Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218581 6.8 警告 SpringSource - Spring Framework の Spring MVC における任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-7315 2014-01-27 15:39 2013-08-22 Show GitHub Exploit DB Packet Storm
218582 10 危険 アドビシステムズ - Adobe Digital Editions における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2014-0494 2014-01-27 15:11 2014-01-22 Show GitHub Exploit DB Packet Storm
218583 6.8 警告 シスコシステムズ - Cisco Video Surveillance Operations Manager における重要な情報を取得される脆弱性 CWE-287
不適切な認証
CVE-2014-0674 2014-01-27 14:48 2014-01-24 Show GitHub Exploit DB Packet Storm
218584 7.5 危険 レッドハット - Red Hat Certificate System および Dogtag Certificate System の Token Processing System におけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2013-1886 2014-01-27 14:48 2013-05-22 Show GitHub Exploit DB Packet Storm
218585 4.3 警告 レッドハット - Red Hat Certificate System および Dogtag Certificate System の Token Processing System におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1885 2014-01-27 14:47 2013-05-22 Show GitHub Exploit DB Packet Storm
218586 6.8 警告 日本電気 - 複数の NEC 製のルータの OSPF の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2013-7314 2014-01-27 14:39 2013-08-1 Show GitHub Exploit DB Packet Storm
218587 5.4 警告 Enterasys Networks - Enterasys のスイッチおよびルータの OSPF の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2013-7312 2014-01-27 14:33 2013-08-1 Show GitHub Exploit DB Packet Storm
218588 5.4 警告 ヤマハ - Yamaha ルータの OSPF の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2013-7310 2014-01-27 14:21 2013-08-1 Show GitHub Exploit DB Packet Storm
218589 5.4 警告 D-Link Systems, Inc. - D-Link DES-3810-28 スイッチのファームウェアの OSPF の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2013-7308 2014-01-27 14:13 2013-08-1 Show GitHub Exploit DB Packet Storm
218590 5.4 警告 ブロケード コミュニケーションズ システムズ株式会社 - Brocade Vyatta vRouter のソフトウェアの OSPF の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2013-7307 2014-01-27 14:09 2013-08-1 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 5, 2026, 4:51 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293001 - oracle
sun
javafx
jdk
jre
Unspecified vulnerability in the Java Runtime Environment (JRE) component in Oracle Java SE 7 Update 7 and earlier, 6 Update 35 and earlier, 5.0 Update 36 and earlier, and 1.4.2_38 and earlier; and J… NVD-CWE-noinfo
CVE-2012-1531 2024-11-21 10:37 2012-10-17 Show GitHub Exploit DB Packet Storm
293002 - nicolas_tormo phppaleo Directory traversal vulnerability in index.php in phpPaleo 4.8b155 and earlier allows remote attackers to include and execute arbitrary local files via a .. (dot dot) in the lang parameter. CWE-22
Path Traversal
CVE-2012-1671 2024-11-21 10:37 2012-10-9 Show GitHub Exploit DB Packet Storm
293003 - postgresql postgresql
postgresql_jdbc_driver
Interaction error in the PostgreSQL JDBC driver before 8.2, when used with a PostgreSQL server with the "standard_conforming_strings" option enabled, such as the default configuration of PostgreSQL 9… NVD-CWE-Other
CVE-2012-1618 2024-11-21 10:37 2012-10-7 Show GitHub Exploit DB Packet Storm
293004 - hans_nilsson video_filter Cross-site scripting (XSS) vulnerability in video_filter.codecs.inc in the Video Filter module 6.x-2.x and 7.x-2.x for Drupal allows remote attackers to inject arbitrary web script or HTML via the EM… CWE-79
Cross-site Scripting
CVE-2012-1634 2024-11-21 10:37 2012-10-7 Show GitHub Exploit DB Packet Storm
293005 - lingotek lingotek Multiple cross-site scripting (XSS) vulnerabilities in the Lingotek module 6.x-1.x before 6.x-1.40 for Drupal allow remote authenticated users to inject arbitrary web script or HTML when (1) creating… CWE-79
Cross-site Scripting
CVE-2012-1624 2024-11-21 10:37 2012-10-7 Show GitHub Exploit DB Packet Storm
293006 - aidanlister regcode The Registration Codes module before 6.x-2.4 for Drupal does not restrict access to the registration code list, which might allow remote attackers to bypass intended registration restrictions. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-1623 2024-11-21 10:37 2012-10-7 Show GitHub Exploit DB Packet Storm
293007 - ez ez_publish Unspecified vulnerability in ez Publish 4.1.4, 4.2, 4.3, 4.4, 4.5, and 4.6 has unknown impact and attack vectors related to an insecure direct object reference. NVD-CWE-noinfo
CVE-2012-1565 2024-11-21 10:37 2012-10-7 Show GitHub Exploit DB Packet Storm
293008 - yuriy_v_semenikhin yvs_image_gallery Cross-site scripting (XSS) vulnerability in administration/create_album.php in YVS Image Gallery allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2012-1564 2024-11-21 10:37 2012-10-7 Show GitHub Exploit DB Packet Storm
293009 - nextbbs nextbbs Cross-site scripting (XSS) vulnerability in NextBBS 0.6 allows remote attackers to inject arbitrary web script or HTML via the do parameter to index.php. CWE-79
Cross-site Scripting
CVE-2012-1604 2024-11-21 10:37 2012-10-2 Show GitHub Exploit DB Packet Storm
293010 - nextbbs nextbbs Multiple SQL injection vulnerabilities in ajaxserver.php in NextBBS 0.6 allow remote attackers to execute arbitrary SQL commands via the (1) curstr parameter in the findUsers function, (2) id paramet… CWE-89
SQL Injection
CVE-2012-1603 2024-11-21 10:37 2012-10-2 Show GitHub Exploit DB Packet Storm