Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219151 4.3 警告 Dolibarr ERP & CRM - Dolibarr ERP/CRM におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3991 2014-07-14 14:00 2014-07-8 Show GitHub Exploit DB Packet Storm
219152 4.3 警告 Free Document Management Software - OpenDocMan の odm-init.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4853 2014-07-14 13:53 2014-07-1 Show GitHub Exploit DB Packet Storm
219153 7.5 危険 The Digital Craft - Digital Craft AtomCMS の admin/uploads.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-4852 2014-07-14 13:44 2014-07-7 Show GitHub Exploit DB Packet Storm
219154 4 警告 レッドハット - Red Hat Enterprise Virtualization で使用される oVirt の ovirt-engine の REST API における任意のファイルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2014-3485 2014-07-14 10:50 2014-06-30 Show GitHub Exploit DB Packet Storm
219155 4.3 警告 レッドハット - Red Hat Enterprise MRG で使用される Cumin における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2014-0174 2014-07-14 10:50 2014-07-9 Show GitHub Exploit DB Packet Storm
219156 3.5 注意 Liferay - Liferay Portal に複数のクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2963 2014-07-11 19:11 2014-07-9 Show GitHub Exploit DB Packet Storm
219157 8.3 危険 横河電機株式会社 - CENTUM を含む複数の YOKOGAWA 製品にバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-3888 2014-07-11 19:08 2014-07-7 Show GitHub Exploit DB Packet Storm
219158 6.8 警告 Piwigo - Piwigo におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-4614 2014-07-11 17:04 2014-03-25 Show GitHub Exploit DB Packet Storm
219159 4.3 警告 Blogstand Banner plugin project - WordPress 用 Blogstand Banner プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4848 2014-07-11 14:39 2014-06-28 Show GitHub Exploit DB Packet Storm
219160 4.3 警告 Buffercode - WordPress 用 Random Banner プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4847 2014-07-11 14:38 2014-06-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
297041 - 3s-software codesys_runtime_system The Runtime Toolkit in CODESYS Runtime System 2.3.x and 2.4.x does not require authentication, which allows remote attackers to (1) execute commands via the command-line interface in the TCP listener… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-6068 2024-11-21 10:45 2013-01-22 Show GitHub Exploit DB Packet Storm
297042 - php php The openssl_encrypt function in ext/openssl/openssl.c in PHP 5.3.9 through 5.3.13 does not initialize a certain variable, which allows remote attackers to obtain sensitive information from process me… CWE-200
Information Exposure
CVE-2012-6113 2024-11-21 10:45 2013-01-20 Show GitHub Exploit DB Packet Storm
297043 - cisco adaptive_security_appliance_software
adaptive_security_appliance
asa_1000v_cloud_firewall
asa_5500
Cisco Adaptive Security Appliances (ASA) devices with firmware 8.x through 8.4(1) do not properly manage SSH sessions, which allows remote authenticated users to cause a denial of service (device cra… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5717 2024-11-21 10:45 2013-01-19 Show GitHub Exploit DB Packet Storm
297044 - rpm rpm The rpmpkgRead function in lib/package.c in RPM 4.10.x before 4.10.2 does not return an error code in certain situations involving an "unparseable signature," which allows remote attackers to bypass … CWE-255
Credentials Management
CVE-2012-6088 2024-11-21 10:45 2013-01-18 Show GitHub Exploit DB Packet Storm
297045 - fireflymediaserver firefly_media_server Firefly Media Server 1.0.0.1359 allows remote attackers to cause a denial of service (NULL pointer dereference) via a (1) crafted Connection HTTP header; a return carriage control character in the (2… NVD-CWE-Other
CVE-2012-5875 2024-11-21 10:45 2013-01-18 Show GitHub Exploit DB Packet Storm
297046 5.5 MEDIUM
Local
inkscape
fedoraproject
canonical
opensuse
inkscape
fedora
ubuntu_linux
opensuse
The rasterization process in Inkscape before 0.48.4 allows local users to read arbitrary files via an external entity in a SVG file, aka an XML external entity (XXE) injection attack. CWE-611
XXE
CVE-2012-5656 2024-11-21 10:45 2013-01-18 Show GitHub Exploit DB Packet Storm
297047 - specview specview Directory traversal vulnerability in the web server in SpecView 2.5 build 853 and earlier allows remote attackers to read arbitrary files via a ... (dot dot dot) in a URI. CWE-22
Path Traversal
CVE-2012-5972 2024-11-21 10:45 2013-01-18 Show GitHub Exploit DB Packet Storm
297048 - elite-board elite_bulletin_board Multiple SQL injection vulnerabilities in the (1) update_whosonline_reg and (2) update_whosonline_guest functions in Elite Bulletin Board before 2.1.22 allow remote attackers to execute arbitrary SQL… CWE-89
SQL Injection
CVE-2012-5874 2024-11-21 10:45 2013-01-12 Show GitHub Exploit DB Packet Storm
297049 - digium asterisk
certified_asterisk
Asterisk Open Source 1.8.x before 1.8.19.1, 10.x before 10.11.1, and 11.x before 11.1.2; Certified Asterisk 1.8.11 before 1.8.11-cert10; and Asterisk Digiumphones 10.x-digiumphones before 10.11.1-dig… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5977 2024-11-21 10:45 2013-01-5 Show GitHub Exploit DB Packet Storm
297050 - swi-prolog swi-prolog Multiple stack-based buffer overflows in the expand function in os/pl-glob.c in SWI-Prolog before 6.2.5 and 6.3.x before 6.3.7 allow remote attackers to cause a denial of service (application crash) … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-6090 2024-11-21 10:45 2013-01-4 Show GitHub Exploit DB Packet Storm