Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219301 5 警告 Howard Jones - Network Weathermap の editor.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-3739 2014-06-9 17:25 2013-06-10 Show GitHub Exploit DB Packet Storm
219302 4.3 警告 Howard Jones - Network Weathermap の editor.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2618 2014-06-9 17:25 2013-04-2 Show GitHub Exploit DB Packet Storm
219303 8.3 危険 Radio Thermostat Company of America - Radio Thermostat CT80 および CT50 のファームウェアにおける設定を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-4860 2014-06-9 15:11 2013-08-2 Show GitHub Exploit DB Packet Storm
219304 5 警告 AuraCMS - AuraCMS の filemanager.php における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-3975 2014-06-9 14:51 2014-05-29 Show GitHub Exploit DB Packet Storm
219305 4.3 警告 AuraCMS - AuraCMS の filemanager.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-3974 2014-06-9 14:50 2014-05-29 Show GitHub Exploit DB Packet Storm
219306 9.3 危険 コーレル株式会社 - Corel PaintShop Pro X5 および X6 における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2013-0733 2014-06-9 14:46 2013-10-4 Show GitHub Exploit DB Packet Storm
219307 4.3 警告 コーレル株式会社 - Corel Quattro Pro X6 Standard Edition の QPW160.dll におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2012-4728 2014-06-9 14:45 2012-08-27 Show GitHub Exploit DB Packet Storm
219308 4 警告 ZNC - ZNC におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2013-2130 2014-06-9 14:06 2013-05-28 Show GitHub Exploit DB Packet Storm
219309 5 警告 A10ネットワークス株式会社 - A10 Networks Advanced Core Operating System におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-3976 2014-06-9 14:00 2014-04-2 Show GitHub Exploit DB Packet Storm
219310 7.5 危険 FrontAccounting - FrontAccounting における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-3973 2014-06-9 13:42 2014-05-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 29, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296361 - xen xen Xen 4.0 through 4.2, when running 32-bit x86 PV guests on 64-bit hypervisors, allows local guest OS administrators to cause a denial of service (infinite loop and hang or crash) via invalid arguments… CWE-399
 Resource Management Errors
CVE-2012-4539 2024-11-21 10:43 2012-11-22 Show GitHub Exploit DB Packet Storm
296362 - xen xen Xen 3.4 through 4.2, and possibly earlier versions, does not properly synchronize the p2m and m2p tables when the set_p2m_entry function fails, which allows local HVM guest OS administrators to cause… CWE-16
Configuration
CVE-2012-4537 2024-11-21 10:43 2012-11-22 Show GitHub Exploit DB Packet Storm
296363 - xen xen The (1) domain_pirq_to_emuirq and (2) physdev_unmap_pirq functions in Xen 2.2 allows local guest OS administrators to cause a denial of service (Xen crash) via a crafted pirq value that triggers an o… NVD-CWE-noinfo
CVE-2012-4536 2024-11-21 10:43 2012-11-22 Show GitHub Exploit DB Packet Storm
296364 - xen xen Xen 3.4 through 4.2, and possibly earlier versions, allows local guest OS administrators to cause a denial of service (Xen infinite loop and physical CPU consumption) by setting a VCPU with an "inapp… CWE-399
 Resource Management Errors
CVE-2012-4535 2024-11-21 10:43 2012-11-22 Show GitHub Exploit DB Packet Storm
296365 - mcrypt mcrypt Stack-based buffer overflow in mcrypt 2.6.8 and earlier allows user-assisted remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a long file name. NOTE: it … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-4527 2024-11-21 10:43 2012-11-22 Show GitHub Exploit DB Packet Storm
296366 - uninett radsecproxy The DTLS support in radsecproxy before 1.6.2 does not properly verify certificates when there are configuration blocks with CA settings that are unrelated to the block being used for verifying the ce… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-4566 2024-11-21 10:43 2012-11-20 Show GitHub Exploit DB Packet Storm
296367 - google web_toolkit Cross-site scripting (XSS) vulnerability in Google Web Toolkit (GWT) 2.4 Beta and release candidates before 2.4.0 allows remote attackers to inject arbitrary web script or HTML via unspecified vector… CWE-79
Cross-site Scripting
CVE-2012-4563 2024-11-21 10:43 2012-11-20 Show GitHub Exploit DB Packet Storm
296368 - uninett radsecproxy radsecproxy before 1.6.1 does not properly verify certificates when there are configuration blocks with CA settings that are unrelated to the block being used for verifying the certificate chain, whi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-4523 2024-11-21 10:43 2012-11-20 Show GitHub Exploit DB Packet Storm
296369 - cups-pk-helper_project cups-pk-helper cups-pk-helper before 0.2.3 does not properly wrap the (1) cupsGetFile and (2) cupsPutFile function calls, which allows user-assisted remote attackers to read or overwrite sensitive files using CUPS … CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-4510 2024-11-21 10:43 2012-11-20 Show GitHub Exploit DB Packet Storm
296370 - matomo matomo Cross-site scripting (XSS) vulnerability in Piwik before 1.9 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2012-4541 2024-11-21 10:43 2012-11-19 Show GitHub Exploit DB Packet Storm