Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217471 7.5 危険 FreeType Project - FreeType の cff/cf2hints.c 内の cf2_hintmap_build 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-2240 2014-03-14 14:19 2014-03-7 Show GitHub Exploit DB Packet Storm
217472 4.3 警告 CiviCRM
Caseproof
Joobi
- 複数ベンダの製品で使用される Open Flash Chart の open-flash-chart.swf におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1636 2014-03-14 13:48 2013-06-10 Show GitHub Exploit DB Packet Storm
217473 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR におけるメモリ二重解放の脆弱性 CWE-399
リソース管理の問題
CVE-2014-0502 2014-03-13 18:24 2014-02-20 Show GitHub Exploit DB Packet Storm
217474 7.8 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR における ASLR 保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0499 2014-03-13 18:23 2014-02-20 Show GitHub Exploit DB Packet Storm
217475 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-0498 2014-03-13 18:19 2014-02-20 Show GitHub Exploit DB Packet Storm
217476 3.5 注意 MySQL AB
オラクル
- Oracle MySQL の MySQL Server における Optimizer に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0437 2014-03-13 18:18 2014-01-14 Show GitHub Exploit DB Packet Storm
217477 10 危険 シスコシステムズ - Cisco Unified SIP Phone 3905 のファームウェアにおける root アクセス権を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0721 2014-03-13 17:45 2014-02-19 Show GitHub Exploit DB Packet Storm
217478 7.5 危険 Raoul Proenca - Gnew の users/login.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-5639 2014-03-13 17:45 2013-10-2 Show GitHub Exploit DB Packet Storm
217479 7.8 危険 シスコシステムズ - Cisco IPS ソフトウェアのコントロールプレーンのアクセスリストの実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0719 2014-03-13 17:42 2014-02-19 Show GitHub Exploit DB Packet Storm
217480 4.4 警告 Novell
Logilab.org
- logilab-common の shellutils の Execute クラスにおける脆弱性 CWE-noinfo
情報不足
CVE-2014-1839 2014-03-13 16:43 2014-02-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294411 7.5 HIGH
Network
mediawiki mediawiki mediawiki allows deleted text to be exposed CWE-200
Information Exposure
CVE-2012-0046 2024-11-21 10:34 2019-10-30 Show GitHub Exploit DB Packet Storm
294412 6.1 MEDIUM
Network
redirection redirection The redirection plugin before 2.2.9 for WordPress has XSS in the admin menu, a different issue than CVE-2011-4562. CWE-79
Cross-site Scripting
CVE-2011-5329 2024-11-21 10:34 2019-08-28 Show GitHub Exploit DB Packet Storm
294413 8.8 HIGH
Network
user_access_manager_project user_access_manager The user-access-manager plugin before 1.2 for WordPress has CSRF. CWE-352
 Origin Validation Error
CVE-2011-5328 2024-11-21 10:34 2019-08-21 Show GitHub Exploit DB Packet Storm
294414 9.8 CRITICAL
Network
linux linux_kernel In the Linux kernel before 3.1, an off by one in the drivers/target/loopback/tcm_loop.c tcm_loop_make_naa_tpg() function could result in at least memory corruption. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-5327 2024-11-21 10:34 2019-07-28 Show GitHub Exploit DB Packet Storm
294415 5.5 MEDIUM
Local
crowbar_project crowbar The install-chef-suse.sh script shipped with crowbar before 2012-10-02 is creating files containing confidential data with insecure permissions, allowing local users to read confidential data. CWE-200
Information Exposure
CVE-2012-0433 2024-11-21 10:34 2018-06-9 Show GitHub Exploit DB Packet Storm
294416 6.2 MEDIUM
Local
gnu glibc scanf and related functions in glibc before 2.15 allow local users to cause a denial of service (segmentation fault) via a large string of 0s. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2011-5320 2024-11-21 10:34 2017-10-18 Show GitHub Exploit DB Packet Storm
294417 7.5 HIGH
Network
busybox
debian
canonical
busybox
debian_linux
ubuntu_linux
Directory traversal vulnerability in the BusyBox implementation of tar before 1.22.0 v5 allows remote attackers to point to files outside the current working directory via a symlink. CWE-22
Path Traversal
CVE-2011-5325 2024-11-21 10:34 2017-08-8 Show GitHub Exploit DB Packet Storm
294418 7.5 HIGH
Network
debian
enlightenment
debian_linux
imlib2
imlib2 before 1.4.9 allows remote attackers to cause a denial of service (divide-by-zero error and application crash) by drawing a 2x1 ellipse. CWE-189
Numeric Errors
CVE-2011-5326 2024-11-21 10:34 2016-05-14 Show GitHub Exploit DB Packet Storm
294419 5.5 MEDIUM
Local
linux linux_kernel The tty_open function in drivers/tty/tty_io.c in the Linux kernel before 3.1.1 mishandles a driver-lookup failure, which allows local users to cause a denial of service (NULL pointer dereference and … NVD-CWE-Other
CVE-2011-5321 2024-11-21 10:34 2016-05-2 Show GitHub Exploit DB Packet Storm
294420 - gehealthcare centricity_pacs-iw The TeraRecon server, as used in GE Healthcare Centricity PACS-IW 3.7.3.7, 3.7.3.8, and possibly other versions, has a password of (1) shared for the shared user and (2) scan for the scan user, which… CWE-255
Credentials Management
CVE-2011-5324 2024-11-21 10:34 2015-08-4 Show GitHub Exploit DB Packet Storm