Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 26, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219931 9.3 危険 X.Org Foundation
オラクル
- X.Org libXfont の bitmap/bdfread.c 内の bdfReadCharacters 関数におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-6462 2014-04-17 15:33 2013-12-31 Show GitHub Exploit DB Packet Storm
219932 4.4 警告 オラクル - Oracle VirtualBox の VBox/GuestHost/OpenGL/util/net.c における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2014-0981 2014-04-17 15:30 2014-02-13 Show GitHub Exploit DB Packet Storm
219933 4.9 警告 オラクル - Oracle Sun Solaris における Kernel に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0447 2014-04-17 15:26 2014-04-15 Show GitHub Exploit DB Packet Storm
219934 4.6 警告 オラクル - Oracle Sun Solaris における Print Filter Utility に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-0442 2014-04-17 15:26 2014-04-15 Show GitHub Exploit DB Packet Storm
219935 4.6 警告 オラクル - Oracle Sun Solaris における脆弱性 CWE-noinfo
情報不足
CVE-2014-0421 2014-04-17 15:25 2014-04-15 Show GitHub Exploit DB Packet Storm
219936 4.3 警告 オラクル - Oracle Virtualization の Oracle Secure Global Desktop における Workspace Web Application に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2463 2014-04-17 15:20 2014-04-15 Show GitHub Exploit DB Packet Storm
219937 4.4 警告 オラクル - Oracle Virtualization の Oracle VM VirtualBox における Windows ゲスト用のグラフィックドライバに関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2441 2014-04-17 15:20 2014-04-15 Show GitHub Exploit DB Packet Storm
219938 6.4 警告 オラクル - Oracle Virtualization の Oracle Secure Global Desktop における Workspace Web Application に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2439 2014-04-17 15:19 2014-04-15 Show GitHub Exploit DB Packet Storm
219939 6.6 警告 オラクル - Oracle Database Server の Core RDBMS における Create Session および Grant Any Object Privilege に関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2408 2014-04-17 15:01 2014-04-15 Show GitHub Exploit DB Packet Storm
219940 8.5 危険 オラクル - Oracle Database Server の Core RDBMS における Create Session などに関する脆弱性 CWE-noinfo
情報不足
CVE-2014-2406 2014-04-17 15:01 2014-04-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 26, 2026, 4:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
294441 - cartpauj mingle-forum Multiple SQL injection vulnerabilities in fs-admin/fs-admin.php in the Mingle Forum plugin 1.0.32.1 and other versions before 1.0.33 for WordPress allow remote authenticated users to execute arbitrar… CWE-89
SQL Injection
CVE-2012-5327 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm
294442 - idevspot isupport Cross-site request forgery (CSRF) vulnerability in admin/function.php in IDevSpot iSupport 1.x allows remote attackers to hijack the authentication of administrators for requests that add administrat… CWE-352
 Origin Validation Error
CVE-2012-5326 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm
294443 - cartpauj shortcode-redirect Multiple cross-site scripting (XSS) vulnerabilities in the scr_do_redirect function in scr.php in the Shortcode Redirect plugin 1.0.01 and earlier for WordPress allow remote authenticated users with … CWE-79
Cross-site Scripting
CVE-2012-5325 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm
294444 - tracker-software pdf-xchange Multiple buffer overflows in the Pdf Printer Preferences ActiveX Control in pdfxctrl.dll in Tracker Software PDF-XChange 3.60.0128 allow remote attackers to execute arbitrary code via a long string i… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5324 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm
294445 - xavi x7968 Cross-site request forgery (CSRF) vulnerability in webconfig/admin_passwd/passwd.html/admin_passwd in Xavi X7968 allows remote attackers to hijack the authentication of administrators for requests th… CWE-352
 Origin Validation Error
CVE-2012-5323 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm
294446 - xavi x7968 Multiple cross-site scripting (XSS) vulnerabilities in Xavi X7968 allow remote attackers to inject arbitrary web script or HTML via the (1) pvcName parameter to webconfig/wan/confirm.html/confirm or … CWE-79
Cross-site Scripting
CVE-2012-5322 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm
294447 - tiki tikiwiki_cms\/groupware tiki-featured_link.php in TikiWiki CMS/Groupware 8.3 allows remote attackers to load arbitrary web site pages into frames and conduct phishing attacks via the url parameter, aka "frame injection." CWE-20
 Improper Input Validation 
CVE-2012-5321 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm
294448 - sagem f\@st_2604_firmware
f\@st_2604
Cross-site request forgery (CSRF) vulnerability in password.cgi in Sagem F@ST 2604 253180972B allows remote attackers to hijack the authentication of administrators for requests that change the admin… CWE-352
 Origin Validation Error
CVE-2012-5320 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm
294449 - dlink dcs-900
dcs-2000
dcs-5300
Cross-site request forgery (CSRF) vulnerability in setup/security.cgi in D-Link DCS-900, DCS-2000, and DCS-5300 allows remote attackers to hijack the authentication of administrators for requests tha… CWE-352
 Origin Validation Error
CVE-2012-5319 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm
294450 - kishore_asokan kish_guest_posting_plugin Unrestricted file upload vulnerability in uploadify/scripts/uploadify.php in the Kish Guest Posting plugin 1.2 for WordPress allows remote attackers to execute arbitrary code by uploading a file with… NVD-CWE-Other
CVE-2012-5318 2024-11-21 10:44 2012-10-9 Show GitHub Exploit DB Packet Storm