Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216071 4.3 警告 OpenStack - OpenStack Dashboard Horizon Orchestration dashboard の Orchestration/Stack セクションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3473 2014-12-4 18:09 2014-07-23 Show GitHub Exploit DB Packet Storm
216072 4.3 警告 Sunhater - SunHater KCFinder の index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3988 2014-12-4 10:42 2014-06-17 Show GitHub Exploit DB Packet Storm
216073 7.2 危険 Thomson Reuters - Thomson Reuters Fixed Assets CS のインストーラにおける任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9141 2014-12-4 10:42 2014-12-1 Show GitHub Exploit DB Packet Storm
216074 4.3 警告 Kennziffer.com - TYPO3 用 Questionnaire (ke_questionnaire) エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-4956 2014-12-3 17:00 2011-10-9 Show GitHub Exploit DB Packet Storm
216075 7.5 危険 Kennziffer.com - TYPO3 用 Questionnaire (ke_questionnaire) エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-4957 2014-12-3 16:59 2011-10-9 Show GitHub Exploit DB Packet Storm
216076 5.8 警告 アップル
GNU Project
- GNU patch の util.c におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-4651 2014-12-3 16:33 2011-03-11 Show GitHub Exploit DB Packet Storm
216077 7.2 危険 CCH group - CCH Wolters Kluwer ProSystem fx Engagement におけるローカルシステムの権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9113 2014-12-3 16:17 2014-11-26 Show GitHub Exploit DB Packet Storm
216078 5 警告 GNU Project - GNU Cpio の process_copy_in 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-9112 2014-12-3 16:08 2014-11-27 Show GitHub Exploit DB Packet Storm
216079 4 警告 CSSJockey.com - WordPress 用 SupportEzzy Ticket System プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-9179 2014-12-3 16:08 2014-10-12 Show GitHub Exploit DB Packet Storm
216080 7.5 危険 Smarty Pants Plugins - WordPress 用 Smarty Pants Plugins SP Client Document Manager プラグインにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-9178 2014-12-3 16:07 2014-11-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294811 - linux
redhat
linux_kernel
enterprise_linux
The ATM implementation in the Linux kernel before 3.6 does not initialize certain structures, which allows local users to obtain sensitive information from kernel stack memory via a crafted applicati… CWE-200
Information Exposure
CVE-2012-6546 2024-11-21 10:46 2013-03-16 Show GitHub Exploit DB Packet Storm
294812 - redhat
linux
enterprise_linux
linux_kernel
The Bluetooth RFCOMM implementation in the Linux kernel before 3.6 does not properly initialize certain structures, which allows local users to obtain sensitive information from kernel memory via a c… CWE-200
Information Exposure
CVE-2012-6545 2024-11-21 10:46 2013-03-16 Show GitHub Exploit DB Packet Storm
294813 - linux
redhat
linux_kernel
enterprise_linux
The Bluetooth protocol stack in the Linux kernel before 3.6 does not properly initialize certain structures, which allows local users to obtain sensitive information from kernel stack memory via a cr… CWE-200
Information Exposure
CVE-2012-6544 2024-11-21 10:46 2013-03-16 Show GitHub Exploit DB Packet Storm
294814 - linux linux_kernel The l2tp_ip6_getname function in net/l2tp/l2tp_ip6.c in the Linux kernel before 3.6 does not initialize a certain structure member, which allows local users to obtain sensitive information from kerne… CWE-200
Information Exposure
CVE-2012-6543 2024-11-21 10:46 2013-03-16 Show GitHub Exploit DB Packet Storm
294815 - linux
redhat
linux_kernel
enterprise_linux
The llc_ui_getname function in net/llc/af_llc.c in the Linux kernel before 3.6 has an incorrect return value in certain circumstances, which allows local users to obtain sensitive information from ke… CWE-200
Information Exposure
CVE-2012-6542 2024-11-21 10:46 2013-03-16 Show GitHub Exploit DB Packet Storm
294816 - linux linux_kernel The ccid3_hc_tx_getsockopt function in net/dccp/ccids/ccid3.c in the Linux kernel before 3.6 does not initialize a certain structure, which allows local users to obtain sensitive information from ker… CWE-200
Information Exposure
CVE-2012-6541 2024-11-21 10:46 2013-03-16 Show GitHub Exploit DB Packet Storm
294817 - linux linux_kernel The do_ip_vs_get_ctl function in net/netfilter/ipvs/ip_vs_ctl.c in the Linux kernel before 3.6 does not initialize a certain structure for IP_VS_SO_GET_TIMEOUT commands, which allows local users to o… CWE-200
Information Exposure
CVE-2012-6540 2024-11-21 10:46 2013-03-16 Show GitHub Exploit DB Packet Storm
294818 - linux linux_kernel The dev_ifconf function in net/socket.c in the Linux kernel before 3.6 does not initialize a certain structure, which allows local users to obtain sensitive information from kernel stack memory via a… CWE-200
Information Exposure
CVE-2012-6539 2024-11-21 10:46 2013-03-16 Show GitHub Exploit DB Packet Storm
294819 - linux
redhat
linux_kernel
enterprise_linux
The copy_to_user_auth function in net/xfrm/xfrm_user.c in the Linux kernel before 3.6 uses an incorrect C library function for copying a string, which allows local users to obtain sensitive informati… CWE-200
Information Exposure
CVE-2012-6538 2024-11-21 10:46 2013-03-16 Show GitHub Exploit DB Packet Storm
294820 - linux
redhat
linux_kernel
enterprise_linux
net/xfrm/xfrm_user.c in the Linux kernel before 3.6 does not initialize certain structures, which allows local users to obtain sensitive information from kernel memory by leveraging the CAP_NET_ADMIN… CWE-200
Information Exposure
CVE-2012-6537 2024-11-21 10:46 2013-03-16 Show GitHub Exploit DB Packet Storm