Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232921 6.8 警告 yabb - YaBB の index.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4157 2012-12-20 18:02 2006-08-16 Show GitHub Exploit DB Packet Storm
232922 7.5 危険 VWar - VWar の extra/online.php における SQL インジェクションの脆弱性 - CVE-2006-4142 2012-12-20 18:02 2006-08-14 Show GitHub Exploit DB Packet Storm
232923 7.5 危険 VWar - VWar の news.php における SQL インジェクションの脆弱性 - CVE-2006-4141 2012-12-20 18:02 2006-08-14 Show GitHub Exploit DB Packet Storm
232924 5 警告 SAP - SAP IGS におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-4134 2012-12-20 18:02 2006-08-14 Show GitHub Exploit DB Packet Storm
232925 7.5 危険 SAP - SAP IGS におけるヒープベースのバッファオーバーフローの脆弱性 - CVE-2006-4133 2012-12-20 18:02 2006-08-14 Show GitHub Exploit DB Packet Storm
232926 6.5 警告 symantec veritas - Symantec VERITAS Backup Exec におけるヒープベースのバッファオーバーフローの脆弱性 - CVE-2006-4128 2012-12-20 18:02 2006-08-11 Show GitHub Exploit DB Packet Storm
232927 7.5 危険 simple one-file guestbook - Simple one-file guestbook における認証を回避される脆弱性 - CVE-2006-4122 2012-12-20 18:02 2006-08-14 Show GitHub Exploit DB Packet Storm
232928 5.1 警告 see-commerce - See-Commerce の owimg.php3 における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4121 2012-12-20 18:02 2006-08-14 Show GitHub Exploit DB Packet Storm
232929 5.4 警告 サン・マイクロシステムズ - Sun Solaris の squeue_drain 関数におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-4117 2012-12-20 18:02 2006-08-14 Show GitHub Exploit DB Packet Storm
232930 7.5 危険 phpmyring - Nicolas Grandjean PHPMyRing の view_com.php における SQL インジェクションの脆弱性 - CVE-2006-4114 2012-12-20 18:02 2006-08-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293171 - freedesktop poppler poppler before 0.22.1 allows context-dependent attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors that trigger an "invalid memory access" in (1) splash/Spl… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-1788 2024-11-21 10:50 2013-04-10 Show GitHub Exploit DB Packet Storm
293172 - apple
todd_miller
mac_os_x
sudo
sudo 1.3.5 through 1.7.10 and 1.8.0 through 1.8.5, when the tty_tickets option is enabled, does not properly validate the controlling terminal device, which allows local users with sudo permissions t… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1776 2024-11-21 10:50 2013-04-9 Show GitHub Exploit DB Packet Storm
293173 - linux linux_kernel The clone system-call implementation in the Linux kernel before 3.8.3 does not properly handle a combination of the CLONE_NEWUSER and CLONE_FS flags, which allows local users to gain privileges by ca… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1858 2024-11-21 10:50 2013-04-6 Show GitHub Exploit DB Packet Storm
293174 - postgresql postgresql PostgreSQL, possibly 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, 8.4.x before 8.4.17, and 8.3.x before 8.3.23 incorrectly provides the superuser password to scripts related to "graph… CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1903 2024-11-21 10:50 2013-04-5 Show GitHub Exploit DB Packet Storm
293175 - postgresql postgresql PostgreSQL, 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, 8.4.x before 8.4.17, and 8.3.x before 8.3.23 generates insecure temporary files with predictable filenames, which has unspecif… NVD-CWE-Other
CVE-2013-1902 2024-11-21 10:50 2013-04-5 Show GitHub Exploit DB Packet Storm
293176 - postgresql
canonical
postgresql
ubuntu_linux
PostgreSQL 9.2.x before 9.2.4 and 9.1.x before 9.1.9 does not properly check REPLICATION privileges, which allows remote authenticated users to bypass intended backup restrictions by calling the (1) … CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-1901 2024-11-21 10:50 2013-04-5 Show GitHub Exploit DB Packet Storm
293177 - postgresql
canonical
postgresql
ubuntu_linux
PostgreSQL 9.2.x before 9.2.4, 9.1.x before 9.1.9, 9.0.x before 9.0.13, and 8.4.x before 8.4.17, when using OpenSSL, generates insufficiently random numbers, which might allow remote authenticated us… CWE-189
Numeric Errors
CVE-2013-1900 2024-11-21 10:50 2013-04-5 Show GitHub Exploit DB Packet Storm
293178 - postgresql
canonical
postgresql
ubuntu_linux
Argument injection vulnerability in PostgreSQL 9.2.x before 9.2.4, 9.1.x before 9.1.9, and 9.0.x before 9.0.13 allows remote attackers to cause a denial of service (file corruption), and allows remot… CWE-94
Code Injection
CVE-2013-1899 2024-11-21 10:50 2013-04-5 Show GitHub Exploit DB Packet Storm
293179 - mark_burns ldoce lib/ldoce/word.rb in the ldoce 0.0.2 gem for Ruby allows remote attackers to execute arbitrary commands via shell metacharacters in (1) an mp3 URL or (2) file name. CWE-20
 Improper Input Validation 
CVE-2013-1911 2024-11-21 10:50 2013-04-3 Show GitHub Exploit DB Packet Storm
293180 - openstack keystone_essex
folsom
The XML libraries for Python 3.4, 3.3, 3.2, 3.1, 2.7, and 2.6, as used in OpenStack Keystone Essex and Folsom, Django, and possibly other products allow remote attackers to read arbitrary files via a… CWE-200
Information Exposure
CVE-2013-1665 2024-11-21 10:50 2013-04-3 Show GitHub Exploit DB Packet Storm