Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218321 4.3 警告 ajax softwares - AliPAGER におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3345 2014-03-11 17:43 2006-07-3 Show GitHub Exploit DB Packet Storm
218322 2.6 注意 Atlassian - Atlassian JIRA におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3338 2014-03-11 17:43 2006-07-3 Show GitHub Exploit DB Packet Storm
218323 6.8 警告 DeltaScripts - PHP/MySQL Classifieds におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3330 2014-03-11 17:43 2006-06-30 Show GitHub Exploit DB Packet Storm
218324 4.3 警告 e-cbd.biz - Custom dating biz dating script におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3327 2014-03-11 17:43 2006-06-30 Show GitHub Exploit DB Packet Storm
218325 5 警告 id software - id3 Quake 3 Engine および Icculus Quake 3 Engine における書き込み保護された任意の変数を上書きされる脆弱性 - CVE-2006-3325 2014-03-11 17:43 2006-06-30 Show GitHub Exploit DB Packet Storm
218326 2.6 注意 sitebar - SiteBar におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-3320 2014-03-11 17:43 2006-06-30 Show GitHub Exploit DB Packet Storm
218327 5 警告 comscripts - CS-Forum における CRLF インジェクションの脆弱性 - CVE-2006-3171 2014-03-11 17:43 2006-06-23 Show GitHub Exploit DB Packet Storm
218328 5 警告 Netpbm - NetPBM におけるバッファオーバーフローの脆弱性 - CVE-2006-3145 2014-03-11 17:43 2006-06-22 Show GitHub Exploit DB Packet Storm
218329 4.6 警告 easy-cms - easy-CMS における任意の PHP コードを実行される脆弱性 - CVE-2006-3128 2014-03-11 17:43 2006-06-21 Show GitHub Exploit DB Packet Storm
218330 5 警告 chipmailer - Chipmailer における重要な情報を取得される脆弱性 - CVE-2006-3112 2014-03-11 17:43 2006-06-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292081 8.8 HIGH
Network
cipherdyne fwknop fwknop before 2.0.3 allow remote authenticated users to cause a denial of service (server crash) or possibly execute arbitrary code. CWE-276
Incorrect Default Permissions 
CVE-2012-4434 2024-11-21 10:42 2020-01-10 Show GitHub Exploit DB Packet Storm
292082 6.1 MEDIUM
Network
zend
fedoraproject
redhat
zend_framework
fedora
enterprise_linux
Multiple cross-site scripting (XSS) vulnerabilities in Zend Framework 2.0.x before 2.0.1 allow remote attackers to inject arbitrary web script or HTML via unspecified input to (1) Debug, (2) Feed\Pub… CWE-79
Cross-site Scripting
CVE-2012-4451 2024-11-21 10:42 2020-01-4 Show GitHub Exploit DB Packet Storm
292083 7.5 HIGH
Network
oracle jdk An information disclosure flaw was found in the way the Java Virtual Machine (JVM) implementation of Java SE 7 as provided by OpenJDK 7 incorrectly initialized integer arrays after memory allocation … CWE-200
Information Exposure
CVE-2012-4420 2024-11-21 10:42 2019-12-27 Show GitHub Exploit DB Packet Storm
292084 7.8 HIGH
Local
ovirt
fedoraproject
mom
fedora
mom creates world-writable pid files in /var/run CWE-269
 Improper Privilege Management
CVE-2012-4480 2024-11-21 10:42 2019-12-3 Show GitHub Exploit DB Packet Storm
292085 7.5 HIGH
Network
openslp
debian
fedoraproject
canonical
openslp
debian_linux
fedora
ubuntu_linux
openslp: SLPIntersectStringList()' Function has a DoS vulnerability CWE-125
Out-of-bounds Read
CVE-2012-4428 2024-11-21 10:42 2019-12-3 Show GitHub Exploit DB Packet Storm
292086 6.1 MEDIUM
Network
jenkins jenkins Cross-site Scripting (XSS) in Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers to inject arbitrary web script or HTML in the CI game plugin. CWE-79
Cross-site Scripting
CVE-2012-4441 2024-11-21 10:42 2019-11-19 Show GitHub Exploit DB Packet Storm
292087 6.1 MEDIUM
Network
jenkins jenkins Cross-site Scripting (XSS) in Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers to inject arbitrary web script or HTML in the Violations plugin. CWE-79
Cross-site Scripting
CVE-2012-4440 2024-11-21 10:42 2019-11-19 Show GitHub Exploit DB Packet Storm
292088 6.1 MEDIUM
Network
jenkins jenkins Cross-site Scripting (XSS) in Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers to inject arbitrary web script or HTML via a crafted URL that points to Jenkins. CWE-79
Cross-site Scripting
CVE-2012-4439 2024-11-21 10:42 2019-11-19 Show GitHub Exploit DB Packet Storm
292089 8.8 HIGH
Network
jenkins jenkins Jenkins main before 1.482 and LTS before 1.466.2 allows remote attackers with read access and HTTP access to Jenkins master to insert data and execute arbitrary code. CWE-20
 Improper Input Validation 
CVE-2012-4438 2024-11-21 10:42 2019-11-19 Show GitHub Exploit DB Packet Storm
292090 6.5 MEDIUM
Network
trilexnet
debian
letodms
debian_linux
letodms 3.3.6 has CSRF via change password CWE-352
 Origin Validation Error
CVE-2012-4385 2024-11-21 10:42 2019-11-14 Show GitHub Exploit DB Packet Storm