Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 7, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217071 4.3 警告 Moxiecode Systems AB - TinyMCE の bbcode プラグインにおけるクロスサイトスクリプティング攻撃を実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4230 2014-04-28 15:49 2012-08-9 Show GitHub Exploit DB Packet Storm
217072 9.3 危険 3S-Smart Software Solutions
SoftMotion3D
Festo
- Festo Modular controllers CECX-X-C1 および CECX-X-M1 における設定を変更される脆弱性 CWE-287
不適切な認証
CVE-2014-0769 2014-04-28 15:40 2014-04-24 Show GitHub Exploit DB Packet Storm
217073 9.3 危険 3S-Smart Software Solutions
SoftMotion3D
Festo
- Festo Modular controllers CECX-X-C1 および CECX-X-M1 における任意のコードを実行される脆弱性 CWE-287
不適切な認証
CVE-2014-0760 2014-04-28 15:40 2014-04-24 Show GitHub Exploit DB Packet Storm
217074 4.3 警告 Open-Xchange - Open-Xchange AppSuite におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2393 2014-04-28 15:07 2014-04-8 Show GitHub Exploit DB Packet Storm
217075 4.3 警告 Open-Xchange - Open-Xchange AppSuite の電子メール自動設定機能における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-2392 2014-04-28 15:06 2014-04-8 Show GitHub Exploit DB Packet Storm
217076 4.3 警告 Open-Xchange - Open-Xchange AppSuite のパスワードリカバリサービスにおける潜在的に有用なパスワードパターンの情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-2391 2014-04-28 15:06 2014-04-8 Show GitHub Exploit DB Packet Storm
217077 5.5 警告 Xen プロジェクト - Xen におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-2915 2014-04-28 14:56 2014-04-22 Show GitHub Exploit DB Packet Storm
217078 7.5 危険 MODX - MODX Revolution における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-2736 2014-04-28 14:43 2014-04-4 Show GitHub Exploit DB Packet Storm
217079 7.5 危険 レッドハット - Red Hat OpenShift Enterprise の openshift-origin-broker における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2014-0188 2014-04-28 14:36 2014-04-23 Show GitHub Exploit DB Packet Storm
217080 5 警告 Sixnet - Sixnet SixView Manager におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-2976 2014-04-28 14:24 2014-04-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 7, 2026, 4:22 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294681 - adobe shockwave_player Heap-based buffer overflow in Adobe Shockwave Player before 11.6.4.634 allows attackers to execute arbitrary code via unspecified vectors. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-0758 2024-11-21 10:35 2012-02-15 Show GitHub Exploit DB Packet Storm
294682 - adobe shockwave_player The Shockwave 3D Asset component in Adobe Shockwave Player before 11.6.4.634 allows attackers to execute arbitrary code or cause a denial of service (memory corruption) via unspecified vectors, a dif… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-0757 2024-11-21 10:35 2012-02-15 Show GitHub Exploit DB Packet Storm
294683 - php php Memory leak in the timezone functionality in PHP before 5.3.9 allows remote attackers to cause a denial of service (memory consumption) by triggering many strtotime function calls, which are not prop… CWE-399
 Resource Management Errors
CVE-2012-0789 2024-11-21 10:35 2012-02-15 Show GitHub Exploit DB Packet Storm
294684 - php php The PDORow implementation in PHP before 5.3.9 does not properly interact with the session feature, which allows remote attackers to cause a denial of service (application crash) via a crafted applica… CWE-20
 Improper Input Validation 
CVE-2012-0788 2024-11-21 10:35 2012-02-15 Show GitHub Exploit DB Packet Storm
294685 - mibew mibew_messenger Multiple cross-site request forgery (CSRF) vulnerabilities in Mibew Messenger 1.6.4 and earlier allow remote attackers to hijack the authentication of operators for requests that insert cross-site sc… CWE-352
 Origin Validation Error
CVE-2012-0829 2024-11-21 10:35 2012-02-14 Show GitHub Exploit DB Packet Storm
294686 - phpldapadmin_project phpldapadmin Cross-site scripting (XSS) vulnerability in lib/QueryRender.php in phpLDAPadmin 1.2.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the base parameter in a query_engi… CWE-79
Cross-site Scripting
CVE-2012-0834 2024-11-21 10:35 2012-02-11 Show GitHub Exploit DB Packet Storm
294687 - mozilla firefox
thunderbird
seamonkey
Use-after-free vulnerability in Mozilla Firefox 10.x before 10.0.1, Thunderbird 10.x before 10.0.1, and SeaMonkey 2.7 allows remote attackers to cause a denial of service (application crash) or possi… CWE-399
 Resource Management Errors
CVE-2012-0452 2024-11-21 10:35 2012-02-11 Show GitHub Exploit DB Packet Storm
294688 - php php PHP before 5.3.10 does not properly perform a temporary change to the magic_quotes_gpc directive during the importing of environment variables, which makes it easier for remote attackers to conduct S… CWE-20
 Improper Input Validation 
CVE-2012-0831 2024-11-21 10:35 2012-02-11 Show GitHub Exploit DB Packet Storm
294689 - apache portable_runtime tables/apr_hash.c in the Apache Portable Runtime (APR) library through 1.4.5 computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependen… CWE-20
 Improper Input Validation 
CVE-2012-0840 2024-11-21 10:35 2012-02-11 Show GitHub Exploit DB Packet Storm
294690 - inria ocaml OCaml 3.12.1 and earlier computes hash values without restricting the ability to trigger hash collisions predictably, which allows context-dependent attackers to cause a denial of service (CPU consum… CWE-20
 Improper Input Validation 
CVE-2012-0839 2024-11-21 10:35 2012-02-9 Show GitHub Exploit DB Packet Storm