Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 31, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219351 6 警告 TYPO3 Association - TYPO3 の Color Picker Wizard コンポーネントにおける任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-3942 2014-06-5 12:20 2014-05-22 Show GitHub Exploit DB Packet Storm
219352 5 警告 TYPO3 Association - TYPO3 における脆弱性 CWE-20
不適切な入力確認
CVE-2014-3941 2014-06-5 12:19 2014-05-22 Show GitHub Exploit DB Packet Storm
219353 4 警告 TYPO3 Association - TYPO3 の Extbase Framework コンポーネントのクエリキャッシュ機能における任意のクエリを読まれる脆弱性 CWE-200
情報漏えい
CVE-2014-3946 2014-06-5 12:17 2014-05-22 Show GitHub Exploit DB Packet Storm
219354 5 警告 libpam-pgsql - libpam-pgsql における認証を回避される脆弱性 CWE-287
不適切な認証
CVE-2013-0191 2014-06-5 11:52 2013-01-15 Show GitHub Exploit DB Packet Storm
219355 7.5 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR SDK におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0520 2014-06-4 18:19 2014-05-13 Show GitHub Exploit DB Packet Storm
219356 7.5 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR SDK におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0519 2014-06-4 18:19 2014-05-13 Show GitHub Exploit DB Packet Storm
219357 7.5 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR SDK におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0518 2014-06-4 18:18 2014-05-13 Show GitHub Exploit DB Packet Storm
219358 7.5 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR SDK におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0517 2014-06-4 18:17 2014-05-13 Show GitHub Exploit DB Packet Storm
219359 7.5 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player および Adobe AIR SDK における同一生成元ポリシーを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0516 2014-06-4 18:17 2014-05-13 Show GitHub Exploit DB Packet Storm
219360 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-0515 2014-06-4 18:16 2014-04-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 31, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296541 - andy_armstrong cgi.pm CGI.pm module before 3.63 for Perl does not properly escape newlines in (1) Set-Cookie or (2) P3P headers, which might allow remote attackers to inject arbitrary headers into responses from applicati… CWE-16
Configuration
CVE-2012-5526 2024-11-21 10:44 2012-11-22 Show GitHub Exploit DB Packet Storm
296542 - moodle moodle Moodle 2.3.x before 2.3.3 allows remote authenticated users to bypass the moodle/role:manage capability requirement and read all capability data by visiting the Check Permissions page. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5481 2024-11-21 10:44 2012-11-21 Show GitHub Exploit DB Packet Storm
296543 - moodle moodle The Database activity module in Moodle 2.1.x before 2.1.9, 2.2.x before 2.2.6, and 2.3.x before 2.3.3 allows remote attackers to bypass intended restrictions on reading other participants' entries vi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5480 2024-11-21 10:44 2012-11-21 Show GitHub Exploit DB Packet Storm
296544 - moodle moodle The Portfolio plugin in Moodle 2.1.x before 2.1.9, 2.2.x before 2.2.6, and 2.3.x before 2.3.3 allows remote authenticated users to upload and execute files via a modified Portfolio API callback. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5479 2024-11-21 10:44 2012-11-21 Show GitHub Exploit DB Packet Storm
296545 - moodle moodle The Database activity module in Moodle 2.1.x before 2.1.9, 2.2.x before 2.2.6, and 2.3.x before 2.3.3 allows remote authenticated users to read activity entries of a different group's users via an ad… CWE-200
Information Exposure
CVE-2012-5473 2024-11-21 10:44 2012-11-21 Show GitHub Exploit DB Packet Storm
296546 - moodle moodle lib/formslib.php in Moodle 2.2.x before 2.2.6 and 2.3.x before 2.3.3 allows remote authenticated users to bypass intended access restrictions via a modified value of a frozen form field. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5472 2024-11-21 10:44 2012-11-21 Show GitHub Exploit DB Packet Storm
296547 - moodle moodle The Dropbox Repository File Picker in Moodle 2.1.x before 2.1.9, 2.2.x before 2.2.6, and 2.3.x before 2.3.3 allows remote authenticated users to access the Dropbox of a different user by leveraging a… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5471 2024-11-21 10:44 2012-11-21 Show GitHub Exploit DB Packet Storm
296548 - firebirdsql firebird TraceManager in Firebird 2.5.0 and 2.5.1, when trace is enabled, allows remote authenticated users to cause a denial of service (NULL pointer dereference and crash) by preparing an empty dynamic SQL … CWE-399
 Resource Management Errors
CVE-2012-5529 2024-11-21 10:44 2012-11-20 Show GitHub Exploit DB Packet Storm
296549 - apple cups CUPS 1.4.4, when running in certain Linux distributions such as Debian GNU/Linux, stores the web interface administrator key in /var/run/cups/certs/0 using certain permissions, which allows local use… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5519 2024-11-21 10:44 2012-11-20 Show GitHub Exploit DB Packet Storm
296550 - asial monaca_debugger The Asial Monaca Debugger application before 1.4.2 for Android allows remote attackers to obtain sensitive (1) account or (2) session ID information in a system log file via a crafted application. CWE-200
Information Exposure
CVE-2012-5172 2024-11-21 10:44 2012-11-17 Show GitHub Exploit DB Packet Storm