Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 13, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223141 6.4 警告 アップル - Apple OS X の OpenSSL 用の特定の Apple パッチにおけるカスタムアプリケーション内の追加検証を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2014-2234 2014-03-6 11:34 2014-03-3 Show GitHub Exploit DB Packet Storm
223142 7.8 危険 Synology Inc. - Synology DiskStation Manager に認証情報がハードコードされている問題 CWE-200
CWE-255
CVE-2014-2264 2014-03-6 10:56 2014-02-27 Show GitHub Exploit DB Packet Storm
223143 7.5 危険 Posh portal project - POSH の portal/addtoapplication.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-2211 2014-03-5 18:29 2014-02-20 Show GitHub Exploit DB Packet Storm
223144 7.5 危険 Artifex Software - MuPDF の xps/xps-common.c 内の xps_parse_color 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-2013 2014-03-5 18:28 2014-01-17 Show GitHub Exploit DB Packet Storm
223145 4.3 警告 MyBB Group - MyBB の Upload/search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1840 2014-03-5 18:28 2014-02-2 Show GitHub Exploit DB Packet Storm
223146 2.1 注意 レッドハット - IcedTea-Web の plugin/icedteanp/IcedTeaNPPlugin.cc における Java アプレットと Web ブラウザ間のメッセージを読まれる脆弱性 CWE-200
情報漏えい
CVE-2013-6493 2014-03-5 18:25 2013-09-23 Show GitHub Exploit DB Packet Storm
223147 6.3 警告 OpenFabrics Alliance
レッドハット
- OpenFabrics ibutils における任意のファイルを上書きされる脆弱性 CWE-59
リンク解釈の問題
CVE-2013-2561 2014-03-5 17:35 2013-11-21 Show GitHub Exploit DB Packet Storm
223148 3.5 注意 MIT Kerberos - MIT Kerberos 5 の鍵配布センタの do_tgs_req.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-1417 2014-03-5 17:34 2013-06-21 Show GitHub Exploit DB Packet Storm
223149 4.3 警告 MIT Kerberos - MIT Kerberos の鍵配布センタの main.c 内の setup_server_realm 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2013-1418 2014-03-5 17:33 2013-11-4 Show GitHub Exploit DB Packet Storm
223150 7.1 危険 David King
Canonical
- GNOME Vino の vino-server.c の vino_server_client_data_pending 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-5745 2014-03-5 17:26 2013-09-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 13, 2026, 4:20 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314391 - - - Twig is a template language for PHP. In a sandbox, an attacker can access attributes of Array-like objects as they were not checked by the security policy. They are now checked via the property polic… CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2024-51755 2024-11-9 04:01 2024-11-7 Show GitHub Exploit DB Packet Storm
314392 - - - Twig is a template language for PHP. In a sandbox, an attacker can call `__toString()` on an object even if the `__toString()` method is not allowed by the security policy when the object is part of … CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2024-51754 2024-11-9 04:01 2024-11-7 Show GitHub Exploit DB Packet Storm
314393 - - - Gradio is an open-source Python package designed to enable quick builds of a demo or web application. If File or UploadButton components are used as a part of Gradio application to preview file conte… - CVE-2024-51751 2024-11-9 04:01 2024-11-7 Show GitHub Exploit DB Packet Storm
314394 - - - dingfanzu CMS V1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/doAdminAction.php?act=addAdmin. - CVE-2024-50966 2024-11-9 03:35 2024-11-9 Show GitHub Exploit DB Packet Storm
314395 - - - A vulnerability in the Desktop Client of Mitel MiCollab through 9.7.1.110, and MiVoice Business Solution Virtual Instance (MiVB SVI) 1.0.0.25, could allow an unauthenticated attacker to conduct a com… - CVE-2024-35314 2024-11-9 03:15 2024-10-22 Show GitHub Exploit DB Packet Storm
314396 6.5 MEDIUM
Adjacent
- - A Missing Release of Memory after Effective Lifetime vulnerability in the Packet Forwarding Engine (PFE) of the Juniper Networks Junos OS on the MX Series platforms with Trio-based FPCs allows an una… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2024-47493 2024-11-9 03:15 2024-10-12 Show GitHub Exploit DB Packet Storm
314397 5.8 MEDIUM
Network
hashicorp consul A vulnerability was identified in Consul and Consul Enterprise (“Consul”) such that using Headers in L7 traffic intentions could bypass HTTP header based access rules. CWE-116
 Improper Encoding or Escaping of Output
CVE-2024-10006 2024-11-9 03:10 2024-10-31 Show GitHub Exploit DB Packet Storm
314398 5.8 MEDIUM
Network
hashicorp consul A vulnerability was identified in Consul and Consul Enterprise (“Consul”) such that using URL paths in L7 traffic intentions could bypass HTTP request path-based access rules. CWE-22
Path Traversal
CVE-2024-10005 2024-11-9 03:10 2024-10-31 Show GitHub Exploit DB Packet Storm
314399 7.5 HIGH
Adjacent
hp poly_tc8_firmware
poly_tc10_firmware
poly_studio_g7500_firmware
poly_studio_x30_firmware
poly_studio_x50_firmware
poly_studio_x70_firmware
poly_studio_x52_firmware
poly_studio_g6…
A potential vulnerability was discovered in certain Poly video conferencing devices. The firmware flaw does not properly sanitize user input. The exploitation of this vulnerability is dependent on a … CWE-77
Command Injection
CVE-2024-9579 2024-11-9 03:08 2024-11-6 Show GitHub Exploit DB Packet Storm
314400 7.8 HIGH
Local
adobe substance_3d_painter Substance3D - Painter versions 10.0.1 and earlier are affected by an out-of-bounds write vulnerability that could result in arbitrary code execution in the context of the current user. Exploitation o… CWE-787
 Out-of-bounds Write
CVE-2024-49522 2024-11-9 03:06 2024-11-6 Show GitHub Exploit DB Packet Storm