Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202591 3.3
Local
Apache Software Foundation - Apache Ambari の agent における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2016-0707 2016-05-20 14:02 2016-03-27 Show GitHub Exploit DB Packet Storm
202592 10 緊急
Network
SAP - SAP NetWeaver Application Server Java プラットフォーム上で稼動する Invoker Servlet における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2010-5326 2016-05-20 13:58 2016-05-11 Show GitHub Exploit DB Packet Storm
202593 5.9 警告
Network
MariaDB Corporation Ab.
オラクル
- Oracle MySQL および MariaDB におけるサーバになりすまされる脆弱性 CWE-Other
その他
CVE-2015-3152 2016-05-19 17:54 2015-06-9 Show GitHub Exploit DB Packet Storm
202594 7.5 重要
Network
The PHP Group - PHP の Zend/zend_exceptions.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-8873 2016-05-19 17:45 2015-08-6 Show GitHub Exploit DB Packet Storm
202595 5.9 警告
Network
The PHP Group - PHP の ext/mysqlnd/mysqlnd.c におけるサーバになりすまされる脆弱性 CWE-Other
その他
CVE-2015-8838 2016-05-19 17:45 2015-07-9 Show GitHub Exploit DB Packet Storm
202596 9.8 緊急
Network
The PHP Group - PHP の ext/soap/php_http.c の make_http_soap_request 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-8835 2016-05-19 17:45 2015-08-6 Show GitHub Exploit DB Packet Storm
202597 7.5 重要
Network
The PHP Group
xmlsoft.org
- PHP の ext/xsl/xsltprocessor.c の xsl_ext_function_php 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-6838 2016-05-19 17:45 2015-09-3 Show GitHub Exploit DB Packet Storm
202598 7.5 重要
Network
The PHP Group
xmlsoft.org
- PHP の ext/xsl/xsltprocessor.c の xsl_ext_function_php 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2015-6837 2016-05-19 17:45 2015-09-3 Show GitHub Exploit DB Packet Storm
202599 9.8 緊急
Network
The PHP Group - PHP のセッションデシリアライザにおける任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2015-6835 2016-05-19 17:45 2015-09-3 Show GitHub Exploit DB Packet Storm
202600 9.8 緊急
Network
The PHP Group - PHP の ext/phar/phar_object.c の phar_convert_to_other 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2015-5589 2016-05-19 17:45 2015-07-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
290641 7.1 HIGH
Local
fedoraproject fedora The fedora-business-cards package before 1-0.1.beta1.fc17 on Fedora 17 and before 1-0.1.beta1.fc18 on Fedora 18 allows local users to cause a denial of service or write to arbitrary files via a symli… CWE-59
Link Following
CVE-2013-0159 2024-11-21 10:46 2018-05-2 Show GitHub Exploit DB Packet Storm
290642 5.9 MEDIUM
Network
elinks
twibright
elinks
links
ELinks 0.12 and Twibright Links 2.3 have Missing SSL Certificate Validation. CWE-295
Improper Certificate Validation 
CVE-2012-6709 2024-11-21 10:46 2018-02-24 Show GitHub Exploit DB Packet Storm
290643 6.1 MEDIUM
Network
fortinet fortidb Multiple cross-site scripting (XSS) vulnerabilities in Java number format exception handling in FortiGate FortiDB before 4.4.2 allow remote attackers to inject arbitrary web script or HTML via the co… CWE-79
Cross-site Scripting
CVE-2012-6347 2024-11-21 10:46 2018-02-10 Show GitHub Exploit DB Packet Storm
290644 6.1 MEDIUM
Network
fortinet fortiweb Multiple cross-site scripting (XSS) vulnerabilities in FortiWeb before 4.4.4 allow remote attackers to inject arbitrary web script or HTML via the (1) redir or (2) mkey parameter to waf/pcre_expressi… CWE-79
Cross-site Scripting
CVE-2012-6346 2024-11-21 10:46 2018-02-10 Show GitHub Exploit DB Packet Storm
290645 6.1 MEDIUM
Network
jquery jquery jQuery before 1.9.0 is vulnerable to Cross-site Scripting (XSS) attacks. The jQuery(strInput) function does not differentiate selectors from HTML in a reliable fashion. In vulnerable versions, jQuery… CWE-79
Cross-site Scripting
CVE-2012-6708 2024-11-21 10:46 2018-01-19 Show GitHub Exploit DB Packet Storm
290646 6.1 MEDIUM
Network
dragonbyte-tech vbdownloads_module Cross-site scripting (XSS) vulnerability in downloads/actions/editdownload.php in the DragonByte Technologies vBDownloads module 1.3.2 and earlier for vBulletin allows remote attackers to inject arbi… CWE-79
Cross-site Scripting
CVE-2012-6682 2024-11-21 10:46 2018-01-12 Show GitHub Exploit DB Packet Storm
290647 6.1 MEDIUM
Network
dragonbyte-tech forumon_rpg_module Multiple cross-site scripting (XSS) vulnerabilities in actions/main.php in the DragonByte Technologies Forumon RPG module before 1.0.8 for vBulletin when creating a new monster, allow remote attacker… CWE-79
Cross-site Scripting
CVE-2012-6671 2024-11-21 10:46 2018-01-12 Show GitHub Exploit DB Packet Storm
290648 6.1 MEDIUM
Network
dragonbyte-tech vbactivity_module Multiple cross-site scripting (XSS) vulnerabilities in the DragonByte Technologies vbActivity module before 3.0.1 for vBulletin allow remote attackers to inject arbitrary web script or HTML via the r… CWE-79
Cross-site Scripting
CVE-2012-6670 2024-11-21 10:46 2018-01-12 Show GitHub Exploit DB Packet Storm
290649 6.1 MEDIUM
Network
dragonbyte-tech vbshout_module Multiple cross-site scripting (XSS) vulnerabilities in the Shout Reports in the DragonByte Technologies vBShout module before 6.0.6 for vBulletin allow remote attackers to inject arbitrary web script… CWE-79
Cross-site Scripting
CVE-2012-6668 2024-11-21 10:46 2018-01-12 Show GitHub Exploit DB Packet Storm
290650 6.1 MEDIUM
Network
dragonbyte-tech vbshout Cross-site scripting (XSS) vulnerability in vbshout.php in DragonByte Technologies vBShout module for vBulletin allows remote attackers to inject arbitrary web script or HTML via the shout parameter … CWE-79
Cross-site Scripting
CVE-2012-6667 2024-11-21 10:46 2018-01-12 Show GitHub Exploit DB Packet Storm