Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228531 2.1 注意 Mixpanel Project - Drupal 用 Mixpanel モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5585 2012-12-28 15:50 2012-11-28 Show GitHub Exploit DB Packet Storm
228532 4.3 警告 Made to Order Software - Drupal 用 Table of Contents モジュールにおけるノードのヘッダを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5584 2012-12-28 15:49 2012-11-14 Show GitHub Exploit DB Packet Storm
228533 6.8 警告 Sensio Labs - Symfony における任意のサービスにアクセスされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6432 2012-12-28 15:20 2012-12-20 Show GitHub Exploit DB Packet Storm
228534 6.4 警告 Sensio Labs - Symfony における URI の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6431 2012-12-28 15:18 2012-12-20 Show GitHub Exploit DB Packet Storm
228535 4.3 警告 Sebastian Heinlein
Canonical
- Ubuntu の Aptdaemon における任意のパッケージレポジトリの GPG キーをインストールされる脆弱性 CWE-noinfo
情報不足
CVE-2012-0962 2012-12-28 15:03 2012-12-17 Show GitHub Exploit DB Packet Storm
228536 2.1 注意 Debian - Ubuntu で使用される APT における重要なシェル情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-0961 2012-12-28 14:59 2012-12-12 Show GitHub Exploit DB Packet Storm
228537 4.3 警告 PS Project Management Team - Firefox 用 Unity integration 拡張機能における同一生成元ポリシーを回避される脆弱性 CWE-DesignError
CVE-2012-0958 2012-12-28 14:58 2012-10-23 Show GitHub Exploit DB Packet Storm
228538 - - Ruby on Rails project - ** 削除 ** Ruby on Rails 用 Authlogic gem における SQL インジェクションの脆弱性 - CVE-2012-5664 2012-12-28 14:22 2012-12-26 Show GitHub Exploit DB Packet Storm
228539 4.3 警告 Opera Software ASA - Android 版 Opera Mini ウェブブラウザおよび Opera Mobile ウェブブラウザにおいて任意のスクリプトが実行される脆弱性 CWE-200
情報漏えい
CVE-2012-5180 2012-12-28 14:17 2012-12-20 Show GitHub Exploit DB Packet Storm
228540 2.6 注意 WordPress.org - WordPress における有効なセッション識別子を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-5868 2012-12-28 11:58 2012-12-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 9, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
274271 6.3 MEDIUM
Network
debian
apache
canonical
debian_linux
tomcat
ubuntu_linux
The setGlobalContext method in org/apache/naming/factory/ResourceLinkFactory.java in Apache Tomcat 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M3 does not consider whether ResourceLink… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-0763 2024-11-21 11:42 2016-02-25 Show GitHub Exploit DB Packet Storm
274272 8.8 HIGH
Network
apache
debian
canonical
tomcat
debian_linux
ubuntu_linux
The session-persistence implementation in Apache Tomcat 6.x before 6.0.45, 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M2 mishandles session attributes, which allows remote authenticat… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-0714 2024-11-21 11:42 2016-02-25 Show GitHub Exploit DB Packet Storm
274273 4.3 MEDIUM
Network
canonical
debian
apache
ubuntu_linux
debian_linux
tomcat
Apache Tomcat 6.x before 6.0.45, 7.x before 7.0.68, 8.x before 8.0.31, and 9.x before 9.0.0.M2 does not place org.apache.catalina.manager.StatusManagerServlet on the org/apache/catalina/core/Restrict… CWE-200
Information Exposure
CVE-2016-0706 2024-11-21 11:42 2016-02-25 Show GitHub Exploit DB Packet Storm
274274 6.1 MEDIUM
Network
fedoraproject
moodle
fedora
moodle
Cross-site scripting (XSS) vulnerability in the search_pagination function in course/classes/management_renderer.php in Moodle 2.8.x before 2.8.10, 2.9.x before 2.9.4, and 3.0.x before 3.0.2 allows r… CWE-79
Cross-site Scripting
CVE-2016-0725 2024-11-21 11:42 2016-02-22 Show GitHub Exploit DB Packet Storm
274275 4.3 MEDIUM
Network
moodle
fedoraproject
moodle
fedora
The (1) core_enrol_get_course_enrolment_methods and (2) enrol_self_get_instance_info web services in Moodle through 2.6.11, 2.7.x before 2.7.12, 2.8.x before 2.8.10, 2.9.x before 2.9.4, and 3.0.x bef… CWE-264
CWE-200
Permissions, Privileges, and Access Controls
Information Exposure
CVE-2016-0724 2024-11-21 11:42 2016-02-22 Show GitHub Exploit DB Packet Storm
274276 7.8 HIGH
Local
libreoffice
canonical
libreoffice
ubuntu_linux
LibreOffice before 5.0.5 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted LwpTocSuperLayout record in a LotusWordPro (l… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-0795 2024-11-21 11:42 2016-02-19 Show GitHub Exploit DB Packet Storm
274277 7.8 HIGH
Local
libreoffice
canonical
libreoffice
ubuntu_linux
The lwp filter in LibreOffice before 5.0.4 allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via a crafted LotusWordPro (lwp) document. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-0794 2024-11-21 11:42 2016-02-19 Show GitHub Exploit DB Packet Storm
274278 7.5 HIGH
Network
postgresql
canonical
debian
postgresql
ubuntu_linux
debian_linux
PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 allows remote attackers to cause a denial of service (infinite loop or buffer overflow a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-0773 2024-11-21 11:42 2016-02-18 Show GitHub Exploit DB Packet Storm
274279 8.8 HIGH
Network
postgresql
canonical
debian
postgresql
ubuntu_linux
debian_linux
PostgreSQL before 9.1.20, 9.2.x before 9.2.15, 9.3.x before 9.3.11, 9.4.x before 9.4.6, and 9.5.x before 9.5.1 does not properly restrict access to unspecified custom configuration settings (GUCS) fo… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-0766 2024-11-21 11:42 2016-02-18 Show GitHub Exploit DB Packet Storm
274280 5.3 MEDIUM
Network
rubyonrails
debian
fedoraproject
opensuse
rails
debian_linux
fedora
leap
Active Model in Ruby on Rails 4.1.x before 4.1.14.1, 4.2.x before 4.2.5.1, and 5.x before 5.0.0.beta1.1 supports the use of instance-level writers for class accessors, which allows remote attackers t… NVD-CWE-noinfo
CVE-2016-0753 2024-11-21 11:42 2016-02-16 Show GitHub Exploit DB Packet Storm