Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224351 3.5 注意 IBM - IBM TRIRIGA Application Platform におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4003 2013-08-30 16:40 2013-08-13 Show GitHub Exploit DB Packet Storm
224352 2.1 注意 Erik Webb - Drupal 用 Password Policy モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4274 2013-08-30 16:37 2013-08-14 Show GitHub Exploit DB Packet Storm
224353 4.3 警告 BOTCHA Spam Prevention - Drupal 用 BOTCHA Spam Prevention モジュールにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-4272 2013-08-30 16:36 2013-08-14 Show GitHub Exploit DB Packet Storm
224354 5 警告 Stage File Proxy - Drupal 用 Stage File Proxy モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-4139 2013-08-30 16:35 2013-07-10 Show GitHub Exploit DB Packet Storm
224355 4.3 警告 Login Security - Drupal 用 Login Security モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-2197 2013-08-30 16:34 2013-06-19 Show GitHub Exploit DB Packet Storm
224356 4.7 警告 Xen プロジェクト - Xen の Intel VT-d Interrupt Remapping エンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3495 2013-08-30 16:25 2013-08-20 Show GitHub Exploit DB Packet Storm
224357 5.7 警告 Xen プロジェクト - Xen の vmx_set_uc_mode 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-2212 2013-08-30 16:24 2013-06-24 Show GitHub Exploit DB Packet Storm
224358 7.4 危険 Xen プロジェクト - Xen の xc_vcpu_setaffinity コール用 Python バインディングにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-2072 2013-08-30 16:10 2013-05-17 Show GitHub Exploit DB Packet Storm
224359 7.2 危険 レッドハット - Red Hat Enterprise Virtualization Application Provisioning Tool における権限を取得される脆弱性 CWE-399
リソース管理の問題
CVE-2013-2176 2013-08-30 15:41 2013-07-31 Show GitHub Exploit DB Packet Storm
224360 4.3 警告 Novell
strongSwan
- strongSwan の is_asn1 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-5018 2013-08-30 15:36 2013-08-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313861 9.8 CRITICAL
Network
oceanicsoft valeapp Session Fixation vulnerability in Oceanic Software ValeApp allows Brute Force, Session Hijacking.This issue affects ValeApp: before v2.0.0. CWE-384
 Session Fixation
CVE-2024-8643 2024-10-5 02:14 2024-09-27 Show GitHub Exploit DB Packet Storm
313862 6.1 MEDIUM
Network
projectcaruso flaming_forms The Flaming Forms WordPress plugin through 1.0.1 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be used agains… CWE-79
Cross-site Scripting
CVE-2024-7692 2024-10-5 02:14 2024-09-2 Show GitHub Exploit DB Packet Storm
313863 7.5 HIGH
Network
oceanicsoft valeapp Insertion of Sensitive Information into Log File vulnerability in Oceanic Software ValeApp allows Query System for Information.This issue affects ValeApp: before v2.0.0. CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2024-8609 2024-10-5 02:12 2024-09-27 Show GitHub Exploit DB Packet Storm
313864 9.8 CRITICAL
Network
oceanicsoft valeapp Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Oceanic Software ValeApp allows SQL Injection.This issue affects ValeApp: before v2.0.0. CWE-89
SQL Injection
CVE-2024-8607 2024-10-5 02:12 2024-09-27 Show GitHub Exploit DB Packet Storm
313865 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: drm/amdgpu: the warning dereferencing obj for nbio_v7_4 if ras_manager obj null, don't print NBIO err data CWE-476
 NULL Pointer Dereference
CVE-2024-46819 2024-10-5 02:11 2024-09-27 Show GitHub Exploit DB Packet Storm
313866 5.4 MEDIUM
Network
oceanicsoft valeapp Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Oceanic Software ValeApp allows Stored XSS.This issue affects ValeApp: before v2.0.0. CWE-79
Cross-site Scripting
CVE-2024-8608 2024-10-5 02:11 2024-09-27 Show GitHub Exploit DB Packet Storm
313867 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: drm/amd/pm: Fix negative array index read Avoid using the negative values for clk_idex as an index into an array pptable->DpmDesc… CWE-129
 Improper Validation of Array Index
CVE-2024-46821 2024-10-5 02:06 2024-09-27 Show GitHub Exploit DB Packet Storm
313868 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: usb: gadget: core: Check for unset descriptor Make sure the descriptor has been set before looking at maxpacket. This fixes a nul… CWE-476
 NULL Pointer Dereference
CVE-2024-44960 2024-10-5 01:44 2024-09-5 Show GitHub Exploit DB Packet Storm
313869 7.8 HIGH
Local
randygaul cute_png cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_load_png_mem() function at cute_png.h. CWE-787
 Out-of-bounds Write
CVE-2024-46258 2024-10-5 01:41 2024-10-1 Show GitHub Exploit DB Packet Storm
313870 7.8 HIGH
Local
randygaul cute_png cute_png v1.05 was discovered to contain a heap buffer overflow via the cp_make32() function at cute_png.h. CWE-787
 Out-of-bounds Write
CVE-2024-46261 2024-10-5 01:40 2024-10-1 Show GitHub Exploit DB Packet Storm