Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216611 4.3 警告 Your Text Manager project - WordPress 用 Your Text Manager プラグインの settings/pwsettings.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4604 2014-07-7 18:26 2014-05-28 Show GitHub Exploit DB Packet Storm
216612 4.3 警告 WP Plugin Manager project - WordPress 用 WP Plugin Manager プラグインの wp-plugins-net/index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4593 2014-07-7 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
216613 4.3 警告 beamnote.com - WordPress 用 WP Microblogs プラグインの get.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4590 2014-07-7 18:26 2014-06-12 Show GitHub Exploit DB Packet Storm
216614 4.3 警告 Appointments Scheduler project - WordPress 用 Appointments Scheduler プラグインの js/test.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4579 2014-07-7 18:26 2014-06-12 Show GitHub Exploit DB Packet Storm
216615 4.3 警告 WP App Maker - WordPress 用 WP App Maker プラグインの asset-studio/icons-launcher.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4578 2014-07-7 18:26 2014-06-4 Show GitHub Exploit DB Packet Storm
216616 5 警告 Linux - Linux Kernel の net/sctp/associola.c 内の sctp_association_free 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-4667 2014-07-7 16:53 2014-06-26 Show GitHub Exploit DB Packet Storm
216617 4.9 警告 Linux - Linux Kernel の ALSA 制御の実装の sound/core/control.c 内の snd_ctl_elem_add 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2014-4655 2014-07-7 16:51 2014-06-26 Show GitHub Exploit DB Packet Storm
216618 4.9 警告 Linux - Linux Kernel の ALSA 制御の実装の sound/core/control.c 内の snd_ctl_elem_add 関数におけるカーネル制御を削除される脆弱性 CWE-Other
その他
CVE-2014-4654 2014-07-7 16:50 2014-06-26 Show GitHub Exploit DB Packet Storm
216619 6.6 警告 Linux - Linux Kernel の ALSA 制御の実装の sound/core/control.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2014-4653 2014-07-7 16:49 2014-06-26 Show GitHub Exploit DB Packet Storm
216620 4.7 警告 Linux - Linux Kernel の ALSA 制御の実装の sound/core/control.c におけるカーネルメモリから重要な情報を取得される脆弱性 CWE-362
競合状態
CVE-2014-4652 2014-07-7 16:48 2014-06-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293911 - bradfordnetworks network_sentry_appliance_software
network_sentry_appliance
The agent in Bradford Network Sentry before 5.3.3 does not require authentication for messages, which allows remote attackers to trigger the display of arbitrary text on a workstation via a crafted p… CWE-287
Improper Authentication
CVE-2012-2606 2024-11-21 10:39 2012-06-14 Show GitHub Exploit DB Packet Storm
293912 - bradfordnetworks network_sentry_appliance_software
network_sentry_appliance
Multiple cross-site request forgery (CSRF) vulnerabilities in the administrative interface in Bradford Network Sentry before 5.3.3 allow remote attackers to hijack the authentication of administrator… CWE-352
 Origin Validation Error
CVE-2012-2605 2024-11-21 10:39 2012-06-14 Show GitHub Exploit DB Packet Storm
293913 - bradfordnetworks network_sentry_appliance_software
network_sentry_appliance
Multiple cross-site scripting (XSS) vulnerabilities in GuestAccess.jsp in the Guest/Contractor access component in the administrative interface in Bradford Network Sentry before 5.3.3 allow remote au… CWE-79
Cross-site Scripting
CVE-2012-2604 2024-11-21 10:39 2012-06-14 Show GitHub Exploit DB Packet Storm
293914 - linux linux_kernel Memory leak in mm/hugetlb.c in the Linux kernel before 3.4.2 allows local users to cause a denial of service (memory consumption or system crash) via invalid MAP_HUGETLB mmap operations. CWE-399
 Resource Management Errors
CVE-2012-2390 2024-11-21 10:39 2012-06-13 Show GitHub Exploit DB Packet Storm
293915 - bloxx web_filtering Bloxx Web Filtering before 5.0.14 does not properly interpret X-Forwarded-For headers during access-control and logging operations for HTTPS connection attempts, which allows remote attackers to bypa… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2566 2024-11-21 10:39 2012-06-9 Show GitHub Exploit DB Packet Storm
293916 - bloxx web_filtering Bloxx Web Filtering before 5.0.14 does not use a salt during calculation of a password hash, which makes it easier for context-dependent attackers to determine cleartext passwords via a rainbow-table… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2565 2024-11-21 10:39 2012-06-9 Show GitHub Exploit DB Packet Storm
293917 - bloxx web_filtering Multiple cross-site request forgery (CSRF) vulnerabilities in the administrative interface in Bloxx Web Filtering before 5.0.14 allow remote attackers to hijack the authentication of administrators f… CWE-352
 Origin Validation Error
CVE-2012-2564 2024-11-21 10:39 2012-06-9 Show GitHub Exploit DB Packet Storm
293918 - bloxx web_filtering Multiple cross-site scripting (XSS) vulnerabilities in Bloxx Web Filtering before 5.0.14 allow (1) remote attackers to inject arbitrary web script or HTML via web traffic that is examined within the … CWE-79
Cross-site Scripting
CVE-2012-2563 2024-11-21 10:39 2012-06-9 Show GitHub Exploit DB Packet Storm
293919 - siemens wincc Buffer overflow in the DiagAgent web server in Siemens WinCC 7.0 SP3 through Update 2 allows remote attackers to cause a denial of service (agent outage) via crafted input. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-2598 2024-11-21 10:39 2012-06-9 Show GitHub Exploit DB Packet Storm
293920 - siemens wincc Multiple directory traversal vulnerabilities in Siemens WinCC 7.0 SP3 before Update 2 allow remote authenticated users to read arbitrary files via a crafted parameter in a URL. CWE-22
Path Traversal
CVE-2012-2597 2024-11-21 10:39 2012-06-9 Show GitHub Exploit DB Packet Storm