Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218341 6.8 警告 Sharetronix - Sharetronix におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-3414 2014-06-2 11:47 2014-05-28 Show GitHub Exploit DB Packet Storm
218342 4.3 警告 SOSreport project - SOSreport における重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-0246 2014-06-2 11:33 2014-05-27 Show GitHub Exploit DB Packet Storm
218343 6.8 警告 IBM - IBM Notes で使用される Autonomy KeyView IDOL の .mdb パーサにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-6349 2014-05-30 18:19 2013-03-21 Show GitHub Exploit DB Packet Storm
218344 7.5 危険 日本電気
IBM
アップル
Mozilla Foundation
Google
フェンリル株式会社
レッドハット
- libpng における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2011-3026 2014-05-30 18:11 2012-02-15 Show GitHub Exploit DB Packet Storm
218345 7.8 危険 IBM - IBM Lotus Domino の IMAP サーバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2014-0822 2014-05-30 16:21 2014-02-5 Show GitHub Exploit DB Packet Storm
218346 7.1 危険 IBM - IBM Lotus Protector for Mail Security の Admin Web UI における任意のコマンドを実行される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2014-0887 2014-05-30 15:51 2014-03-24 Show GitHub Exploit DB Packet Storm
218347 7.1 危険 IBM - IBM Lotus Protector for Mail Security の Admin Web UI におけるアクセス制限を回避される脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2014-0886 2014-05-30 15:29 2014-03-24 Show GitHub Exploit DB Packet Storm
218348 6.8 警告 IBM - IBM Lotus Protector for Mail Security の Admin Web UI におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-0885 2014-05-30 15:22 2014-03-24 Show GitHub Exploit DB Packet Storm
218349 3.5 注意 IBM - IBM Lotus Protector for Mail Security の Admin Web UI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0884 2014-05-30 15:09 2014-03-24 Show GitHub Exploit DB Packet Storm
218350 5 警告 Google Doc Embedder - WordPress 用 Google Doc Embedder プラグインにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-4915 2014-05-30 10:51 2012-09-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296701 - netmechanica netdecision The Traffic Grapher Server for NetMechanica NetDecision before 4.6.1 allows remote attackers to obtain the source code of NtDecision script files with a .nd extension via an invalid version number in… CWE-200
Information Exposure
CVE-2012-1466 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
296702 - netmechanica netdecision Stack-based buffer overflow in the HTTP Server in NetMechanica NetDecision before 4.6.1 allows remote attackers to cause a denial of service (application crash) via a long URL in an HTTP request. NO… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-1465 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
296703 - netmechanica netdecision Dashboard Server for NetMechanica NetDecision before 4.6.1 allows remote attackers to obtain the installation path via a request with a trailing "?" character, which causes Dashboard to attempt to ac… CWE-200
Information Exposure
CVE-2012-1464 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
296704 - webgrind_project webgrind Absolute path traversal vulnerability in Webgrind 1.0 and 1.0.2 allows remote attackers to read arbitrary files via a full pathname in the file parameter to index.php. CWE-22
Path Traversal
CVE-2012-1790 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
296705 - tskynet kongreg8 Multiple cross-site scripting (XSS) vulnerabilities in Kongreg8 1.7.3 allow remote attackers to inject arbitrary web script or HTML via the (1) surname or (2) firstname parameters to modules/members/… CWE-79
Cross-site Scripting
CVE-2012-1789 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
296706 - wonderdesk wonderdesk_sql Multiple cross-site scripting (XSS) vulnerabilities in wonderdesk.cgi in WonderDesk SQL 4.14 allow remote attackers to inject arbitrary web script or HTML via the (1) cus_email parameter in a cust_lo… CWE-79
Cross-site Scripting
CVE-2012-1788 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
296707 - webglimpse webglimpse Multiple cross-site scripting (XSS) vulnerabilities in wgarcmin.cgi in Webglimpse 2.20.0 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) URL, (2) FILE, or (3) DO… CWE-79
Cross-site Scripting
CVE-2012-1787 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
296708 - kylegilman video_embed_\&_thumbnail_generator The Media Upload form in the Video Embed & Thumbnail Generator plugin before 2.0 for WordPress allows remote attackers to obtain the installation path via unknown vectors. CWE-200
Information Exposure
CVE-2012-1786 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
296709 - kylegilman video_embed_\&_thumbnail_generator kg_callffmpeg.php in the Video Embed & Thumbnail Generator plugin before 2.0 for WordPress allows remote attackers to execute arbitrary commands via unspecified vectors. CWE-20
 Improper Input Validation 
CVE-2012-1785 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm
296710 - myjoblist myjoblist SQL injection vulnerability in MyJobList 0.1.3 allows remote attackers to execute arbitrary SQL commands via the eid parameter in a profile action to index.php. CWE-89
SQL Injection
CVE-2012-1784 2024-11-21 10:37 2012-03-20 Show GitHub Exploit DB Packet Storm