Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 13, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216811 4.7 警告 Linux - Linux Kernel の ALSA 制御の実装の sound/core/control.c におけるカーネルメモリから重要な情報を取得される脆弱性 CWE-362
競合状態
CVE-2014-4652 2014-07-7 16:48 2014-06-26 Show GitHub Exploit DB Packet Storm
216812 5 警告 Yann Collet - Yann Collet LZ4 におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2014-4715 2014-07-7 16:47 2014-07-2 Show GitHub Exploit DB Packet Storm
216813 5 警告 Linux
Yann Collet
- 32-bit プラットフォーム上で稼動する Yann Collet LZ4 および Linux Kernel で使用される LZ4 アルゴリズムの実装における整数オーバーフローの脆弱性 CWE-20
不適切な入力確認
CVE-2014-4611 2014-07-7 16:46 2014-06-26 Show GitHub Exploit DB Packet Storm
216814 2.6 注意 Lamp Design - Lamp Design Storesprite の templates/defaultheader.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3737 2014-07-7 15:05 2014-06-19 Show GitHub Exploit DB Packet Storm
216815 4.3 警告 Webklipper Technologies - WordPress 用 WebEngage プラグインの resize.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4574 2014-07-4 18:26 2014-05-28 Show GitHub Exploit DB Packet Storm
216816 4.3 警告 Walk Score - WordPress 用 Walk Score プラグインの frame-maker.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4573 2014-07-4 18:26 2014-06-12 Show GitHub Exploit DB Packet Storm
216817 4.3 警告 Votecount for Balatarin project - WordPress 用 Votecount for Balatarin プラグインの bvc.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4572 2014-07-4 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
216818 4.3 警告 Mohamed Mrassi - WordPress 用 WordPress Social Login プラグインの services/diagnostics.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4576 2014-07-4 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
216819 4.3 警告 VideoWhisper.com - WordPress 用 VideoWhisper Video Presentation プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4570 2014-07-4 18:26 2014-06-12 Show GitHub Exploit DB Packet Storm
216820 4.3 警告 VideoWhisper.com - WordPress 用 Video Posts Webcam Recorder プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4568 2014-07-4 18:26 2014-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293711 - rsgallery2 com_rsgallery2 SQL injection vulnerability in the RSGallery2 (com_rsgallery2) component before 2.3.0 for Joomla! 1.5.x, and before 3.2.0 for Joomla! 2.5.x, allows remote attackers to execute arbitrary SQL commands … CWE-89
SQL Injection
CVE-2012-3554 2024-11-21 10:41 2012-08-10 Show GitHub Exploit DB Packet Storm
293712 - puppetlabs
puppet
debian
canonical
suse
opensuse
puppet
debian_linux
ubuntu_linux
linux_enterprise_server
linux_enterprise_desktop
opensuse
puppet_enterprise
lib/puppet/ssl/certificate_authority.rb in Puppet before 2.6.17 and 2.7.x before 2.7.18, and Puppet Enterprise before 2.5.2, does not properly restrict the characters in the Common Name field of a Ce… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3867 2024-11-21 10:41 2012-08-7 Show GitHub Exploit DB Packet Storm
293713 - puppetlabs
puppet
puppet
puppet_enterprise
lib/puppet/defaults.rb in Puppet 2.7.x before 2.7.18, and Puppet Enterprise before 2.5.2, uses 0644 permissions for last_run_report.yaml, which allows local users to obtain sensitive configuration in… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3866 2024-11-21 10:41 2012-08-7 Show GitHub Exploit DB Packet Storm
293714 - puppetlabs
puppet
puppet
puppet_enterprise
Directory traversal vulnerability in lib/puppet/reports/store.rb in Puppet before 2.6.17 and 2.7.x before 2.7.18, and Puppet Enterprise before 2.5.2, when Delete is enabled in auth.conf, allows remot… CWE-22
Path Traversal
CVE-2012-3865 2024-11-21 10:41 2012-08-7 Show GitHub Exploit DB Packet Storm
293715 - puppetlabs
puppet
puppet
puppet_enterprise
Puppet before 2.6.17 and 2.7.x before 2.7.18, and Puppet Enterprise before 2.5.2, allows remote authenticated users to read arbitrary files on the puppet master server by leveraging an arbitrary user… CWE-200
Information Exposure
CVE-2012-3864 2024-11-21 10:41 2012-08-7 Show GitHub Exploit DB Packet Storm
293716 - bitcoin bitcoin_core Unspecified vulnerability in bitcoind and Bitcoin-Qt before 0.4.7rc3, 0.5.x before 0.5.6rc3, 0.6.0.x before 0.6.0.9rc1, and 0.6.x before 0.6.3rc1 allows remote attackers to cause a denial of service … NVD-CWE-noinfo
CVE-2012-3789 2024-11-21 10:41 2012-08-7 Show GitHub Exploit DB Packet Storm
293717 - sonicwall scrutinizer The MySQL component in Plixer Scrutinizer (aka Dell SonicWALL Scrutinizer) 9.0.1.19899 and earlier has a default password of admin for the (1) scrutinizer and (2) scrutremote accounts, which allows r… CWE-89
SQL Injection
CVE-2012-3951 2024-11-21 10:41 2012-07-31 Show GitHub Exploit DB Packet Storm
293718 - sonicwall scrutinizer Multiple cross-site scripting (XSS) vulnerabilities in the web console in Plixer Scrutinizer (aka Dell SonicWALL Scrutinizer) before 9.5.0 allow remote attackers to inject arbitrary web script or HTM… CWE-79
Cross-site Scripting
CVE-2012-3848 2024-11-21 10:41 2012-07-31 Show GitHub Exploit DB Packet Storm
293719 - airdroid airdroid The login implementation in AirDroid 1.0.4 beta allows remote attackers to bypass a multiple-login protection mechanism by modifying a pass value within JSON data. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3888 2024-11-21 10:41 2012-07-27 Show GitHub Exploit DB Packet Storm
293720 - airdroid airdroid AirDroid before 1.0.7 beta uses a cleartext base64 format for data transfer that is documented as an "Encrypted Transmission" feature, which allows remote attackers to obtain sensitive information by… CWE-310
Cryptographic Issues
CVE-2012-3887 2024-11-21 10:41 2012-07-27 Show GitHub Exploit DB Packet Storm