Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228861 6.4 警告 Gecad Technologies - Axigen Free Mail Server にディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-4940 2012-11-2 16:48 2012-10-31 Show GitHub Exploit DB Packet Storm
228862 4.3 警告 SolarWinds - Orion IPAM にクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4939 2012-11-2 16:48 2012-10-31 Show GitHub Exploit DB Packet Storm
228863 3.5 注意 Justin Dodge - Drupal 用 Hotblocks モジュールの設定ページにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5705 2012-11-2 16:16 2012-08-15 Show GitHub Exploit DB Packet Storm
228864 3.5 注意 Justin Dodge - Drupal 用 Hotblocks モジュールにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-5704 2012-11-2 16:15 2012-08-15 Show GitHub Exploit DB Packet Storm
228865 7.8 危険 TP-LINK Technologies - TP-LINK TL-WR841N ルータ上で稼働する Web ベースの管理機能におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-5687 2012-11-2 16:13 2012-11-1 Show GitHub Exploit DB Packet Storm
228866 10 危険 シーメンス - Siemens SiPass integrated のサーバにおける任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-5409 2012-11-2 16:03 2012-10-8 Show GitHub Exploit DB Packet Storm
228867 3.5 注意 Nancy Wichmann - Drupal 用 Announcements モジュール におけるノードのアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4500 2012-11-2 15:06 2012-08-28 Show GitHub Exploit DB Packet Storm
228868 5 警告 Matthias Hutterer - Drupal 用 Email Field モジュールにおけるエンティティに格納されたアドレスに電子メールを送信される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4499 2012-11-2 15:04 2012-08-29 Show GitHub Exploit DB Packet Storm
228869 2.1 注意 inclind - Drupal 用 Custom Publishing Options モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4496 2012-11-2 15:04 2012-08-14 Show GitHub Exploit DB Packet Storm
228870 4 警告 Mime Mail Module Project - Drupal 用 Mime Mail モジュールにおける任意のファイルを添付ファイルとして送信される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4495 2012-11-2 15:01 2012-08-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
249121 5.4 MEDIUM
Network
themepunch slider_revolution The Slider Revolution plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 6.7.18 due to insufficient input sanitization and ou… CWE-79
Cross-site Scripting
CVE-2024-8107 2024-11-14 03:06 2024-10-1 Show GitHub Exploit DB Packet Storm
249122 5.4 MEDIUM
Network
benjaminzekavica easy_svg_support The Easy SVG Support plugin for WordPress is vulnerable to Stored Cross-Site Scripting via REST API SVG File uploads in all versions up to, and including, 3.7 due to insufficient input sanitization a… CWE-79
Cross-site Scripting
CVE-2024-10269 2024-11-14 02:59 2024-11-8 Show GitHub Exploit DB Packet Storm
249123 7.1 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Check if more than chunk-size bytes are written A incorrectly formatted chunk may decompress into more than LZNT_CHUNK_… CWE-125
Out-of-bounds Read
CVE-2024-50247 2024-11-14 02:58 2024-11-9 Show GitHub Exploit DB Packet Storm
249124 7.2 HIGH
Network
wavlink wn530h4_firmware
wn530hg4_firmware
wn572hg3_firmware
A vulnerability classified as critical has been found in WAVLINK WN530H4, WN530HG4 and WN572HG3 up to 20221028. Affected is the function set_ipv6 of the file internet.cgi. The manipulation of the arg… CWE-77
Command Injection
CVE-2024-10429 2024-11-14 02:58 2024-10-28 Show GitHub Exploit DB Packet Storm
249125 7.2 HIGH
Network
wavlink wn530h4_firmware
wn530hg4_firmware
wn572hg3_firmware
A vulnerability was found in WAVLINK WN530H4, WN530HG4 and WN572HG3 up to 20221028. It has been rated as critical. This issue affects the function set_ipv6 of the file firewall.cgi. The manipulation … CWE-77
Command Injection
CVE-2024-10428 2024-11-14 02:57 2024-10-28 Show GitHub Exploit DB Packet Storm
249126 4.3 MEDIUM
Network
jenkins jenkins Jenkins 2.478 and earlier, LTS 2.462.2 and earlier does not redact multi-line secret values in error messages generated for form submissions involving the `secretTextarea` form field. CWE-209
Information Exposure Through an Error Message
CVE-2024-47803 2024-11-14 02:45 2024-10-3 Show GitHub Exploit DB Packet Storm
249127 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Add rough attr alloc_size check NVD-CWE-noinfo
CVE-2024-50246 2024-11-14 02:38 2024-11-9 Show GitHub Exploit DB Packet Storm
249128 7.8 HIGH
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: nvmet-auth: assign dh_key to NULL after kfree_sensitive ctrl->dh_key might be used across multiple calls to nvmet_setup_dhgroup()… CWE-415
 Double Free
CVE-2024-50215 2024-11-14 02:35 2024-11-9 Show GitHub Exploit DB Packet Storm
249129 7.5 HIGH
Network
jenkins credentials Jenkins Credentials Plugin 1380.va_435002fa_924 and earlier, except 1371.1373.v4eb_fa_b_7161e9, does not redact encrypted values of credentials using the `SecretBytes` type when accessing item `confi… CWE-522
 Insufficiently Protected Credentials
CVE-2024-47805 2024-11-14 02:32 2024-10-3 Show GitHub Exploit DB Packet Storm
249130 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: fs/ntfs3: Fix possible deadlock in mi_read Mutex lock with another subclass used in ni_lock_dir(). NVD-CWE-noinfo
CVE-2024-50245 2024-11-14 02:29 2024-11-9 Show GitHub Exploit DB Packet Storm