Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 3, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217471 7.5 危険 FreeType Project - FreeType の cff/cf2hints.c 内の cf2_hintmap_build 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-2240 2014-03-14 14:19 2014-03-7 Show GitHub Exploit DB Packet Storm
217472 4.3 警告 CiviCRM
Caseproof
Joobi
- 複数ベンダの製品で使用される Open Flash Chart の open-flash-chart.swf におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1636 2014-03-14 13:48 2013-06-10 Show GitHub Exploit DB Packet Storm
217473 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR におけるメモリ二重解放の脆弱性 CWE-399
リソース管理の問題
CVE-2014-0502 2014-03-13 18:24 2014-02-20 Show GitHub Exploit DB Packet Storm
217474 7.8 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR における ASLR 保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0499 2014-03-13 18:23 2014-02-20 Show GitHub Exploit DB Packet Storm
217475 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-0498 2014-03-13 18:19 2014-02-20 Show GitHub Exploit DB Packet Storm
217476 3.5 注意 MySQL AB
オラクル
- Oracle MySQL の MySQL Server における Optimizer に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0437 2014-03-13 18:18 2014-01-14 Show GitHub Exploit DB Packet Storm
217477 10 危険 シスコシステムズ - Cisco Unified SIP Phone 3905 のファームウェアにおける root アクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0721 2014-03-13 17:45 2014-02-19 Show GitHub Exploit DB Packet Storm
217478 7.5 危険 Raoul Proenca - Gnew の users/login.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-5639 2014-03-13 17:45 2013-10-2 Show GitHub Exploit DB Packet Storm
217479 7.8 危険 シスコシステムズ - Cisco IPS ソフトウェアのコントロールプレーンのアクセスリストの実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0719 2014-03-13 17:42 2014-02-19 Show GitHub Exploit DB Packet Storm
217480 4.4 警告 Novell
Logilab.org
- logilab-common の shellutils の Execute クラスにおける脆弱性 CWE-noinfo
情報不足
CVE-2014-1839 2014-03-13 16:43 2014-02-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 3, 2026, 4:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293291 - libreoffice
debian
redhat
apache
fedoraproject
libreoffice
debian_linux
enterprise_linux_server_aus
enterprise_linux_server_eus
enterprise_linux_desktop
enterprise_linux_server
enterprise_linux
enterprise_linux_workstation
Integer overflow in the vclmi.dll module in OpenOffice.org (OOo) 3.3, 3.4 Beta, and possibly earlier, and LibreOffice before 3.5.3, allows remote attackers to cause a denial of service (application c… CWE-189
Numeric Errors
CVE-2012-1149 2024-11-21 10:36 2012-06-22 Show GitHub Exploit DB Packet Storm
293292 - debian advanced_package_tool APT 0.7.x before 0.7.25 and 0.8.x before 0.8.16, when using the apt-key net-update to import keyrings, relies on GnuPG argument order and does not check GPG subkeys, which might allow remote attacker… CWE-20
 Improper Input Validation 
CVE-2012-0954 2024-11-21 10:36 2012-06-20 Show GitHub Exploit DB Packet Storm
293293 - canonical ubuntu_linux The Apport hook (DistUpgradeApport.py) in Update Manager, as used by Ubuntu 12.04 LTS, 11.10, and 11.04, uploads the /var/log/dist-upgrade directory when reporting bugs to Launchpad, which allows rem… CWE-200
Information Exposure
CVE-2012-0950 2024-11-21 10:36 2012-06-20 Show GitHub Exploit DB Packet Storm
293294 - redhat satellite spacewalk-backend in Red Hat Network Satellite 5.4 on Red Hat Enterprise Linux 6 does not properly authorize or authenticate uploads to the NULL organization when mod_wsgi is used, which allows remot… CWE-287
Improper Authentication
CVE-2012-1145 2024-11-21 10:36 2012-06-16 Show GitHub Exploit DB Packet Storm
293295 - canonical
gnome
ubuntu_linux
update-manager-core
DistUpgrade/DistUpgradeMain.py in Update Manager, as used by Ubuntu 12.04 LTS, 11.10, and 11.04, uses weak permissions for (1) apt-clone_system_state.tar.gz and (2) system_state.tar.gz, which allows … CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-0948 2024-11-21 10:36 2012-06-8 Show GitHub Exploit DB Packet Storm
293296 - mit kerberos_5 The check_1_6_dummy function in lib/kadm5/srv/svr_principal.c in kadmind in MIT Kerberos 5 (aka krb5) 1.8.x, 1.9.x, and 1.10.x before 1.10.2 allows remote authenticated administrators to cause a deni… NVD-CWE-Other
CVE-2012-1013 2024-11-21 10:36 2012-06-8 Show GitHub Exploit DB Packet Storm
293297 - mit kerberos_5 server/server_stubs.c in the kadmin protocol implementation in MIT Kerberos 5 (aka krb5) 1.10 before 1.10.1 does not properly restrict access to (1) SET_STRING and (2) GET_STRINGS operations, which m… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-1012 2024-11-21 10:36 2012-06-8 Show GitHub Exploit DB Packet Storm
293298 - sony vaio_easy_connect
smartwi_connection_utillity
vaio_wireless_wizard
vaio_pc_wireless_lan_wizard
Multiple buffer overflows in the Wireless Manager ActiveX control 4.0.0.0 in WifiMan.dll in Sony VAIO PC Wireless LAN Wizard 1.0; VAIO Wireless Wizard 1.00, 1.00_64, 1.0.1, 2.0, and 3.0; SmartWi Conn… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-0985 2024-11-21 10:36 2012-06-8 Show GitHub Exploit DB Packet Storm
293299 5.5 MEDIUM
Local
imagemagick
debian
canonical
opensuse
imagemagick
debian_linux
ubuntu_linux
opensuse
Integer overflow in the SyncImageProfiles function in profile.c in ImageMagick 6.7.5-8 and earlier allows remote attackers to cause a denial of service (infinite loop) via crafted IOP tag offsets in … CWE-835
 Loop with Unreachable Exit Condition ('Infinite Loop')
CVE-2012-1186 2024-11-21 10:36 2012-06-6 Show GitHub Exploit DB Packet Storm
293300 7.8 HIGH
Local
imagemagick
debian
canonical
opensuse
imagemagick
debian_linux
ubuntu_linux
opensuse
Multiple integer overflows in (1) magick/profile.c or (2) magick/property.c in ImageMagick 6.7.5 and earlier allow remote attackers to cause a denial of service (memory corruption) and possibly execu… CWE-190
 Integer Overflow or Wraparound
CVE-2012-1185 2024-11-21 10:36 2012-06-6 Show GitHub Exploit DB Packet Storm