Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216231 5 警告 Gurock Software GmbH - TestRail にクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4857 2014-07-30 13:33 2014-07-24 Show GitHub Exploit DB Packet Storm
216232 9.4 危険 ヒューレット・パッカード - HP Network Virtualization の toServerObject 関数におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-2626 2014-07-29 18:16 2014-07-22 Show GitHub Exploit DB Packet Storm
216233 8.5 危険 ヒューレット・パッカード - HP Network Virtualization の storedNtxFile 関数におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-2625 2014-07-29 18:14 2014-07-22 Show GitHub Exploit DB Packet Storm
216234 5 警告 シスコシステムズ - Cisco Unified Presence Server の Intercluster Sync Agent Service におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2014-3328 2014-07-29 18:11 2014-07-28 Show GitHub Exploit DB Packet Storm
216235 6.5 警告 シスコシステムズ - Cisco Security Manager の Web フレームワークにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-3326 2014-07-29 18:11 2014-07-24 Show GitHub Exploit DB Packet Storm
216236 4.3 警告 シスコシステムズ - Cisco TelePresence Server ソフトウェアの管理 Web インタフェースのログインページにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3324 2014-07-29 18:10 2014-07-24 Show GitHub Exploit DB Packet Storm
216237 6.8 警告 シスコシステムズ - Cisco WebEx Meetings Server の Web フレームワークにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-3305 2014-07-29 18:10 2014-07-25 Show GitHub Exploit DB Packet Storm
216238 5 警告 シスコシステムズ - Cisco WebEx Meetings Server の ProfileAction コントローラにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-3301 2014-07-29 18:09 2014-07-25 Show GitHub Exploit DB Packet Storm
216239 10 危険 Morpho - Morpho Itemiser におけるアクセス権を取得される脆弱性 CWE-Other
その他
CVE-2014-2363 2014-07-29 16:45 2014-07-24 Show GitHub Exploit DB Packet Storm
216240 4.3 警告 IBM - IBM Sametime Classic Meeting Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4748 2014-07-29 15:55 2014-07-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293791 - mailenable mailenable Multiple cross-site scripting (XSS) vulnerabilities in MailEnable Enterprise 6.5 allow remote attackers to inject arbitrary web script or HTML via the (1) From, (2) To, or (3) Subject header or (4) b… CWE-79
Cross-site Scripting
CVE-2012-2588 2024-11-21 10:39 2014-09-19 Show GitHub Exploit DB Packet Storm
293792 - mini_mail_dashboard_widget_project mini_mail_dashboard_widget Cross-site scripting (XSS) vulnerability in Mini Mail Dashboard Widget plugin 1.42 for WordPress allows remote attackers to inject arbitrary web script or HTML via the body of an email. CWE-79
Cross-site Scripting
CVE-2012-2583 2024-11-21 10:39 2014-09-17 Show GitHub Exploit DB Packet Storm
293793 - redhat enterprise_mrg Cumin (aka MRG Management Console), as used in Red Hat Enterprise MRG 2.5, allows attackers with certain database privileges to cause a denial of service (inaccessible page) via a non-ASCII character… CWE-20
 Improper Input Validation 
CVE-2012-2682 2024-11-21 10:39 2014-07-20 Show GitHub Exploit DB Packet Storm
293794 - emailarchitect emailarchitect_email_server Multiple cross-site scripting (XSS) vulnerabilities in EmailArchitect Email Server 10.0 and 10.0.0.3 allow remote attackers to inject arbitrary web script or HTML via the (1) From or (2) Date field i… CWE-79
Cross-site Scripting
CVE-2012-2591 2024-11-21 10:39 2014-06-20 Show GitHub Exploit DB Packet Storm
293795 - postieplugin postie Cross-site scripting (XSS) vulnerability in the Postie plugin 1.4.3, and possibly before 1.5.15, for WordPress allows remote attackers to inject arbitrary web script or HTML via the From field of an … CWE-79
Cross-site Scripting
CVE-2012-2580 2024-11-21 10:39 2014-06-20 Show GitHub Exploit DB Packet Storm
293796 - wp_simplemail_project wp_simplemail Multiple cross-site scripting (XSS) vulnerabilities in the WP SimpleMail plugin 1.0.6 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) To, (2) From, (3) Date, o… CWE-79
Cross-site Scripting
CVE-2012-2579 2024-11-21 10:39 2014-06-20 Show GitHub Exploit DB Packet Storm
293797 - mindreantre threewp_email_reflector Cross-site scripting (XSS) vulnerability in the ThreeWP Email Reflector plugin before 1.16 for WordPress allows remote attackers to inject arbitrary web script or HTML via the Subject of an email. CWE-79
Cross-site Scripting
CVE-2012-2572 2024-11-21 10:39 2014-06-19 Show GitHub Exploit DB Packet Storm
293798 - synametrics xeams Cross-site scripting (XSS) vulnerability in Synametrics Technologies Xeams 4.4 Build 5720 allows remote attackers to inject arbitrary web script or HTML via the body of an email. CWE-79
Cross-site Scripting
CVE-2012-2569 2024-11-21 10:39 2014-06-19 Show GitHub Exploit DB Packet Storm
293799 - axigen axigen_mail_server Cross-site scripting (XSS) vulnerability in Axigen Mail Server 8.0.1 allows remote attackers to inject arbitrary web script or HTML via the body of an email. CWE-79
Cross-site Scripting
CVE-2012-2592 2024-11-21 10:39 2014-06-19 Show GitHub Exploit DB Packet Storm
293800 - netfilter iptables extensions/libxt_tcp.c in iptables through 1.4.21 does not match TCP SYN+FIN packets in --syn rules, which might allow remote attackers to bypass intended firewall restrictions via crafted packets. … NVD-CWE-noinfo
CVE-2012-2663 2024-11-21 10:39 2014-02-15 Show GitHub Exploit DB Packet Storm