Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219741 5 警告 Squid-cache.org
Canonical
- Squid の cachemgr.cgi におけるサービス運用妨害 (リソース消費) の脆弱性 CWE-119
バッファエラー
CVE-2013-0189 2014-03-28 16:24 2013-02-8 Show GitHub Exploit DB Packet Storm
219742 7.5 危険 Google - Google Chrome OS の CrosDisks におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-1707 2014-03-28 16:21 2014-03-14 Show GitHub Exploit DB Packet Storm
219743 7.5 危険 アップル
富士通
Ruby on Rails project
- Ruby on Rails に複数の脆弱性 CWE-20
不適切な入力確認
CVE-2013-0156 2014-03-28 15:31 2013-01-9 Show GitHub Exploit DB Packet Storm
219744 4.3 警告 The Foreman - Foreman の app/views/common/500.html.erb におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0089 2014-03-28 14:54 2014-03-24 Show GitHub Exploit DB Packet Storm
219745 4.3 警告 RSAセキュリティ - EMC RSA Authentication Manager のセルフサービス・コンソールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0623 2014-03-28 14:25 2014-03-26 Show GitHub Exploit DB Packet Storm
219746 9.3 危険 Boris Eyrich Software - Artweaver Plus および Free におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-3481 2014-03-28 13:48 2013-05-30 Show GitHub Exploit DB Packet Storm
219747 9.3 危険 Nuance Communications - Nuance PDF Reader の PDFCore8.dll におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0732 2014-03-28 13:47 2013-06-4 Show GitHub Exploit DB Packet Storm
219748 10 危険 アドビシステムズ - Adobe Reader における PDF サンドボックス保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0512 2014-03-28 13:35 2014-03-13 Show GitHub Exploit DB Packet Storm
219749 10 危険 アドビシステムズ - Adobe Reader におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-0511 2014-03-28 13:34 2014-03-13 Show GitHub Exploit DB Packet Storm
219750 6.8 警告 Symphony CMS - Symphony CMS におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-7346 2014-03-28 12:12 2013-03-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293041 - f-secure anti-virus
psb_workstation_security
safe_anywhere
F-Secure Anti-Virus, Safe Anywhere, and PSB Workstation Security before 11500 for Mac OS X allows local users to disable the Mac OS X firewall via unspecified vectors. NVD-CWE-noinfo
CVE-2012-6646 2024-11-21 10:46 2014-04-18 Show GitHub Exploit DB Packet Storm
293042 - danielb finder Cross-site scripting (XSS) vulnerability in the autocomplete functionality in the Finder module 6.x-1.x before 6.x-1.26, 7.x-1.x, and 7.x-2.x before 7.x-2.0-alpha8 for Drupal allows remote attackers … CWE-79
Cross-site Scripting
CVE-2012-6645 2024-11-21 10:46 2014-04-8 Show GitHub Exploit DB Packet Storm
293043 - clip-bucket clipbucket Multiple cross-site scripting (XSS) vulnerabilities in ClipBucket 2.6 allow remote attackers to inject arbitrary web script or HTML via the (1) cat parameter to channels.php, (2) collections.php, (3)… CWE-79
Cross-site Scripting
CVE-2012-6644 2024-11-21 10:46 2014-04-8 Show GitHub Exploit DB Packet Storm
293044 - clip-bucket clipbucket Multiple SQL injection vulnerabilities in the update_counter function in includes/functions.php in ClipBucket 2.6 allow remote attackers to execute arbitrary SQL commands via the time parameter to (1… CWE-89
SQL Injection
CVE-2012-6643 2024-11-21 10:46 2014-04-8 Show GitHub Exploit DB Packet Storm
293045 - clip-bucket clipbucket Cross-site scripting (XSS) vulnerability in ClipBucket 2.6 allows remote attackers to inject arbitrary web script or HTML via the type parameter to view_channel.php. NOTE: the provenance of this inf… CWE-79
Cross-site Scripting
CVE-2012-6642 2024-11-21 10:46 2014-04-8 Show GitHub Exploit DB Packet Storm
293046 - prestashop prestashop Cross-site scripting (XSS) vulnerability in redirect.php in the Socolissimo module (modules/socolissimo/) in PrestaShop before 1.4.7.2 allows remote attackers to inject arbitrary web script or HTML v… CWE-79
Cross-site Scripting
CVE-2012-6641 2024-11-21 10:46 2014-04-8 Show GitHub Exploit DB Packet Storm
293047 - horde groupware
imp
Cross-site scripting (XSS) vulnerability in Horde Internet Mail Program (IMP) before 5.0.22, as used in Horde Groupware Webmail Edition before 4.0.9, allows remote attackers to inject arbitrary web s… CWE-79
Cross-site Scripting
CVE-2012-6640 2024-11-21 10:46 2014-04-6 Show GitHub Exploit DB Packet Storm
293048 - samsung kies Buffer overflow in the PrepareSync method in the SyncService.dll ActiveX control in Samsung Kies before 2.5.1.12123_2_7 allows remote attackers to execute arbitrary code via a long string to the pass… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-6429 2024-11-21 10:46 2014-04-4 Show GitHub Exploit DB Packet Storm
293049 - opensolution quick_cart
quick_cms
Cross-site scripting (XSS) vulnerability in Open Solution Quick.Cms 5.0 and Quick.Cart 6.0, possibly as downloaded before December 19, 2012, allows remote attackers to inject arbitrary web script or … CWE-79
Cross-site Scripting
CVE-2012-6430 2024-11-21 10:46 2014-03-25 Show GitHub Exploit DB Packet Storm
293050 - mongodb mongodb The default configuration for MongoDB before 2.3.2 does not validate objects, which allows remote authenticated users to cause a denial of service (crash) or read system memory via a crafted BSON obj… CWE-20
 Improper Input Validation 
CVE-2012-6619 2024-11-21 10:46 2014-03-7 Show GitHub Exploit DB Packet Storm