Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229731 7.5 危険 PreProject.com - Pre ADS Portal の homeadmin/adminhome.php における脆弱性 CWE-287
不適切な認証
CVE-2008-6716 2012-12-20 19:10 2009-04-13 Show GitHub Exploit DB Packet Storm
229732 4.3 警告 PreProject.com - Pre ADS Portal におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6715 2012-12-20 19:10 2009-04-13 Show GitHub Exploit DB Packet Storm
229733 7.5 危険 xecms - xeCMS の admin.php における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2008-6714 2012-12-20 19:10 2009-04-10 Show GitHub Exploit DB Packet Storm
229734 5 警告 stalker-game - S.T.A.L.K.E.R.: Shadow of Chernobyl の MultipacketReciever::RecievePacket 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2008-6705 2012-12-20 19:10 2009-04-10 Show GitHub Exploit DB Packet Storm
229735 5 警告 stalker-game - S.T.A.L.K.E.R.: Shadow of Chernobyl の NET_Compressor::Decompress 関数における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2008-6704 2012-12-20 19:10 2009-04-10 Show GitHub Exploit DB Packet Storm
229736 10 危険 stalker-game - S.T.A.L.K.E.R.: Shadow of Chernobyl の IPureServer::_Recieve 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-6703 2012-12-20 19:10 2009-04-10 Show GitHub Exploit DB Packet Storm
229737 5 警告 stalker-game - S.T.A.L.K.E.R.: Shadow of Chernobyl におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2008-6702 2012-12-20 19:10 2009-04-10 Show GitHub Exploit DB Packet Storm
229738 4.3 警告 TYPO3 Association - TYPO3 用の tjs_reslib エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2008-6699 2012-12-20 19:10 2009-04-10 Show GitHub Exploit DB Packet Storm
229739 7.5 危険 sebastian baumann - TYPO3 用の Download system エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6693 2012-12-20 19:10 2009-04-10 Show GitHub Exploit DB Packet Storm
229740 7.5 危険 TYPO3 Association - TYPO3 用の nd_antispam エクステンションにおける設定を変更される脆弱性 CWE-noinfo
情報不足
CVE-2008-6690 2012-12-20 19:10 2009-04-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293411 - apache camel Apache Camel before 2.9.7, 2.10.0 before 2.10.7, 2.11.0 before 2.11.2, and 2.12.0 allows remote attackers to execute arbitrary simple language expressions by including "$simple{}" in a CamelFileName … CWE-94
Code Injection
CVE-2013-4330 2024-11-21 10:55 2013-10-5 Show GitHub Exploit DB Packet Storm
293412 - djangoproject django Cross-site scripting (XSS) vulnerability in the AdminURLFieldWidget widget in contrib/admin/widgets.py in Django 1.5.x before 1.5.2 and 1.6.x before 1.6 beta 2 allows remote attackers to inject arbit… CWE-79
Cross-site Scripting
CVE-2013-4249 2024-11-21 10:55 2013-10-5 Show GitHub Exploit DB Packet Storm
293413 - systemd_project
debian
canonical
systemd
debian_linux
ubuntu_linux
systemd does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess PolkitSubject race con… CWE-362
Race Condition
CVE-2013-4327 2024-11-21 10:55 2013-10-4 Show GitHub Exploit DB Packet Storm
293414 - lennart_poettering
redhat
rkit
enterprise_linux
RealtimeKit (aka rtkit) 0.5 does not properly use D-Bus for communication with a polkit authority, which allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess Po… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4326 2024-11-21 10:55 2013-10-4 Show GitHub Exploit DB Packet Storm
293415 - spice-gtk_project
redhat
spice-gtk
enterprise_linux
spice-gtk 0.14, and possibly other versions, invokes the polkit authority using the insecure polkit_unix_process_new API function, which allows local users to bypass intended access restrictions by l… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4324 2024-11-21 10:55 2013-10-4 Show GitHub Exploit DB Packet Storm
293416 - redhat
canonical
libvirt
ubuntu_linux
enterprise_linux
libvirt 1.0.5.x before 1.0.5.6, 0.10.2.x before 0.10.2.8, and 0.9.12.x before 0.9.12.2 allows local users to bypass intended access restrictions by leveraging a PolkitUnixProcess PolkitSubject race c… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-4311 2024-11-21 10:55 2013-10-4 Show GitHub Exploit DB Packet Storm
293417 - opensuse
polkit_project
canonical
redhat
opensuse
polkit
ubuntu_linux
enterprise_linux
Race condition in PolicyKit (aka polkit) allows local users to bypass intended PolicyKit restrictions and gain privileges by starting a setuid or pkexec process before the authorization check is perf… CWE-362
Race Condition
CVE-2013-4288 2024-11-21 10:55 2013-10-4 Show GitHub Exploit DB Packet Storm
293418 - xen xen The fbld instruction emulation in Xen 3.3.x through 4.3.x does not use the correct variable for the source effective address, which allows local HVM guests to obtain hypervisor stack information by r… CWE-200
Information Exposure
CVE-2013-4361 2024-11-21 10:55 2013-10-2 Show GitHub Exploit DB Packet Storm
293419 - xen xen Xen 4.3.x and earlier does not properly handle certain errors, which allows local HVM guests to obtain hypervisor stack memory via a (1) port or (2) memory mapped I/O write or (3) other unspecified o… CWE-200
Information Exposure
CVE-2013-4355 2024-11-21 10:55 2013-10-2 Show GitHub Exploit DB Packet Storm
293420 - redhat jboss_enterprise_web_platform
jboss_enterprise_brms_platform
jboss_enterprise_soa_platform
jboss_enterprise_application_platform
The org.jboss.remoting.transport.socket.ServerThread class in Red Hat JBoss Remoting for Red Hat JBoss SOA Platform 5.3.1 GA, Web Platform 5.2.0, Enterprise Application Platform 5.2.0, and other prod… NVD-CWE-noinfo
CVE-2013-4210 2024-11-21 10:55 2013-10-2 Show GitHub Exploit DB Packet Storm