Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 2:16 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216091 3.5 注意 Drupal - Drupal 用 Publishers モジュール 用 Google Doubleclick におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8748 2014-10-20 17:06 2014-01-13 Show GitHub Exploit DB Packet Storm
216092 4.3 警告 Acquia Inc. - Drupal 用 Drupal Commons モジュール におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8747 2014-10-20 17:06 2014-02-12 Show GitHub Exploit DB Packet Storm
216093 3.5 注意 Drupal - Drupal 用 Skeleton テーマにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8746 2014-10-20 17:05 2014-04-8 Show GitHub Exploit DB Packet Storm
216094 3.5 注意 Drupal - Drupal 用 Custom Search モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8745 2014-10-20 17:05 2014-04-13 Show GitHub Exploit DB Packet Storm
216095 3.5 注意 Drupal - Drupal 用 Nivo Slider モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8744 2014-10-20 17:04 2014-03-18 Show GitHub Exploit DB Packet Storm
216096 3.5 注意 Nextide - Drupal 用 Maestro モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8743 2014-10-20 17:04 2014-06-6 Show GitHub Exploit DB Packet Storm
216097 3.5 注意 オラクル - Oracle MySQL の MySQL Server における SERVER:MEMCACHED に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-6474 2014-10-20 14:24 2014-10-14 Show GitHub Exploit DB Packet Storm
216098 5.5 警告 オラクル - Oracle MySQL の MySQL Server における SERVER:SP に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-6489 2014-10-20 14:24 2014-10-14 Show GitHub Exploit DB Packet Storm
216099 4 警告 オラクル - Oracle MySQL の MySQL Server における SERVER:INNODB FULLTEXT SEARCH DML に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-6564 2014-10-20 14:24 2014-10-14 Show GitHub Exploit DB Packet Storm
216100 4.9 警告 オラクル - Oracle Enterprise Manager Grid Control の Application Performance Management における End User Experience Management に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-6557 2014-10-20 10:13 2014-10-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293481 - xen xen The guest_physmap_mark_populate_on_demand function in Xen 4.2 and earlier does not properly unlock the subject GFNs when checking if they are in use, which allows local guest HVM administrators to ca… NVD-CWE-Other
CVE-2012-5514 2024-11-21 10:44 2012-12-13 Show GitHub Exploit DB Packet Storm
293482 - xen xen The XENMEM_exchange handler in Xen 4.2 and earlier does not properly check the memory address, which allows local PV guest OS administrators to cause a denial of service (crash) or possibly gain priv… CWE-20
 Improper Input Validation 
CVE-2012-5513 2024-11-21 10:44 2012-12-13 Show GitHub Exploit DB Packet Storm
293483 - citrix xenserver Array index error in the HVMOP_set_mem_access handler in Xen 4.1 allows local HVM guest OS administrators to cause a denial of service (crash) or obtain sensitive information via unspecified vectors. CWE-16
Configuration
CVE-2012-5512 2024-11-21 10:44 2012-12-13 Show GitHub Exploit DB Packet Storm
293484 - xen xen Stack-based buffer overflow in the dirty video RAM tracking functionality in Xen 3.4 through 4.1 allows local HVM guest OS administrators to cause a denial of service (crash) via a large bitmap image. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5511 2024-11-21 10:44 2012-12-13 Show GitHub Exploit DB Packet Storm
293485 - xen xen Xen 4.x, when downgrading the grant table version, does not properly remove the status page from the tracking list when freeing the page, which allows local guest OS administrators to cause a denial … NVD-CWE-Other
CVE-2012-5510 2024-11-21 10:44 2012-12-13 Show GitHub Exploit DB Packet Storm
293486 - canonical
libav
google
opensuse
ubuntu_linux
libav
chrome
opensuse
Google Chrome before 23.0.1271.97, and Libav 0.7.x before 0.7.7 and 0.8.x before 0.8.5, do not properly perform AAC decoding, which allows remote attackers to cause a denial of service (stack memory … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5144 2024-11-21 10:44 2012-12-12 Show GitHub Exploit DB Packet Storm
293487 - opensuse
google
opensuse
chrome
Integer overflow in Google Chrome before 23.0.1271.97 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to PPAPI image buffers. CWE-190
 Integer Overflow or Wraparound
CVE-2012-5143 2024-11-21 10:44 2012-12-12 Show GitHub Exploit DB Packet Storm
293488 - google
opensuse
chrome
opensuse
Google Chrome before 23.0.1271.97 does not properly handle history navigation, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified… CWE-94
Code Injection
CVE-2012-5142 2024-11-21 10:44 2012-12-12 Show GitHub Exploit DB Packet Storm
293489 - opensuse
google
opensuse
chrome
Google Chrome before 23.0.1271.97 does not properly restrict instantiation of the Chromoting client plug-in, which has unspecified impact and attack vectors. NVD-CWE-noinfo
CVE-2012-5141 2024-11-21 10:44 2012-12-12 Show GitHub Exploit DB Packet Storm
293490 - google
opensuse
chrome
opensuse
Use-after-free vulnerability in Google Chrome before 23.0.1271.97 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the URL loader. CWE-416
 Use After Free
CVE-2012-5140 2024-11-21 10:44 2012-12-12 Show GitHub Exploit DB Packet Storm