Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 12:08 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219811 7.5 危険 The Foreman - Foreman における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-5648 2014-04-7 12:21 2012-12-19 Show GitHub Exploit DB Packet Storm
219812 7.5 危険 Crowbar
Novell
- SUSE Cloud 3 で使用される Crowbar Framework 用 Barclamp におけるセキュリティグループの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0592 2014-04-7 12:01 2014-03-27 Show GitHub Exploit DB Packet Storm
219813 4.3 警告 Robert Abramski - WordPress 用 Uploader プラグインの views/notify.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-2287 2014-04-7 11:52 2013-03-1 Show GitHub Exploit DB Packet Storm
219814 5 警告 Zingiri - WordPress 用 Zingiri Forum プラグインの forum.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-4920 2014-04-7 11:49 2012-09-14 Show GitHub Exploit DB Packet Storm
219815 4.3 警告 dotCMS - dotCMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3484 2014-04-4 18:53 2013-06-18 Show GitHub Exploit DB Packet Storm
219816 6.8 警告 GNU Project - a2ps の fixps スクリプトにおける任意のファイルを削除される脆弱性 CWE-noinfo
情報不足
CVE-2014-0466 2014-04-4 18:24 2014-04-1 Show GitHub Exploit DB Packet Storm
219817 4.3 警告 Trojita team - Trojita の Imap/Tasks/OpenConnectionTask.cpp の OpenConnectionTask::handleStateHelper 関数における平文の使用を誘発される脆弱性 CWE-200
情報漏えい
CVE-2014-2567 2014-04-4 18:12 2014-03-20 Show GitHub Exploit DB Packet Storm
219818 10 危険 Linux - Linux Kernel の net/netfilter/nf_conntrack_proto_dccp.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2523 2014-04-4 18:09 2014-01-6 Show GitHub Exploit DB Packet Storm
219819 6.8 警告 b2evolution - b2evolution の blogs/admin.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-7352 2014-04-4 16:19 2013-04-29 Show GitHub Exploit DB Packet Storm
219820 6.5 警告 b2evolution - b2evolution の blogs/admin.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-2945 2014-04-4 16:18 2013-04-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295271 - mozilla
suse
opensuse
redhat
canonical
firefox
seamonkey
thunderbird
thunderbird_esr
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
enterprise_linux_server
en…
The WebGL implementation in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x before 10.0.7, and SeaMonkey before 2.12 on Linux, when a large … CWE-787
 Out-of-bounds Write
CVE-2012-3967 2024-11-21 10:41 2012-08-29 Show GitHub Exploit DB Packet Storm
295272 - mozilla firefox Mozilla Firefox before 15.0 does not properly restrict navigation to the about:newtab page, which allows remote attackers to execute arbitrary JavaScript code with chrome privileges via a crafted web… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3965 2024-11-21 10:41 2012-08-29 Show GitHub Exploit DB Packet Storm
295273 - mozilla firefox
thunderbird_esr
thunderbird
seamonkey
Use-after-free vulnerability in the gfxTextRun::GetUserData function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x before 10.0.7, and S… CWE-399
 Resource Management Errors
CVE-2012-3964 2024-11-21 10:41 2012-08-29 Show GitHub Exploit DB Packet Storm
295274 - mozilla
suse
opensuse
redhat
canonical
firefox
seamonkey
thunderbird
thunderbird_esr
linux_enterprise_desktop
opensuse
linux_enterprise_server
linux_enterprise_software_development_kit
enterprise_linux_server
en…
Use-after-free vulnerability in the js::gc::MapAllocToTraceKind function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x before 10.0.7, a… CWE-416
 Use After Free
CVE-2012-3963 2024-11-21 10:41 2012-08-29 Show GitHub Exploit DB Packet Storm
295275 - mozilla firefox
thunderbird_esr
thunderbird
seamonkey
Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x before 10.0.7, and SeaMonkey before 2.12 do not properly iterate through the characters in a… NVD-CWE-Other
CVE-2012-3962 2024-11-21 10:41 2012-08-29 Show GitHub Exploit DB Packet Storm
295276 - mozilla
suse
opensuse
redhat
canonical
firefox
seamonkey
thunderbird
thunderbird_esr
linux_enterprise_desktop
opensuse
linux_enterprise_server
linux_enterprise_software_development_kit
enterprise_linux_server
en…
Use-after-free vulnerability in the RangeData implementation in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x before 10.0.7, and SeaMonkey… CWE-416
 Use After Free
CVE-2012-3961 2024-11-21 10:41 2012-08-29 Show GitHub Exploit DB Packet Storm
295277 - mozilla firefox
thunderbird
seamonkey
thunderbird_esr
Use-after-free vulnerability in the nsHTMLEditRules::DeleteNonTableElements function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x befo… CWE-399
 Resource Management Errors
CVE-2012-3958 2024-11-21 10:41 2012-08-29 Show GitHub Exploit DB Packet Storm
295278 - symantec messaging_gateway Symantec Messaging Gateway (SMG) before 10.0 allows remote attackers to obtain potentially sensitive information about component versions via unspecified vectors. CWE-200
Information Exposure
CVE-2012-3581 2024-11-21 10:41 2012-08-29 Show GitHub Exploit DB Packet Storm
295279 - symantec messaging_gateway Symantec Messaging Gateway (SMG) before 10.0 allows remote authenticated users to modify the web application by leveraging access to the management interface. NVD-CWE-noinfo
CVE-2012-3580 2024-11-21 10:41 2012-08-29 Show GitHub Exploit DB Packet Storm
295280 - symantec messaging_gateway Symantec Messaging Gateway (SMG) before 10.0 has a default password for an unspecified account, which makes it easier for remote attackers to obtain privileged access via an SSH session. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3579 2024-11-21 10:41 2012-08-29 Show GitHub Exploit DB Packet Storm