Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217101 4.3 警告 シスコシステムズ - Cisco Emergency Responder の UserServlet におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2114 2014-04-7 14:57 2014-04-3 Show GitHub Exploit DB Packet Storm
217102 4.3 警告 DELL EMC (旧 EMC Corporation) - RSA Adaptive Authentication におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0638 2014-04-7 14:19 2014-04-1 Show GitHub Exploit DB Packet Storm
217103 4.3 警告 DELL EMC (旧 EMC Corporation) - RSA Adaptive Authentication のバックオフィスケース管理アプリケーションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0637 2014-04-7 14:18 2014-04-1 Show GitHub Exploit DB Packet Storm
217104 9.3 危険 Core FTP - Core FTP におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-3930 2014-04-7 14:03 2013-08-14 Show GitHub Exploit DB Packet Storm
217105 10 危険 サムスン - Samsung Kies の SyncService.dll ActiveX コントロールの PrepareSync メソッドにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-6429 2014-04-7 13:51 2012-12-27 Show GitHub Exploit DB Packet Storm
217106 7.8 危険 Schneider Electric - 複数の Schneider Electric OPC Factory Server 製品におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-0789 2014-04-7 12:30 2014-03-25 Show GitHub Exploit DB Packet Storm
217107 7.5 危険 The Foreman - Foreman における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-5648 2014-04-7 12:21 2012-12-19 Show GitHub Exploit DB Packet Storm
217108 7.5 危険 Crowbar
Novell
- SUSE Cloud 3 で使用される Crowbar Framework 用 Barclamp におけるセキュリティグループの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0592 2014-04-7 12:01 2014-03-27 Show GitHub Exploit DB Packet Storm
217109 4.3 警告 Robert Abramski - WordPress 用 Uploader プラグインの views/notify.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2287 2014-04-7 11:52 2013-03-1 Show GitHub Exploit DB Packet Storm
217110 5 警告 Zingiri - WordPress 用 Zingiri Forum プラグインの forum.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-4920 2014-04-7 11:49 2012-09-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293221 - thinkleft submenu_tree Cross-site scripting (XSS) vulnerability in the Submenu Tree module before 6.x-1.5 for Drupal allows remote authenticated users to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2012-1651 2024-11-21 10:37 2012-09-20 Show GitHub Exploit DB Packet Storm
293222 - nathan_haug webform Multiple cross-site scripting (XSS) vulnerabilities in components/select.inc in the Webform module 6.x-3.x before 6.x-3.17 and 7.x-3.x before 7.x-3.17 for Drupal, when the "Select (or other)" module … CWE-79
Cross-site Scripting
CVE-2012-1660 2024-11-21 10:37 2012-09-19 Show GitHub Exploit DB Packet Storm
293223 - ariel_barreiro noderecommendation Cross-site scripting (XSS) vulnerability in the Node Recommendation module 6.x-1.x before 6.x-1.1 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web script … CWE-79
Cross-site Scripting
CVE-2012-1659 2024-11-21 10:37 2012-09-19 Show GitHub Exploit DB Packet Storm
293224 - fourkitchens ed_readmore Cross-site scripting (XSS) vulnerability in the Read More Link module 6.x-3.x before 6.x-3.1 for Drupal allows remote authenticated users with the access administration pages permission to inject arb… CWE-79
Cross-site Scripting
CVE-2012-1658 2024-11-21 10:37 2012-09-19 Show GitHub Exploit DB Packet Storm
293225 - fourkitchens block_class Cross-site scripting (XSS) vulnerability in block_class.module in the Block Class module before 7.x-1.1 for Drupal allows remote authenticated users with certain permissions to inject arbitrary web s… CWE-79
Cross-site Scripting
CVE-2012-1657 2024-11-21 10:37 2012-09-19 Show GitHub Exploit DB Packet Storm
293226 - wesjones multisite_search SQL injection vulnerability in the Multisite Search module 6.x-2.2 for Drupal allows remote authenticated users with certain permissions to execute arbitrary SQL commands via the Site table prefix fi… CWE-89
SQL Injection
CVE-2012-1656 2024-11-21 10:37 2012-09-19 Show GitHub Exploit DB Packet Storm
293227 - sven_decabooter uc_paydutchgroup_\/_wedeal_payment Unspecified vulnerability in the UC PayDutchGroup / WeDeal payment module 6.x-1.0 for Drupal allows remote authenticated users to obtain account credentials via unknown attack vectors. NVD-CWE-noinfo
CVE-2012-1655 2024-11-21 10:37 2012-09-19 Show GitHub Exploit DB Packet Storm
293228 - alex_barth data Multiple cross-site scripting (XSS) vulnerabilities in the Data module 6.x-1.x before 6.x-1.0 and 7.x-1.x before 7.x-1.0-alpha3 for Drupal allow remote authenticated users with the administer data ta… CWE-79
Cross-site Scripting
CVE-2012-1654 2024-11-21 10:37 2012-09-19 Show GitHub Exploit DB Packet Storm
293229 - microsoft visual_studio_team_foundation_server Cross-site scripting (XSS) vulnerability in Microsoft Visual Studio Team Foundation Server 2010 SP1 allows remote attackers to inject arbitrary web script or HTML via an unspecified parameter, aka "X… CWE-79
Cross-site Scripting
CVE-2012-1892 2024-11-21 10:37 2012-09-12 Show GitHub Exploit DB Packet Storm
293230 - danielb cool_aid Cool Aid module before 6.x-1.9 for Drupal does not enforce access restrictions, which allows remote authenticated users with the administer coolaid permission to modify arbitrary pages via unspecifie… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-1649 2024-11-21 10:37 2012-09-10 Show GitHub Exploit DB Packet Storm