Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216521 5.5 警告 オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise PT PeopleTools における Test Framework に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2496 2014-07-18 16:41 2014-07-15 Show GitHub Exploit DB Packet Storm
216522 2.3 注意 オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise SCM Purchasing における Purchasing に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2495 2014-07-18 16:40 2014-07-15 Show GitHub Exploit DB Packet Storm
216523 5.5 警告 オラクル - Oracle PeopleSoft Products の PeopleSoft Enterprise ELS Enterprise Learning Management における Enterprise Learning Mgmt に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2456 2014-07-18 16:40 2014-07-15 Show GitHub Exploit DB Packet Storm
216524 5 警告 オラクル - Oracle Supply Chain Products Suite の Oracle Transportation Management における Data および Domain & Function Security に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-4234 2014-07-18 16:39 2014-07-15 Show GitHub Exploit DB Packet Storm
216525 5.5 警告 オラクル - Oracle Supply Chain Products Suite の Oracle Transportation Management における Data および Domain & Function Security に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-4229 2014-07-18 16:38 2014-07-15 Show GitHub Exploit DB Packet Storm
216526 4.3 警告 オラクル - Oracle Supply Chain Products Suite の Oracle Agile Product Collaboration における Web client に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2492 2014-07-18 16:37 2014-07-15 Show GitHub Exploit DB Packet Storm
216527 1 注意 オラクル - Oracle E-Business Suite の Oracle Application Object Library における Logging に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-4248 2014-07-18 16:36 2014-07-15 Show GitHub Exploit DB Packet Storm
216528 3.5 注意 オラクル - Oracle E-Business Suite の Oracle iStore における脆弱性 CWE-noinfo
情報不足
CVE-2014-4235 2014-07-18 16:36 2014-07-15 Show GitHub Exploit DB Packet Storm
216529 4.3 警告 オラクル - Oracle E-Business Suite の Oracle Applications Manager における脆弱性 CWE-noinfo
情報不足
CVE-2014-4213 2014-07-18 16:35 2014-07-15 Show GitHub Exploit DB Packet Storm
216530 5.5 警告 オラクル - Oracle E-Business Suite の Oracle Concurrent Processing における脆弱性 CWE-noinfo
情報不足
CVE-2014-2482 2014-07-18 16:34 2014-07-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294961 - s9y serendipity SQL injection vulnerability in serendipity/serendipity_admin.php in Serendipity before 1.6.1 allows remote attackers to execute arbitrary SQL commands via the serendipity[plugin_to_conf] parameter. … CWE-89
SQL Injection
CVE-2012-2332 2024-11-21 10:38 2012-08-14 Show GitHub Exploit DB Packet Storm
294962 - s9y serendipity Cross-site scripting (XSS) vulnerability in serendipity/serendipity_admin_image_selector.php in Serendipity before 1.6.1 allows remote attackers to inject arbitrary web script or HTML via the serendi… CWE-79
Cross-site Scripting
CVE-2012-2331 2024-11-21 10:38 2012-08-14 Show GitHub Exploit DB Packet Storm
294963 - nodejs nodejs The Update method in src/node_http_parser.cc in Node.js before 0.6.17 and 0.7 before 0.7.8 does not properly check the length of a string, which allows remote attackers to obtain sensitive informatio… CWE-20
 Improper Input Validation 
CVE-2012-2330 2024-11-21 10:38 2012-08-14 Show GitHub Exploit DB Packet Storm
294964 - pivotx pivotx Cross-site scripting (XSS) vulnerability in pivotx/ajaxhelper.php in PivotX 2.3.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the file parameter. CWE-79
Cross-site Scripting
CVE-2012-2274 2024-11-21 10:38 2012-08-14 Show GitHub Exploit DB Packet Storm
294965 - mnt-tech wp-facethumb Cross-site scripting (XSS) vulnerability in index.php in the WP-FaceThumb plugin 0.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the pagination_wp_facethumb param… CWE-79
Cross-site Scripting
CVE-2012-2371 2024-11-21 10:38 2012-08-14 Show GitHub Exploit DB Packet Storm
294966 - gnome gdk-pixbuf Multiple integer overflows in the read_bitmap_file_data function in io-xbm.c in gdk-pixbuf before 2.26.1 allow remote attackers to cause a denial of service (application crash) via a negative (1) hei… CWE-189
Numeric Errors
CVE-2012-2370 2024-11-21 10:38 2012-08-14 Show GitHub Exploit DB Packet Storm
294967 - bytemark symbiosis Bytemark Symbiosis before Revision 1322 does not properly validate passwords, which allows remote attackers to gain access to email accounts via an arbitrary password. CWE-20
 Improper Input Validation 
CVE-2012-2368 2024-11-21 10:38 2012-08-14 Show GitHub Exploit DB Packet Storm
294968 - mybb mybb MyBB (aka MyBulletinBoard) before 1.6.7 allows remote attackers to obtain sensitive information via a malformed forumread cookie, which reveals the installation path in an error message. CWE-200
Information Exposure
CVE-2012-2327 2024-11-21 10:38 2012-08-14 Show GitHub Exploit DB Packet Storm
294969 - mybb mybb Cross-site scripting (XSS) vulnerability in the Admin Control Panel (ACP) in MyBB (aka MyBulletinBoard) before 1.6.7 allows remote administrators to inject arbitrary web script or HTML via a malforme… CWE-79
Cross-site Scripting
CVE-2012-2326 2024-11-21 10:38 2012-08-14 Show GitHub Exploit DB Packet Storm
294970 - mybb mybb SQL injection vulnerability in the User Inline Moderation feature in the Admin Control Panel (ACP) in MyBB (aka MyBulletinBoard) before 1.6.7 allows remote administrators to execute arbitrary SQL com… CWE-89
SQL Injection
CVE-2012-2325 2024-11-21 10:38 2012-08-14 Show GitHub Exploit DB Packet Storm