Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219061 3.5 注意 IBM - IBM Algo One の複数のコンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6300 2014-03-6 15:06 2013-10-31 Show GitHub Exploit DB Packet Storm
219062 3.5 注意 IBM - IBM Algo One の複数のコンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6299 2014-03-6 15:05 2013-10-31 Show GitHub Exploit DB Packet Storm
219063 5 警告 IBM - IBM Algo One の複数のコンポーネントにおける重要な情報を取得される脆弱性 CWE-310
暗号の問題
CVE-2013-5468 2014-03-6 15:04 2013-08-22 Show GitHub Exploit DB Packet Storm
219064 3.5 注意 IBM - IBM Rational Requirements Composer および Rational DOORS Next Generation におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0846 2014-03-6 12:21 2014-02-28 Show GitHub Exploit DB Packet Storm
219065 4.9 警告 IBM - IBM Rational Requirements Composer および Rational DOORS Next Generation におけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2014-0845 2014-03-6 12:20 2014-02-28 Show GitHub Exploit DB Packet Storm
219066 3.5 注意 IBM - IBM Rational Requirements Composer および Rational DOORS Next Generation における任意のデータを読まれる脆弱性 CWE-noinfo
情報不足
CVE-2014-0844 2014-03-6 12:20 2014-02-28 Show GitHub Exploit DB Packet Storm
219067 4.3 警告 IBM - IBM WebSphere Portal におけるアイテムの読み込み制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6730 2014-03-6 12:19 2013-11-8 Show GitHub Exploit DB Packet Storm
219068 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2013-6667 2014-03-6 12:03 2013-11-5 Show GitHub Exploit DB Packet Storm
219069 5 警告 Google - Google Chrome の renderer/pepper/pepper_flash_renderer_host.cc における CORS 制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-6666 2014-03-6 12:02 2013-11-5 Show GitHub Exploit DB Packet Storm
219070 7.5 危険 Google - Google Chrome の cc/resources/resource_provider.cc におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-6665 2014-03-6 12:02 2013-11-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292741 - citrix
xen
xenserver
xen
The GNTTABOP_swap_grant_ref sub-operation in the grant table hypercall in Xen 4.2 and Citrix XenServer 6.0.2 allows local guest kernels or administrators to cause a denial of service (host crash) and… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3516 2024-11-21 10:41 2012-11-24 Show GitHub Exploit DB Packet Storm
292742 - xen
qemu
suse
opensuse
redhat
debian
canonical
xen
qemu
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
virtualization
enterprise_linux_server
enterprise_linux_workstatio…
Qemu, as used in Xen 4.0, 4.1 and possibly other products, when emulating certain devices with a virtual console backend, allows local OS guest users to gain privileges via a crafted escape VT100 seq… CWE-20
 Improper Input Validation 
CVE-2012-3515 2024-11-21 10:41 2012-11-24 Show GitHub Exploit DB Packet Storm
292743 - citrix
xen
xenserver
xen
PHYSDEVOP_map_pirq in Xen 4.1 and 4.2 and Citrix XenServer 6.0.2 and earlier allows local HVM guest OS kernels to cause a denial of service (host crash) and possibly read hypervisor or guest memory v… CWE-20
 Improper Input Validation 
CVE-2012-3498 2024-11-21 10:41 2012-11-24 Show GitHub Exploit DB Packet Storm
292744 - munin-monitoring munin munin-cgi-graph in Munin before 2.0.6, when running as a CGI module under Apache, allows remote attackers to load new configurations and create files in arbitrary directories via the logdir command. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3513 2024-11-21 10:41 2012-11-22 Show GitHub Exploit DB Packet Storm
292745 - munin-monitoring munin Munin before 2.0.6 stores plugin state files that run as root in the same group-writable directory as non-root plugins, which allows local users to execute arbitrary code by replacing a state file, a… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3512 2024-11-21 10:41 2012-11-22 Show GitHub Exploit DB Packet Storm
292746 - vmware ovf_tool
workstation
player
Format string vulnerability in VMware OVF Tool 2.1 on Windows, as used in VMware Workstation 8.x before 8.0.5, VMware Player 4.x before 4.0.5, and other products, allows user-assisted remote attacker… CWE-134
Use of Externally-Controlled Format String
CVE-2012-3569 2024-11-21 10:41 2012-11-14 Show GitHub Exploit DB Packet Storm
292747 - isc inn The STARTTLS implementation in nnrpd in INN before 2.5.3 does not properly restrict I/O buffering, which allows man-in-the-middle attackers to insert commands into encrypted sessions by sending a cle… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3523 2024-11-21 10:41 2012-11-11 Show GitHub Exploit DB Packet Storm
292748 - apple quicktime Buffer overflow in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted transform attribute in a text3GTrack e… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-3758 2024-11-21 10:41 2012-11-10 Show GitHub Exploit DB Packet Storm
292749 - apple quicktime Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a crafted PICT file. NVD-CWE-noinfo
CVE-2012-3757 2024-11-21 10:41 2012-11-10 Show GitHub Exploit DB Packet Storm
292750 - apple quicktime Buffer overflow in Apple QuickTime before 7.7.3 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted rnet box in an MP4 movie file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-3756 2024-11-21 10:41 2012-11-10 Show GitHub Exploit DB Packet Storm