Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
220191 4.3 警告 IBM - IBM WebSphere Portal の WCM UI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-0828 2014-04-3 18:29 2014-03-31 Show GitHub Exploit DB Packet Storm
220192 4.3 警告 シスコシステムズ - Cisco Security Manager の Web フレームワークにおける CRLF インジェクションの脆弱性 CWE-20
不適切な入力確認
CVE-2014-2138 2014-04-3 18:22 2014-04-1 Show GitHub Exploit DB Packet Storm
220193 4.3 警告 シスコシステムズ - Cisco Web セキュリティ アプライアンスの Web フレームワークにおける CRLF インジェクションの脆弱性 CWE-20
不適切な入力確認
CVE-2014-2137 2014-04-3 18:18 2014-04-1 Show GitHub Exploit DB Packet Storm
220194 4.3 警告 シスコシステムズ - Cisco Unity Connection の Web Inbox におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2125 2014-04-3 18:17 2014-04-1 Show GitHub Exploit DB Packet Storm
220195 5 警告 Posh portal project - POSH の portal/scr_authentif.php の Remember Me 機能における重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2014-2212 2014-04-3 18:14 2014-02-20 Show GitHub Exploit DB Packet Storm
220196 7.5 危険 Horde - Horde Application Framework の Util ライブラリにおけるオブジェクトインジェクション攻撃を実行される脆弱性 CWE-94
コード・インジェクション
CVE-2014-1691 2014-04-3 17:00 2014-01-28 Show GitHub Exploit DB Packet Storm
220197 7.5 危険 Vtiger - Vtiger CRM における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-3213 2014-04-3 16:41 2013-03-26 Show GitHub Exploit DB Packet Storm
220198 9.3 危険 オートデスク株式会社 - 複数の Autodesk SketchBook 製品におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-5365 2014-04-3 16:34 2013-08-21 Show GitHub Exploit DB Packet Storm
220199 4.3 警告 Ganglia - Ganglia Web の views_view.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-1770 2014-04-3 15:54 2013-03-7 Show GitHub Exploit DB Packet Storm
220200 4.9 警告 Xen プロジェクト - Xen の libvchan の io.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-1896 2014-04-3 15:49 2014-02-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295281 - mozilla
suse
opensuse
canonical
redhat
firefox
seamonkey
thunderbird
thunderbird_esr
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
ubuntu_linux
enterprise_li…
Use-after-free vulnerability in the nsTextEditorState::PrepareEditor function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.… CWE-416
 Use After Free
CVE-2012-5840 2024-11-21 10:45 2012-11-21 Show GitHub Exploit DB Packet Storm
295282 - mozilla
suse
opensuse
canonical
redhat
firefox
seamonkey
thunderbird
thunderbird_esr
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
ubuntu_linux
enterprise_li…
Heap-based buffer overflow in the gfxShapedWord::CompressedGlyph::IsClusterStart function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.… CWE-787
 Out-of-bounds Write
CVE-2012-5839 2024-11-21 10:45 2012-11-21 Show GitHub Exploit DB Packet Storm
295283 - mozilla
suse
opensuse
canonical
firefox
seamonkey
thunderbird
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
ubuntu_linux
Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via vectors involving… CWE-94
Code Injection
CVE-2012-5836 2024-11-21 10:45 2012-11-21 Show GitHub Exploit DB Packet Storm
295284 - mozilla
suse
opensuse
canonical
redhat
firefox
seamonkey
thunderbird
thunderbird_esr
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
ubuntu_linux
enterprise_li…
Integer overflow in the WebGL subsystem in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 allows… CWE-190
 Integer Overflow or Wraparound
CVE-2012-5835 2024-11-21 10:45 2012-11-21 Show GitHub Exploit DB Packet Storm
295285 - mozilla
suse
opensuse
canonical
redhat
firefox
seamonkey
thunderbird
thunderbird_esr
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
ubuntu_linux
enterprise_li…
The texImage2D implementation in the WebGL subsystem in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey befor… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5833 2024-11-21 10:45 2012-11-21 Show GitHub Exploit DB Packet Storm
295286 8.8 HIGH
Network
mozilla
redhat
canonical
opensuse
suse
firefox
seamonkey
thunderbird
thunderbird_esr
enterprise_linux_server
enterprise_linux_workstation
enterprise_linux_desktop
enterprise_linux_server_eus
enterprise_linux_eus
Use-after-free vulnerability in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 on Mac OS X allow… CWE-416
 Use After Free
CVE-2012-5830 2024-11-21 10:45 2012-11-21 Show GitHub Exploit DB Packet Storm
295287 - mozilla
suse
opensuse
redhat
canonical
debian
firefox
seamonkey
thunderbird
thunderbird_esr
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
enterprise_linux_server
en…
Heap-based buffer overflow in the nsWindow::OnExposeEvent function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and S… CWE-787
 Out-of-bounds Write
CVE-2012-5829 2024-11-21 10:45 2012-11-21 Show GitHub Exploit DB Packet Storm
295288 - vmware esxi
esx
The vSphere API in VMware ESXi 4.1 and ESX 4.1 allows remote attackers to cause a denial of service (host daemon crash) via an invalid value in a (1) RetrieveProp or (2) RetrievePropEx SOAP request. CWE-20
 Improper Input Validation 
CVE-2012-5703 2024-11-21 10:45 2012-11-20 Show GitHub Exploit DB Packet Storm
295289 - adobe coldfusion Unspecified vulnerability in Adobe ColdFusion 10 before Update 5, when Internet Information Services (IIS) is used, allows attackers to cause a denial of service via unknown vectors. NVD-CWE-noinfo
CVE-2012-5674 2024-11-21 10:45 2012-11-20 Show GitHub Exploit DB Packet Storm
295290 - google web_toolkit Cross-site scripting (XSS) vulnerability in Google Web Toolkit (GWT) 2.4 through 2.5 Final, as used in JBoss Operations Network (ON) 3.1.1 and possibly other products, allows remote attackers to inje… CWE-79
Cross-site Scripting
CVE-2012-5920 2024-11-21 10:45 2012-11-20 Show GitHub Exploit DB Packet Storm