3 that allows someone to send a specific series of messages to a listening peer and get it to reveal internal memory. CWE-200
Information Exposure
CVE-2016-10519 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
275000 7.5 HIGH
Network
ws_project ws A vulnerability was found in the ping functionality of the ws module before 1.0.0 which allowed clients to allocate memory by sending a ping frame. The ping functionality by default responds with a p… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-10518 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm