Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 22, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224811 8.5 危険 IBM - IBM AIX および VIOS の TFTP クライアントにおけるファイル所有権の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-3005 2013-07-9 15:11 2013-04-19 Show GitHub Exploit DB Packet Storm
224812 3.5 注意 IBM - IBM Business Process Manager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0581 2013-07-9 15:01 2013-04-17 Show GitHub Exploit DB Packet Storm
224813 7.8 危険 MIT Kerberos - MIT Kerberos の krb5_db2_lockout_audit 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2011-4151 2013-07-8 18:07 2011-10-18 Show GitHub Exploit DB Packet Storm
224814 7.8 危険 MIT Kerberos
レッドハット
- MIT Kerberos の lookup_lockout_policy 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2011-1529 2013-07-8 18:06 2011-10-18 Show GitHub Exploit DB Packet Storm
224815 7.8 危険 MIT Kerberos
レッドハット
- MIT Kerberos の krb5_ldap_lockout_audit 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2011-1528 2013-07-8 18:05 2011-10-18 Show GitHub Exploit DB Packet Storm
224816 6.5 警告 MongoDB Inc. - MongoDB における内部システム権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4650 2013-07-8 14:31 2013-06-21 Show GitHub Exploit DB Packet Storm
224817 5.5 警告 The phpMyAdmin Project - phpMyAdmin の import.php における GLOBALS のスーパーグローバル配列を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4729 2013-07-8 14:30 2013-06-28 Show GitHub Exploit DB Packet Storm
224818 3.5 注意 The phpMyAdmin Project - phpMyAdmin の view_create.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3742 2013-07-8 14:29 2013-05-29 Show GitHub Exploit DB Packet Storm
224819 7.5 危険 Lianja - Lianja SQL Server の db_netserver におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-3563 2013-07-8 14:27 2013-07-4 Show GitHub Exploit DB Packet Storm
224820 4.3 警告 シスコシステムズ - Cisco Identity Services Engine 上で稼働する administration/monitoring パネルにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3413 2013-07-8 14:25 2013-07-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 23, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313751 - - - Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 38235. CWE-427
 Uncontrolled Search Path Element
CVE-2024-8766 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
313752 - - - Snappymail is an open source web-based email client. SnappyMail uses the `cleanHtml()` function to cleanup HTML and CSS in emails. Research discovered that the function has a few bugs which cause an … CWE-79
Cross-site Scripting
CVE-2024-45800 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
313753 - - - An Incorrect Access Control vulnerability was found in /music/index.php?page=user_list and /music/index.php?page=edit_user in Kashipara Music Management System v1.0. This allows a low privileged atta… - CVE-2024-42798 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
313754 - - - An Incorrect Access Control vulnerability was found in /music/ajax.php?action=delete_genre in Kashipara Music Management System v1.0. This vulnerability allows an unauthenticated attacker to delete t… - CVE-2024-42796 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
313755 - - - An Incorrect Access Control vulnerability was found in /music/view_user.php?id=3 and /music/controller.php?page=edit_user&id=3 in Kashipara Music Management System v1.0. This vulnerability allows an … - CVE-2024-42795 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
313756 - - - Kashipara Music Management System v1.0 is vulnerable to Incorrect Access Control via /music/ajax.php?action=save_user. - CVE-2024-42794 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
313757 - - - Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 38235. CWE-427
 Uncontrolled Search Path Element
CVE-2024-34016 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
313758 - - - DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. It has been discovered that malicious HTML using special nesting techniques can bypass the depth checking ad… CWE-1333
 Inefficient Regular Expression Complexity
CVE-2024-45801 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
313759 - - - FluxCP is a web-based Control Panel for rAthena servers written in PHP. A javascript injection is possible via venders/buyers list pages and shop names, that are currently not sanitized. This allows … - CVE-2024-45799 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
313760 - - - A Business Logic vulnerability in Shopkit 1.0 allows an attacker to add products with negative quantities to the shopping cart via the qtd parameter in the add-to-cart function. - CVE-2023-45854 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm