Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 14, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224291 4.3 警告 Jean-Paul Calderone
Canonical
- pyOpenSSL の X509Extension における任意の SSL サーバになりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2013-4314 2013-12-26 18:05 2013-09-4 Show GitHub Exploit DB Packet Storm
224292 10 危険 Super Micro Computer - 複数の Supermicro デバイス製品の IPMI におけるアクセス制限を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2013-3609 2013-12-26 18:04 2013-08-30 Show GitHub Exploit DB Packet Storm
224293 10 危険 Super Micro Computer - 複数の Supermicro デバイス製品の IPMI における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-3608 2013-12-26 18:03 2013-08-30 Show GitHub Exploit DB Packet Storm
224294 10 危険 Super Micro Computer - 複数の Supermicro デバイス製品の IPMI におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-3607 2013-12-26 18:03 2013-08-30 Show GitHub Exploit DB Packet Storm
224295 7.2 危険 polkit project
Novell
Canonical
レッドハット
- PolicyKit における PolicyKit 制限を回避される脆弱性 CWE-362
競合状態
CVE-2013-4288 2013-12-26 17:51 2013-09-18 Show GitHub Exploit DB Packet Storm
224296 5 警告 Spice Project
レッドハット
- SPICE の server/reds.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-4282 2013-12-26 17:44 2013-10-29 Show GitHub Exploit DB Packet Storm
224297 6.8 警告 GNU Project - GNU C Library の sysdeps/posix/readdir_r.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-4237 2013-12-26 17:43 2013-08-13 Show GitHub Exploit DB Packet Storm
224298 2.6 注意 GNU Project
Fedora Project
- GNU C Library の pt_chown におけるファイルの権限を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2207 2013-12-26 17:42 2013-06-20 Show GitHub Exploit DB Packet Storm
224299 5.1 警告 GNU Project - GNU C Library および Embedded GLIBC の PTR_MANGLE の実装における実行フローを制御される脆弱性 CWE-20
不適切な入力確認
CVE-2013-4788 2013-12-26 17:42 2013-07-15 Show GitHub Exploit DB Packet Storm
224300 5 警告 Mozilla Foundation - Bugzilla におけるプライベートプロダクト名を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-0786 2013-12-26 17:41 2013-02-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 14, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197631 4.8 MEDIUM
Network
hu-manity cookie_notice_\&_compliance_for_gdpr_\/_ccpa The Cookie Notice & Compliance for GDPR / CCPA WordPress plugin before 2.1.2 does not escape the value of its Button Text setting when outputting it in an attribute in the frontend, allowing high pri… - CVE-2021-24569 2024-11-21 14:53 2021-09-28 Show GitHub Exploit DB Packet Storm
197632 9.8 CRITICAL
Network
schiocco support_board_-_chat_and_help_desk The Support Board WordPress plugin before 3.3.4 does not escape multiple POST parameters (such as status_code, department, user_id, conversation_id, conversation_status_code, and recipient_id) before… - CVE-2021-24741 2024-11-21 14:53 2021-09-20 Show GitHub Exploit DB Packet Storm
197633 7.2 HIGH
Network
simple_schools_staff_directory_project simple_schools_staff_directory The Simple Schools Staff Directory WordPress plugin through 1.1 does not validate uploaded logo pictures to ensure that are indeed images, allowing high privilege users such as admin to upload arbitr… - CVE-2021-24663 2024-11-21 14:53 2021-09-20 Show GitHub Exploit DB Packet Storm
197634 6.1 MEDIUM
Network
limit_login_attempts_project limit_login_attempts The Limit Login Attempts WordPress plugin before 4.0.50 does not escape the IP addresses (which can be controlled by attacker via headers such as X-Forwarded-For) of attempted logins before outputtin… - CVE-2021-24657 2024-11-21 14:53 2021-09-20 Show GitHub Exploit DB Packet Storm
197635 5.4 MEDIUM
Network
gutenslider gutenslider The WordPress Slider Block Gutenslider plugin before 5.2.0 does not escape the minWidth attribute of a Gutenburg block, which could allow users with a role as low as contributor to perform Cross-Site… - CVE-2021-24640 2024-11-21 14:53 2021-09-20 Show GitHub Exploit DB Packet Storm
197636 8.1 HIGH
Network
ffw omgf The OMGF WordPress plugin before 4.5.4 does not enforce path validation, authorisation and CSRF checks in the omgf_ajax_empty_dir AJAX action, which allows any authenticated users to delete arbitrary… - CVE-2021-24639 2024-11-21 14:53 2021-09-20 Show GitHub Exploit DB Packet Storm
197637 9.1 CRITICAL
Network
ffw omgf The OMGF WordPress plugin before 4.5.4 does not escape or validate the handle parameter of the REST API, which allows unauthenticated users to perform path traversal and overwrite arbitrary CSS file … - CVE-2021-24638 2024-11-21 14:53 2021-09-20 Show GitHub Exploit DB Packet Storm
197638 5.4 MEDIUM
Network
fontsplugin fonts The Google Fonts Typography WordPress plugin before 3.0.3 does not escape and sanitise some of its block settings, allowing users with as role as low as Contributor to perform Stored Cross-Site Scrip… - CVE-2021-24637 2024-11-21 14:53 2021-09-20 Show GitHub Exploit DB Packet Storm
197639 8.1 HIGH
Network
print_my_blog_project print_my_blog The Print My Blog WordPress Plugin before 3.4.2 does not enforce nonce (CSRF) checks, which allows attackers to make logged in administrators deactivate the Print My Blog plugin and delete all saved … - CVE-2021-24636 2024-11-21 14:53 2021-09-20 Show GitHub Exploit DB Packet Storm
197640 5.4 MEDIUM
Network
bootstrapped visual_link_preview The Visual Link Preview WordPress plugin before 2.2.3 does not enforce authorisation on several AJAX actions and has the CSRF nonce displayed for all authenticated users, allowing any authenticated u… CWE-862
 Missing Authorization
CVE-2021-24635 2024-11-21 14:53 2021-09-20 Show GitHub Exploit DB Packet Storm