Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
215921 5 警告 Banana Dance - Banana Dance の functions/suggest.php における任意のデータベースの情報を読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5243 2014-10-27 18:53 2012-12-19 Show GitHub Exploit DB Packet Storm
215922 6.8 警告 Banana Dance - Banana Dance の functions/suggest.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-5242 2014-10-27 18:52 2012-12-19 Show GitHub Exploit DB Packet Storm
215923 7.5 危険 OS4Ed - openSIS における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-8366 2014-10-27 18:52 2014-06-26 Show GitHub Exploit DB Packet Storm
215924 4.3 警告 Xornic - Xornic Contact Us におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8365 2014-10-27 18:51 2014-06-8 Show GitHub Exploit DB Packet Storm
215925 4.3 警告 Joomla! - Joomla! 用 JChatSocial コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3863 2014-10-27 18:14 2014-07-7 Show GitHub Exploit DB Packet Storm
215926 4.3 警告 timrohrer - WordPress 用 WordPress Spreadsheet プラグインの ss_handler.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8364 2014-10-27 18:08 2014-08-5 Show GitHub Exploit DB Packet Storm
215927 7.5 危険 timrohrer - WordPress 用 WordPress Spreadsheet プラグインの ss_handler.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-8363 2014-10-27 18:08 2014-08-5 Show GitHub Exploit DB Packet Storm
215928 3.5 注意 Pro Chat Rooms - Pro Chat Rooms Text Chat Rooms におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5276 2014-10-27 17:45 2014-08-5 Show GitHub Exploit DB Packet Storm
215929 6.5 警告 Pro Chat Rooms - Pro Chat Rooms Text Chat Rooms の includes/functions.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-5275 2014-10-27 17:45 2014-08-5 Show GitHub Exploit DB Packet Storm
215930 6.5 警告 TomatoCart - TomatoCart における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-3978 2014-10-27 17:35 2014-08-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293831 - ubbcentral ubb.threads Cross-site scripting (XSS) vulnerability in forums/ubbthreads.php in UBB.threads 7.5.6 and earlier allows remote attackers to inject arbitrary web script or HTML via the Loginname parameter. CWE-79
Cross-site Scripting
CVE-2012-5104 2024-11-21 10:44 2012-09-24 Show GitHub Exploit DB Packet Storm
293832 - dnelubin gelinsguestbook Multiple cross-site scripting (XSS) vulnerabilities in action/add-submit.php in Ggb Guestbook 0.3.1 allow remote attackers to inject arbitrary web script or HTML via the (1) url or (2) message parame… CWE-79
Cross-site Scripting
CVE-2012-5103 2024-11-21 10:44 2012-09-24 Show GitHub Exploit DB Packet Storm
293833 - dariusz_handzlik vertrigoserv Cross-site scripting (XSS) vulnerability in inc/extensions.php in VertrigoServ 2.25 allows remote attackers to inject arbitrary web script or HTML via the ext parameter. CWE-79
Cross-site Scripting
CVE-2012-5102 2024-11-21 10:44 2012-09-24 Show GitHub Exploit DB Packet Storm
293834 - jextensions je_poll_component SQL injection vulnerability in the JExtensions JE Poll component before 1.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via unspecified vectors. CWE-89
SQL Injection
CVE-2012-5101 2024-11-21 10:44 2012-09-24 Show GitHub Exploit DB Packet Storm
293835 - luizpicanco hserver Directory traversal vulnerability in HServer 0.1.1 allows remote attackers to read arbitrary files via a (1) ..%5c (dot dot encoded backslash) or (2) %2e%2e%5c (encoded dot dot backslash) in the PATH… CWE-22
Path Traversal
CVE-2012-5100 2024-11-21 10:44 2012-09-24 Show GitHub Exploit DB Packet Storm
293836 - phpb2b phpb2b Cross-site scripting (XSS) vulnerability in list.php in PHPB2B 4.1 and earlier allows remote attackers to inject arbitrary web script or HTML via the q parameter in a search action. CWE-79
Cross-site Scripting
CVE-2012-5099 2024-11-21 10:44 2012-09-24 Show GitHub Exploit DB Packet Storm
293837 - j_waite php-x-links Multiple SQL injection vulnerabilities in Php-X-Links, possibly 1.0, allow remote attackers to execute arbitrary SQL commands via the (1) id parameter to rate.php, (2) cid parameter to view.php, or (… CWE-89
SQL Injection
CVE-2012-5098 2024-11-21 10:44 2012-09-24 Show GitHub Exploit DB Packet Storm
293838 6.5 MEDIUM
Network
ibm infosphere_information_server IBM InfoSphere Information Server 8.1, 8.5, and 8,7 could allow a remote authenticated attacker to obtain sensitive information, caused by improper restrictions on directories. An attacker could expl… NVD-CWE-noinfo
CVE-2012-4818 2024-11-21 10:43 2022-09-29 Show GitHub Exploit DB Packet Storm
293839 6.1 MEDIUM
Network
zenphoto zenphoto Zenphoto before 1.4.3.4 admin-news-articles.php date parameter XSS. CWE-79
Cross-site Scripting
CVE-2012-4519 2024-11-21 10:43 2020-02-12 Show GitHub Exploit DB Packet Storm
293840 8.8 HIGH
Network
kde
redhat
kde
enterprise_linux
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server_eus
The CSS parser (khtml/css/cssparser.cpp) in Konqueror in KDE 4.7.3 allows remote attackers to cause a denial of service (crash) and possibly read memory via a crafted font face source, related to "ty… CWE-843
Type Confusion
CVE-2012-4512 2024-11-21 10:43 2020-02-9 Show GitHub Exploit DB Packet Storm