Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232951 7.5 危険 p-news - P-News の p-news.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5434 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
232952 7.5 危険 timm maass - ALiCE-CMS の modules/guestbook/index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5433 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
232953 7.5 危険 phpoutsourcing - PHPOutsourcing Zorum の gorum/dbproperty.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5431 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
232954 5 警告 xorp - XORP におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-5425 2012-12-20 18:02 2006-10-17 Show GitHub Exploit DB Packet Storm
232955 7.5 危険 wsnlinks - WSN Forum における任意の PHP コードを実行される脆弱性 - CVE-2006-5421 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
232956 7.5 危険 university of glasgow - University of Glasgow SID の client.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5419 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
232957 6.8 警告 phpBB - phpBB 用の SearchIndexer の pbpbb アーカイブにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-5418 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
232958 7.5 危険 supermod - YaBBSM 用の SuperMod における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-5413 2012-12-20 18:02 2006-10-20 Show GitHub Exploit DB Packet Storm
232959 6.2 警告 東芝 - 複数製品に使用される Toshiba Bluetooth ワイアレスデバイスドライバにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-5405 2012-12-20 18:02 2006-10-18 Show GitHub Exploit DB Packet Storm
232960 2.6 注意 シマンテック - Norton AntiVirus などの Symantec Automated Support Assistant で使用される ActiveX コントロールにおける重要な情報を取得される脆弱性 - CVE-2006-5404 2012-12-20 18:02 2006-10-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293301 - mozilla bugzilla Multiple cross-site scripting (XSS) vulnerabilities in editflagtypes.cgi in Bugzilla 2.x, 3.x, and 4.0.x before 4.0.11; 4.1.x and 4.2.x before 4.2.7; and 4.3.x and 4.4.x before 4.4.1 allow remote att… CWE-79
Cross-site Scripting
CVE-2013-1742 2024-11-21 10:50 2013-10-24 Show GitHub Exploit DB Packet Storm
293302 - mozilla bugzilla Cross-site request forgery (CSRF) vulnerability in attachment.cgi in Bugzilla 2.x, 3.x, and 4.0.x before 4.0.11; 4.1.x and 4.2.x before 4.2.7; and 4.3.x and 4.4.x before 4.4.1 allows remote attackers… CWE-352
 Origin Validation Error
CVE-2013-1734 2024-11-21 10:50 2013-10-24 Show GitHub Exploit DB Packet Storm
293303 - mozilla bugzilla Cross-site request forgery (CSRF) vulnerability in process_bug.cgi in Bugzilla 4.4.x before 4.4.1 allows remote attackers to hijack the authentication of arbitrary users for requests that modify bugs… CWE-352
 Origin Validation Error
CVE-2013-1733 2024-11-21 10:50 2013-10-24 Show GitHub Exploit DB Packet Storm
293304 - mozilla network_security_services Mozilla Network Security Services (NSS) before 3.15.2 does not ensure that data structures are initialized before read operations, which allows remote attackers to cause a denial of service or possib… NVD-CWE-noinfo
CVE-2013-1739 2024-11-21 10:50 2013-10-23 Show GitHub Exploit DB Packet Storm
293305 - gnome librsvg GNOME libsvg before 2.39.0 allows remote attackers to read arbitrary files via an XML document containing an external entity declaration in conjunction with an entity reference, related to an XML Ext… CWE-20
 Improper Input Validation 
CVE-2013-1881 2024-11-21 10:50 2013-10-10 Show GitHub Exploit DB Packet Storm
293306 - openstack python-keystoneclient The user-password-update command in python-keystoneclient before 0.2.4 accepts the new password in the --password argument, which allows local users to obtain sensitive information by listing the pro… CWE-200
Information Exposure
CVE-2013-2013 2024-11-21 10:50 2013-10-2 Show GitHub Exploit DB Packet Storm
293307 - mongodb
redhat
mongodb
enterprise_mrg
MongoDB before 2.0.9 and 2.2.x before 2.2.4 does not properly validate requests to the nativeHelper function in SpiderMonkey, which allows remote authenticated users to cause a denial of service (inv… CWE-20
 Improper Input Validation 
CVE-2013-1892 2024-11-21 10:50 2013-10-2 Show GitHub Exploit DB Packet Storm
293308 - squid-cache squid The strHdrAcptLangGetItem function in errorpage.cc in Squid 3.2.x before 3.2.9 and 3.3.x before 3.3.3 allows remote attackers to cause a denial of service (infinite loop and CPU consumption) via a ",… CWE-20
 Improper Input Validation 
CVE-2013-1839 2024-11-21 10:50 2013-10-1 Show GitHub Exploit DB Packet Storm
293309 - redhat cloudforms_management_engine Multiple directory traversal vulnerabilities in the AgentController in Red Hat CloudForms Management Engine 2.0 allow remote attackers to create and overwrite arbitrary files via a .. (dot dot) in th… CWE-22
Path Traversal
CVE-2013-2068 2024-11-21 10:50 2013-09-29 Show GitHub Exploit DB Packet Storm
293310 - redhat jboss_enterprise_application_platform PicketBox, as used in Red Hat JBoss Enterprise Application Platform before 6.1.1, allows local users to obtain the admin encryption key by reading the Vault data file. CWE-310
Cryptographic Issues
CVE-2013-1921 2024-11-21 10:50 2013-09-29 Show GitHub Exploit DB Packet Storm