Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 2, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216541 4.3 警告 IBM - IBM Security Identity Manager におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-6096 2014-11-19 15:30 2014-11-13 Show GitHub Exploit DB Packet Storm
216542 5 警告 IBM - IBM Security Identity Manager におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-6095 2014-11-19 15:30 2014-11-13 Show GitHub Exploit DB Packet Storm
216543 4.3 警告 Star Host Design, LLC - phpMoneyBooks の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-6665 2014-11-19 12:21 2012-03-16 Show GitHub Exploit DB Packet Storm
216544 4.3 警告 Star Host Design, LLC - phpMoneyBooks の index.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-1669 2014-11-19 12:20 2012-03-16 Show GitHub Exploit DB Packet Storm
216545 6.8 警告 Php Scriptlerim. - Php Scriptlerim Who's Who スクリプトにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-8953 2014-11-19 12:13 2014-10-30 Show GitHub Exploit DB Packet Storm
216546 4.3 警告 Meg Nicholas - WordPress 用 Contact Form Clean and Simple プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8955 2014-11-19 11:37 2014-11-4 Show GitHub Exploit DB Packet Storm
216547 6 警告 iMember360 - WordPress 用 iMember360 プラグインにおける任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-8949 2014-11-19 11:37 2014-04-24 Show GitHub Exploit DB Packet Storm
216548 4.3 警告 Pricop - phpSound におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8954 2014-11-19 11:25 2014-08-10 Show GitHub Exploit DB Packet Storm
216549 4.3 警告 phpMemcachedAdmin project - phpMemcachedAdmin におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8732 2014-11-19 11:15 2014-11-12 Show GitHub Exploit DB Packet Storm
216550 6.2 警告 F5 Networks - F5 BIG-IP におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-8727 2014-11-19 10:58 2014-09-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 2, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296681 - redhat enterprise_virtualization_manager Red Hat Enterprise Virtualization Manager (RHEV-M) before 3.1, when moving disks between storage domains, does not properly wipe-after-delete, which prevents disks from being securely deleted and mig… CWE-200
Information Exposure
CVE-2012-5516 2024-11-21 10:44 2013-01-5 Show GitHub Exploit DB Packet Storm
296682 - torproject tor The connection_edge_process_relay_cell function in or/relay.c in Tor before 0.2.3.25 maintains circuits even if an unexpected SENDME cell arrives, which might allow remote attackers to cause a denial… CWE-399
 Resource Management Errors
CVE-2012-5573 2024-11-21 10:44 2013-01-1 Show GitHub Exploit DB Packet Storm
296683 - cisco skinny_client_control_protocol_software
unified_ip_phone
unified_ip_phone_7906g
The kernel in Cisco Native Unix (CNU) on Cisco Unified IP Phone 7900 series devices (aka TNP phones) with software before 9.3.1-ES10 does not properly validate unspecified system calls, which allows … CWE-20
 Improper Input Validation 
CVE-2012-5445 2024-11-21 10:44 2012-12-28 Show GitHub Exploit DB Packet Storm
296684 - linux linux_kernel The main function in tools/hv/hv_kvp_daemon.c in hypervkvpd, as distributed in the Linux kernel before 3.8-rc1, allows local users to cause a denial of service (daemon exit) via a crafted application… NVD-CWE-noinfo
CVE-2012-5532 2024-11-21 10:44 2012-12-27 Show GitHub Exploit DB Packet Storm
296685 - openstack grizzly
folsom
OpenStack Compute (Nova) Folsom before 2012.2.2 and Grizzly, when using libvirt and LVM backed instances, does not properly clear physical volume (PV) content when reallocating for instances, which a… CWE-200
Information Exposure
CVE-2012-5625 2024-11-21 10:44 2012-12-27 Show GitHub Exploit DB Packet Storm
296686 - openstack keystone tools/sample_data.sh in OpenStack Keystone 2012.1.3, when access to Amazon Elastic Compute Cloud (Amazon EC2) is configured, uses world-readable permissions for /etc/keystone/ec2rc, which allows loca… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5483 2024-11-21 10:44 2012-12-27 Show GitHub Exploit DB Packet Storm
296687 - citrix xenapp The XML Service interface in Citrix XenApp 6.5 and 6.5 Feature Pack 1 allows remote attackers to execute arbitrary code via unspecified vectors. NVD-CWE-noinfo
CVE-2012-5161 2024-11-21 10:44 2012-12-27 Show GitHub Exploit DB Packet Storm
296688 - catalin_florian_radut zeropoint Cross-site scripting (XSS) vulnerability in the Zero Point module 6.x-1.x before 6.x-1.18 and 7.x-1.x before 7.x-1.4 for Drupal allows remote attackers to inject arbitrary web script or HTML via the … CWE-79
Cross-site Scripting
CVE-2012-5591 2024-11-21 10:44 2012-12-27 Show GitHub Exploit DB Packet Storm
296689 - scripthead webmail_plus SQL injection vulnerability in the Webmail Plus module for Drupal allows remote attackers to execute arbitrary SQL commands via unspecified vectors. CWE-89
SQL Injection
CVE-2012-5590 2024-11-21 10:44 2012-12-27 Show GitHub Exploit DB Packet Storm
296690 - netgenius multilink The MultiLink module 6.x-2.x before 6.x-2.7 and 7.x-2.x before 7.x-2.7 for Drupal does not properly check node permissions when generating an in-content link, which allows remote authenticated users … CWE-200
Information Exposure
CVE-2012-5589 2024-11-21 10:44 2012-12-27 Show GitHub Exploit DB Packet Storm