Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217121 4.3 警告 FreeType Project - FreeType の _bdf_parse_glyphs 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-5669 2014-05-14 18:43 2012-12-20 Show GitHub Exploit DB Packet Storm
217122 4.3 警告 FreeType Project - FreeType におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-5668 2014-05-14 18:43 2012-12-20 Show GitHub Exploit DB Packet Storm
217123 4.6 警告 サイバートラスト株式会社
XScreenSaver project
レッドハット
- XScreenSaver のクラッシュによりスクリーンロックが解除される問題 CWE-287
不適切な認証
CVE-2007-1859 2014-05-14 18:41 2007-05-3 Show GitHub Exploit DB Packet Storm
217124 5 警告 VMware - VMware SpringSource Grails におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-1833 2014-05-14 18:40 2012-08-13 Show GitHub Exploit DB Packet Storm
217125 5 警告 Secure Locate - slocate における非公開ファイルの名前を取得される脆弱性 - CVE-2007-0227 2014-05-14 18:39 2007-01-12 Show GitHub Exploit DB Packet Storm
217126 5 警告 Samba Project - Samba におけるアクセス権を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2013-4496 2014-05-14 18:36 2013-06-12 Show GitHub Exploit DB Packet Storm
217127 4.3 警告 アップル - Apple Mac OS X の curl におけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-1263 2014-05-14 17:55 2014-02-25 Show GitHub Exploit DB Packet Storm
217128 5 警告 Ruby on Rails project - Ruby on Rails の Action View の actionpack/lib/action_view/template/text.rb におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-0082 2014-05-14 17:53 2014-02-18 Show GitHub Exploit DB Packet Storm
217129 9.3 危険 Wireshark - Wireshark の MPEG パーサの wiretap/mpeg.c 内の mpeg_read 関数におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-2299 2014-05-14 17:00 2014-03-7 Show GitHub Exploit DB Packet Storm
217130 8.3 危険 横河電機株式会社 - YOKOGAWA CENTUM CS 3000 の BKBCopyD.exe におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-0784 2014-05-14 16:54 2014-03-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293641 - bryce_hamrick janrain_capture Open redirect vulnerability in the Janrain Capture module 6.x-1.0 and 7.x-1.0 for Drupal, when synchronizing user data, allows remote attackers to redirect users to arbitrary web sites and conduct ph… CWE-20
 Improper Input Validation 
CVE-2012-2727 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm
293642 - alberto_trujillo_gonzalez protest Cross-site scripting (XSS) vulnerability in the Protest module 6.x-1.x before 6.x-1.2 or 7.x-1.x before 7.x-1.2 for Drupal allows remote authenticated users with the "administer protest" permission t… CWE-79
Cross-site Scripting
CVE-2012-2726 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm
293643 - authoring_html 6.x-1.0 classes/Filter/WhitelistedExternalFilter.php in the Authoring HTML module 6.x-1.x before 6.x-1.1 for Drupal does not properly validate sources with the host white list, which allows remote authentica… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2725 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm
293644 - blaine_lang maestro Cross-site scripting (XSS) vulnerability in the Maestro module 7.x-1.x before 7.x-1.2 for Drupal allows remote authenticated users with maestro admin permissions to inject arbitrary web script or HTM… CWE-79
Cross-site Scripting
CVE-2012-2723 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm
293645 - scott_reynen node_embed The node selection interface in the WYSIWYG editor (CKEditor) in the Node Embed module 6.x-1.x before 6.x-1.5 and 7.x-1.x before 7.x-1.0 for Drupal does not properly check permissions, which allows r… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2722 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm
293646 - moshe_weitzman organic_groups The default views in the Organic Groups (OG) module 6.x-2.x before 6.x-2.4 for Drupal do not properly check permissions when all users have the "access content" permission removed, which allows remot… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2721 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm
293647 - adam_ross tokenauth The Token Authentication (tokenauth) module 6.x-1.x before 6.x-1.7 for Drupal does not properly revert user sessions, which might allow remote attackers to perform requests with extra privileges. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2720 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm
293648 - blaine_lang filedepot The filedepot module 6.x-1.x before 6.x-1.3 for Drupal, when accessed using multiple different browsers from the same IP address, causes Internet Explorer sessions to "switch users" when uploading a … CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2719 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm
293649 - jason_moore amadou Cross-site scripting (XSS) vulnerability in the themes_links function in template.php in the Amadou theme module 6.x-1.x before 6.x-1.3 for Drupal allows remote attackers to inject arbitrary web scri… CWE-79
Cross-site Scripting
CVE-2012-2715 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm
293650 - browserid_project browserid Cross-site request forgery (CSRF) vulnerability in the BrowserID (Mozilla Persona) module 7.x-1.x before 7.x-1.3 for Drupal allows remote attackers to hijack the authentication of arbitrary users for… CWE-352
 Origin Validation Error
CVE-2012-2713 2024-11-21 10:39 2012-06-27 Show GitHub Exploit DB Packet Storm