Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224421 4.6 警告 シスコシステムズ - Cisco Unified Computing System Manager コンポーネントにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-4093 2013-09-25 11:31 2013-09-18 Show GitHub Exploit DB Packet Storm
224422 4 警告 シスコシステムズ - Cisco Unified Computing System の管理 Web インターフェイスにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4083 2013-09-25 11:29 2013-09-18 Show GitHub Exploit DB Packet Storm
224423 5.8 警告 シスコシステムズ - Cisco Unified Computing System の Serial over LAN サブシステムにおける重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-4074 2013-09-25 11:25 2013-09-18 Show GitHub Exploit DB Packet Storm
224424 5.8 警告 シスコシステムズ - Cisco Unified Computing System の クライアントの KVM サブシステムにおけるサーバになりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2012-4073 2013-09-25 11:22 2013-09-18 Show GitHub Exploit DB Packet Storm
224425 4.3 警告 シスコシステムズ - Cisco Unified Computing System の KVM サブシステムにおける SSL サーバになりすまされる脆弱性 CWE-20
不適切な入力確認
CVE-2012-4072 2013-09-25 11:17 2013-09-18 Show GitHub Exploit DB Packet Storm
224426 4.3 警告 シスコシステムズ - Cisco Intrusion Prevention System の Web フレームワークの認証管理者プロセスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-287
不適切な認証
CVE-2013-5497 2013-09-25 11:09 2013-09-19 Show GitHub Exploit DB Packet Storm
224427 5.4 警告 シスコシステムズ - Cisco NX-OS の BGP の実装の regex エンジンおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-1121 2013-09-25 10:57 2013-09-17 Show GitHub Exploit DB Packet Storm
224428 4.3 警告 ヒューレット・パッカード - HP XP P9000 Command View Advanced Edition ソフトウェアにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4814 2013-09-25 10:44 2013-09-20 Show GitHub Exploit DB Packet Storm
224429 4.3 警告 ヒューレット・パッカード - HP ArcSight Enterprise Security Manager の Web インターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4815 2013-09-25 10:42 2013-09-19 Show GitHub Exploit DB Packet Storm
224430 6.8 警告 GLPI-PROJECT.ORG - GLPI の inc/central.class.php におけるクロスサイトリクエストフォージェリ攻撃を実行される脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-5696 2013-09-25 10:41 2013-09-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313471 - - - A buffer overflow in modsecurity v3.0.12 allows attackers to cause a Denial of Service (DoS) via a crafted input inserted into the name parameter. NOTE: this is disputed by the Supplier because it ca… - CVE-2024-46292 2024-10-21 09:15 2024-10-10 Show GitHub Exploit DB Packet Storm
313472 8.8 HIGH
Network
ninjaforms ninja_forms Cross-Site Request Forgery (CSRF) vulnerability in Saturday Drive Ninja Forms allows Cross Site Request Forgery.This issue affects Ninja Forms: from n/a through 3.8.6. CWE-352
 Origin Validation Error
CVE-2024-39628 2024-10-20 21:15 2024-08-27 Show GitHub Exploit DB Packet Storm
313473 4.3 MEDIUM
Network
discourse discourse Discourse is an open source platform for community discussion. A user can create a post with many replies, and then attempt to fetch them all at once. This can potentially reduce the availability of … NVD-CWE-noinfo
CVE-2024-43789 2024-10-19 10:13 2024-10-8 Show GitHub Exploit DB Packet Storm
313474 8.2 HIGH
Network
discourse discourse Discourse is an open source platform for community discussion. A maliciously crafted email address could allow an attacker to bypass domain-based restrictions and gain access to private sites, catego… NVD-CWE-noinfo
CVE-2024-45051 2024-10-19 10:11 2024-10-8 Show GitHub Exploit DB Packet Storm
313475 4.3 MEDIUM
Network
discourse discourse Discourse is an open source platform for community discussion. Users can see topics with a hidden tag if they know the label/name of that tag. This issue has been patched in the latest stable, beta a… NVD-CWE-noinfo
CVE-2024-45297 2024-10-19 10:06 2024-10-8 Show GitHub Exploit DB Packet Storm
313476 6.1 MEDIUM
Network
discourse discourse Discourse is an open source platform for community discussion. An attacker can execute arbitrary JavaScript on users' browsers by sending a maliciously crafted chat message and replying to it. This i… CWE-79
Cross-site Scripting
CVE-2024-47772 2024-10-19 09:58 2024-10-8 Show GitHub Exploit DB Packet Storm
313477 5.4 MEDIUM
Network
newtype webeip NewType WebEIP v3.0 does not properly validate user input, allowing a remote attacker with regular privileges to insert JavaScript into specific parameters, resulting in a Reflected Cross-site Script… CWE-79
Cross-site Scripting
CVE-2024-9969 2024-10-19 09:51 2024-10-15 Show GitHub Exploit DB Packet Storm
313478 4.9 MEDIUM
Network
usualtool usualtoolcms A vulnerability, which was classified as critical, was found in HuangDou UTCMS V9. This affects an unknown part of the file app/modules/ut-template/admin/template_creat.php. The manipulation of the a… CWE-502
 Deserialization of Untrusted Data
CVE-2024-9917 2024-10-19 09:49 2024-10-14 Show GitHub Exploit DB Packet Storm
313479 7.2 HIGH
Network
usualtool usualtoolcms A vulnerability has been found in HuangDou UTCMS V9 and classified as critical. This vulnerability affects the function RunSql of the file app/modules/ut-data/admin/sql.php. The manipulation of the a… CWE-89
SQL Injection
CVE-2024-9918 2024-10-19 09:47 2024-10-14 Show GitHub Exploit DB Packet Storm
313480 7.5 HIGH
Network
dueclic wp_2fa_with_telegram The WP 2FA with Telegram plugin for WordPress is vulnerable to Two-Factor Authentication Bypass in versions up to, and including, 3.0. This is due to the two-factor code being stored in a cookie, whi… CWE-565
 Reliance on Cookies without Validation and Integrity Checking
CVE-2024-9820 2024-10-19 09:44 2024-10-15 Show GitHub Exploit DB Packet Storm