Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216131 3.5 注意 FOG Project - FOG におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3111 2014-10-28 10:58 2014-04-29 Show GitHub Exploit DB Packet Storm
216132 6.5 警告 InterWorx - InterWorx Web Control Panel の xhr.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-2531 2014-10-28 10:47 2014-03-17 Show GitHub Exploit DB Packet Storm
216133 4.3 警告 Splunk - Splunk におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8380 2014-10-28 10:39 2014-05-27 Show GitHub Exploit DB Packet Storm
216134 4.3 警告 WebAsyst - Webasyst Shop-Script におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8377 2014-10-28 10:11 2014-08-12 Show GitHub Exploit DB Packet Storm
216135 4.3 警告 Tenable, Inc. - Tenable Nessus 用 Web UI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-7280 2014-10-28 09:58 2014-06-13 Show GitHub Exploit DB Packet Storm
216136 7.5 危険 Zoho Corporation - ZOHO ManageEngine Desktop Central におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-5006 2014-10-28 09:50 2014-08-31 Show GitHub Exploit DB Packet Storm
216137 7.5 危険 Zoho Corporation - ZOHO ManageEngine Desktop Central におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-5005 2014-10-28 09:49 2014-08-31 Show GitHub Exploit DB Packet Storm
216138 6.8 警告 MRBS - Drupal 用 MRBS モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-7407 2014-10-27 19:30 2013-07-17 Show GitHub Exploit DB Packet Storm
216139 7.5 危険 MRBS - Drupal 用 MRBS モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-7406 2014-10-27 19:30 2013-07-17 Show GitHub Exploit DB Packet Storm
216140 5 警告 Websupporter - WordPress 用 WP AmASIN - The Amazon Affiliate Shop プラグインの reviews.php における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-4577 2014-10-27 18:55 2014-03-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295431 - oracle database_server Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3, when running on Unix and Linux platforms, allows local users to a… NVD-CWE-noinfo
CVE-2012-3151 2024-11-21 10:40 2012-10-17 Show GitHub Exploit DB Packet Storm
295432 - oracle
mariadb
debian
canonical
redhat
mysql
mariadb
debian_linux
ubuntu_linux
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux_workstation
enterprise_linux_eus
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.64 and earlier, and 5.5.26 and earlier, allows remote authenticated users to affect availability via unknown vectors relate… NVD-CWE-noinfo
CVE-2012-3150 2024-11-21 10:40 2012-10-17 Show GitHub Exploit DB Packet Storm
295433 - oracle fusion_middleware Unspecified vulnerability in the Oracle Reports Developer component in Oracle Fusion Middleware 11.1.1.4, 11.1.1.6, and 11.1.2.0 allows remote attackers to affect confidentiality and integrity via un… NVD-CWE-noinfo
CVE-2012-3153 2024-11-21 10:40 2012-10-17 Show GitHub Exploit DB Packet Storm
295434 - oracle mysql Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.26 and earlier allows remote authenticated users to affect confidentiality, related to MySQL Client. NVD-CWE-noinfo
CVE-2012-3149 2024-11-21 10:40 2012-10-17 Show GitHub Exploit DB Packet Storm
295435 - oracle e-business_suite Unspecified vulnerability in the Oracle Field Service component in Oracle E-Business Suite 12.1.3 allows remote authenticated users to affect integrity, related to Wireless/WAP upload. NVD-CWE-noinfo
CVE-2012-3148 2024-11-21 10:40 2012-10-17 Show GitHub Exploit DB Packet Storm
295436 - oracle mysql Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.26 and earlier allows remote attackers to affect integrity and availability, related to MySQL Client. NVD-CWE-noinfo
CVE-2012-3147 2024-11-21 10:40 2012-10-17 Show GitHub Exploit DB Packet Storm
295437 - oracle database_server Unspecified vulnerability in the Core RDBMS component in Oracle Database Server 10.2.0.3, 10.2.0.4, 10.2.0.5, 11.1.0.7, 11.2.0.2, and 11.2.0.3 allows remote authenticated users to affect integrity vi… NVD-CWE-noinfo
CVE-2012-3146 2024-11-21 10:40 2012-10-17 Show GitHub Exploit DB Packet Storm
295438 - oracle financial_services_software Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.0.2, 5.0.5, 5.1.0, 5.2.0, 5.3.0 through 5.3.4, and 6.2.0 allows local users to affect… NVD-CWE-noinfo
CVE-2012-3145 2024-11-21 10:40 2012-10-17 Show GitHub Exploit DB Packet Storm
295439 - oracle mysql Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.5.26 and earlier allows remote authenticated users to affect availability via unknown vectors related to Server. NVD-CWE-noinfo
CVE-2012-3144 2024-11-21 10:40 2012-10-17 Show GitHub Exploit DB Packet Storm
295440 - oracle financial_services_software Unspecified vulnerability in the Oracle FLEXCUBE Direct Banking component in Oracle Financial Services Software 5.0.5, 5.1.0, 5.2.0, and 5.3.0 through 5.3.4 allows remote authenticated users to affec… NVD-CWE-noinfo
CVE-2012-3142 2024-11-21 10:40 2012-10-17 Show GitHub Exploit DB Packet Storm