Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216941 2.6 注意 Webmin Project - Webmin におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3886 2014-07-23 10:44 2014-06-20 Show GitHub Exploit DB Packet Storm
216942 3.5 注意 Webmin Project - Webmin におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3885 2014-07-23 10:44 2014-06-20 Show GitHub Exploit DB Packet Storm
216943 4.3 警告 Webmin Project - Usermin におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3884 2014-07-23 10:43 2014-06-20 Show GitHub Exploit DB Packet Storm
216944 7.5 危険 Cogent Real-Time Systems Inc. - Cogent Real-Time Systems Cogent DataHub の GetPermissions.asp における任意のコマンドを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-3789 2014-07-22 18:39 2014-04-29 Show GitHub Exploit DB Packet Storm
216945 5 警告 drunomics - Drupal 用 Entity API モジュールにおける制限されたエンティティを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-7391 2014-07-22 18:36 2013-08-14 Show GitHub Exploit DB Packet Storm
216946 4 警告 drunomics - Drupal 用 Entity API モジュールにおけるコメントを読まれる脆弱性 CWE-200
情報漏えい
CVE-2013-4273 2014-07-22 18:36 2013-08-14 Show GitHub Exploit DB Packet Storm
216947 6.3 警告 IBM - IBM InfoSphere Master Data Management - Collaborative Edition および InfoSphere Master Data Management Server for Product Information Management の GDS コンポーネントにおける任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2014-3064 2014-07-22 17:35 2014-06-24 Show GitHub Exploit DB Packet Storm
216948 6.5 警告 IBM - IBM Storwize V7000 Unified における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-3043 2014-07-22 17:34 2014-07-15 Show GitHub Exploit DB Packet Storm
216949 3.5 注意 IBM - IBM InfoSphere Master Data Management - Collaborative Edition および InfoSphere Master Data Management Server for Product Information Management の GDS コンポーネントにおけるリンクを挿入される脆弱性 CWE-20
不適切な入力確認
CVE-2014-0970 2014-07-22 17:34 2014-06-24 Show GitHub Exploit DB Packet Storm
216950 3.5 注意 IBM - IBM InfoSphere Master Data Management - Collaborative Edition および InfoSphere Master Data Management Server for Product Information Management の GDS コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0968 2014-07-22 17:33 2014-06-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296281 - qualcomm yagattatalk_messenger Unspecified vulnerability in the YagattaTalk Messenger (com.iskoot.yagatta.yagattatalk) application 1.00.01.08 for Android has unknown impact and attack vectors. NVD-CWE-noinfo
CVE-2012-1475 2024-11-21 10:37 2012-03-14 Show GitHub Exploit DB Packet Storm
296282 - sdo youni_sms Unspecified vulnerability in the Youni SMS (com.snda.youni) application 2.1.0c and 2.1.0d for Android has unknown impact and attack vectors. NVD-CWE-noinfo
CVE-2012-1474 2024-11-21 10:37 2012-03-14 Show GitHub Exploit DB Packet Storm
296283 - gnu gnutls Double free vulnerability in libgnutls in GnuTLS before 3.0.14 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted certifi… CWE-399
 Resource Management Errors
CVE-2012-1663 2024-11-21 10:37 2012-03-14 Show GitHub Exploit DB Packet Storm
296284 - vmware vcenter_chargeback_manager VMware vCenter Chargeback Manager (aka CBM) before 2.0.1 does not properly handle XML API requests, which allows remote attackers to read arbitrary files or cause a denial of service via unspecified … CWE-20
 Improper Input Validation 
CVE-2012-1472 2024-11-21 10:37 2012-03-13 Show GitHub Exploit DB Packet Storm
296285 - yassl cyassl yaSSL CyaSSL before 2.0.8 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted X.509 certificate. CWE-399
 Resource Management Errors
CVE-2012-1558 2024-11-21 10:37 2012-03-13 Show GitHub Exploit DB Packet Storm
296286 - parallels parallels_plesk_panel SQL injection vulnerability in admin/plib/api-rpc/Agent.php in Parallels Plesk Panel 7.x and 8.x before 8.6 MU#2, 9.x before 9.5 MU#11, 10.0.x before MU#13, 10.1.x before MU#22, 10.2.x before MU#16, … CWE-89
SQL Injection
CVE-2012-1557 2024-11-21 10:37 2012-03-13 Show GitHub Exploit DB Packet Storm
296287 - microsoft ie
internet_explorer
Microsoft Internet Explorer 6 through 9, and 10 Consumer Preview, allows remote attackers to bypass Protected Mode or cause a denial of service (memory corruption) by leveraging access to a Low integ… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-1545 2024-11-21 10:37 2012-03-9 Show GitHub Exploit DB Packet Storm
296288 - movabletype movable_type_open_source
movable_type_enterprise
movable_type_advanced
movable_type_pro
The default configuration of Movable Type before 4.38, 5.0x before 5.07, and 5.1x before 5.13 supports the "mt:Include file=" attribute, which allows remote authenticated users to conduct directory t… CWE-22
Path Traversal
CVE-2012-1497 2024-11-21 10:37 2012-03-3 Show GitHub Exploit DB Packet Storm
296289 9.8 CRITICAL
Network
404like_project 404like A vulnerability was found in 404like Plugin up to 1.0.2 on WordPress. It has been classified as critical. Affected is the function checkPage of the file 404Like.php. The manipulation of the argument … - CVE-2012-10009 2024-11-21 10:36 2023-03-21 Show GitHub Exploit DB Packet Storm
296290 8.8 HIGH
Network
bestwebsoft portfolio A vulnerability was found in BestWebSoft Portfolio Plugin up to 2.04 on WordPress. It has been classified as problematic. This affects an unknown part. The manipulation leads to cross-site request fo… - CVE-2012-10017 2024-11-21 10:36 2023-12-26 Show GitHub Exploit DB Packet Storm