Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218411 4.9 警告 クアルコム
Android for MSM
- MSM デバイス用 Qualcomm Innovation Center Android コントリビューションなどで使用される Linux Kernel 用 MSM カメラドライバにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-4739 2014-02-5 11:54 2013-10-15 Show GitHub Exploit DB Packet Storm
218412 7.2 危険 クアルコム
Android for MSM
- MSM デバイス用 Qualcomm Innovation Center Android コントリビューションなどで使用される Linux Kernel 用 MSM カメラドライバにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-4738 2014-02-5 11:53 2013-10-15 Show GitHub Exploit DB Packet Storm
218413 8.5 危険 ISC, Inc.
アップル
VMware
- ISC BIND にサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2012-1667 2014-02-4 18:13 2012-06-5 Show GitHub Exploit DB Packet Storm
218414 5 警告 The Tor Project - Tor におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2012-2250 2014-02-4 18:08 2012-10-25 Show GitHub Exploit DB Packet Storm
218415 5 警告 The Tor Project - Tor におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2012-2249 2014-02-4 18:07 2012-10-20 Show GitHub Exploit DB Packet Storm
218416 6.8 警告 アップル
LibTIFF
- LibTIFF の tiff_getimage.c における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2012-1173 2014-02-4 18:04 2012-06-4 Show GitHub Exploit DB Packet Storm
218417 5 警告 KENT-WEB - Joyful Note におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0812 2014-02-4 17:37 2014-01-31 Show GitHub Exploit DB Packet Storm
218418 2.1 注意 OpenBSD - 特定のプラットフォーム上で稼働する OpenSSH の ssh-keysign の ssh-keysign.c における重要な鍵情報を取得される脆弱性 - CVE-2011-4327 2014-02-4 17:05 2011-04-29 Show GitHub Exploit DB Packet Storm
218419 4.3 警告 Elgg Foundation - Elgg の Twitter ウィジェットにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0234 2014-02-4 16:49 2013-01-26 Show GitHub Exploit DB Packet Storm
218420 2.1 注意 レッドハット - JBoss Enterprise Application Platform の EC2 Amazon Machine Image における重要な情報を読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3427 2014-02-4 16:36 2012-10-16 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294731 - appthemes classipress Multiple cross-site scripting (XSS) vulnerabilities in the Classipress theme before 3.1.5 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) twitter_id parameter … CWE-79
Cross-site Scripting
CVE-2011-5257 2024-11-21 10:33 2013-02-13 Show GitHub Exploit DB Packet Storm
294732 - limesurvey limesurvey Cross-site scripting (XSS) vulnerability in the tooltips in LimeSurvey before 1.91+ Build 11379-20111116, when viewing survey results, allows remote attackers to inject arbitrary web script or HTML v… CWE-79
Cross-site Scripting
CVE-2011-5256 2024-11-21 10:33 2013-02-13 Show GitHub Exploit DB Packet Storm
294733 - x3cms x3_cms Multiple cross-site scripting (XSS) vulnerabilities in admin/login in X3 CMS 0.4.3.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) PATH_INFO, (2) username, or … CWE-79
Cross-site Scripting
CVE-2011-5255 2024-11-21 10:33 2013-01-31 Show GitHub Exploit DB Packet Storm
294734 - connections_project connections Unspecified vulnerability in the Connections plugin before 0.7.1.6 for WordPress has unknown impact and attack vectors. NVD-CWE-noinfo
CVE-2011-5254 2024-11-21 10:33 2013-01-12 Show GitHub Exploit DB Packet Storm
294735 - thegr dl Dl Download Ticket Service 0.3 through 0.9 allows remote attackers to login as an arbitrary user by supplying an authorization header. CWE-287
Improper Authentication
CVE-2011-5253 2024-11-21 10:33 2013-01-12 Show GitHub Exploit DB Packet Storm
294736 - orchardproject orchard Open redirect vulnerability in Users/Account/LogOff in Orchard 1.0.x before 1.0.21, 1.1.x before 1.1.31, 1.2.x before 1.2.42, and 1.3.x before 1.3.10 allows remote attackers to redirect users to arbi… CWE-20
 Improper Input Validation 
CVE-2011-5252 2024-11-21 10:33 2013-01-12 Show GitHub Exploit DB Packet Storm
294737 - vbulletin vbulletin Open redirect vulnerability in forum/login.php in vBulletin 4.1.3 and earlier allows remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via the url parameter in a … CWE-20
 Improper Input Validation 
CVE-2011-5251 2024-11-21 10:33 2013-01-1 Show GitHub Exploit DB Packet Storm
294738 - redhat resteasy The readFrom function in providers.jaxb.JAXBXmlTypeProvider in RESTEasy before 2.3.2 allows remote attackers to read arbitrary files via an external entity reference in a Java Architecture for XML Bi… CWE-200
Information Exposure
CVE-2011-5245 2024-11-21 10:33 2012-11-24 Show GitHub Exploit DB Packet Storm
294739 - tetex
gnome
t1lib
tetex
evince
t1lib
Multiple off-by-one errors in the (1) token and (2) linetoken functions in backend/dvi/mdvi-lib/afmparse.c in t1lib, as used in teTeX 3.0.x, GNOME evince, and possibly other products, allow remote at… CWE-189
Numeric Errors
CVE-2011-5244 2024-11-21 10:33 2012-11-19 Show GitHub Exploit DB Packet Storm
294740 - abraham_williams twitteroauth TwitterOAuth does not verify that the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field of the X.509 certificate, which allows man-in-the-middle attacker… CWE-20
 Improper Input Validation 
CVE-2011-5243 2024-11-21 10:33 2012-11-6 Show GitHub Exploit DB Packet Storm