Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225341 4.3 警告 BigTree CMS - BigTree CMS の core/admin/modules/developer/modules/views/add.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4880 2013-08-15 19:00 2013-07-17 Show GitHub Exploit DB Packet Storm
225342 7.5 危険 Moxi9 - PHPFox における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-5121 2013-08-15 18:39 2013-08-7 Show GitHub Exploit DB Packet Storm
225343 7.5 危険 Moxi9 - PHPFox における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-5120 2013-08-15 18:33 2013-07-30 Show GitHub Exploit DB Packet Storm
225344 7.5 危険 LibRaw - LibRaw の exposure correction コードにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-2127 2013-08-15 18:04 2013-05-24 Show GitHub Exploit DB Packet Storm
225345 7.5 危険 Novell
Canonical
LibRaw
- LibRaw の libraw_cxx.cpp 内の LibRaw::unpack 関数におけるメモリ二重解放の脆弱性 CWE-399
リソース管理の問題
CVE-2013-2126 2013-08-15 18:01 2013-05-26 Show GitHub Exploit DB Packet Storm
225346 9.3 危険 マイクロソフト - Microsoft Internet Explorer 6 から 10 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3199 2013-08-15 15:54 2013-08-13 Show GitHub Exploit DB Packet Storm
225347 9.3 危険 マイクロソフト - Microsoft Internet Explorer 9 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3194 2013-08-15 15:51 2013-08-13 Show GitHub Exploit DB Packet Storm
225348 9.3 危険 マイクロソフト - Microsoft Internet Explorer 9 および 10 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3193 2013-08-15 15:50 2013-08-13 Show GitHub Exploit DB Packet Storm
225349 4.3 警告 マイクロソフト - Microsoft Internet Explorer 6 から 10 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3192 2013-08-15 15:48 2013-08-13 Show GitHub Exploit DB Packet Storm
225350 9.3 危険 マイクロソフト - Microsoft Internet Explorer 9 および 10 における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2013-3191 2013-08-15 15:46 2013-08-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312751 - - - happy-dom is a JavaScript implementation of a web browser without its graphical user interface. Versions of happy-dom prior to 15.10.2 may execute code on the host via a script tag. This would execut… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2024-51757 2024-11-9 04:01 2024-11-7 Show GitHub Exploit DB Packet Storm
312752 - - - Twig is a template language for PHP. In a sandbox, an attacker can access attributes of Array-like objects as they were not checked by the security policy. They are now checked via the property polic… CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2024-51755 2024-11-9 04:01 2024-11-7 Show GitHub Exploit DB Packet Storm
312753 - - - Twig is a template language for PHP. In a sandbox, an attacker can call `__toString()` on an object even if the `__toString()` method is not allowed by the security policy when the object is part of … CWE-668
 Exposure of Resource to Wrong Sphere
CVE-2024-51754 2024-11-9 04:01 2024-11-7 Show GitHub Exploit DB Packet Storm
312754 - - - Gradio is an open-source Python package designed to enable quick builds of a demo or web application. If File or UploadButton components are used as a part of Gradio application to preview file conte… - CVE-2024-51751 2024-11-9 04:01 2024-11-7 Show GitHub Exploit DB Packet Storm
312755 - - - dingfanzu CMS V1.0 was discovered to contain a Cross-Site Request Forgery (CSRF) via the component /admin/doAdminAction.php?act=addAdmin. - CVE-2024-50966 2024-11-9 03:35 2024-11-9 Show GitHub Exploit DB Packet Storm
312756 - - - A vulnerability in the Desktop Client of Mitel MiCollab through 9.7.1.110, and MiVoice Business Solution Virtual Instance (MiVB SVI) 1.0.0.25, could allow an unauthenticated attacker to conduct a com… - CVE-2024-35314 2024-11-9 03:15 2024-10-22 Show GitHub Exploit DB Packet Storm
312757 6.5 MEDIUM
Adjacent
- - A Missing Release of Memory after Effective Lifetime vulnerability in the Packet Forwarding Engine (PFE) of the Juniper Networks Junos OS on the MX Series platforms with Trio-based FPCs allows an una… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2024-47493 2024-11-9 03:15 2024-10-12 Show GitHub Exploit DB Packet Storm
312758 5.8 MEDIUM
Network
hashicorp consul A vulnerability was identified in Consul and Consul Enterprise (“Consul”) such that using Headers in L7 traffic intentions could bypass HTTP header based access rules. CWE-116
 Improper Encoding or Escaping of Output
CVE-2024-10006 2024-11-9 03:10 2024-10-31 Show GitHub Exploit DB Packet Storm
312759 5.8 MEDIUM
Network
hashicorp consul A vulnerability was identified in Consul and Consul Enterprise (“Consul”) such that using URL paths in L7 traffic intentions could bypass HTTP request path-based access rules. CWE-22
Path Traversal
CVE-2024-10005 2024-11-9 03:10 2024-10-31 Show GitHub Exploit DB Packet Storm
312760 7.5 HIGH
Adjacent
hp poly_tc8_firmware
poly_tc10_firmware
poly_studio_g7500_firmware
poly_studio_x30_firmware
poly_studio_x50_firmware
poly_studio_x70_firmware
poly_studio_x52_firmware
poly_studio_g6…
A potential vulnerability was discovered in certain Poly video conferencing devices. The firmware flaw does not properly sanitize user input. The exploitation of this vulnerability is dependent on a … CWE-77
Command Injection
CVE-2024-9579 2024-11-9 03:08 2024-11-6 Show GitHub Exploit DB Packet Storm