Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226401 4.3 警告 IBM - IBM Security AppScan Enterprise および IBM Rational Policy Tester におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0473 2013-04-2 15:03 2013-03-25 Show GitHub Exploit DB Packet Storm
226402 6.8 警告 IBM - IBM Tivoli Endpoint Manager の SUA アプリケーションにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-0452 2013-04-2 14:59 2013-03-20 Show GitHub Exploit DB Packet Storm
226403 5 警告 Digium - 複数の Asterisk 製品におけるサービス運用妨害 (デーモンクラッシュ) 状態にされる脆弱性 CWE-119
バッファエラー
CVE-2013-2686 2013-04-2 14:35 2013-03-27 Show GitHub Exploit DB Packet Storm
226404 7.5 危険 Digium - Asterisk Open Source の res/res_format_attr_h264.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-2685 2013-04-2 14:35 2013-03-27 Show GitHub Exploit DB Packet Storm
226405 5 警告 Digium - 複数の Asterisk 製品の SIP チャンネルドライバにおけるアカウント名を列挙される脆弱性 CWE-200
情報漏えい
CVE-2013-2264 2013-04-2 14:34 2013-02-21 Show GitHub Exploit DB Packet Storm
226406 7.5 危険 Synchroweb Technology - Synchroweb Technology SynConnect の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-2690 2013-04-2 14:03 2013-03-28 Show GitHub Exploit DB Packet Storm
226407 - - ヒューレット・パッカード - ** 削除 ** HP ProCurve 1700-8 および 1700-24 スイッチにおけるクロスサイトリクエストフォージェリの脆弱性 - CVE-2012-5216 2013-04-2 13:53 2013-03-25 Show GitHub Exploit DB Packet Storm
226408 4.3 警告 アップル
Google
- Google Chrome におけるクロスサイトスクリプティング攻撃を実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-3058 2013-04-2 11:33 2012-03-28 Show GitHub Exploit DB Packet Storm
226409 4.3 警告 アルバネットワークス株式会社 - Mobility Controller で使用される Aruba Networks ArubaOS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2290 2013-04-1 20:54 2013-03-18 Show GitHub Exploit DB Packet Storm
226410 7.8 危険 シスコシステムズ - Cisco IOS の IP Service Level Agreement 機能におけるサービス運用妨害 (デバイスリロード) の脆弱性 CWE-119
バッファエラー
CVE-2013-1148 2013-04-1 20:47 2013-02-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222161 6.5 MEDIUM
Network
cloudfoundry routing_release Cloud Foundry Routing Release, all versions prior to 0.188.0, contains a vulnerability that can hijack the traffic to route services hosted outside the platform. A user with space developer permissio… CWE-269
 Improper Privilege Management
CVE-2019-3789 2024-11-21 13:42 2019-04-25 Show GitHub Exploit DB Packet Storm
222162 7.1 HIGH
Network
cloudfoundry bosh_backup_and_restore Cloud Foundry BOSH Backup and Restore CLI, all versions prior to 1.5.0, does not check the authenticity of backup scripts in BOSH. A remote authenticated malicious user can modify the metadata file o… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2019-3786 2024-11-21 13:42 2019-04-25 Show GitHub Exploit DB Packet Storm
222163 5.9 MEDIUM
Network
mercurial
redhat
debian
mercurial
enterprise_linux
debian_linux
A flaw was found in Mercurial before 4.9. It was possible to use symlinks and subrepositories to defeat Mercurial's path-checking logic and write files outside a repository. CWE-59
Link Following
CVE-2019-3902 2024-11-21 13:42 2019-04-23 Show GitHub Exploit DB Packet Storm
222164 9.8 CRITICAL
Network
redhat
heketi_project
openshift_container_platform
heketi
It was found that default configuration of Heketi does not require any authentication potentially exposing the management interface to misuse. This isue only affects heketi as shipped with Openshift … - CVE-2019-3899 2024-11-21 13:42 2019-04-23 Show GitHub Exploit DB Packet Storm
222165 4.7 MEDIUM
Local
linux
debian
netapp
linux_kernel
debian_linux
vasa_provider_for_clustered_data_ontap
solidfire
hci_management_node
snapprotect
active_iq_unified_manager_for_vmware_vsphere
virtual_storage_console_fo…
A race condition in perf_event_open() allows local attackers to leak sensitive data from setuid programs. As no relevant locks (in particular the cred_guard_mutex) are held during the ptrace_may_acce… - CVE-2019-3901 2024-11-21 13:42 2019-04-23 Show GitHub Exploit DB Packet Storm
222166 8.0 HIGH
Adjacent
dell supportassist Dell SupportAssist Client versions prior to 3.2.0.90 contain a remote code execution vulnerability. An unauthenticated attacker, sharing the network access layer with the vulnerable system, can compr… NVD-CWE-noinfo
CVE-2019-3719 2024-11-21 13:42 2019-04-19 Show GitHub Exploit DB Packet Storm
222167 8.8 HIGH
Network
dell supportassist Dell SupportAssist Client versions prior to 3.2.0.90 contain an improper origin validation vulnerability. An unauthenticated remote attacker could potentially exploit this vulnerability to attempt CS… CWE-352
 Origin Validation Error
CVE-2019-3718 2024-11-21 13:42 2019-04-19 Show GitHub Exploit DB Packet Storm
222168 7.5 HIGH
Network
clusterlabs
canonical
fedoraproject
pacemaker
ubuntu_linux
fedora
A use-after-free flaw was found in pacemaker up to and including version 2.0.1 which could result in certain sensitive information to be leaked via the system logs. CWE-416
 Use After Free
CVE-2019-3885 2024-11-21 13:42 2019-04-19 Show GitHub Exploit DB Packet Storm
222169 8.8 HIGH
Network
atlassian confluence
confluence_server
Confluence Server and Data Center had a path traversal vulnerability in the downloadallattachments resource. A remote attacker who has permission to add attachments to pages and / or blogs or to crea… CWE-22
Path Traversal
CVE-2019-3398 2024-11-21 13:42 2019-04-19 Show GitHub Exploit DB Packet Storm
222170 7.5 HIGH
Network
cloudfoundry capi-release Cloud Foundry Cloud Controller API Release, versions prior to 1.79.0, contains improper authentication when validating user permissions. A remote authenticated malicious user with the ability to crea… CWE-287
Improper Authentication
CVE-2019-3798 2024-11-21 13:42 2019-04-17 Show GitHub Exploit DB Packet Storm