Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229091 4.3 警告 Happyworm
ownCloud
- ownCloud Server などの製品で使用される jPlayer の Flash SWF コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1942 2013-08-19 13:32 2013-03-21 Show GitHub Exploit DB Packet Storm
229092 10 危険 Apache Software Foundation - Apache Open For Business Project における任意の Unified Expression Language 機能を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-2250 2013-08-16 11:45 2013-07-20 Show GitHub Exploit DB Packet Storm
229093 4.3 警告 Apache Software Foundation - Apache Open For Business Project の Webtools アプリケーションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2137 2013-08-16 11:37 2013-07-20 Show GitHub Exploit DB Packet Storm
229094 7.5 危険 BigTree CMS - BigTree CMS の core/inc/bigtree/cms.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-4879 2013-08-15 19:02 2013-07-3 Show GitHub Exploit DB Packet Storm
229095 4.3 警告 BigTree CMS - BigTree CMS の core/admin/modules/developer/modules/views/add.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4880 2013-08-15 19:00 2013-07-17 Show GitHub Exploit DB Packet Storm
229096 7.5 危険 Moxi9 - PHPFox における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-5121 2013-08-15 18:39 2013-08-7 Show GitHub Exploit DB Packet Storm
229097 7.5 危険 Moxi9 - PHPFox における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-5120 2013-08-15 18:33 2013-07-30 Show GitHub Exploit DB Packet Storm
229098 7.5 危険 LibRaw - LibRaw の exposure correction コードにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-2127 2013-08-15 18:04 2013-05-24 Show GitHub Exploit DB Packet Storm
229099 7.5 危険 Novell
Canonical
LibRaw
- LibRaw の libraw_cxx.cpp 内の LibRaw::unpack 関数におけるメモリ二重解放の脆弱性 CWE-399
リソース管理の問題
CVE-2013-2126 2013-08-15 18:01 2013-05-26 Show GitHub Exploit DB Packet Storm
229100 9.3 危険 マイクロソフト - Microsoft Internet Explorer 6 から 10 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3199 2013-08-15 15:54 2013-08-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 2, 2026, 4:03 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3861 - - - Idira Secrets Manager SaaS Edge versions prior to 1.8 exhibit improper access control within its internal authentication components. A remote, unauthenticated attacker could exploit this by submittin… CWE-284
Improper Access Control
CVE-2026-45177 2026-06-12 05:56 2026-06-12 Show GitHub Exploit DB Packet Storm
3862 - - - Idira Secrets Manager Self-Hosted versions 13.8.0 and lower exhibit improper access control within internal cluster endpoints. A remote, authenticated attacker possessing standard node-level credenti… CWE-284
Improper Access Control
CVE-2026-45178 2026-06-12 05:56 2026-06-12 Show GitHub Exploit DB Packet Storm
3863 7.6 HIGH
Network
- - An integer overflow flaw was found in the SASL I/O layer of 389 Directory Server (389-ds-base). In sasl_io_start_packet(), adding sizeof(uint32_t) to a crafted SASL packet length prefix of 0xFFFFFFFC… CWE-190
 Integer Overflow or Wraparound
CVE-2026-11774 2026-06-12 05:56 2026-06-12 Show GitHub Exploit DB Packet Storm
3864 6.5 MEDIUM
Network
- - An out-of-bounds write vulnerability was found in GStreamer's H.266/VVC PPS picture partition parser in gst-plugins-bad. In the multi-slice-in-tile processing of gst_h266_parser_parse_picture_partiti… CWE-787
 Out-of-bounds Write
CVE-2026-53701 2026-06-12 05:56 2026-06-12 Show GitHub Exploit DB Packet Storm
3865 6.5 MEDIUM
Network
- - A stack buffer overflow flaw was found in the GStreamer H.265 codec parser library (gst-plugins-bad). When parsing a buffering period SEI message, the parser uses an incorrect loop bound derived from… CWE-787
 Out-of-bounds Write
CVE-2026-53702 2026-06-12 05:56 2026-06-12 Show GitHub Exploit DB Packet Storm
3866 - - - Idira Endpoint Privilege Manager Agent versions prior to 26.5 exhibit improper access control within internal agent validation processes. A local attacker could potentially bypass built-in security c… CWE-295
Improper Certificate Validation 
CVE-2026-45175 2026-06-12 05:56 2026-06-12 Show GitHub Exploit DB Packet Storm
3867 - - - FPDI is a collection of PHP classes that facilitate reading pages from existing PDF documents and using them as templates in FPDF. Prior to version 2.6.7, an attacker can upload a small, malicious PD… CWE-400
CWE-770
 Uncontrolled Resource Consumption
 Allocation of Resources Without Limits or Throttling
CVE-2026-45802 2026-06-12 05:51 2026-06-12 Show GitHub Exploit DB Packet Storm
3868 5.3 MEDIUM
Network
- - CodexBar before 0.33.0 contains a credential forwarding vulnerability that allows network-adjacent attackers to intercept sensitive credentials by issuing cross-origin or HTTP-downgrade redirects to … CWE-522
 Insufficiently Protected Credentials
CVE-2026-49949 2026-06-12 05:50 2026-06-12 Show GitHub Exploit DB Packet Storm
3869 4.3 MEDIUM
Network
- - Summarize before 0.17.0 contains a resource exhaustion vulnerability that allows remote attackers to cause disk exhaustion by serving media responses that bypass the enforced size limit through missi… CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-53781 2026-06-12 05:50 2026-06-12 Show GitHub Exploit DB Packet Storm
3870 7.4 HIGH
Network
- - Summarize before 0.17.0 contains a server-side request forgery vulnerability that allows attackers who control a podcast RSS feed to direct the host to fetch transcript content from loopback addresse… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-53782 2026-06-12 05:50 2026-06-12 Show GitHub Exploit DB Packet Storm