Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223591 5 警告 OpenStack - OpenStack Identity Folsom および Grizzly の mamcache および KVS トークンバックエンドにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4294 2013-11-13 17:47 2013-09-12 Show GitHub Exploit DB Packet Storm
223592 6.4 警告 レッドハット - Red Hat JBoss Enterprise Application Platform におけるセッションをハイジャックされる脆弱性 CWE-16
環境設定
CVE-2013-4213 2013-11-13 17:35 2013-08-12 Show GitHub Exploit DB Packet Storm
223593 5 警告 レッドハット - 複数の Red Hat JBoss Enterprise 製品で使用される Red Hat JBoss Remoting におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-4210 2013-11-13 17:30 2013-09-30 Show GitHub Exploit DB Packet Storm
223594 6.9 警告 クアルコム - MSM デバイス用 Qualcomm Innovation Center Android コントリビューションなどで使用される Linux Kernel 用 Goodix gt915 タッチスクリーンドライバにおけるアクセス制限を回避される脆弱性 CWE-119
バッファエラー
CVE-2013-6122 2013-11-13 15:37 2013-11-7 Show GitHub Exploit DB Packet Storm
223595 6.9 警告 クアルコム - MSM デバイス用 Qualcomm Innovation Center Android コントリビューションなどで使用される Linux Kernel 用 Goodix gt915 タッチスクリーンドライバにおける権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2013-4740 2013-11-13 15:07 2013-11-7 Show GitHub Exploit DB Packet Storm
223596 4.3 警告 OpenStack - OpenStack Cinder Grizzly におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-4202 2013-11-13 15:01 2013-08-8 Show GitHub Exploit DB Packet Storm
223597 2.1 注意 OpenStack - OpenStack Cinder の LVMVolumeDriver ドライバの clear_volume 関数における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-4183 2013-11-13 14:57 2013-09-3 Show GitHub Exploit DB Packet Storm
223598 5.8 警告 OpenStack
Novell
- Glance 用 Python クライアントライブラリにおける SSL サーバになりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2013-4111 2013-11-13 14:53 2013-07-22 Show GitHub Exploit DB Packet Storm
223599 6.9 警告 Linux - Linux Kernel の drivers/uio/uio.c の uio_mmap_physical 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-6763 2013-11-13 14:51 2013-10-29 Show GitHub Exploit DB Packet Storm
223600 4.9 警告 Linux - Linux Kernel の drivers/staging/sb105x/sb_pci_mp.c の mp_get_count 関数における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-4516 2013-11-13 14:48 2013-10-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
11 7.5 HIGH
Network
securly securly Version 3.0.7 of the Securly Chrome Extension dynamically registers content13.min.js as a content script via chrome.scripting.registerContentScripts() at runtime. This script is NOT declared in manif… New CWE-829
 Inclusion of Functionality from Untrusted Control Sphere
CVE-2026-8879 2026-06-5 03:41 2026-06-4 Show GitHub Exploit DB Packet Storm
12 6.5 MEDIUM
Network
libxls_project libxls libxls through version 1.6.3 contains a use of uninitialized memory vulnerability in the OLE container parser. Memory allocated for the Master Sector Allocation Table (MSAT) in read_MSAT() is not ful… New CWE-457
 Use of Uninitialized Variable
CVE-2026-26824 2026-06-5 03:41 2026-06-4 Show GitHub Exploit DB Packet Storm
13 5.3 MEDIUM
Network
libxls_project libxls A use-of-uninitialized memory vulnerability exists in libxls 1.6.3 when parsing malformed XLS files. The issue is reachable via xls_parseWorkBook() and is triggered by uninitialized heap memory origi… New CWE-908
 Use of Uninitialized Resource
CVE-2026-26825 2026-06-5 03:41 2026-06-4 Show GitHub Exploit DB Packet Storm
14 7.7 HIGH
Network
openstack ironic OpenStack Ironic before 35.0.2 allows Boot Script Injection of an iPXE script if the attacker can set node.driver_info or node.instance_info. New CWE-669
 Incorrect Resource Transfer Between Spheres
CVE-2026-46447 2026-06-5 03:41 2026-06-4 Show GitHub Exploit DB Packet Storm
15 4.9 MEDIUM
Network
openstack ironic OpenStack Ironic before 35.0.2 allows a malicious authenticated project admin or manager to read local files on the Ironic conductor via a pxe_template. New CWE-669
 Incorrect Resource Transfer Between Spheres
CVE-2026-44917 2026-06-5 03:40 2026-06-4 Show GitHub Exploit DB Packet Storm
16 8.1 HIGH
Network
openstack ironic OpenStack Ironic through before 35.0.2 allows file overwrite via directory traversal during deployment with a crafted ISO image. New CWE-23
 Relative Path Traversal
CVE-2026-48681 2026-06-5 03:40 2026-06-4 Show GitHub Exploit DB Packet Storm
17 5.9 MEDIUM
Local
libexpat_project libexpat libexpat before 2.8.2 lacks handler call depth tracking for calls to XML_GetBuffer, XML_Parse, XML_ParseBuffer, XML_ParserFree, or XML_ParserReset from within handlers in cases of a policy violation.… New CWE-416
 Use After Free
CVE-2026-50219 2026-06-5 03:39 2026-06-4 Show GitHub Exploit DB Packet Storm
18 7.5 HIGH
Network
solarwinds web_help_desk SolarWinds Web Help Desk is found to be affected by a denial-of-service vulnerability, which when exploited, could cause the Web Help Desk server to crash due to insufficient memory. New CWE-770
 Allocation of Resources Without Limits or Throttling
CVE-2026-28299 2026-06-5 03:39 2026-06-3 Show GitHub Exploit DB Packet Storm
19 4.3 MEDIUM
Network
hcltech icontrol HCL iControl was affected by Weak Input Validation vulnerability. This weakness is caused during implementation of an architectural security tactic. Received input that is expected to be of a certain… New CWE-209
Information Exposure Through an Error Message
CVE-2025-52606 2026-06-5 03:38 2026-06-4 Show GitHub Exploit DB Packet Storm
20 4.3 MEDIUM
Network
hcltech icontrol HCL iControl was affected by Missing Cookie Attributes vulnerability. It was observed that the application is missing several critical cookie attributes, including Secure and SameSite. And also path… New CWE-614
 Sensitive Cookie in HTTPS Session Without 'Secure' Attribute
CVE-2025-52608 2026-06-5 03:38 2026-06-4 Show GitHub Exploit DB Packet Storm