Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216521 5 警告 OpenStack
Canonical
レッドハット
- 複数の OpenStack 製品の通知ミドルウェアにおける X_AUTH_TOKEN 値を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-4615 2014-08-21 17:47 2014-08-11 Show GitHub Exploit DB Packet Storm
216522 5 警告 BitDefender - Bitdefender GravityZone におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-5350 2014-08-21 16:49 2014-05-22 Show GitHub Exploit DB Packet Storm
216523 5 警告 Baidu, Inc. - Baidu Spark Browser におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-5349 2014-08-21 16:49 2014-06-30 Show GitHub Exploit DB Packet Storm
216524 4.3 警告 リバーベッドテクノロジー株式会社 - Riverbed Stingray Traffic Manager Virtual Appliance の apps/zxtm/locallog.cgi におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5348 2014-08-21 15:26 2014-08-15 Show GitHub Exploit DB Packet Storm
216525 2.9 注意 IBM - IBM PowerVC Express Edition における認証情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-4750 2014-08-21 14:43 2014-08-18 Show GitHub Exploit DB Packet Storm
216526 4.3 警告 IBM - IBM PowerVC における SSH サーバを偽装される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-4749 2014-08-21 14:40 2014-08-18 Show GitHub Exploit DB Packet Storm
216527 6.8 警告 Disqus - WordPress 用 Disqus Comment System プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-5347 2014-08-21 14:37 2014-06-24 Show GitHub Exploit DB Packet Storm
216528 6.8 警告 Disqus - WordPress 用 Disqus Comment System プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-5346 2014-08-21 14:36 2014-08-16 Show GitHub Exploit DB Packet Storm
216529 4.3 警告 Disqus - WordPress 用 Disqus Comment System プラグインの upgrade.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5345 2014-08-21 14:35 2014-06-24 Show GitHub Exploit DB Packet Storm
216530 4.3 警告 Mobiloud - WordPress 用 Mobiloud プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-5344 2014-08-21 14:34 2014-08-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294221 - linux linux_kernel Use-after-free vulnerability in the xacct_add_tsk function in kernel/tsacct.c in the Linux kernel before 2.6.19 allows local users to obtain potentially sensitive information from kernel memory or ca… CWE-399
 Resource Management Errors
CVE-2012-3510 2024-11-21 10:41 2012-10-3 Show GitHub Exploit DB Packet Storm
294222 - devscripts_devel_team devscripts scripts/annotate-output.sh in devscripts before 2.12.2, as used in rpmdevtools before 8.3, allows local users to modify arbitrary files via a symlink attack on the temporary (1) standard output or (2… CWE-362
Race Condition
CVE-2012-3500 2024-11-21 10:41 2012-10-1 Show GitHub Exploit DB Packet Storm
294223 - cisco ios The Intrusion Prevention System (IPS) feature in Cisco IOS 12.3 through 12.4 and 15.0 through 15.2, in certain configurations of enabled categories and missing signatures, allows remote attackers to … CWE-399
 Resource Management Errors
CVE-2012-3950 2024-11-21 10:41 2012-09-27 Show GitHub Exploit DB Packet Storm
294224 - cisco ios
unified_communications_manager
ios_xe
The SIP implementation in Cisco Unified Communications Manager (CUCM) 6.x and 7.x before 7.1(5b)su5, 8.x before 8.5(1)su4, and 8.6 before 8.6(2a)su1; Cisco IOS 12.2 through 12.4 and 15.0 through 15.2… CWE-20
 Improper Input Validation 
CVE-2012-3949 2024-11-21 10:41 2012-09-27 Show GitHub Exploit DB Packet Storm
294225 - apple iphone_os WebKit, as used in Apple iOS before 6, allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted web site. CWE-119
CWE-399
Incorrect Access of Indexable Resource ('Range Error') 
 Resource Management Errors
CVE-2012-3747 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
294226 - apple iphone_os UIWebView in UIKit in Apple iOS before 6 does not properly use the Data Protection feature, which allows context-dependent attackers to obtain cleartext file content by leveraging direct access to a … CWE-310
Cryptographic Issues
CVE-2012-3746 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
294227 - apple iphone_os Off-by-one error in Telephony in Apple iOS before 6 allows remote attackers to cause a denial of service (buffer overflow and connectivity outage) via a crafted user-data header in an SMS message. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-3745 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
294228 - apple iphone_os Telephony in Apple iOS before 6 uses an SMS message's return address as the displayed sender address, which allows remote attackers to spoof text communication via a message in which the return addre… NVD-CWE-Other
CVE-2012-3744 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
294229 - apple iphone_os The System Logs implementation in Apple iOS before 6 does not restrict /var/log access by sandboxed apps, which allows remote attackers to obtain sensitive information via a crafted app that reads lo… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3743 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm
294230 - apple iphone_os Safari in Apple iOS before 6 does not properly restrict use of an unspecified Unicode character that looks similar to the https lock indicator, which allows remote attackers to spoof https connection… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3742 2024-11-21 10:41 2012-09-21 Show GitHub Exploit DB Packet Storm