Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231361 7.5 危険 softerra - Softerra PHP Developer Library の example/lib/grid3.lib.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5471 2012-12-20 18:02 2006-10-24 Show GitHub Exploit DB Packet Storm
231362 5.4 警告 RPM
Canonical
- RPM Package Manager の librpm におけるヒープベースのバッファオーバーフローの脆弱性 - CVE-2006-5466 2012-12-20 18:02 2006-11-3 Show GitHub Exploit DB Packet Storm
231363 2.6 注意 TorrentFlux - TorrentFlux におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2006-5451 2012-12-20 18:02 2006-10-23 Show GitHub Exploit DB Packet Storm
231364 5 警告 xiao gang - XIAO Gang WIMS におけるデータを変更される脆弱性 - CVE-2006-5443 2012-12-20 18:02 2006-10-23 Show GitHub Exploit DB Packet Storm
231365 6.8 警告 ViewVC - ViewVC におけるクロスサイトスクリプティング攻撃を実行される脆弱性 - CVE-2006-5442 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
231366 7.5 危険 p-news - P-News の p-news.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5434 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
231367 7.5 危険 timm maass - ALiCE-CMS の modules/guestbook/index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5433 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
231368 7.5 危険 phpoutsourcing - PHPOutsourcing Zorum の gorum/dbproperty.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5431 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
231369 5 警告 xorp - XORP におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-5425 2012-12-20 18:02 2006-10-17 Show GitHub Exploit DB Packet Storm
231370 7.5 危険 wsnlinks - WSN Forum における任意の PHP コードを実行される脆弱性 - CVE-2006-5421 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291981 - mozilla
suse
opensuse
canonical
seamonkey
thunderbird
firefox
thunderbird_esr
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
ubuntu_linux
The gPluginHandler.handleEvent function in the plugin handler in Mozilla Firefox before 18.0, Firefox ESR 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 17.x before 17.0.2, and SeaMon… CWE-20
 Improper Input Validation 
CVE-2013-0747 2024-11-21 10:48 2013-01-14 Show GitHub Exploit DB Packet Storm
291982 - mozilla
suse
opensuse
canonical
seamonkey
thunderbird
firefox
thunderbird_esr
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
ubuntu_linux
The AutoWrapperChanger class in Mozilla Firefox before 18.0, Firefox ESR 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 17.x before 17.0.2, and SeaMonkey before 2.15 does not properly… CWE-94
Code Injection
CVE-2013-0745 2024-11-21 10:48 2013-01-14 Show GitHub Exploit DB Packet Storm
291983 - mozilla
suse
opensuse
redhat
canonical
seamonkey
thunderbird_esr
thunderbird
firefox
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
enterprise_linux_server
en…
Integer overflow in the JavaScript implementation in Mozilla Firefox before 18.0, Firefox ESR 10.x before 10.0.12 and 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 10.x before 10.0.1… CWE-190
 Integer Overflow or Wraparound
CVE-2013-0750 2024-11-21 10:48 2013-01-14 Show GitHub Exploit DB Packet Storm
291984 - mozilla
suse
opensuse
redhat
canonical
seamonkey
thunderbird_esr
thunderbird
firefox
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
enterprise_linux_server
en…
The XBL.__proto__.toString implementation in Mozilla Firefox before 18.0, Firefox ESR 10.x before 10.0.12 and 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 10.x before 10.0.12 and 17… CWE-200
Information Exposure
CVE-2013-0748 2024-11-21 10:48 2013-01-14 Show GitHub Exploit DB Packet Storm
291985 - mozilla
suse
opensuse
redhat
canonical
seamonkey
thunderbird_esr
thunderbird
firefox
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
enterprise_linux_server
en…
Mozilla Firefox before 18.0, Firefox ESR 10.x before 10.0.12 and 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 10.x before 10.0.12 and 17.x before 17.0.2, and SeaMonkey before 2.15 d… NVD-CWE-noinfo
CVE-2013-0746 2024-11-21 10:48 2013-01-14 Show GitHub Exploit DB Packet Storm
291986 - mozilla
suse
opensuse
redhat
canonical
seamonkey
thunderbird_esr
thunderbird
firefox
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
enterprise_linux_server
en…
Use-after-free vulnerability in the TableBackgroundPainter::TableBackgroundData::Destroy function in Mozilla Firefox before 18.0, Firefox ESR 10.x before 10.0.12 and 17.x before 17.0.2, Thunderbird b… CWE-416
 Use After Free
CVE-2013-0744 2024-11-21 10:48 2013-01-14 Show GitHub Exploit DB Packet Storm
291987 - ettercap-project ettercap Stack-based buffer overflow in the scan_load_hosts function in ec_scan.c in Ettercap 0.7.5.1 and earlier might allow local users to gain privileges via a Trojan horse hosts list containing a long lin… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-0722 2024-11-21 10:48 2013-01-12 Show GitHub Exploit DB Packet Storm
291988 - wp_php_widget_project wp_php_widget wp-php-widget.php in the WP PHP widget plugin 1.0.2 for WordPress allows remote attackers to obtain sensitive information via a direct request, which reveals the full path in an error message. CWE-200
Information Exposure
CVE-2013-0721 2024-11-21 10:48 2013-01-2 Show GitHub Exploit DB Packet Storm
291989 7.8 HIGH
Local
ibm sterling_external_authentication_server A Command Execution Vulnerability exists in IBM Sterling External Authentication Server 2.2.0, 2.3.01, 2.4.0, and 2.4.1 via an unspecified OS command, which could let a local malicious user execute a… CWE-78
OS Command 
CVE-2013-0517 2024-11-21 10:47 2020-02-12 Show GitHub Exploit DB Packet Storm
291990 4.9 MEDIUM
Network
simplemachines simple_machines_forum File Disclosure in SMF (SimpleMachines Forum) <= 2.0.3: Forum admin can read files such as the database config. CWE-200
Information Exposure
CVE-2013-0192 2024-11-21 10:47 2020-02-7 Show GitHub Exploit DB Packet Storm