Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253331 7.5 危険 Lucid Crew - Pixie CMS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-4710 2011-12-13 14:53 2011-12-8 Show GitHub Exploit DB Packet Storm
253332 4.3 警告 Hotaru CMS - Hotaru CMS の Search プラグイン内にある Hotaru.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4709 2011-12-13 14:52 2011-12-8 Show GitHub Exploit DB Packet Storm
253333 4.3 警告 IBM - IBM Rational Asset Manager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4708 2011-12-13 14:51 2011-05-5 Show GitHub Exploit DB Packet Storm
253334 4.3 警告 SAP - SAP Netweaver の Virus Scan Interface におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4707 2011-12-13 14:50 2011-12-8 Show GitHub Exploit DB Packet Storm
253335 5 警告 Igor Sysoev - nginx におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-4315 2011-12-13 14:49 2011-11-15 Show GitHub Exploit DB Packet Storm
253336 7.5 危険 Mambo Foundation - Mambo CMS の administrator/index2.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-2917 2011-12-13 14:41 2011-12-8 Show GitHub Exploit DB Packet Storm
253337 6.8 警告 MIT Kerberos - MIT Kerberos の process_tgs_req 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-1530 2011-12-13 14:40 2011-12-6 Show GitHub Exploit DB Packet Storm
253338 6.4 警告 BlackBerry - BlackBerry Administration API におけるテキストファイルを読まれる脆弱性 CWE-noinfo
情報不足
CVE-2011-0287 2011-12-13 14:35 2011-07-12 Show GitHub Exploit DB Packet Storm
253339 6.4 警告 Widelands - Widelands におけるパストラバーサル攻撃を誘発される脆弱性 CWE-22
パス・トラバーサル
CVE-2011-4675 2011-12-12 18:21 2011-12-5 Show GitHub Exploit DB Packet Storm
253340 5 警告 One Click Orgs - One Click Orgs のパスワードリセット機能におけるユーザアカウントを列挙される脆弱性 CWE-255
証明書・パスワード管理
CVE-2011-4678 2011-12-12 18:19 2011-12-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
246441 5.3 MEDIUM
Network
mediawiki mediawiki Mediawiki 1.31 before 1.31.1 misses .htaccess files in the provided tarball used to protect some directories that shouldn't be web accessible. CWE-200
Information Exposure
CVE-2018-13258 2024-11-21 12:46 2018-10-5 Show GitHub Exploit DB Packet Storm
246442 8.1 HIGH
Network
druide antidote_9 Druide Antidote through 9.5.1 on Windows and Linux allows remote code execution through the update mechanism by leveraging use of HTTP to download installation packages. CWE-319
Cleartext Transmission of Sensitive Information
CVE-2018-13140 2024-11-21 12:46 2018-09-25 Show GitHub Exploit DB Packet Storm
246443 7.5 HIGH
Network
cryptosaga cryptosaga The random() function of the smart contract implementation for CryptoSaga, an Ethereum game, generates a random value with publicly readable variables such as timestamp, the current block's blockhash… CWE-338
 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
CVE-2018-12975 2024-11-21 12:46 2018-09-25 Show GitHub Exploit DB Packet Storm
246444 5.9 MEDIUM
Network
wanscam hw0021_firmware There exists a partial Denial of Service vulnerability in Wanscam HW0021 IP Cameras. An attacker could craft a malicious POST request to crash the ONVIF service on such a device. CWE-20
 Improper Input Validation 
CVE-2018-13111 2024-11-21 12:46 2018-09-22 Show GitHub Exploit DB Packet Storm
246445 7.8 HIGH
Local
solarwinds dameware_mini_remote_control SolarWinds DameWare Mini Remote Control before 12.1 has a Buffer Overflow. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2018-12897 2024-11-21 12:46 2018-09-8 Show GitHub Exploit DB Packet Storm
246446 9.8 CRITICAL
Network
canonical
zsh
ubuntu_linux
zsh
An issue was discovered in zsh before 5.6. Shebang lines exceeding 64 characters were truncated, potentially leading to an execve call to a program name that is a substring of the intended one. CWE-20
 Improper Input Validation 
CVE-2018-13259 2024-11-21 12:46 2018-09-5 Show GitHub Exploit DB Packet Storm
246447 8.8 HIGH
Network
crestron tsw-x60_firmware
mc3_firmware
Crestron TSW-X60 all versions prior to 2.001.0037.001 and MC3 all versions prior to 1.502.0047.00, The passwords for special sudo accounts may be calculated using information accessible to those with… NVD-CWE-noinfo
CVE-2018-13341 2024-11-21 12:46 2018-08-11 Show GitHub Exploit DB Packet Storm
246448 5.9 MEDIUM
Network
mycryptochamp mycryptochamp The randMod() function of the smart contract implementation for MyCryptoChamp, an Ethereum game, generates a random value with publicly readable variables such as the current block information and a … CWE-338
 Use of Cryptographically Weak Pseudo-Random Number Generator (PRNG)
CVE-2018-12885 2024-11-21 12:46 2018-08-8 Show GitHub Exploit DB Packet Storm
246449 6.1 MEDIUM
Network
mantisbt mantisbt A cross-site scripting (XSS) vulnerability in the View Filters page (view_filters_page.php) in MantisBT 2.1.0 through 2.15.0 allows remote attackers to inject arbitrary code (if CSP settings permit i… CWE-79
Cross-site Scripting
CVE-2018-13055 2024-11-21 12:46 2018-08-4 Show GitHub Exploit DB Packet Storm
246450 6.7 MEDIUM
Local
pearsonvue iqsystem_7
console_8
The report-viewing feature in Pearson VUE Certiport Console 8 and IQSystem 7 before 2018-06-26 mishandles child processes and consequently launches Internet Explorer or Microsoft Edge as Administrato… CWE-281
 Improper Preservation of Permissions
CVE-2018-12989 2024-11-21 12:46 2018-08-4 Show GitHub Exploit DB Packet Storm