Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
233131 7.5 危険 spoonlabs - SpoonLabs Vivvo Article Management CMS の pdf_version.php における SQL インジェクションの脆弱性 - CVE-2006-4715 2012-12-20 18:02 2006-09-11 Show GitHub Exploit DB Packet Storm
233132 5.1 警告 spoonlabs - SpoonLabs Vivvo Article Management CMS の index.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4714 2012-12-20 18:02 2006-09-11 Show GitHub Exploit DB Packet Storm
233133 7.5 危険 psywerks - PSYWERKS PUMA の config.php における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-4713 2012-12-20 18:02 2006-09-12 Show GitHub Exploit DB Packet Storm
233134 6.8 警告 Sage - Sage におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2006-4712 2012-12-20 18:02 2006-09-12 Show GitHub Exploit DB Packet Storm
233135 4.3 警告 Sage - Sage におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4711 2012-12-20 18:02 2006-09-7 Show GitHub Exploit DB Packet Storm
233136 5 警告 vikingboard - Vikingboard の topic.php における SQL インジェクションの脆弱性 - CVE-2006-4709 2012-12-20 18:02 2006-09-12 Show GitHub Exploit DB Packet Storm
233137 6.8 警告 vikingboard - Vikingboard におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4708 2012-12-20 18:02 2006-09-12 Show GitHub Exploit DB Packet Storm
233138 5 警告 Zope Foundation - Zope の docutils モジュールにおける任意のファイルを読まれる脆弱性 - CVE-2006-4684 2012-12-20 18:02 2006-09-19 Show GitHub Exploit DB Packet Storm
233139 1.2 注意 TIBCO Software - TIBCO RendezVous における重要な情報を取得される脆弱性 - CVE-2006-4676 2012-12-20 18:02 2006-09-11 Show GitHub Exploit DB Packet Storm
233140 7.5 危険 profitcode - PayProCart の profitCode ppalCart コンポーネントにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2006-4672 2012-12-20 18:02 2006-09-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293021 - osisoft pi_interface The DNP Master Driver in the OSIsoft PI Interface before 3.1.2.54 for DNP3 allows physically proximate attackers to cause a denial of service (interface shutdown) via crafted input over a serial line. CWE-20
 Improper Input Validation 
CVE-2013-2828 2024-11-21 10:52 2014-04-12 Show GitHub Exploit DB Packet Storm
293022 - osisoft pi_interface The DNP Master Driver in the OSIsoft PI Interface before 3.1.2.54 for DNP3 allows remote attackers to cause a denial of service (interface shutdown) via a crafted TCP packet. CWE-20
 Improper Input Validation 
CVE-2013-2809 2024-11-21 10:52 2014-04-12 Show GitHub Exploit DB Packet Storm
293023 - snilesh content_slide Cross-site request forgery (CSRF) vulnerability in the Content Slide plugin 1.4.2 for WordPress allows remote attackers to hijack the authentication of administrators for requests that change plugin … CWE-352
 Origin Validation Error
CVE-2013-2708 2024-11-21 10:52 2014-04-11 Show GitHub Exploit DB Packet Storm
293024 - rodrigo_polo stream_video_player Cross-site request forgery (CSRF) vulnerability in the Stream Video Player plugin 1.4.0 for WordPress allows remote attackers to hijack the authentication of administrators for requests that change p… CWE-352
 Origin Validation Error
CVE-2013-2706 2024-11-21 10:52 2014-04-11 Show GitHub Exploit DB Packet Storm
293025 - underconstruction_project underconstruction Cross-site request forgery (CSRF) vulnerability in the underConstruction plugin before 1.09 for WordPress allows remote attackers to hijack the authentication of administrators for requests that deac… CWE-352
 Origin Validation Error
CVE-2013-2699 2024-11-21 10:52 2014-04-11 Show GitHub Exploit DB Packet Storm
293026 - wp-plugins wp-print Cross-site request forgery (CSRF) vulnerability in the Options in the WP-Print plugin before 2.52 for WordPress allows remote attackers to hijack the authentication of administrators for requests tha… CWE-352
 Origin Validation Error
CVE-2013-2693 2024-11-21 10:52 2014-04-11 Show GitHub Exploit DB Packet Storm
293027 - b2evolution b2evolution SQL injection vulnerability in blogs/admin.php in b2evolution before 4.1.7 allows remote authenticated administrators to execute arbitrary SQL commands via the show_statuses[] parameter. NOTE: this … CWE-89
SQL Injection
CVE-2013-2945 2024-11-21 10:52 2014-04-3 Show GitHub Exploit DB Packet Storm
293028 - wpsymposiumpro wp_symposium Cross-site scripting (XSS) vulnerability in invite.php in the WP Symposium plugin before 13.04 for WordPress allows remote attackers to inject arbitrary web script or HTML via the u parameter. CWE-79
Cross-site Scripting
CVE-2013-2695 2024-11-21 10:52 2014-03-29 Show GitHub Exploit DB Packet Storm
293029 - wpsymposiumpro wp_symposium Open redirect vulnerability in invite.php in the WP Symposium plugin 13.04 for WordPress allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in the… CWE-20
 Improper Input Validation 
CVE-2013-2694 2024-11-21 10:52 2014-03-29 Show GitHub Exploit DB Packet Storm
293030 - sophos web_appliance_firmware
web_appliance
Multiple cross-site scripting (XSS) vulnerabilities in Sophos Web Appliance before 3.7.8.2 allow remote attackers to inject arbitrary web script or HTML via the (1) xss parameter in an allow action t… CWE-79
Cross-site Scripting
CVE-2013-2643 2024-11-21 10:52 2014-03-19 Show GitHub Exploit DB Packet Storm