Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228781 6.5 警告 IBM - IBM System Storage TS3500 テープ・ライブラリーの Web インタフェースにおける権限を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-5767 2013-02-28 11:29 2013-02-22 Show GitHub Exploit DB Packet Storm
228782 4 警告 シスコシステムズ - Cisco Cloud Portal の nsAPI インタフェースにおける重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-1139 2013-02-28 10:52 2013-02-25 Show GitHub Exploit DB Packet Storm
228783 7.8 危険 デル - Dell PowerConnect 6248P にサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-0120 2013-02-27 16:51 2013-02-25 Show GitHub Exploit DB Packet Storm
228784 5 警告 CS-Cart - CS-Cart に検証不備の脆弱性 CWE-16
環境設定
CVE-2013-0118 2013-02-27 16:41 2013-02-25 Show GitHub Exploit DB Packet Storm
228785 5 警告 シスコシステムズ - Cisco Adaptive Security Appliance デバイスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2013-1138 2013-02-27 16:33 2012-02-25 Show GitHub Exploit DB Packet Storm
228786 2.6 注意 CloudBees - CloudBees Jenkins におけるマスターの暗号鍵を取得される脆弱性 CWE-noinfo
情報不足
CVE-2013-0158 2013-02-27 16:31 2013-01-4 Show GitHub Exploit DB Packet Storm
228787 3.5 注意 CloudBees - CloudBees Jenkins におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6074 2013-02-27 16:25 2012-11-20 Show GitHub Exploit DB Packet Storm
228788 5.8 警告 CloudBees - CloudBees Jenkins におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2012-6073 2013-02-27 16:25 2012-11-20 Show GitHub Exploit DB Packet Storm
228789 4.3 警告 CloudBees - CloudBees Jenkins における CRLF インジェクションの脆弱性 CWE-20
不適切な入力確認
CVE-2012-6072 2013-02-27 16:10 2012-11-20 Show GitHub Exploit DB Packet Storm
228790 4.3 警告 Roundcube.net - Roundcube Webmail におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6121 2013-02-27 16:08 2013-02-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
319561 - - - An Incorrect Access Control vulnerability was found in /music/view_user.php?id=3 and /music/controller.php?page=edit_user&id=3 in Kashipara Music Management System v1.0. This vulnerability allows an … - CVE-2024-42795 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
319562 - - - Kashipara Music Management System v1.0 is vulnerable to Incorrect Access Control via /music/ajax.php?action=save_user. - CVE-2024-42794 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
319563 - - - Local privilege escalation due to DLL hijacking vulnerability. The following products are affected: Acronis Cyber Protect Cloud Agent (Windows) before build 38235. CWE-427
 Uncontrolled Search Path Element
CVE-2024-34016 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
319564 - - - DOMPurify is a DOM-only, super-fast, uber-tolerant XSS sanitizer for HTML, MathML and SVG. It has been discovered that malicious HTML using special nesting techniques can bypass the depth checking ad… CWE-1333
 Inefficient Regular Expression Complexity
CVE-2024-45801 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
319565 - - - FluxCP is a web-based Control Panel for rAthena servers written in PHP. A javascript injection is possible via venders/buyers list pages and shop names, that are currently not sanitized. This allows … - CVE-2024-45799 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
319566 - - - A Business Logic vulnerability in Shopkit 1.0 allows an attacker to add products with negative quantities to the shopping cart via the qtd parameter in the add-to-cart function. - CVE-2023-45854 2024-09-20 21:31 2024-09-17 Show GitHub Exploit DB Packet Storm
319567 - - - A stored Cross-site Scripting (XSS) vulnerability affecting 3DSwym in 3DSwymer from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execute arbitrary script code… - CVE-2024-7737 2024-09-20 21:30 2024-09-20 Show GitHub Exploit DB Packet Storm
319568 - - - A reflected Cross-site Scripting (XSS) vulnerability affecting ENOVIA Collaborative Industry Innovator from Release 3DEXPERIENCE R2022x through Release 3DEXPERIENCE R2024x allows an attacker to execu… - CVE-2024-7736 2024-09-20 21:30 2024-09-20 Show GitHub Exploit DB Packet Storm
319569 - - - There exists a use after free vulnerability in Reverb. Reverb supports the VARIANT datatype, which is supposed to represent an arbitrary object in C++. When a tensor proto of type VARIANT is unpacked… - CVE-2024-8375 2024-09-20 21:30 2024-09-20 Show GitHub Exploit DB Packet Storm
319570 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Ece Software Electronic Ticket System allows Reflected XSS, Cross-Site Scripting (XSS).Thi… CWE-79
Cross-site Scripting
CVE-2024-7785 2024-09-20 21:30 2024-09-19 Show GitHub Exploit DB Packet Storm