Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 24, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
222211 6.8 警告 IBM - IBM Java SDK における制限されたクラスにアクセスされる脆弱性 CWE-noinfo
情報不足
CVE-2013-5375 2014-06-27 16:09 2013-10-20 Show GitHub Exploit DB Packet Storm
222212 4.3 警告 IBM - IBM WebSphere Message Broker および IBM Integration Bus の XML4J パーサにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-5372 2014-06-27 16:09 2013-10-17 Show GitHub Exploit DB Packet Storm
222213 6.8 警告 IBM - IBM Java SDK における制限されたクラスにアクセスされる脆弱性 CWE-noinfo
情報不足
CVE-2013-4041 2014-06-27 16:08 2013-10-20 Show GitHub Exploit DB Packet Storm
222214 1.5 注意 マイクロソフト
(複数のベンダ)
IBM
- Oracle Outside In にバッファオーバーフローの脆弱性 CWE-noinfo
CWE-Other
CVE-2013-5763 2014-06-27 15:41 2013-10-17 Show GitHub Exploit DB Packet Storm
222215 1.5 注意 マイクロソフト
IBM
オラクル
- Oracle Outside In にバッファオーバーフローの脆弱性 CWE-noinfo
CWE-Other
CVE-2013-5791 2014-06-27 15:38 2013-10-15 Show GitHub Exploit DB Packet Storm
222216 6.8 警告 LongTail Ad Solutions - WordPress 用 JW Player プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-4030 2014-06-27 15:34 2014-06-10 Show GitHub Exploit DB Packet Storm
222217 4.3 警告 D-Link Systems, Inc. - D-link DSL-2760U-E1 の dhcpinfo.html におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4645 2014-06-27 14:30 2014-06-21 Show GitHub Exploit DB Packet Storm
222218 7.5 危険 The Cacti Group - Cacti 用 superlinks プラグインの superlinks.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-4644 2014-06-27 12:07 2014-06-18 Show GitHub Exploit DB Packet Storm
222219 5 警告 Core FTP - Core FTP LE のクライアントにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-4643 2014-06-27 11:17 2014-06-11 Show GitHub Exploit DB Packet Storm
222220 4.7 警告 ソフォス - Sophos Disk Encryption における認証不備の脆弱性 CWE-287
不適切な認証
CVE-2014-2005 2014-06-26 18:07 2014-06-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314351 - - - Rejected reason: This CVE ID has been rejected or withdrawn by its CVE Numbering Authority. - CVE-2023-4348 2024-11-15 21:15 2024-11-15 Show GitHub Exploit DB Packet Storm
314352 9.8 CRITICAL
Network
- - Certain EOL GeoVision devices have an OS Command Injection vulnerability. Unauthenticated remote attackers can exploit this vulnerability to inject and execute arbitrary system commands on the device… CWE-78
OS Command 
CVE-2024-11120 2024-11-15 11:15 2024-11-15 Show GitHub Exploit DB Packet Storm
314353 9.1 CRITICAL
Network
paloaltonetworks expedition An SQL injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to reveal Expedition database contents, such as password hashes, usernames, device configurations, a… CWE-89
SQL Injection
CVE-2024-9465 2024-11-15 11:00 2024-10-10 Show GitHub Exploit DB Packet Storm
314354 7.5 HIGH
Network
paloaltonetworks expedition An OS command injection vulnerability in Palo Alto Networks Expedition allows an unauthenticated attacker to run arbitrary OS commands as root in Expedition, resulting in disclosure of usernames, cle… CWE-78
OS Command 
CVE-2024-9463 2024-11-15 11:00 2024-10-10 Show GitHub Exploit DB Packet Storm
314355 5.4 MEDIUM
Network
ladybirdweb faveo_helpdesk An issue in Ladybird Web Solution Faveo Helpdesk & Servicedesk (On-Premise and Cloud) 9.2.0 allows a remote attacker to execute arbitrary code via the Subject and Identifier fields CWE-79
Cross-site Scripting
CVE-2024-51377 2024-11-15 08:23 2024-11-2 Show GitHub Exploit DB Packet Storm
314356 9.8 CRITICAL
Network
olivegroup olivevle An issue in Olive VLE allows an attacker to obtain sensitive information via the reset password function. CWE-640
 Weak Password Recovery Mechanism for Forgotten Password
CVE-2024-48428 2024-11-15 08:15 2024-10-26 Show GitHub Exploit DB Packet Storm
314357 7.5 HIGH
Network
plenti plenti Plenti, a static site generator, has an arbitrary file deletion vulnerability in versions prior to 0.7.2. The `/postLocal` endpoint is vulnerable to an arbitrary file write deletion when a plenti use… CWE-22
Path Traversal
CVE-2024-49381 2024-11-15 08:04 2024-10-25 Show GitHub Exploit DB Packet Storm
314358 8.8 HIGH
Network
autolabproject autolab Autolab, a course management service that enables auto-graded programming assignments, has misconfigured reset password permissions in version 3.0.0. For email-based accounts, users with insufficient… CWE-863
 Incorrect Authorization
CVE-2024-49376 2024-11-15 07:49 2024-10-25 Show GitHub Exploit DB Packet Storm
314359 9.8 CRITICAL
Network
vice webopac Webopac from Grand Vice info has a SQL Injection vulnerability, allowing unauthenticated remote attacks to inject arbitrary SQL commands to read, modify, and delete database contents. CWE-89
SQL Injection
CVE-2024-11016 2024-11-15 06:53 2024-11-11 Show GitHub Exploit DB Packet Storm
314360 9.8 CRITICAL
Network
matrixcomsec cosec_vega_faxq_firmware This vulnerability exists in Matrix Door Controller Cosec Vega FAXQ due to improper implementation of session management at the web-based management interface. A remote attacker could exploit this vu… NVD-CWE-Other
CVE-2024-10381 2024-11-15 06:44 2024-10-25 Show GitHub Exploit DB Packet Storm