Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218961 7.5 危険 Parcimonie Project - parcimonie におけるキーフェッチを関連付けられる脆弱性 CWE-362
競合状態
CVE-2014-1921 2014-02-19 14:22 2014-02-7 Show GitHub Exploit DB Packet Storm
218962 4.3 警告 LiveZilla - LiveZilla の Web ベースのオペレータークライアントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7032 2014-02-19 14:17 2013-12-10 Show GitHub Exploit DB Packet Storm
218963 7.5 危険 Irfan Skiljan - IrfanView におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-5351 2014-02-19 14:07 2013-12-16 Show GitHub Exploit DB Packet Storm
218964 1.9 注意 レッドハット - Red Hat JBoss Enterprise Application Platform および JBoss WildFly Application Server におけるサーバを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0018 2014-02-19 14:03 2014-02-13 Show GitHub Exploit DB Packet Storm
218965 4.3 警告 Bean Project - Drupal 用 Bean モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4499 2014-02-19 14:02 2013-10-23 Show GitHub Exploit DB Packet Storm
218966 7.5 危険 Linux NFS - nfs-utils の support/export/hostname.c の host_reliable_addrinfo 関数におけるファイルシステムをマウントされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-2500 2014-02-19 14:00 2011-06-30 Show GitHub Exploit DB Packet Storm
218967 4.3 警告 SAP - SAP NetWeaver 用 SAP Exchange Infrastructure コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1965 2014-02-19 13:52 2014-01-25 Show GitHub Exploit DB Packet Storm
218968 4.3 警告 SAP - SAP NetWeaver の Exchange Infrastructure コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1964 2014-02-19 13:51 2014-01-25 Show GitHub Exploit DB Packet Storm
218969 5 警告 SAP - SAP NetWeaver の Message Server におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2014-1963 2014-02-19 13:50 2014-01-25 Show GitHub Exploit DB Packet Storm
218970 5 警告 SAP - SAP CRM の Gwsync における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-1962 2014-02-19 13:50 2014-01-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293201 - ushahidi ushahidi_platform Multiple SQL injection vulnerabilities in the edit functions in (1) application/controllers/admin/reports.php and (2) application/controllers/members/reports.php in the Ushahidi Platform before 2.5 a… CWE-89
SQL Injection
CVE-2012-3471 2024-11-21 10:40 2012-08-13 Show GitHub Exploit DB Packet Storm
293202 - ushahidi ushahidi_platform Multiple SQL injection vulnerabilities in application/libraries/api/MY_Countries_Api_Object.php in the Ushahidi Platform before 2.5 allow remote attackers to execute arbitrary SQL commands via vector… CWE-89
SQL Injection
CVE-2012-3470 2024-11-21 10:40 2012-08-13 Show GitHub Exploit DB Packet Storm
293203 - ushahidi ushahidi_platform Multiple SQL injection vulnerabilities in the Ushahidi Platform before 2.5 allow remote attackers to execute arbitrary SQL commands via vectors related to (1) the messages admin functionality in appl… CWE-89
SQL Injection
CVE-2012-3469 2024-11-21 10:40 2012-08-13 Show GitHub Exploit DB Packet Storm
293204 - ushahidi ushahidi_platform Multiple SQL injection vulnerabilities in the Ushahidi Platform before 2.5 allow remote attackers to execute arbitrary SQL commands via vectors related to (1) the verify function in application/contr… CWE-89
SQL Injection
CVE-2012-3468 2024-11-21 10:40 2012-08-13 Show GitHub Exploit DB Packet Storm
293205 - caucho resin Caucho Quercus, as distributed in Resin before 4.0.29, allows remote attackers to bypass intended restrictions on filename extensions for created files via a %00 sequence in a pathname within an HTTP… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2969 2024-11-21 10:40 2012-08-13 Show GitHub Exploit DB Packet Storm
293206 - caucho resin Directory traversal vulnerability in Caucho Quercus, as distributed in Resin before 4.0.29, allows remote attackers to create files in arbitrary directories via a .. (dot dot) in a pathname within an… CWE-22
Path Traversal
CVE-2012-2968 2024-11-21 10:40 2012-08-13 Show GitHub Exploit DB Packet Storm
293207 - caucho resin Caucho Quercus, as distributed in Resin before 4.0.29, does not properly implement the == (equals sign equals sign) operator for comparisons, which has unspecified impact and context-dependent attack… NVD-CWE-Other
CVE-2012-2967 2024-11-21 10:40 2012-08-13 Show GitHub Exploit DB Packet Storm
293208 - caucho resin Caucho Quercus, as distributed in Resin before 4.0.29, overwrites entries in the SERVER superglobal array on the basis of POST parameters, which has unspecified impact and remote attack vectors. NVD-CWE-Other
CVE-2012-2966 2024-11-21 10:40 2012-08-13 Show GitHub Exploit DB Packet Storm
293209 - caucho resin Caucho Quercus, as distributed in Resin before 4.0.29, does not properly handle unspecified characters in the names of variables, which has unknown impact and remote attack vectors, related to an "HT… CWE-20
 Improper Input Validation 
CVE-2012-2965 2024-11-21 10:40 2012-08-13 Show GitHub Exploit DB Packet Storm
293210 - breakingpointsystems breakingpoint_storm_appliance_ctm
breakingpoint_storm_appliance
The BreakingPoint Storm appliance before 3.0 requires cleartext credentials for establishing a session from a GUI administrative client, which allows remote attackers to obtain sensitive information … CWE-20
 Improper Input Validation 
CVE-2012-2964 2024-11-21 10:40 2012-08-13 Show GitHub Exploit DB Packet Storm