Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226101 9.3 危険 karteek-docsplit - Ruby 用 Karteek Docsplit gem における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2013-1933 2013-04-30 17:49 2013-04-1 Show GitHub Exploit DB Packet Storm
226102 6.8 警告 Novell
plataformatec
- Ruby 用 Devise gem における不正な結果が返される脆弱性 CWE-399
リソース管理の問題
CVE-2013-0233 2013-04-30 17:48 2013-01-28 Show GitHub Exploit DB Packet Storm
226103 7.5 危険 Grape
Erik Michaels-Ober
- Grape などの製品で使用される Ruby 用 multi_xml gem におけるオブジェクトインジェクション攻撃を誘発される脆弱性 CWE-20
不適切な入力確認
CVE-2013-0175 2013-04-30 17:43 2013-01-10 Show GitHub Exploit DB Packet Storm
226104 5 警告 Ruby-lang.org - Ruby における safe-level の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4466 2013-04-30 17:29 2012-10-3 Show GitHub Exploit DB Packet Storm
226105 5 警告 Ruby-lang.org - Ruby における safe-level の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4464 2013-04-30 17:25 2012-10-3 Show GitHub Exploit DB Packet Storm
226106 5.4 警告 シトリックス・システムズ - NetScaler Access Gateway Enterprise Edition に脆弱性 CWE-noinfo
情報不足
CVE-2013-2767 2013-04-30 12:45 2013-04-26 Show GitHub Exploit DB Packet Storm
226107 9.3 危険 シスコシステムズ - Cisco MDS 9000 および Nexus 5000 デバイス用 Cisco Device Manager における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-1192 2013-04-26 16:56 2013-04-24 Show GitHub Exploit DB Packet Storm
226108 7.5 危険 シスコシステムズ - Cisco UCS における KVM 認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2013-1186 2013-04-26 16:54 2013-04-24 Show GitHub Exploit DB Packet Storm
226109 9.3 危険 シスコシステムズ - Cisco UCS の Manager コンポーネントの Web インタフェースにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-1185 2013-04-26 16:53 2013-04-24 Show GitHub Exploit DB Packet Storm
226110 7.8 危険 シスコシステムズ - Cisco UCS の Manager コンポーネントの XML API 管理サービスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-1184 2013-04-26 16:52 2013-04-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222741 9.8 CRITICAL
Network
powerdns recursor An issue has been found in PowerDNS Recursor versions 4.1.x before 4.1.9 where records in the answer section of responses received from authoritative servers with the AA flag not set were not properl… CWE-295
Improper Certificate Validation 
CVE-2019-3807 2024-11-21 13:42 2019-01-30 Show GitHub Exploit DB Packet Storm
222742 8.1 HIGH
Network
powerdns recursor An issue has been found in PowerDNS Recursor versions after 4.1.3 before 4.1.9 where Lua hooks are not properly applied to queries received over TCP in some specific combination of settings, possibly… NVD-CWE-noinfo
CVE-2019-3806 2024-11-21 13:42 2019-01-30 Show GitHub Exploit DB Packet Storm
222743 8.1 HIGH
Network
debian
canonical
netapp
advanced_package_tool
ubuntu_linux
debian_linux
element_software
active_iq
Incorrect sanitation of the 302 redirect field in HTTP transport method of apt versions 1.4.8 and earlier can lead to content injection by a MITM attacker, potentially leading to remote code executio… NVD-CWE-noinfo
CVE-2019-3462 2024-11-21 13:42 2019-01-29 Show GitHub Exploit DB Packet Storm
222744 7.1 HIGH
Local
mcafee total_protection Exploitation of Privilege/Trust vulnerability in Microsoft Windows client in McAfee Total Protection (MTP) Prior to 16.0.R18 allows local users to bypass product self-protection, tamper with policies… NVD-CWE-noinfo
CVE-2019-3593 2024-11-21 13:42 2019-01-29 Show GitHub Exploit DB Packet Storm
222745 3.3 LOW
Local
redhat
debian
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_server_eus
enterprise_linux_server_aus
openshift_container_platform
debian_linux
A memory leak was discovered in the backport of fixes for CVE-2018-16864 in Red Hat Enterprise Linux. Function dispatch_message_real() in journald-server.c does not free the memory allocated by set_i… - CVE-2019-3815 2024-11-21 13:42 2019-01-29 Show GitHub Exploit DB Packet Storm
222746 4.4 MEDIUM
Local
linux
debian
canonical
opensuse
linux_kernel
debian_linux
ubuntu_linux
leap
A flaw was found in the Linux kernel in the function hid_debug_events_read() in drivers/hid/hid-debug.c file which may enter an infinite loop with certain parameters passed from a userspace. A local … CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2019-3819 2024-11-21 13:42 2019-01-26 Show GitHub Exploit DB Packet Storm
222747 6.5 MEDIUM
Local
mcafee total_protection DLL Search Order Hijacking vulnerability in Microsoft Windows client in McAfee Total Protection (MTP) Prior to 16.0.18 allows local users to execute arbitrary code via execution from a compromised fo… CWE-426
 Untrusted Search Path
CVE-2019-3587 2024-11-21 13:42 2019-01-24 Show GitHub Exploit DB Packet Storm
222748 6.0 MEDIUM
Local
mcafee mvision_endpoint Exploitation of Authentication vulnerability in MVision Endpoint in McAfee MVision Endpoint Prior to 1811 Update 1 (18.11.31.62) allows authenticated administrator users --> administrators to Remove … CWE-287
Improper Authentication
CVE-2019-3584 2024-11-21 13:42 2019-01-24 Show GitHub Exploit DB Packet Storm
222749 9.8 CRITICAL
Network
pivotal_software spring_batch Spring Batch versions 3.0.9, 4.0.1, 4.1.0, and older unsupported versions, were susceptible to XML External Entity Injection (XXE) when receiving XML data from untrusted sources. CWE-611
XXE
CVE-2019-3774 2024-11-21 13:42 2019-01-19 Show GitHub Exploit DB Packet Storm
222750 9.8 CRITICAL
Network
pivotal_software
oracle
spring_web_services
flexcube_private_banking
financial_services_analytical_applications_infrastructure
Spring Web Services, versions 2.4.3, 3.0.4, and older unsupported versions of all three projects, were susceptible to XML External Entity Injection (XXE) when receiving XML data from untrusted source… CWE-611
XXE
CVE-2019-3773 2024-11-21 13:42 2019-01-19 Show GitHub Exploit DB Packet Storm