Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216151 4.3 警告 timrohrer - WordPress 用 WordPress Spreadsheet プラグインの ss_handler.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8364 2014-10-27 18:08 2014-08-5 Show GitHub Exploit DB Packet Storm
216152 7.5 危険 timrohrer - WordPress 用 WordPress Spreadsheet プラグインの ss_handler.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-8363 2014-10-27 18:08 2014-08-5 Show GitHub Exploit DB Packet Storm
216153 3.5 注意 Pro Chat Rooms - Pro Chat Rooms Text Chat Rooms におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5276 2014-10-27 17:45 2014-08-5 Show GitHub Exploit DB Packet Storm
216154 6.5 警告 Pro Chat Rooms - Pro Chat Rooms Text Chat Rooms の includes/functions.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-5275 2014-10-27 17:45 2014-08-5 Show GitHub Exploit DB Packet Storm
216155 6.5 警告 TomatoCart - TomatoCart における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-3978 2014-10-27 17:35 2014-08-5 Show GitHub Exploit DB Packet Storm
216156 4.3 警告 TomatoCart - TomatoCart の info.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3830 2014-10-27 17:34 2014-08-5 Show GitHub Exploit DB Packet Storm
216157 3.5 注意 Date project - Drupal 用 Date モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5169 2014-10-27 17:28 2014-07-29 Show GitHub Exploit DB Packet Storm
216158 3.5 注意 The Cacti Group - Cacti におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5026 2014-10-27 17:21 2014-07-4 Show GitHub Exploit DB Packet Storm
216159 3.5 注意 The Cacti Group - Cacti の data_sources.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5025 2014-10-27 17:20 2014-07-4 Show GitHub Exploit DB Packet Storm
216160 4.6 警告 Bulb Security LLC - Bulb Security Smartphone Pentest Framework における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5697 2014-10-27 16:50 2012-11-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295681 - sun sunos Unspecified vulnerability in Oracle Sun Solaris 10 allows remote attackers to affect integrity via unknown vectors related to Solaris Management Console. NVD-CWE-noinfo
CVE-2012-3112 2024-11-21 10:40 2012-07-18 Show GitHub Exploit DB Packet Storm
295682 - oracle peoplesoft_products Unspecified vulnerability in the PeopleSoft Enterprise PeopleTools component in Oracle PeopleSoft Products 8.50, 8.51, and 8.52 allows remote authenticated users to affect integrity, related to TECH,… NVD-CWE-noinfo
CVE-2012-3111 2024-11-21 10:40 2012-07-18 Show GitHub Exploit DB Packet Storm
295683 - oracle fusion_middleware Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.5 and 8.3.7 allows context-dependent attackers to affect availability via unknown vectors relat… NVD-CWE-noinfo
CVE-2012-3110 2024-11-21 10:40 2012-07-18 Show GitHub Exploit DB Packet Storm
295684 - oracle fusion_middleware Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.7 allows context-dependent attackers to affect availability via unknown vectors related to Outs… NVD-CWE-noinfo
CVE-2012-3109 2024-11-21 10:40 2012-07-18 Show GitHub Exploit DB Packet Storm
295685 - oracle fusion_middleware Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.5 and 8.3.7 allows context-dependent attackers to affect availability via unknown vectors relat… NVD-CWE-noinfo
CVE-2012-3108 2024-11-21 10:40 2012-07-18 Show GitHub Exploit DB Packet Storm
295686 - oracle fusion_middleware Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.5 and 8.3.7 allows context-dependent attackers to affect availability via unknown vectors relat… NVD-CWE-noinfo
CVE-2012-3107 2024-11-21 10:40 2012-07-18 Show GitHub Exploit DB Packet Storm
295687 - oracle fusion_middleware Unspecified vulnerability in the Oracle Outside In Technology component in Oracle Fusion Middleware 8.3.5 and 8.3.7 allows context-dependent attackers to affect availability via unknown vectors relat… NVD-CWE-noinfo
CVE-2012-3106 2024-11-21 10:40 2012-07-18 Show GitHub Exploit DB Packet Storm
295688 - openstack compute
essex
folsom
The Nova scheduler in OpenStack Compute (Nova) Folsom (2012.2) and Essex (2012.1), when DifferentHostFilter or SameHostFilter is enabled, allows remote authenticated users to cause a denial of servic… CWE-20
 Improper Input Validation 
CVE-2012-3371 2024-11-21 10:40 2012-07-18 Show GitHub Exploit DB Packet Storm
295689 - gnome rhythmbox (1) AlbumTab.py, (2) ArtistTab.py, (3) LinksTab.py, and (4) LyricsTab.py in the Context module in GNOME Rhythmbox 0.13.3 and earlier allows local users to execute arbitrary code via a symlink attack … CWE-94
Code Injection
CVE-2012-3355 2024-11-21 10:40 2012-07-18 Show GitHub Exploit DB Packet Storm
295690 - eucalyptus eucalyptus The VMware Broker in Eucalyptus 2.0.3 and 3.0.x before 3.0.2 does not properly authenticate SOAP requests, which allows remote attackers to execute arbitrary VMware Broker API commands. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3241 2024-11-21 10:40 2012-07-18 Show GitHub Exploit DB Packet Storm