Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216441 10 危険 Mozilla Foundation - Firefox および Thunderbird で使用される Mozilla Network Security Services の libnss3.so における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2014-1544 2014-07-24 14:38 2014-07-22 Show GitHub Exploit DB Packet Storm
216442 4.3 警告 Drupal - Drupal の Ajax システムにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5022 2014-07-23 16:52 2014-07-16 Show GitHub Exploit DB Packet Storm
216443 2.1 注意 Drupal - Drupal の Form API におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5021 2014-07-23 16:51 2014-07-16 Show GitHub Exploit DB Packet Storm
216444 4.9 警告 Drupal - Drupal の File モジュールにおける制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-5020 2014-07-23 16:50 2014-07-16 Show GitHub Exploit DB Packet Storm
216445 5 警告 Drupal - Drupal のマルチサイト機能におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-5019 2014-07-23 16:49 2014-07-16 Show GitHub Exploit DB Packet Storm
216446 7.5 危険 JoomlaBoat.com - Joomla! 用 YouTube Gallery コンポーネントの models\gallery.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-4960 2014-07-23 14:58 2014-07-15 Show GitHub Exploit DB Packet Storm
216447 5 警告 ARM Ltd. (旧 Offspark) - PolarSSL の library/ssl_tls.c の ssl_decrypt_buf 関数 におけるサービス運用妨害 (DoS) の脆弱性 CWE-310
暗号の問題
CVE-2014-4911 2014-07-23 14:18 2014-07-11 Show GitHub Exploit DB Packet Storm
216448 4.3 警告 e107.org - e107 の e107_admin/db.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4734 2014-07-23 14:13 2014-06-27 Show GitHub Exploit DB Packet Storm
216449 6.8 警告 GitList - Gitlist で使用される Gitter の Repository.php における任意のコマンドを実行される脆弱性 CWE-Other
その他
CVE-2014-5023 2014-07-23 14:01 2014-06-29 Show GitHub Exploit DB Packet Storm
216450 7.5 危険 GitList - Gitlist における任意のコマンドを実行される脆弱性 CWE-Other
その他
CVE-2014-4511 2014-07-23 14:01 2014-06-30 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295181 - f5
fedoraproject
nginx
fedora
Buffer overflow in ngx_http_mp4_module.c in the ngx_http_mp4_module module in nginx 1.0.7 through 1.0.14 and 1.1.3 through 1.1.18, when the mp4 directive is used, allows remote attackers to cause a d… CWE-120
Classic Buffer Overflow
CVE-2012-2089 2024-11-21 10:38 2012-04-18 Show GitHub Exploit DB Packet Storm
295182 - syndeocms syndeocms Cross-site scripting (XSS) vulnerability in starnet/index.php in SyndeoCMS 3.0.01 and earlier allows remote authenticated users to inject arbitrary web script or HTML via the email parameter (aka Ema… CWE-79
Cross-site Scripting
CVE-2012-1979 2024-11-21 10:38 2012-04-18 Show GitHub Exploit DB Packet Storm
295183 - realnetworks helix_server
helix_mobile_server
master.exe in the SNMP Master Agent in RealNetworks Helix Server and Helix Mobile Server 14.x before 14.3.x allows remote attackers to cause a denial of service (unhandled exception and daemon crash)… CWE-20
 Improper Input Validation 
CVE-2012-2268 2024-11-21 10:38 2012-04-17 Show GitHub Exploit DB Packet Storm
295184 - realnetworks helix_server
helix_mobile_server
master.exe in the SNMP Master Agent in RealNetworks Helix Server and Helix Mobile Server 14.x before 14.3.x allows remote attackers to cause a denial of service (daemon crash) by establishing and clo… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2267 2024-11-21 10:38 2012-04-17 Show GitHub Exploit DB Packet Storm
295185 - realnetworks helix_server
helix_mobile_server
Cross-site request forgery (CSRF) vulnerability in RealNetworks Helix Server and Helix Mobile Server 14.x before 14.3.x allows remote attackers to hijack the authentication of administrators for requ… CWE-352
 Origin Validation Error
CVE-2012-1985 2024-11-21 10:38 2012-04-17 Show GitHub Exploit DB Packet Storm
295186 - realnetworks helix_server
helix_mobile_server
Multiple cross-site scripting (XSS) vulnerabilities in RealNetworks Helix Server and Helix Mobile Server 14.x before 14.3.x allow remote attackers to inject arbitrary web script or HTML via unspecifi… CWE-79
Cross-site Scripting
CVE-2012-1984 2024-11-21 10:38 2012-04-17 Show GitHub Exploit DB Packet Storm
295187 - realnetworks helix_server
helix_mobile_server
RealNetworks Helix Server and Helix Mobile Server 14.x before 14.3.x store passwords in cleartext under adm_b_db\users\, which allows local users to obtain sensitive information by reading a database. CWE-310
Cryptographic Issues
CVE-2012-1923 2024-11-21 10:38 2012-04-17 Show GitHub Exploit DB Packet Storm
295188 - cloudera cloudera_manager
cloudera_service_and_configuration_manager
Cloudera Manager 3.7.x before 3.7.5 and Service and Configuration Manager 3.5, when Kerberos is not enabled, does not properly install taskcontroller.cfg, which allows remote authenticated users to i… CWE-310
Cryptographic Issues
CVE-2012-2230 2024-11-21 10:38 2012-04-12 Show GitHub Exploit DB Packet Storm
295189 - 360zip 360zip 360zip 1.93beta allows remote attackers to execute arbitrary code via vectors related to file browsing and file extraction. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2225 2024-11-21 10:38 2012-04-11 Show GitHub Exploit DB Packet Storm
295190 - xunlei thunder Xunlei Thunder before 7.2.6 allows remote attackers to execute arbitrary code via a crafted file, related to a "DLL injection vulnerability." CWE-94
Code Injection
CVE-2012-2224 2024-11-21 10:38 2012-04-11 Show GitHub Exploit DB Packet Storm