Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252061 7.2 危険 マイクロソフト - Microsoft Windows の win32k.sys における権限昇格の脆弱性 CWE-Other
その他
CVE-2011-1232 2011-05-9 12:09 2011-04-12 Show GitHub Exploit DB Packet Storm
252062 7.2 危険 マイクロソフト - Microsoft Windows の win32k.sys における権限昇格の脆弱性 CWE-Other
その他
CVE-2011-1231 2011-05-9 12:08 2011-04-12 Show GitHub Exploit DB Packet Storm
252063 7.2 危険 マイクロソフト - Microsoft Windows の win32k.sys における権限昇格の脆弱性 CWE-Other
その他
CVE-2011-1230 2011-05-9 12:07 2011-04-12 Show GitHub Exploit DB Packet Storm
252064 7.2 危険 マイクロソフト - Microsoft Windows の win32k.sys における権限昇格の脆弱性 CWE-Other
その他
CVE-2011-1229 2011-05-9 12:06 2011-04-12 Show GitHub Exploit DB Packet Storm
252065 7.2 危険 マイクロソフト - Microsoft Windows の win32k.sys における権限昇格の脆弱性 CWE-Other
その他
CVE-2011-1228 2011-05-9 12:04 2011-04-12 Show GitHub Exploit DB Packet Storm
252066 7.2 危険 マイクロソフト - Microsoft Windows の win32k.sys における権限昇格の脆弱性 CWE-Other
その他
CVE-2011-1227 2011-05-9 12:03 2011-04-12 Show GitHub Exploit DB Packet Storm
252067 7.2 危険 マイクロソフト - Microsoft Windows の win32k.sys における権限昇格の脆弱性 CWE-Other
その他
CVE-2011-1226 2011-05-9 12:02 2011-04-12 Show GitHub Exploit DB Packet Storm
252068 7.2 危険 マイクロソフト - Microsoft Windows の win32k.sys における権限昇格の脆弱性 CWE-Other
その他
CVE-2011-1225 2011-05-9 12:01 2011-04-12 Show GitHub Exploit DB Packet Storm
252069 7.2 危険 マイクロソフト - Microsoft Windows の win32k.sys における権限昇格の脆弱性 CWE-Other
その他
CVE-2011-0677 2011-05-9 11:59 2011-04-12 Show GitHub Exploit DB Packet Storm
252070 7.2 危険 マイクロソフト - Microsoft Windows の win32k.sys における権限昇格の脆弱性 CWE-Other
その他
CVE-2011-0676 2011-05-9 11:57 2011-04-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290131 - boxes_project boxes Cross-site scripting (XSS) vulnerability in the Boxes module 7.x-1.x before 7.x-1.1 for Drupal allows remote authenticated users with administer or edit boxes permissions to inject arbitrary web scri… CWE-79
Cross-site Scripting
CVE-2013-0259 2024-11-21 10:47 2013-03-28 Show GitHub Exploit DB Packet Storm
290132 - google_authenticator_login_project ga_login The Google Authenticator login (ga_login) module 7.x before 7.x-1.3 for Drupal, when multi-factor authentication is enabled, allows remote attackers to bypass authentication for accounts without an a… CWE-287
Improper Authentication
CVE-2013-0258 2024-11-21 10:47 2013-03-28 Show GitHub Exploit DB Packet Storm
290133 - david_alkire email2image The email2image module 6.x-1.x and 6.x-2.x for Drupal does not properly restrict access to nodes, which allows remote attackers to read images of user email addresses and email fields. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0257 2024-11-21 10:47 2013-03-28 Show GitHub Exploit DB Packet Storm
290134 - bart_feenstra payment The Payment module 7.x-1.x before 7.x-1.3 for Drupal does not properly restrict access to payments, which allows remote attackers to read arbitrary payments. CWE-264
Permissions, Privileges, and Access Controls
CVE-2013-0182 2024-11-21 10:47 2013-03-28 Show GitHub Exploit DB Packet Storm
290135 - thomas_seidl search_api Cross-site scripting (XSS) vulnerability in Views in the Search API (search_api) module 7.x-1.x before 7.x-1.4 for Drupal, when using certain backends and facets, allows remote attackers to inject ar… CWE-79
Cross-site Scripting
CVE-2013-0181 2024-11-21 10:47 2013-03-28 Show GitHub Exploit DB Packet Storm
290136 - ibm lotus_domino Cross-site request forgery (CSRF) vulnerability in webadmin.nsf (aka the Web Administrator client) in IBM Domino 8.5.x allows remote authenticated users to hijack the authentication of administrators. CWE-352
 Origin Validation Error
CVE-2013-0489 2024-11-21 10:47 2013-03-27 Show GitHub Exploit DB Packet Storm
290137 - ibm lotus_domino Cross-site scripting (XSS) vulnerability in webadmin.nsf (aka the Web Administrator client) in IBM Domino 8.5.x allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2013-0488 2024-11-21 10:47 2013-03-27 Show GitHub Exploit DB Packet Storm
290138 - ibm lotus_domino The Java Console in IBM Domino 8.5.x allows remote authenticated users to hijack temporary credentials by leveraging knowledge of configuration details, aka SPR KLYH8TNNDN. CWE-287
Improper Authentication
CVE-2013-0487 2024-11-21 10:47 2013-03-27 Show GitHub Exploit DB Packet Storm
290139 - ibm lotus_domino Memory leak in the HTTP server in IBM Domino 8.5.x allows remote attackers to cause a denial of service (memory consumption and daemon crash) via GET requests, aka SPR KLYH92NKZY. CWE-399
 Resource Management Errors
CVE-2013-0486 2024-11-21 10:47 2013-03-27 Show GitHub Exploit DB Packet Storm
290140 - ibm lotus_inotes Multiple cross-site scripting (XSS) vulnerabilities in IBM iNotes 8.5.x allow local users to inject arbitrary web script or HTML via a shared mail file, aka SPR DKEN8PDNTX. CWE-79
Cross-site Scripting
CVE-2013-0525 2024-11-21 10:47 2013-03-27 Show GitHub Exploit DB Packet Storm