Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217981 3.5 注意 レッドハット - Spacewalk および Red Hat Network Satellite の account/EditAddress.do におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1871 2014-02-17 15:10 2013-03-19 Show GitHub Exploit DB Packet Storm
217982 3.5 注意 レッドハット - Spacewalk および Red Hat Network Satellite の systems/sdc/notes.jsp におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6149 2014-02-17 15:10 2012-11-29 Show GitHub Exploit DB Packet Storm
217983 4.7 警告 アップル - Apple Boot Camp の AppleMNT.sys におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-1253 2014-02-17 14:45 2014-02-12 Show GitHub Exploit DB Packet Storm
217984 5.1 警告 CA Technologies - CA 2E Web Option におけるセッションをハイジャックされる脆弱性 CWE-20
不適切な入力確認
CVE-2014-1219 2014-02-17 14:44 2014-02-11 Show GitHub Exploit DB Packet Storm
217985 5.8 警告 レッドハット - Red Hat JBoss Operations Network における LDAP ベースのアカウントにログインされる脆弱性 CWE-287
不適切な認証
CVE-2012-1100 2014-02-17 14:42 2012-03-19 Show GitHub Exploit DB Packet Storm
217986 5.8 警告 レッドハット - Red Hat JBoss Operations Network におけるエージェントのセッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2012-0062 2014-02-17 14:42 2012-02-1 Show GitHub Exploit DB Packet Storm
217987 5.8 警告 レッドハット - Red Hat JBoss Operations Network における任意のエージェントの識別情報を偽装される脆弱性 CWE-20
不適切な入力確認
CVE-2012-0052 2014-02-17 14:41 2012-02-1 Show GitHub Exploit DB Packet Storm
217988 7.1 危険 MatrikonOPC - MatrikonOPC SCADA DNP3 OPC Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2013-2829 2014-02-17 14:39 2013-04-11 Show GitHub Exploit DB Packet Storm
217989 6.9 警告 Bandisoft - Bandisoft Bandizip における権限を取得される脆弱性 CWE-Other
その他
CVE-2014-1680 2014-02-17 14:39 2014-01-24 Show GitHub Exploit DB Packet Storm
217990 5 警告 BlackBerry - 複数の BlackBerry 製品における重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-1467 2014-02-17 14:38 2014-02-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 30, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293001 - luratech lurawave_jp2_activex_control Stack-based buffer overflow in jp2_x.dll in LuraWave JP2 ActiveX Control 2.1.5.5 and other versions before 2.1.5.11 allows remote attackers to execute arbitrary code via a JPEG2000 (JP2) file with a … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-0977 2024-11-21 10:36 2012-02-3 Show GitHub Exploit DB Packet Storm
293002 - silverstripe silverstripe Cross-site scripting (XSS) vulnerability in admin/EditForm in SilverStripe 2.4.6 allows remote authenticated users with Content Authors privileges to inject arbitrary web script or HTML via the Title… CWE-79
Cross-site Scripting
CVE-2012-0976 2024-11-21 10:36 2012-02-3 Show GitHub Exploit DB Packet Storm
293003 - clixint image_hosting_script_dpi Cross-site scripting (XSS) vulnerability in misc.php in Image Hosting Script DPI 1.0, 1.3, and earlier allows remote attackers to inject arbitrary web script or HTML via the showseries parameter. CWE-79
Cross-site Scripting
CVE-2012-0975 2024-11-21 10:36 2012-02-3 Show GitHub Exploit DB Packet Storm
293004 - wordpress wordpress wp-admin/setup-config.php in the installation component in WordPress 3.3.1 and earlier does not limit the number of MySQL queries sent to external MySQL database servers, which allows remote attacker… NVD-CWE-noinfo
CVE-2012-0937 2024-11-21 10:36 2012-01-31 Show GitHub Exploit DB Packet Storm
293005 - opennms.org opennms Cross-site scripting (XSS) vulnerability in web/springframework/security/SecurityAuthenticationEventOnmsEventBuilder.java in OpenNMS 1.8.x before 1.8.17, 1.9.93 and earlier, and 1.10.x before 1.10.1 … CWE-79
Cross-site Scripting
CVE-2012-0936 2024-11-21 10:36 2012-01-29 Show GitHub Exploit DB Packet Storm
293006 - aryadad aryadad_cms SQL injection vulnerability in Default.aspx in Aryadad CMS allows remote attackers to execute arbitrary SQL commands via the PageID parameter. CWE-89
SQL Injection
CVE-2012-0935 2024-11-21 10:36 2012-01-29 Show GitHub Exploit DB Packet Storm
293007 - zingiri theme_tuner_plugin PHP remote file inclusion vulnerability in ajax/savetag.php in the Theme Tuner plugin for WordPress before 0.8 allows remote attackers to execute arbitrary PHP code via a URL in the tt-abspath parame… CWE-94
Code Injection
CVE-2012-0934 2024-11-21 10:36 2012-01-29 Show GitHub Exploit DB Packet Storm
293008 7.5 HIGH
Network
cloudbees
jenkins
jenkins Hash collision attack vulnerability in Jenkins before 1.447, Jenkins LTS before 1.424.2, and Jenkins Enterprise by CloudBees 1.424.x before 1.424.2.1 and 1.400.x before 1.400.0.11 could allow remote … CWE-400
 Uncontrolled Resource Consumption
CVE-2012-0785 2024-11-21 10:35 2020-02-25 Show GitHub Exploit DB Packet Storm
293009 5.5 MEDIUM
Local
netsurf-browser
debian
netsurf
debian_linux
Information-disclosure vulnerability in Netsurf through 2.8 due to a world-readable cookie jar. CWE-200
Information Exposure
CVE-2012-0844 2024-11-21 10:35 2020-02-22 Show GitHub Exploit DB Packet Storm
293010 9.8 CRITICAL
Network
xchat-wdk
xchat
gnome
xchat-wdk
xchat
gtk
Heap-based buffer overflow in Xchat-WDK before 1499-4 (2012-01-18) xchat 2.8.6 on Maemo architecture could allow remote attackers to cause a denial of service (xchat client crash) or execute arbitrar… CWE-787
 Out-of-bounds Write
CVE-2012-0828 2024-11-21 10:35 2020-02-22 Show GitHub Exploit DB Packet Storm