Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217161 6.8 警告 GitLab.org - GitLab における任意のユーザになりすまされる脆弱性 CWE-287
不適切な認証
CVE-2013-4580 2014-05-13 14:08 2013-11-14 Show GitHub Exploit DB Packet Storm
217162 2.1 注意 GNU Project - GNU GRUB 用の特定の Debian パッチにおけるパスワードハッシュを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4577 2014-05-13 13:53 2013-11-14 Show GitHub Exploit DB Packet Storm
217163 4.3 警告 MediaWiki - MediaWiki 用 TimeMediaHandler 拡張機能におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4574 2014-05-13 12:21 2013-11-6 Show GitHub Exploit DB Packet Storm
217164 7.5 危険 MediaWiki - MediaWiki 用 Scribuntu 拡張機能の php-luasandbox におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-4571 2014-05-13 12:20 2013-06-17 Show GitHub Exploit DB Packet Storm
217165 5 警告 MediaWiki - MediaWiki 用 Scribuntu 拡張機能の php-luasandbox におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2013-4570 2014-05-13 12:20 2013-09-24 Show GitHub Exploit DB Packet Storm
217166 4.3 警告 IBM - IBM Operational Decision Manager の Rule Execution Server における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-0946 2014-05-12 18:42 2014-04-30 Show GitHub Exploit DB Packet Storm
217167 3.5 注意 IBM - IBM Operational Decision Manager の Rule Execution Server におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0945 2014-05-12 18:38 2014-04-30 Show GitHub Exploit DB Packet Storm
217168 6 警告 IBM - IBM Operational Decision Manager の Rule Execution Server の Rule Execution Server コンソールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-0944 2014-05-12 18:33 2014-04-30 Show GitHub Exploit DB Packet Storm
217169 4.3 警告 IBM - IBM iNotes および Domino におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0913 2014-05-12 18:20 2014-05-7 Show GitHub Exploit DB Packet Storm
217170 5 警告 ISC, Inc. - ISC BIND の named のプリフェッチの実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-3214 2014-05-12 18:11 2014-05-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292261 - opencryptoki_project opencryptoki openCryptoki 2.4.1 allows local users to create or set world-writable permissions on arbitrary files via a symlink attack on the (1) LCK..opencryptoki or (2) LCK..opencryptoki_stdll file in /var/lock… CWE-59
Link Following
CVE-2012-4455 2024-11-21 10:42 2012-10-11 Show GitHub Exploit DB Packet Storm
292262 - opencryptoki_project opencryptoki openCryptoki before 2.4.1, when using spinlocks, allows local users to create or set world-writable permissions on arbitrary files via a symlink attack on the (1) .pkapi_xpk or (2) .pkcs11spinloc fil… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-4454 2024-11-21 10:42 2012-10-11 Show GitHub Exploit DB Packet Storm
292263 - w1.fi hostapd Heap-based buffer overflow in the eap_server_tls_process_fragment function in eap_server_tls_common.c in the EAP authentication server in hostapd 0.6 through 1.0 allows remote attackers to cause a de… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-4445 2024-11-21 10:42 2012-10-11 Show GitHub Exploit DB Packet Storm
292264 - bacula
debian
bacula
debian_linux
The dump_resource function in dird/dird_conf.c in Bacula before 5.2.11 does not properly enforce ACL rules, which allows remote authenticated users to obtain resource dump information via unspecified… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-4430 2024-11-21 10:42 2012-10-11 Show GitHub Exploit DB Packet Storm
292265 - mozilla
redhat
canonical
suse
debian
firefox
thunderbird_esr
thunderbird
seamonkey
enterprise_linux_server
enterprise_linux_workstation
ubuntu_linux
enterprise_linux_desktop
enterprise_linux_eus
linux_enterpri…
Heap-based buffer overflow in the Convolve3x3 function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey befor… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-4188 2024-11-21 10:42 2012-10-11 Show GitHub Exploit DB Packet Storm
292266 - mozilla
redhat
canonical
suse
firefox
thunderbird_esr
thunderbird
seamonkey
enterprise_linux_server
enterprise_linux_workstation
ubuntu_linux
enterprise_linux_desktop
enterprise_linux_eus
linux_enterpri…
Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 do not properly manage a certain insPos variable, w… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-4187 2024-11-21 10:42 2012-10-11 Show GitHub Exploit DB Packet Storm
292267 - mozilla
redhat
canonical
debian
suse
firefox
thunderbird_esr
thunderbird
seamonkey
enterprise_linux_server
enterprise_linux_workstation
ubuntu_linux
debian_linux
enterprise_linux_desktop
enterprise_linux_eus
Heap-based buffer overflow in the nsWaveReader::DecodeAudioData function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-4186 2024-11-21 10:42 2012-10-11 Show GitHub Exploit DB Packet Storm
292268 - mozilla
redhat
canonical
suse
firefox
thunderbird_esr
thunderbird
seamonkey
enterprise_linux_server
enterprise_linux_workstation
ubuntu_linux
enterprise_linux_desktop
enterprise_linux_eus
linux_enterpri…
Buffer overflow in the nsCharTraits::length function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-4185 2024-11-21 10:42 2012-10-11 Show GitHub Exploit DB Packet Storm
292269 - mozilla
redhat
canonical
suse
firefox
thunderbird_esr
thunderbird
seamonkey
enterprise_linux_server
enterprise_linux_workstation
ubuntu_linux
enterprise_linux_desktop
enterprise_linux_eus
linux_enterpri…
The Chrome Object Wrapper (COW) implementation in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 d… CWE-79
Cross-site Scripting
CVE-2012-4184 2024-11-21 10:42 2012-10-11 Show GitHub Exploit DB Packet Storm
292270 - mozilla
redhat
canonical
suse
opensuse
firefox
thunderbird_esr
thunderbird
seamonkey
enterprise_linux_server
enterprise_linux_workstation
ubuntu_linux
enterprise_linux_desktop
enterprise_linux_eus
linux_enterpri…
Use-after-free vulnerability in the DOMSVGTests::GetRequiredFeatures function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0… CWE-416
 Use After Free
CVE-2012-4183 2024-11-21 10:42 2012-10-11 Show GitHub Exploit DB Packet Storm