Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240711 7.5 危険 AliBabaClone.com - EC21 Clone の offers_buy.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1726 2012-06-26 16:19 2010-05-6 Show GitHub Exploit DB Packet Storm
240712 7.5 危険 AliBabaClone.com - Alibaba Clone Platinum の offers_buy.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1725 2012-06-26 16:19 2010-05-6 Show GitHub Exploit DB Packet Storm
240713 6.8 警告 dev.pucit.edu.pk
Joomla!
- Joomla! 用の Online Market コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1722 2012-06-26 16:19 2010-05-4 Show GitHub Exploit DB Packet Storm
240714 5 警告 dev.pucit.edu.pk
Joomla!
- Joomla! 用の Arcade Games コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-1714 2012-06-26 16:19 2010-05-4 Show GitHub Exploit DB Packet Storm
240715 7.5 危険 2daybiz - 2daybiz Polls Script における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-1704 2012-06-26 16:19 2010-05-4 Show GitHub Exploit DB Packet Storm
240716 4.3 警告 2daybiz - 2daybiz Polls の index_search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-1703 2012-06-26 16:19 2010-05-4 Show GitHub Exploit DB Packet Storm
240717 9.3 危険 2brightsparks - 2BrightSparks SyncBack Freeware におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1688 2012-06-26 16:19 2010-05-24 Show GitHub Exploit DB Packet Storm
240718 9.3 危険 internet-soft
abcbackup
- Urgent Backup などにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1686 2012-06-26 16:19 2010-05-5 Show GitHub Exploit DB Packet Storm
240719 9.3 危険 cursorarts - CursorArts ZipWrangler におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1685 2012-06-26 16:19 2010-05-4 Show GitHub Exploit DB Packet Storm
240720 6.8 警告 dan pascu - Dan Pascu python-cjson におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-1666 2012-06-26 16:19 2010-07-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
286021 - joachim_noreiko flag_module Cross-site scripting (XSS) vulnerability in the administration page in the Flag module 7.x-3.x before 7.x-3.1 for Drupal allows remote authenticated users with the "Administer flags" permission to in… CWE-79
Cross-site Scripting
CVE-2013-5964 2024-11-21 10:58 2013-10-1 Show GitHub Exploit DB Packet Storm
286022 - owasp enterprise_security_api The authenticated-encryption feature in the symmetric-encryption implementation in the OWASP Enterprise Security API (ESAPI) for Java 2.x before 2.1.0.1 does not properly resist tampering with serial… CWE-310
Cryptographic Issues
CVE-2013-5960 2024-11-21 10:58 2013-10-1 Show GitHub Exploit DB Packet Storm
286023 - bluecoat proxysgos
proxysg
Blue Coat ProxySG before 6.2.14.1, 6.3.x, 6.4.x, and 6.5 before 6.5.2 allows remote attackers to cause a denial of service (memory consumption and dropped connections) via a recursive href in an HTML… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2013-5959 2024-11-21 10:58 2013-09-29 Show GitHub Exploit DB Packet Storm
286024 - graphite_project graphite Multiple cross-site scripting (XSS) vulnerabilities in Graphite before 0.9.11 allow remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2013-5943 2024-11-21 10:58 2013-09-27 Show GitHub Exploit DB Packet Storm
286025 - graphite_project graphite Graphite 0.9.5 through 0.9.10 uses the pickle Python module unsafely, which allows remote attackers to execute arbitrary code via a crafted serialized object, related to (1) remote_storage.py, (2) st… CWE-94
Code Injection
CVE-2013-5942 2024-11-21 10:58 2013-09-27 Show GitHub Exploit DB Packet Storm
286026 - click2sell click2sell_suite_module Cross-site scripting (XSS) vulnerability in the Click2Sell Suite module 6.x-1.x for Drupal allows remote attackers to inject arbitrary web script or HTML via a confirmation form. CWE-79
Cross-site Scripting
CVE-2013-5938 2024-11-21 10:58 2013-09-25 Show GitHub Exploit DB Packet Storm
286027 - click2sell click2sell_suite_module Cross-site request forgery (CSRF) vulnerability in the Click2Sell Suite module 6.x-1.x for Drupal allows remote attackers to hijack the authentication of administrators for requests that delete datab… CWE-352
 Origin Validation Error
CVE-2013-5937 2024-11-21 10:58 2013-09-25 Show GitHub Exploit DB Packet Storm
286028 - open-xchange open-xchange_appsuite The Hazelcast cluster API in Open-Xchange AppSuite 7.0.x before 7.0.2-rev15 and 7.2.x before 7.2.2-rev16 allows remote attackers to obtain sensitive information about (1) runtime activity, (2) networ… CWE-200
Information Exposure
CVE-2013-5936 2024-11-21 10:58 2013-09-25 Show GitHub Exploit DB Packet Storm
286029 - open-xchange open-xchange_appsuite The Hazelcast cluster API in Open-Xchange AppSuite 7.0.x before 7.0.2-rev15 and 7.2.x before 7.2.2-rev16 does not properly restrict the set of network interfaces that can receive API calls, which mak… CWE-200
Information Exposure
CVE-2013-5935 2024-11-21 10:58 2013-09-25 Show GitHub Exploit DB Packet Storm
286030 - open-xchange open-xchange_appsuite Open-Xchange AppSuite 7.0.x before 7.0.2-rev15 and 7.2.x before 7.2.2-rev16 has a hardcoded password for node join operations, which allows remote attackers to expand a cluster by finding this passwo… CWE-255
Credentials Management
CVE-2013-5934 2024-11-21 10:58 2013-09-25 Show GitHub Exploit DB Packet Storm