Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218421 5 警告 Craig Drummond - cantata における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-7301 2014-02-4 15:44 2013-12-24 Show GitHub Exploit DB Packet Storm
218422 5 警告 Craig Drummond - cantata における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-7300 2014-02-4 15:43 2013-12-24 Show GitHub Exploit DB Packet Storm
218423 4.3 警告 OpenStack
レッドハット
- OpenStack Oslo の python-qpid クライアントにおける重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2013-6491 2014-02-4 14:23 2013-05-30 Show GitHub Exploit DB Packet Storm
218424 5 警告 Schneider Electric - Schneider Electric Telvent SAGE 3030 RTU のファームウェアにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
CWE-399
CVE-2013-6143 2014-02-4 14:21 2013-12-30 Show GitHub Exploit DB Packet Storm
218425 7.5 危険 タブローソフトウェア - Tableau Server における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-1204 2014-02-4 14:12 2014-01-8 Show GitHub Exploit DB Packet Storm
218426 4.3 警告 Steve Souza - JAMon におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6235 2014-02-4 14:11 2013-01-23 Show GitHub Exploit DB Packet Storm
218427 5.5 警告 IBM - IBM Financial Transaction Manager の OAC コンポーネントにおけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0833 2014-02-4 14:08 2014-01-24 Show GitHub Exploit DB Packet Storm
218428 3.5 注意 IBM - IBM Financial Transaction Manager の OAC コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0832 2014-02-4 14:07 2014-01-24 Show GitHub Exploit DB Packet Storm
218429 6.8 警告 IBM - IBM Financial Transaction Manager の OAC コンポーネントにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-0831 2014-02-4 14:07 2014-01-24 Show GitHub Exploit DB Packet Storm
218430 4 警告 IBM - IBM Financial Transaction Manager の OAC コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-0830 2014-02-4 14:06 2014-01-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293521 - gnu gnutls Double free vulnerability in libgnutls in GnuTLS before 3.0.14 allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted certifi… CWE-399
 Resource Management Errors
CVE-2012-1663 2024-11-21 10:37 2012-03-14 Show GitHub Exploit DB Packet Storm
293522 - vmware vcenter_chargeback_manager VMware vCenter Chargeback Manager (aka CBM) before 2.0.1 does not properly handle XML API requests, which allows remote attackers to read arbitrary files or cause a denial of service via unspecified … CWE-20
 Improper Input Validation 
CVE-2012-1472 2024-11-21 10:37 2012-03-13 Show GitHub Exploit DB Packet Storm
293523 - yassl cyassl yaSSL CyaSSL before 2.0.8 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted X.509 certificate. CWE-399
 Resource Management Errors
CVE-2012-1558 2024-11-21 10:37 2012-03-13 Show GitHub Exploit DB Packet Storm
293524 - parallels parallels_plesk_panel SQL injection vulnerability in admin/plib/api-rpc/Agent.php in Parallels Plesk Panel 7.x and 8.x before 8.6 MU#2, 9.x before 9.5 MU#11, 10.0.x before MU#13, 10.1.x before MU#22, 10.2.x before MU#16, … CWE-89
SQL Injection
CVE-2012-1557 2024-11-21 10:37 2012-03-13 Show GitHub Exploit DB Packet Storm
293525 - microsoft ie
internet_explorer
Microsoft Internet Explorer 6 through 9, and 10 Consumer Preview, allows remote attackers to bypass Protected Mode or cause a denial of service (memory corruption) by leveraging access to a Low integ… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-1545 2024-11-21 10:37 2012-03-9 Show GitHub Exploit DB Packet Storm
293526 - movabletype movable_type_open_source
movable_type_enterprise
movable_type_advanced
movable_type_pro
The default configuration of Movable Type before 4.38, 5.0x before 5.07, and 5.1x before 5.13 supports the "mt:Include file=" attribute, which allows remote authenticated users to conduct directory t… CWE-22
Path Traversal
CVE-2012-1497 2024-11-21 10:37 2012-03-3 Show GitHub Exploit DB Packet Storm
293527 9.8 CRITICAL
Network
404like_project 404like A vulnerability was found in 404like Plugin up to 1.0.2 on WordPress. It has been classified as critical. Affected is the function checkPage of the file 404Like.php. The manipulation of the argument … - CVE-2012-10009 2024-11-21 10:36 2023-03-21 Show GitHub Exploit DB Packet Storm
293528 8.8 HIGH
Network
bestwebsoft portfolio A vulnerability was found in BestWebSoft Portfolio Plugin up to 2.04 on WordPress. It has been classified as problematic. This affects an unknown part. The manipulation leads to cross-site request fo… - CVE-2012-10017 2024-11-21 10:36 2023-12-26 Show GitHub Exploit DB Packet Storm
293529 7.5 HIGH
Network
halulu simple-download-button-shortcode A vulnerability classified as problematic has been found in Halulu simple-download-button-shortcode Plugin 1.0 on WordPress. Affected is an unknown function of the file simple-download-button_dl.php … NVD-CWE-noinfo
CVE-2012-10016 2024-11-21 10:36 2023-10-17 Show GitHub Exploit DB Packet Storm
293530 8.8 HIGH
Network
bestwebsoft twitter A vulnerability was found in BestWebSoft Twitter Plugin up to 2.14 on WordPress. It has been classified as problematic. Affected is the function twttr_settings_page of the file twitter.php of the com… - CVE-2012-10015 2024-11-21 10:36 2023-05-31 Show GitHub Exploit DB Packet Storm