Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217141 5 警告 Plone Foundation - Plone の at_download.py におけるカスタムコンテンツタイプに格納されている任意の BLOB を読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5501 2014-10-2 16:48 2012-11-6 Show GitHub Exploit DB Packet Storm
217142 5 警告 Plone Foundation - Plone の python_scripts.py におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-5499 2014-10-2 16:48 2012-11-6 Show GitHub Exploit DB Packet Storm
217143 5 警告 Plone Foundation - Plone の queryCatalog.py におけるキャッシュを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5498 2014-10-2 16:47 2012-11-6 Show GitHub Exploit DB Packet Storm
217144 5 警告 Plone Foundation - Plone の membership_tool.py におけるユーザアカウント名を列挙される脆弱性 CWE-200
情報漏えい
CVE-2012-5497 2014-10-2 16:47 2012-11-6 Show GitHub Exploit DB Packet Storm
217145 5 警告 Plone Foundation - Plone の python_scripts.py における Python コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-5495 2014-10-2 16:46 2012-11-6 Show GitHub Exploit DB Packet Storm
217146 4.3 警告 Plone Foundation - Plone の python_scripts.py におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5494 2014-10-2 16:46 2012-11-6 Show GitHub Exploit DB Packet Storm
217147 8.5 危険 Plone Foundation - Plone の gtbn.py における Python のサンドボックスを回避される脆弱性 CWE-94
コード・インジェクション
CVE-2012-5493 2014-10-2 16:45 2012-11-6 Show GitHub Exploit DB Packet Storm
217148 5 警告 Plone Foundation - Plone の uid_catalog.py における隠しオブジェクトのメタデータを取得される脆弱性 CWE-200
情報漏えい
CVE-2012-5492 2014-10-2 16:44 2012-11-6 Show GitHub Exploit DB Packet Storm
217149 4.3 警告 Plone Foundation - Plone で使用される z3c.form におけるフォームフィールドのデフォルト値を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-5491 2014-10-2 16:44 2012-11-6 Show GitHub Exploit DB Packet Storm
217150 4.3 警告 Plone Foundation - Plone の kssdevel.py におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5490 2014-10-2 16:44 2012-11-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291231 - linux linux_kernel The caif_seqpkt_recvmsg function in net/caif/caif_socket.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information f… CWE-200
Information Exposure
CVE-2013-3227 2024-11-21 10:53 2013-04-22 Show GitHub Exploit DB Packet Storm
291232 - linux linux_kernel The sco_sock_recvmsg function in net/bluetooth/sco.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from ke… CWE-200
Information Exposure
CVE-2013-3226 2024-11-21 10:53 2013-04-22 Show GitHub Exploit DB Packet Storm
291233 - linux linux_kernel The rfcomm_sock_recvmsg function in net/bluetooth/rfcomm/sock.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive informat… CWE-200
Information Exposure
CVE-2013-3225 2024-11-21 10:53 2013-04-22 Show GitHub Exploit DB Packet Storm
291234 - linux linux_kernel The bt_sock_recvmsg function in net/bluetooth/af_bluetooth.c in the Linux kernel before 3.9-rc7 does not properly initialize a certain length variable, which allows local users to obtain sensitive in… CWE-200
Information Exposure
CVE-2013-3224 2024-11-21 10:53 2013-04-22 Show GitHub Exploit DB Packet Storm
291235 - linux linux_kernel The ax25_recvmsg function in net/ax25/af_ax25.c in the Linux kernel before 3.9-rc7 does not initialize a certain data structure, which allows local users to obtain sensitive information from kernel s… CWE-200
Information Exposure
CVE-2013-3223 2024-11-21 10:53 2013-04-22 Show GitHub Exploit DB Packet Storm
291236 - linux linux_kernel The vcc_recvmsg function in net/atm/common.c in the Linux kernel before 3.9-rc7 does not initialize a certain length variable, which allows local users to obtain sensitive information from kernel sta… CWE-200
Information Exposure
CVE-2013-3222 2024-11-21 10:53 2013-04-22 Show GitHub Exploit DB Packet Storm
291237 - rubyonrails rails
ruby_on_rails
The Active Record component in Ruby on Rails 2.3.x, 3.0.x, 3.1.x, and 3.2.x does not ensure that the declared data type of a database column is used during comparisons of input values to stored value… CWE-20
 Improper Input Validation 
CVE-2013-3221 2024-11-21 10:53 2013-04-22 Show GitHub Exploit DB Packet Storm
291238 - opera opera_browser Unspecified vulnerability in Opera before 12.15 has unknown impact and attack vectors, related to a "moderately severe issue." NVD-CWE-noinfo
CVE-2013-3211 2024-11-21 10:53 2013-04-19 Show GitHub Exploit DB Packet Storm
291239 - opera opera_browser Opera before 12.15 does not properly block top-level domains in Set-Cookie headers, which allows remote attackers to obtain sensitive information by leveraging control of a different web site in the … CWE-200
Information Exposure
CVE-2013-3210 2024-11-21 10:53 2013-04-19 Show GitHub Exploit DB Packet Storm
291240 6.1 MEDIUM
Network
belkin linksys_e4200_firmware Multiple cross-site scripting (XSS) vulnerabilities in Cisco Linksys E4200 router with firmware 1.0.05 build 7 allow remote attackers to inject arbitrary web script or HTML via the (1) log_type, (2) … CWE-79
Cross-site Scripting
CVE-2013-2679 2024-11-21 10:52 2020-02-19 Show GitHub Exploit DB Packet Storm