Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 23, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227791 3.5 注意 AlienWP - Drupal 用 Hatch テーマにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4138 2013-09-11 16:42 2013-07-10 Show GitHub Exploit DB Packet Storm
227792 7.2 危険 ソフォス - Sophos Web Appliance の /opt/cma/bin/clear_keys.pl の close_connections 関数における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4984 2013-09-11 14:45 2013-09-9 Show GitHub Exploit DB Packet Storm
227793 7.5 危険 VMware - VMware ESX および ESXi におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-3657 2013-09-11 14:02 2013-09-6 Show GitHub Exploit DB Packet Storm
227794 6.4 警告 VMware - VMware ESX および ESXi におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-3658 2013-09-11 13:54 2013-09-6 Show GitHub Exploit DB Packet Storm
227795 4.3 警告 VideoWhisper.com - WordPress 用 VideoWhisper Live Streaming Integration プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5714 2013-09-11 13:51 2013-08-23 Show GitHub Exploit DB Packet Storm
227796 5 警告 Digium - 複数の Asterisk 製品の SIP チャネルドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-5642 2013-09-11 13:50 2013-08-27 Show GitHub Exploit DB Packet Storm
227797 5 警告 Digium - Asterisk Open Source および Certified Asterisk の SIP チャネルドライバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-5641 2013-09-11 13:49 2013-08-27 Show GitHub Exploit DB Packet Storm
227798 5 警告 Strata Technologies - Twilight CMS で使用される DeWeS Web サーバにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-4900 2013-09-11 13:46 2013-08-21 Show GitHub Exploit DB Packet Storm
227799 4.3 警告 Strata Technologies - Twilight CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4899 2013-09-11 13:45 2013-08-21 Show GitHub Exploit DB Packet Storm
227800 2.6 注意 サイボウズ - サイボウズ Office におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4703 2013-09-11 13:32 2013-09-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
226501 8.0 HIGH
Adjacent
ztw zx297520v3_firmware The 7520V3V1.0.0B09P27 version, and all earlier versions of ZTE product ZX297520V3 are impacted by a Command Injection vulnerability. Unauthorized users can exploit this vulnerability to control the … CWE-77
Command Injection
CVE-2019-3421 2024-11-21 13:42 2019-11-1 Show GitHub Exploit DB Packet Storm
226502 5.7 MEDIUM
Adjacent
zte zxmp_m721_dx_firmware A security vulnerability exists in a management port in the version of ZTE's ZXMP M721V3.10P01B10_M2NCP. An attacker could exploit this vulnerability to build a link to the device and send specific p… NVD-CWE-noinfo
CVE-2019-3419 2024-11-21 13:42 2019-11-1 Show GitHub Exploit DB Packet Storm
226503 7.5 HIGH
Network
mikrotik routeros RouterOS versions 6.45.6 Stable, 6.44.5 Long-term, and below are vulnerable to a DNS unrelated data attack. The router adds all A records to its DNS cache even when the records are unrelated to the d… CWE-345
 Insufficient Verification of Data Authenticity
CVE-2019-3979 2024-11-21 13:42 2019-10-30 Show GitHub Exploit DB Packet Storm
226504 7.5 HIGH
Network
mikrotik routeros RouterOS versions 6.45.6 Stable, 6.44.5 Long-term, and below allow remote unauthenticated attackers to trigger DNS queries via port 8291. The queries are sent from the router to a server of the attac… CWE-306
Missing Authentication for Critical Function
CVE-2019-3978 2024-11-21 13:42 2019-10-30 Show GitHub Exploit DB Packet Storm
226505 7.5 HIGH
Network
mikrotik routeros RouterOS 6.45.6 Stable, RouterOS 6.44.5 Long-term, and below insufficiently validate where upgrade packages are download from when using the autoupgrade feature. Therefore, a remote attacker can tric… CWE-494
 Download of Code Without Integrity Check
CVE-2019-3977 2024-11-21 13:42 2019-10-30 Show GitHub Exploit DB Packet Storm
226506 8.8 HIGH
Network
mikrotik routeros RouterOS 6.45.6 Stable, RouterOS 6.44.5 Long-term, and below are vulnerable to an arbitrary directory creation vulnerability via the upgrade package's name field. If an authenticated user installs a … CWE-22
Path Traversal
CVE-2019-3976 2024-11-21 13:42 2019-10-30 Show GitHub Exploit DB Packet Storm
226507 7.8 HIGH
Local
mcafee total_protection A File Masquerade vulnerability in McAfee Total Protection (MTP) version 16.0.R21 and earlier in Windows client allowed an attacker to read the plaintext list of AV-Scan exclusion files from the Wind… CWE-312
 Cleartext Storage of Sensitive Information
CVE-2019-3636 2024-11-21 13:42 2019-10-29 Show GitHub Exploit DB Packet Storm
226508 6.0 MEDIUM
Local
oracle vm_virtualbox Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.34 and prior to 6.0.14. Easily exploitable vulnerab… NVD-CWE-noinfo
CVE-2019-3031 2024-11-21 13:42 2019-10-17 Show GitHub Exploit DB Packet Storm
226509 8.8 HIGH
Local
oracle vm_virtualbox Vulnerability in the Oracle VM VirtualBox product of Oracle Virtualization (component: Core). Supported versions that are affected are Prior to 5.2.34 and prior to 6.0.14. Easily exploitable vulnerab… NVD-CWE-noinfo
CVE-2019-3028 2024-11-21 13:42 2019-10-17 Show GitHub Exploit DB Packet Storm
226510 5.3 MEDIUM
Network
oracle application_object_library Vulnerability in the Oracle Application Object Library product of Oracle E-Business Suite (component: Login Help). Supported versions that are affected are 12.2.5-12.2.9. Easily exploitable vulnerabi… NVD-CWE-noinfo
CVE-2019-3027 2024-11-21 13:42 2019-10-17 Show GitHub Exploit DB Packet Storm