Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226171 7.5 危険 FFmpeg - FFmpeg の libavcodec におけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2013-2277 2013-04-24 11:13 2013-02-27 Show GitHub Exploit DB Packet Storm
226172 4 警告 Puppet
Canonical
- Puppet における他のノード用のレポートを提出される脆弱性 CWE-noinfo
情報不足
CVE-2013-2275 2013-04-24 11:08 2013-03-12 Show GitHub Exploit DB Packet Storm
226173 6.5 警告 Puppet - Puppet における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-2274 2013-04-24 10:59 2013-03-12 Show GitHub Exploit DB Packet Storm
226174 10 危険 Schneider Electric - Schneider Electric Magelis XBT GC/T/K HMI Controller におけるアクセス制限を回避される脆弱性 CWE-255
CWE-352
CVE-2013-2762 2013-04-24 10:48 2013-03-20 Show GitHub Exploit DB Packet Storm
226175 7.5 危険 Puppet - Puppet における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-1655 2013-04-23 18:04 2013-03-12 Show GitHub Exploit DB Packet Storm
226176 6.4 警告 Apache Software Foundation - Apache ActiveMQ の Web コンソールにおける重要な情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2013-3060 2013-04-23 17:20 2012-11-2 Show GitHub Exploit DB Packet Storm
226177 9 危険 Puppet
Canonical
- Puppet における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-1640 2013-04-23 17:19 2013-03-12 Show GitHub Exploit DB Packet Storm
226178 7.1 危険 Puppet
Canonical
- Puppet における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2013-1653 2013-04-23 17:14 2013-03-12 Show GitHub Exploit DB Packet Storm
226179 7.8 危険 シスコシステムズ - Cisco IOS の VRF-aware NAT 機能におけるサービス運用妨害 (メモリ消費) の脆弱性 CWE-362
競合状態
CVE-2013-1142 2013-04-23 17:13 2013-03-27 Show GitHub Exploit DB Packet Storm
226180 6.4 警告 Ruby on Rails project - Ruby on Rails の Active Record コンポーネントにおけるデータ型インジェクション攻撃を実行される脆弱性 CWE-20
不適切な入力確認
CVE-2013-3221 2013-04-23 17:12 2013-04-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312051 - - - In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doGRETunnel function. - CVE-2024-51298 2024-11-1 21:57 2024-10-30 Show GitHub Exploit DB Packet Storm
312052 - - - In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the pingtrace function. - CVE-2024-51296 2024-11-1 21:57 2024-10-30 Show GitHub Exploit DB Packet Storm
312053 - - - DrayTek Vigor3900 1.5.1.3 allows attackers to inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the doCertificate function. - CVE-2024-51257 2024-11-1 21:57 2024-10-30 Show GitHub Exploit DB Packet Storm
312054 - - - In Draytek Vigor3900 1.5.1.3, attackers can inject malicious commands into mainfunction.cgi and execute arbitrary commands by calling the ldap_search_dn function. - CVE-2024-51304 2024-11-1 21:57 2024-10-30 Show GitHub Exploit DB Packet Storm
312055 - - - In Eclipse Mosquito, versions from 2.0.0 through 2.0.18, if a Mosquitto broker is configured to create an outgoing bridge connection, and that bridge connection has an incoming topic configured that … - CVE-2024-3935 2024-11-1 21:57 2024-10-30 Show GitHub Exploit DB Packet Storm
312056 - - - In Eclipse Mosquitto, from version 1.3.2 through 2.0.18, if a malicious broker sends a crafted SUBACK packet with no reason codes, a client using libmosquitto may make out of bounds memory access whe… - CVE-2024-10525 2024-11-1 21:57 2024-10-30 Show GitHub Exploit DB Packet Storm
312057 - - - The Black Widgets For Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 1.3.7 due to insufficient input sanitizati… CWE-79
Cross-site Scripting
CVE-2024-9388 2024-11-1 21:57 2024-10-30 Show GitHub Exploit DB Packet Storm
312058 9.1 CRITICAL
Network
- - The W3SPEEDSTER plugin for WordPress is vulnerable to Remote Code Execution in all versions up to, and including, 7.26 via the 'script' parameter of the hookBeforeStartOptimization() function. This i… CWE-95
Eval Injection
CVE-2024-8512 2024-11-1 21:57 2024-10-30 Show GitHub Exploit DB Packet Storm
312059 - - - The Download Manager WordPress plugin before 3.3.00 doesn't sanitize some of it's shortcode parameters, leading to cross site scripting. - CVE-2024-8444 2024-11-1 21:57 2024-10-30 Show GitHub Exploit DB Packet Storm
312060 6.4 MEDIUM
Network
- - The WP Team – WordPress Team Member Plugin plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's htteamember shortcode in all versions up to, and including, 1.1.4 due to … CWE-79
Cross-site Scripting
CVE-2024-10223 2024-11-1 21:57 2024-10-30 Show GitHub Exploit DB Packet Storm