Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217731 5 警告 Mozilla Foundation - Android 上で稼動する Mozilla Firefox におけるアドレスバーを偽装される脆弱性 CWE-noinfo
情報不足
CVE-2014-1527 2014-05-1 19:35 2014-04-29 Show GitHub Exploit DB Packet Storm
217732 5.8 警告 Mozilla Foundation - Mozilla Firefox および SeaMonkey の XrayWrapper 実装におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1526 2014-05-1 19:28 2014-04-29 Show GitHub Exploit DB Packet Storm
217733 9.3 危険 Mozilla Foundation - Mozilla Firefox および SeaMonkey の mozilla::dom::TextTrack::AddCue 関数における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2014-1525 2014-05-1 19:12 2014-04-29 Show GitHub Exploit DB Packet Storm
217734 10 危険 Mozilla Foundation - Mozilla Firefox および SeaMonkey の Web Audio サブシステムの mozilla::dom::OscillatorNodeEngine::ComputeCustom 関数における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2014-1522 2014-05-1 18:38 2014-04-29 Show GitHub Exploit DB Packet Storm
217735 6.9 警告 Mozilla Foundation - Windows 上で稼働する Mozilla Firefox の Maintenance Service Installer の maintenservice_installer.exe における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-1520 2014-05-1 18:35 2014-04-29 Show GitHub Exploit DB Packet Storm
217736 10 危険 Mozilla Foundation - Mozilla Firefox および SeaMonkey のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2014-1519 2014-05-1 18:29 2014-04-29 Show GitHub Exploit DB Packet Storm
217737 4.3 警告 Digital Junkies - dompdf の dompdf.php における chroot の保護を回避される脆弱性 CWE-200
情報漏えい
CVE-2014-2383 2014-05-1 18:18 2014-03-11 Show GitHub Exploit DB Packet Storm
217738 4.3 警告 VideoWhisper.com - Drupal 用 VideoWhisper Webcam プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2715 2014-05-1 18:10 2014-04-25 Show GitHub Exploit DB Packet Storm
217739 6.8 警告 Ubercart - Drupal 用 Ubercart モジュールにおける Web セッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2013-7302 2014-05-1 18:09 2013-12-17 Show GitHub Exploit DB Packet Storm
217740 4.3 警告 Gizra - Drupal 用 Entity reference モジュールにおけるプライベートノードのタイトルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-7066 2014-05-1 18:08 2013-11-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 12, 2026, 5:06 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291751 - redhat enterprise_virtualization_manager Red Hat Enterprise Virtualization Manager (RHEV-M) before 3.1, when moving disks between storage domains, does not properly wipe-after-delete, which prevents disks from being securely deleted and mig… CWE-200
Information Exposure
CVE-2012-5516 2024-11-21 10:44 2013-01-5 Show GitHub Exploit DB Packet Storm
291752 - torproject tor The connection_edge_process_relay_cell function in or/relay.c in Tor before 0.2.3.25 maintains circuits even if an unexpected SENDME cell arrives, which might allow remote attackers to cause a denial… CWE-399
 Resource Management Errors
CVE-2012-5573 2024-11-21 10:44 2013-01-1 Show GitHub Exploit DB Packet Storm
291753 - cisco skinny_client_control_protocol_software
unified_ip_phone
unified_ip_phone_7906g
The kernel in Cisco Native Unix (CNU) on Cisco Unified IP Phone 7900 series devices (aka TNP phones) with software before 9.3.1-ES10 does not properly validate unspecified system calls, which allows … CWE-20
 Improper Input Validation 
CVE-2012-5445 2024-11-21 10:44 2012-12-28 Show GitHub Exploit DB Packet Storm
291754 - linux linux_kernel The main function in tools/hv/hv_kvp_daemon.c in hypervkvpd, as distributed in the Linux kernel before 3.8-rc1, allows local users to cause a denial of service (daemon exit) via a crafted application… NVD-CWE-noinfo
CVE-2012-5532 2024-11-21 10:44 2012-12-27 Show GitHub Exploit DB Packet Storm
291755 - openstack grizzly
folsom
OpenStack Compute (Nova) Folsom before 2012.2.2 and Grizzly, when using libvirt and LVM backed instances, does not properly clear physical volume (PV) content when reallocating for instances, which a… CWE-200
Information Exposure
CVE-2012-5625 2024-11-21 10:44 2012-12-27 Show GitHub Exploit DB Packet Storm
291756 - openstack keystone tools/sample_data.sh in OpenStack Keystone 2012.1.3, when access to Amazon Elastic Compute Cloud (Amazon EC2) is configured, uses world-readable permissions for /etc/keystone/ec2rc, which allows loca… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5483 2024-11-21 10:44 2012-12-27 Show GitHub Exploit DB Packet Storm
291757 - citrix xenapp The XML Service interface in Citrix XenApp 6.5 and 6.5 Feature Pack 1 allows remote attackers to execute arbitrary code via unspecified vectors. NVD-CWE-noinfo
CVE-2012-5161 2024-11-21 10:44 2012-12-27 Show GitHub Exploit DB Packet Storm
291758 - catalin_florian_radut zeropoint Cross-site scripting (XSS) vulnerability in the Zero Point module 6.x-1.x before 6.x-1.18 and 7.x-1.x before 7.x-1.4 for Drupal allows remote attackers to inject arbitrary web script or HTML via the … CWE-79
Cross-site Scripting
CVE-2012-5591 2024-11-21 10:44 2012-12-27 Show GitHub Exploit DB Packet Storm
291759 - scripthead webmail_plus SQL injection vulnerability in the Webmail Plus module for Drupal allows remote attackers to execute arbitrary SQL commands via unspecified vectors. CWE-89
SQL Injection
CVE-2012-5590 2024-11-21 10:44 2012-12-27 Show GitHub Exploit DB Packet Storm
291760 - netgenius multilink The MultiLink module 6.x-2.x before 6.x-2.7 and 7.x-2.x before 7.x-2.7 for Drupal does not properly check node permissions when generating an in-content link, which allows remote authenticated users … CWE-200
Information Exposure
CVE-2012-5589 2024-11-21 10:44 2012-12-27 Show GitHub Exploit DB Packet Storm