Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 23, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224671 7.8 危険 シスコシステムズ - IDSM-2 を使用する Cisco Catalyst 6500 デバイス上で稼働する Cisco IPS の IDSM-2 ドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-3411 2013-07-22 09:37 2013-07-17 Show GitHub Exploit DB Packet Storm
224672 7.8 危険 シスコシステムズ - Cisco IPS NME の Cisco Intrusion Prevention System ソフトウェアにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-3410 2013-07-22 09:36 2013-07-17 Show GitHub Exploit DB Packet Storm
224673 6.8 警告 シスコシステムズ - Cisco Unified Communications Manager における権限を取得される脆弱性 CWE-Other
その他
CVE-2013-3403 2013-07-22 09:34 2013-07-17 Show GitHub Exploit DB Packet Storm
224674 6.5 警告 シスコシステムズ - Cisco Unified Communications Manager の不特定の関数における任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2013-3402 2013-07-22 09:34 2013-07-17 Show GitHub Exploit DB Packet Storm
224675 7.8 危険 シスコシステムズ - Cisco ASA 5500-X IPS-SSP および IPS Sensor の Cisco IPS ソフトウェアの IP スタックにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-1243 2013-07-22 09:33 2013-07-17 Show GitHub Exploit DB Packet Storm
224676 7.8 危険 シスコシステムズ - Cisco ASA 5500-X IPS-SSP の Cisco Intrusion Prevention System ソフトウェアにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-1218 2013-07-22 09:32 2013-07-17 Show GitHub Exploit DB Packet Storm
224677 5 警告 Quade - Drupal 用 Edit Limit モジュールにおける他のユーザの任意のコメントを編集される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2122 2013-07-19 12:24 2013-05-28 Show GitHub Exploit DB Packet Storm
224678 3.5 注意 Angry Donuts - Drupal 用 Chaos Tool Suite モジュールにおける制限されたノードタイトルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1925 2013-07-19 12:20 2013-04-3 Show GitHub Exploit DB Packet Storm
224679 5 警告 Acquia Inc.
Commons Wikis Project
- Drupal Commons モジュールで使用される Drupal 用 Commons Wikis モジュールにおけるグループに任意のコンテンツを投稿される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1908 2013-07-19 12:19 2013-03-27 Show GitHub Exploit DB Packet Storm
224680 5 警告 Acquia Inc. - Drupal Commons モジュールで使用される Drupal 用 Commons Groups モジュールにおけるグループに任意のコンテンツを投稿される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1907 2013-07-19 12:19 2013-03-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
315031 3.5 LOW
Network
lopalopa music_management_system A Cross-Site Request Forgery (CSRF) vulnerability was found in Kashipara Music Management System v1.0 via /music/ajax.php?action=delete_playlist page. CWE-352
 Origin Validation Error
CVE-2024-42792 2024-09-6 03:35 2024-08-27 Show GitHub Exploit DB Packet Storm
315032 7.5 HIGH
Network
netskope netskope Netskope was notified about a security gap in Netskope Client enrollment process where NSClient is using a static token “Orgkey” as authentication parameter. Since this is a static token, if leaked, … CWE-287
Improper Authentication
CVE-2024-7401 2024-09-6 03:34 2024-08-27 Show GitHub Exploit DB Packet Storm
315033 9.8 CRITICAL
Network
ruoyi ruoyi RuoYi CMS v4.7.9 was discovered to contain a SQL injection vulnerability via the job_id parameter at /sasfs1. CWE-89
SQL Injection
CVE-2024-42913 2024-09-6 03:31 2024-08-27 Show GitHub Exploit DB Packet Storm
315034 9.8 CRITICAL
Network
skyss arfa-cms A SQL injection vulnerability in the poll component in SkySystem Arfa-CMS before 5.1.3124 allows remote attackers to execute arbitrary SQL commands via the psid parameter. CWE-89
SQL Injection
CVE-2024-45265 2024-09-6 03:30 2024-08-27 Show GitHub Exploit DB Packet Storm
315035 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: bpf: add missing check_func_arg_reg_off() to prevent out-of-bounds memory accesses Currently, it's possible to pass in a modified… CWE-787
 Out-of-bounds Write
CVE-2024-43910 2024-09-6 03:30 2024-08-26 Show GitHub Exploit DB Packet Storm
315036 6.1 MEDIUM
Network
testlink testlink TestLink before v.1.9.20 is vulnerable to Cross Site Scripting (XSS) via the pop-up on upload file. When uploading a file, the XSS payload can be entered into the file name. CWE-79
Cross-site Scripting
CVE-2024-42906 2024-09-6 03:29 2024-08-27 Show GitHub Exploit DB Packet Storm
315037 7.5 HIGH
Network
gl-inet mt6000_firmware
x3000_firmware
xe3000_firmware
a1300_firmware
ax1800_firmware
axt1800_firmware
mt2500_firmware
mt3000_firmware
xe300_firmware
x750_firmware
sft1200_firmw…
A denial-of-service issue was discovered on certain GL-iNet devices. Some websites can detect devices exposed to the external network through DDNS, and consequently obtain the IP addresses and ports … NVD-CWE-noinfo
CVE-2024-28077 2024-09-6 03:29 2024-08-27 Show GitHub Exploit DB Packet Storm
315038 6.1 MEDIUM
Network
xiebruce picuploader A cross-site scripting (XSS) vulnerability in the component /master/auth/OnedriveRedirect.php of PicUploader commit fcf82ea allows attackers to execute arbitrary web scripts or HTML via a crafted pay… CWE-79
Cross-site Scripting
CVE-2024-44794 2024-09-6 03:28 2024-08-27 Show GitHub Exploit DB Packet Storm
315039 6.1 MEDIUM
Network
gazelle_project gazelle A cross-site scripting (XSS) vulnerability in the component /managers/multiple_freeleech.php of Gazelle commit 63b3370 allows attackers to execute arbitrary web scripts or HTML via a crafted payload … CWE-79
Cross-site Scripting
CVE-2024-44793 2024-09-6 03:28 2024-08-27 Show GitHub Exploit DB Packet Storm
315040 6.1 MEDIUM
Network
gazelle_project gazelle A cross-site scripting (XSS) vulnerability in the component /login/disabled.php of Gazelle commit 63b3370 allows attackers to execute arbitrary web scripts or HTML via a crafted payload injected into… CWE-79
Cross-site Scripting
CVE-2024-44795 2024-09-6 03:26 2024-08-27 Show GitHub Exploit DB Packet Storm