Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223341 8.3 危険 Samba Project - Samba の winbindd の librpc/rpc/dcerpc_util.c におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-4408 2014-01-17 11:06 2013-12-9 Show GitHub Exploit DB Packet Storm
223342 4.3 警告 Mozilla Foundation - Linux 上で稼働する Mozilla Firefox および SeaMonkey におけるクリップボードデータを読まれる脆弱性 CWE-200
情報漏えい
CVE-2013-6672 2014-01-17 10:59 2013-12-10 Show GitHub Exploit DB Packet Storm
223343 6.4 警告 Nagios Enterprises, LLC - Nagios Core の contrib/daemonchk.c 内の process_cgivars 関数における重要な情報を取得される脆弱性 CWE-119
バッファエラー
CVE-2013-7205 2014-01-16 17:55 2013-12-20 Show GitHub Exploit DB Packet Storm
223344 5.5 警告 Nagios Enterprises, LLC
The Icinga Project
- Nagios Core および Icinga におけるプロセスメモリから重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2013-7108 2014-01-16 17:52 2013-12-17 Show GitHub Exploit DB Packet Storm
223345 4.3 警告 オラクル - Oracle Supply Chain Products Suite の Oracle Demantra Demand Management における DM Others に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0379 2014-01-16 17:47 2014-01-14 Show GitHub Exploit DB Packet Storm
223346 5.5 警告 オラクル - Oracle Supply Chain Products Suite の Oracle Demantra Demand Management における DM Others に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0372 2014-01-16 17:46 2014-01-14 Show GitHub Exploit DB Packet Storm
223347 3.5 注意 オラクル - Oracle Supply Chain Products Suite の Oracle Demantra Demand Management における DM Others に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0371 2014-01-16 17:46 2014-01-14 Show GitHub Exploit DB Packet Storm
223348 5.5 警告 オラクル - Oracle Supply Chain Products Suite の Oracle Agile Product Lifecycle Management for Process における Manage Data Cache に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-5897 2014-01-16 17:45 2014-01-14 Show GitHub Exploit DB Packet Storm
223349 4 警告 Apache Software Foundation - Apache CloudStack におけるネットワーク ACL を一覧表示される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0031 2014-01-16 17:19 2014-01-10 Show GitHub Exploit DB Packet Storm
223350 6.9 警告 クアルコム
Android for MSM
- MSM デバイス用 Qualcomm Innovation Center Android コントリビューションなどで使用される Linux Kernel 用 MSM カメラドライバにおける権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2013-6123 2014-01-16 16:48 2013-10-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
314451 5.4 MEDIUM
Network
jesweb anchor_episodes_index The Anchor Episodes Index (Spotify for Podcasters) plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's anchor_episodes shortcode in all versions up to, and including, 2… CWE-79
Cross-site Scripting
CVE-2024-10189 2024-10-30 00:27 2024-10-22 Show GitHub Exploit DB Packet Storm
314452 5.5 MEDIUM
Local
apple macos An out-of-bounds write issue was addressed with improved input validation. This issue is fixed in macOS Sonoma 14.6. An app may be able to cause a coprocessor crash. CWE-787
 Out-of-bounds Write
CVE-2024-40810 2024-10-30 00:21 2024-10-25 Show GitHub Exploit DB Packet Storm
314453 4.3 MEDIUM
Network
colorlib simple_custom_post_order Missing Authorization vulnerability in Colorlib Simple Custom Post Order allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects Simple Custom Post Order: from n/a … CWE-862
 Missing Authorization
CVE-2024-49321 2024-10-30 00:20 2024-10-21 Show GitHub Exploit DB Packet Storm
314454 6.1 MEDIUM
Network
edit_woocommerce_templates_project edit_woocommerce_templates The Edit WooCommerce Templates plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the ‘page’ parameter in all versions up to, and including, 1.1.2 due to insufficient input sani… CWE-79
Cross-site Scripting
CVE-2024-10049 2024-10-29 23:49 2024-10-18 Show GitHub Exploit DB Packet Storm
314455 8.2 HIGH
Adjacent
eufy homebase_2_firmware The Eufy Homebase 2 before firmware version 3.3.4.1h creates a dedicated wireless network for its ecosystem, which serves as a proxy to the end user's primary network. The WPA2-PSK generation of this… CWE-331
 Insufficient Entropy
CVE-2023-37822 2024-10-29 23:47 2024-10-4 Show GitHub Exploit DB Packet Storm
314456 6.1 MEDIUM
Network
themeinwp social_share_with_floating_bar The Social Share With Floating Bar plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, … CWE-79
Cross-site Scripting
CVE-2024-8790 2024-10-29 23:44 2024-10-18 Show GitHub Exploit DB Packet Storm
314457 5.4 MEDIUM
Network
sukiwp suki_sites_import The Suki Sites Import plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.2.1 due to insufficient input sanitization and out… CWE-79
Cross-site Scripting
CVE-2024-8916 2024-10-29 23:37 2024-10-18 Show GitHub Exploit DB Packet Storm
314458 - xfree86_project x11r6 The xterm terminal emulator in XFree86 4.2.0 and earlier allows attackers to modify the window title via a certain character escape sequence and then insert it back to the command line in the user's … NVD-CWE-Other
CVE-2003-0063 2024-10-29 23:35 2003-03-3 Show GitHub Exploit DB Packet Storm
314459 - qualcomm qpopper Buffer overflow in POP servers based on BSD/Qualcomm's qpopper allows remote attackers to gain root access using a long PASS command. NVD-CWE-Other
CVE-1999-0006 2024-10-29 23:35 1998-07-14 Show GitHub Exploit DB Packet Storm
314460 - sgi irix IRIX login program with a nonzero LOCKOUT parameter allows creation or damage to files. NVD-CWE-Other
CVE-1999-0036 2024-10-29 23:35 1997-05-26 Show GitHub Exploit DB Packet Storm