Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
223661 7.6 危険 LIGHTTPD
Debian
- lighttpd における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4559 2013-11-21 16:07 2013-11-13 Show GitHub Exploit DB Packet Storm
223662 10 危険 Adaptive Computing - Terascale Open-Source Resource and Queue Manager の server/svr_mail.c における任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-4495 2013-11-21 15:59 2013-11-13 Show GitHub Exploit DB Packet Storm
223663 7.2 危険 Linux - v6k および v7 ARM プラットフォーム上で稼働する Linux Kernel の API 関数における任意のカーネルメモリ領域のコンテンツを読まれる脆弱性 CWE-20
不適切な入力確認
CVE-2013-6282 2013-11-21 15:56 2013-11-14 Show GitHub Exploit DB Packet Storm
223664 6.6 警告 Linux - Linux Kernel の net/netfilter/ipvs/ip_vs_ctl.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-4588 2013-11-21 15:55 2013-11-15 Show GitHub Exploit DB Packet Storm
223665 4.3 警告 Linux - Linux Kernel の drivers/net/wireless/ath/ath9k/htc_drv_main.c における MAC アドレス偽装後に元の MAC アドレスを取得される脆弱性 CWE-310
暗号の問題
CVE-2013-4579 2013-11-21 15:55 2013-11-10 Show GitHub Exploit DB Packet Storm
223666 7.1 危険 Linux - Linux Kernel の net/ipv6/udp_offload.c の udp6_ufo_fragment 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2013-4563 2013-11-21 15:55 2013-11-5 Show GitHub Exploit DB Packet Storm
223667 5 警告 GNU Project
Novell
- GnuTLS の DANE ライブラリ の dane_raw_tlsa におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2013-4487 2013-11-21 15:00 2013-10-29 Show GitHub Exploit DB Packet Storm
223668 5 警告 GNU Project - GnuTLS の DANE ライブラリ の dane_query_tlsa 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-4466 2013-11-21 14:52 2013-10-23 Show GitHub Exploit DB Packet Storm
223669 7.5 危険 The Foreman
レッドハット
- Foreman の app/models/concerns/host_common.rb における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-4386 2013-11-21 14:45 2013-10-7 Show GitHub Exploit DB Packet Storm
223670 4.3 警告 Open-Xchange - Open-Xchange AppSuite におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6074 2013-11-21 14:40 2013-10-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313951 - - - SparkShop <=1.1.7 is vulnerable to server-side request forgery (SSRF). This vulnerability allows attacks to scan ports on the Intranet or local network where the server resides, attack applications r… - CVE-2024-48107 2024-10-31 02:35 2024-10-29 Show GitHub Exploit DB Packet Storm
313952 - - - LyLme Spage 1.2.0 through 1.6.0 is vulnerable to SQL Injection via /admin/apply.php. - CVE-2024-48357 2024-10-31 02:35 2024-10-29 Show GitHub Exploit DB Packet Storm
313953 - - - An issue was discovered in Samsung eMMC with KLMAG2GE4A and KLM8G1WEMB firmware. Code bypass through Electromagnetic Fault Injection allows an attacker to successfully authenticate and write to the R… - CVE-2024-31955 2024-10-31 02:35 2024-10-16 Show GitHub Exploit DB Packet Storm
313954 5.3 MEDIUM
Network
djangoproject django An issue was discovered in Django v5.1.1, v5.0.9, and v4.2.16. The django.contrib.auth.forms.PasswordResetForm class, when used in a view implementing password reset flows, allows remote attackers to… NVD-CWE-noinfo
CVE-2024-45231 2024-10-31 02:35 2024-10-9 Show GitHub Exploit DB Packet Storm
313955 7.5 HIGH
Network
djangoproject django An issue was discovered in Django 5.1 before 5.1.1, 5.0 before 5.0.9, and 4.2 before 4.2.16. The urlize() and urlizetrunc() template filters are subject to a potential denial-of-service attack via ve… NVD-CWE-noinfo
CVE-2024-45230 2024-10-31 02:35 2024-10-9 Show GitHub Exploit DB Packet Storm
313956 7.5 HIGH
Network
mozilla firefox
thunderbird
firefox_esr
An attacker could, via a specially crafted multipart response, execute arbitrary JavaScript under the `resource://pdf.js` origin. This could allow them to access cross-origin PDF content. This acces… NVD-CWE-Other
CVE-2024-9393 2024-10-31 02:35 2024-10-2 Show GitHub Exploit DB Packet Storm
313957 5.3 MEDIUM
Network
mozilla firefox Multiple prompts and panels from both Firefox and the Android OS could be used to obscure the notification announcing the transition to fullscreen mode after the fix for CVE-2023-6870 in Firefox 121.… NVD-CWE-noinfo
CVE-2024-8388 2024-10-31 02:35 2024-09-3 Show GitHub Exploit DB Packet Storm
313958 6.1 MEDIUM
Network
mozilla firefox
firefox_esr
If a site had been granted the permission to open popup windows, it could cause Select elements to appear on top of another site to perform a spoofing attack. This vulnerability affects Firefox < 130… CWE-601
Open Redirect
CVE-2024-8386 2024-10-31 02:35 2024-09-3 Show GitHub Exploit DB Packet Storm
313959 8.8 HIGH
Network
mozilla firefox_esr
firefox
Internal browser event interfaces were exposed to web content when privileged EventHandler listener callbacks ran for those events. Web content that tried to use those interfaces would not be able to… NVD-CWE-noinfo
CVE-2024-8382 2024-10-31 02:35 2024-09-3 Show GitHub Exploit DB Packet Storm
313960 7.5 HIGH
Network
mozilla firefox_esr
firefox
Firefox normally asks for confirmation before asking the operating system to find an application to handle a scheme that the browser does not support. It did not ask before doing so for the Usenet-re… NVD-CWE-noinfo
CVE-2024-8383 2024-10-31 02:35 2024-09-3 Show GitHub Exploit DB Packet Storm