Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223661 6.8 警告 SERENA Software - Serena Dimensions CM の Web クライアントにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-0336 2014-03-7 11:37 2014-03-5 Show GitHub Exploit DB Packet Storm
223662 4.3 警告 SERENA Software - Serena Dimensions CM の Web クライアントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0335 2014-03-7 11:37 2014-03-5 Show GitHub Exploit DB Packet Storm
223663 9.3 危険 オラクル - Oracle Java SE の Java Runtime Environment における Deployment に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-2462 2014-03-6 18:37 2013-06-18 Show GitHub Exploit DB Packet Storm
223664 9.3 危険 オラクル - Oracle Java SE の Java Runtime Environment における Serviceability に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-2460 2014-03-6 18:25 2013-06-18 Show GitHub Exploit DB Packet Storm
223665 5.8 警告 オラクル - Oracle Java SE の Java Runtime Environment における Libraries に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-2458 2014-03-6 18:24 2013-06-18 Show GitHub Exploit DB Packet Storm
223666 8.5 危険 PostgreSQL.org
アップル
Canonical
- PostgreSQL における脆弱性 CWE-189
数値処理の問題
CVE-2013-1900 2014-03-6 16:30 2013-04-4 Show GitHub Exploit DB Packet Storm
223667 6.2 警告 Linux - Linux Kernel の fs/ext3/super.c におけるフォーマットストリング攻撃の脆弱性 CWE-20
不適切な入力確認
CVE-2013-1848 2014-03-6 16:27 2013-03-20 Show GitHub Exploit DB Packet Storm
223668 5 警告 Squid-cache.org
Novell
- Squid の client_side_request.cc におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-4123 2014-03-6 16:06 2013-07-13 Show GitHub Exploit DB Packet Storm
223669 4.3 警告 LibTIFF - libtiff におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-4231 2014-03-6 16:00 2013-08-13 Show GitHub Exploit DB Packet Storm
223670 6.8 警告 Debian
LibTIFF
- Libtiff の tools/tiff2pdf.c の t2p_readwrite_pdf_image 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-4232 2014-03-6 15:58 2013-08-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 18, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313451 6.1 MEDIUM
Network
cleancoder fitnesse Cross-site scripting vulnerability exists in FitNesse releases prior to 20241026. If this vulnerability is exploited, an arbitrary script may be executed on the web browser of the user who is using t… CWE-79
Cross-site Scripting
CVE-2024-39610 2024-11-21 00:02 2024-11-15 Show GitHub Exploit DB Packet Storm
313452 6.1 MEDIUM
Network
wpplugins hide_my_wp_ghost The Hide My WP Ghost – Security & Firewall plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the URL in all versions up to, and including, 5.3.01 due to insufficient input sani… CWE-79
Cross-site Scripting
CVE-2024-10825 2024-11-21 00:01 2024-11-15 Show GitHub Exploit DB Packet Storm
313453 4.3 MEDIUM
Network
moodle moodle A vulnerability was found in Moodle. Additional checks are required to ensure users can only edit or delete RSS feeds that they have permission to modify. CWE-863
 Incorrect Authorization
CVE-2024-48897 2024-11-20 23:48 2024-11-18 Show GitHub Exploit DB Packet Storm
313454 4.3 MEDIUM
Network
moodle moodle A vulnerability was found in Moodle. It is possible for users with the "send message" capability to view other users' names that they may not otherwise have access to via an error message in Messagin… CWE-209
Information Exposure Through an Error Message
CVE-2024-48896 2024-11-20 23:47 2024-11-18 Show GitHub Exploit DB Packet Storm
313455 4.3 MEDIUM
Network
moodle moodle A vulnerability was found in Moodle. Users with access to delete audiences from reports could delete audiences from other reports that they do not have permission to delete from. CWE-862
 Missing Authorization
CVE-2024-48898 2024-11-20 23:46 2024-11-18 Show GitHub Exploit DB Packet Storm
313456 4.3 MEDIUM
Network
moodle moodle A vulnerability was found in Moodle. Additional checks are required to ensure users can only access the schedule of a report if they have permission to edit that report. CWE-863
 Incorrect Authorization
CVE-2024-48901 2024-11-20 23:45 2024-11-18 Show GitHub Exploit DB Packet Storm
313457 9.8 CRITICAL
Network
really-simple-plugins really_simple_security The Really Simple Security (Free, Pro, and Pro Multisite) plugins for WordPress are vulnerable to authentication bypass in versions 9.0.0 to 9.1.1.1. This is due to improper user check error handling… CWE-306
Missing Authentication for Critical Function
CVE-2024-10924 2024-11-20 23:44 2024-11-15 Show GitHub Exploit DB Packet Storm
313458 5.4 MEDIUM
Network
librenms librenms LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. A Stored Cross-Site Scripting (XSS) vulnerability in the "Custom OID" tab of a device allows authenticated users to inject … CWE-79
Cross-site Scripting
CVE-2024-51497 2024-11-20 23:41 2024-11-16 Show GitHub Exploit DB Packet Storm
313459 5.4 MEDIUM
Network
librenms librenms LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. A Stored Cross-Site Scripting (XSS) vulnerability in the Device Overview page allows authenticated users to inject arbitrar… CWE-79
Cross-site Scripting
CVE-2024-51495 2024-11-20 23:41 2024-11-16 Show GitHub Exploit DB Packet Storm
313460 5.4 MEDIUM
Network
librenms librenms LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. A Stored Cross-Site Scripting (XSS) vulnerability in the "Port Settings" page allows authenticated users to inject arbitrar… CWE-79
Cross-site Scripting
CVE-2024-51494 2024-11-20 23:40 2024-11-16 Show GitHub Exploit DB Packet Storm