Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230831 6.8 警告 x-diesel - Unreal Commander におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-4545 2012-12-20 18:33 2007-08-27 Show GitHub Exploit DB Packet Storm
230832 4.3 警告 WordPress.org - WordPress MU の wp-newblog.php におけるクロスサイトスクリプティングの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2007-4544 2012-12-20 18:33 2007-08-27 Show GitHub Exploit DB Packet Storm
230833 4.3 警告 university of minnesota - MapServer におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-4542 2012-12-20 18:33 2007-08-27 Show GitHub Exploit DB Packet Storm
230834 6.8 警告 skulltag team - Huffman 解凍アルゴリズムにおけるヒープベースのバッファオーバーフローの脆弱性 - CVE-2007-4537 2012-12-20 18:33 2007-08-27 Show GitHub Exploit DB Packet Storm
230835 4.6 警告 torrenttrader - TorrentTrader における任意の PHP コードを実行される脆弱性 - CVE-2007-4536 2012-12-20 18:33 2007-08-24 Show GitHub Exploit DB Packet Storm
230836 4.3 警告 vavoom - Vavoom の str.cpp におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-4535 2012-12-20 18:33 2007-08-24 Show GitHub Exploit DB Packet Storm
230837 7.5 危険 vavoom - Vavoom の p_thinker.cpp におけるバッファオーバーフローの脆弱性 - CVE-2007-4534 2012-12-20 18:33 2007-08-24 Show GitHub Exploit DB Packet Storm
230838 6.8 警告 vavoom - Vavoom の sv_main.cpp におけるフォーマットストリングの脆弱性 - CVE-2007-4533 2012-12-20 18:33 2007-08-24 Show GitHub Exploit DB Packet Storm
230839 4.3 警告 TeamSpeak Systems GmbH - TeamSpeak Server におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-4530 2012-12-20 18:33 2007-08-24 Show GitHub Exploit DB Packet Storm
230840 8.5 危険 TeamSpeak Systems GmbH - TeamSpeak Server の WebAdmin インターフェースにおける登録したユーザに特定の権限を割り当てられる脆弱性 - CVE-2007-4529 2012-12-20 18:33 2007-08-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291821 - john_nunemaker httparty The httparty gem 0.9.0 and earlier for Ruby does not properly restrict casts of string values, which might allow remote attackers to conduct object-injection attacks and execute arbitrary code, or ca… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1801 2024-11-21 10:50 2013-04-10 Show GitHub Exploit DB Packet Storm
291822 - john_nunemaker crack The crack gem 0.3.1 and earlier for Ruby does not properly restrict casts of string values, which might allow remote attackers to conduct object-injection attacks and execute arbitrary code, or cause… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1800 2024-11-21 10:50 2013-04-10 Show GitHub Exploit DB Packet Storm
291823 - freedesktop poppler poppler/Stream.cc in poppler before 0.22.1 allows context-dependent attackers to have an unspecified impact via vectors that trigger a read of uninitialized memory by the CCITTFaxStream::lookChar fun… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-1790 2024-11-21 10:50 2013-04-10 Show GitHub Exploit DB Packet Storm
291824 - freedesktop poppler splash/Splash.cc in poppler before 0.22.1 allows context-dependent attackers to cause a denial of service (NULL pointer dereference and crash) via vectors related to the (1) Splash::arbitraryTransfor… NVD-CWE-Other
CVE-2013-1789 2024-11-21 10:50 2013-04-10 Show GitHub Exploit DB Packet Storm
291825 - freedesktop poppler poppler before 0.22.1 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors that trigger an "invalid memory access" in (1) splash/Spl… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-1788 2024-11-21 10:50 2013-04-10 Show GitHub Exploit DB Packet Storm
291826 - apple
todd_miller
mac_os_x
sudo
sudo 1.3.5 through 1.7.10 and 1.8.0 through 1.8.5, when the tty_tickets option is enabled, does not properly validate the controlling terminal device, which allows local users with sudo permissions t… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1776 2024-11-21 10:50 2013-04-9 Show GitHub Exploit DB Packet Storm
291827 - linux linux_kernel The clone system-call implementation in the Linux kernel before 3.8.3 does not properly handle a combination of the CLONE_NEWUSER and CLONE_FS flags, which allows local users to gain privileges by ca… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1858 2024-11-21 10:50 2013-04-6 Show GitHub Exploit DB Packet Storm
291828 - postgresql postgresql PostgreSQL, possibly 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, 8.4.x before 8.4.17, and 8.3.x before 8.3.23 incorrectly provides the superuser password to scripts related to "graph… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1903 2024-11-21 10:50 2013-04-5 Show GitHub Exploit DB Packet Storm
291829 - postgresql postgresql PostgreSQL, 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, 8.4.x before 8.4.17, and 8.3.x before 8.3.23 generates insecure temporary files with predictable filenames, which has unspecif… NVD-CWE-Other
CVE-2013-1902 2024-11-21 10:50 2013-04-5 Show GitHub Exploit DB Packet Storm
291830 - postgresql
canonical
postgresql
ubuntu_linux
PostgreSQL 9.2.x before 9.2.4 and 9.1.x before 9.1.9 does not properly check REPLICATION privileges, which allows remote authenticated users to bypass intended backup restrictions by calling the (1) … CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1901 2024-11-21 10:50 2013-04-5 Show GitHub Exploit DB Packet Storm