Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216871 4.3 警告 RubyGems - rubygems におけるインストール中に gem を変更される脆弱性 CWE-310
暗号の問題
CVE-2012-2126 2014-07-28 17:02 2012-04-19 Show GitHub Exploit DB Packet Storm
216872 5.8 警告 RubyGems - rubygems におけるインストール中に gem を監視または変更される脆弱性 CWE-Other
その他
CVE-2012-2125 2014-07-28 17:02 2012-04-19 Show GitHub Exploit DB Packet Storm
216873 4.6 警告 X.Org Foundation - X.Org xf86-video-intel の tools/backlight_helper.c におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-4910 2014-07-28 15:39 2014-07-4 Show GitHub Exploit DB Packet Storm
216874 4.3 警告 Honeywell International Inc. - Honeywell FALCON XLWeb Linux コントローラおよび FALCON XLWeb XLWebExe コントローラにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3110 2014-07-28 13:48 2014-07-22 Show GitHub Exploit DB Packet Storm
216875 7.6 危険 Honeywell International Inc. - Honeywell FALCON XLWeb Linux コントローラおよび FALCON XLWeb XLWebExe コントローラにおける認証を回避される脆弱性 CWE-Other
その他
CVE-2014-2717 2014-07-28 13:47 2014-07-22 Show GitHub Exploit DB Packet Storm
216876 7.5 危険 Ilya Birman - E2 における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-4736 2014-07-28 12:27 2014-07-3 Show GitHub Exploit DB Packet Storm
216877 6.4 警告 Huawei - Huawei E355 にクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2968 2014-07-25 16:16 2014-07-21 Show GitHub Exploit DB Packet Storm
216878 - - BulletProof Software - ** 削除 ** BulletProof FTP Client 2010 にスタックバッファオーバーフローの脆弱性 - CVE-2014-2973 2014-07-25 15:48 2014-07-24 Show GitHub Exploit DB Packet Storm
216879 6.1 警告 シスコシステムズ - Cisco ASR 9000 デバイス上で稼動する Cisco IOS XR におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-3322 2014-07-25 14:49 2014-07-23 Show GitHub Exploit DB Packet Storm
216880 6.9 警告 Canonical - acpi-support の policy-funcs の power policy 関数における権限を取得される脆弱性 CWE-362
競合状態
CVE-2014-1419 2014-07-25 14:48 2014-07-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292071 9.8 CRITICAL
Network
linux linux_kernel In the Linux kernel before 3.4, a buffer overflow occurs in drivers/net/wireless/iwlwifi/iwl-agn-sta.c, which will cause at least memory corruption. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-6712 2024-11-21 10:46 2019-07-28 Show GitHub Exploit DB Packet Storm
292072 7.8 HIGH
Local
gnu
redhat
bash
enterprise_linux
A heap-based buffer overflow exists in GNU Bash before 4.3 when wide characters, not supported by the current locale set in the LC_CTYPE environment variable, are printed through the echo built-in fu… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-6711 2024-11-21 10:46 2019-06-19 Show GitHub Exploit DB Packet Storm
292073 9.8 CRITICAL
Network
page_flip_book_project page_flip_book Directory traversal vulnerability in pageflipbook.php script from index.php in Page Flip Book plugin for WordPress (wppageflip) allows remote attackers to include and execute arbitrary local files vi… CWE-22
Path Traversal
CVE-2012-6652 2024-11-21 10:46 2019-05-13 Show GitHub Exploit DB Packet Storm
292074 9.8 CRITICAL
Network
extplorer extplorer ext_find_user in eXtplorer through 2.1.2 allows remote attackers to bypass authentication via a password[]= (aka an empty array) in an action=login request to index.php. CWE-287
Improper Authentication
CVE-2012-6710 2024-11-21 10:46 2018-10-8 Show GitHub Exploit DB Packet Storm
292075 7.1 HIGH
Local
fedoraproject fedora The fedora-business-cards package before 1-0.1.beta1.fc17 on Fedora 17 and before 1-0.1.beta1.fc18 on Fedora 18 allows local users to cause a denial of service or write to arbitrary files via a symli… CWE-59
Link Following
CVE-2013-0159 2024-11-21 10:46 2018-05-2 Show GitHub Exploit DB Packet Storm
292076 5.9 MEDIUM
Network
elinks
twibright
elinks
links
ELinks 0.12 and Twibright Links 2.3 have Missing SSL Certificate Validation. CWE-295
Improper Certificate Validation 
CVE-2012-6709 2024-11-21 10:46 2018-02-24 Show GitHub Exploit DB Packet Storm
292077 6.1 MEDIUM
Network
fortinet fortidb Multiple cross-site scripting (XSS) vulnerabilities in Java number format exception handling in FortiGate FortiDB before 4.4.2 allow remote attackers to inject arbitrary web script or HTML via the co… CWE-79
Cross-site Scripting
CVE-2012-6347 2024-11-21 10:46 2018-02-10 Show GitHub Exploit DB Packet Storm
292078 6.1 MEDIUM
Network
fortinet fortiweb Multiple cross-site scripting (XSS) vulnerabilities in FortiWeb before 4.4.4 allow remote attackers to inject arbitrary web script or HTML via the (1) redir or (2) mkey parameter to waf/pcre_expressi… CWE-79
Cross-site Scripting
CVE-2012-6346 2024-11-21 10:46 2018-02-10 Show GitHub Exploit DB Packet Storm
292079 6.1 MEDIUM
Network
jquery jquery jQuery before 1.9.0 is vulnerable to Cross-site Scripting (XSS) attacks. The jQuery(strInput) function does not differentiate selectors from HTML in a reliable fashion. In vulnerable versions, jQuery… CWE-79
Cross-site Scripting
CVE-2012-6708 2024-11-21 10:46 2018-01-19 Show GitHub Exploit DB Packet Storm
292080 6.1 MEDIUM
Network
dragonbyte-tech vbdownloads_module Cross-site scripting (XSS) vulnerability in downloads/actions/editdownload.php in the DragonByte Technologies vBDownloads module 1.3.2 and earlier for vBulletin allows remote attackers to inject arbi… CWE-79
Cross-site Scripting
CVE-2012-6682 2024-11-21 10:46 2018-01-12 Show GitHub Exploit DB Packet Storm