Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230581 5 警告 vincent hor - Calendarix における重要な情報を取得される脆弱性 - CVE-2007-3259 2012-12-20 18:19 2007-06-26 Show GitHub Exploit DB Packet Storm
230582 5 警告 vincent hor - Calendarix の calendar.php における重要な情報を取得される脆弱性 - CVE-2007-3258 2012-12-20 18:19 2007-06-27 Show GitHub Exploit DB Packet Storm
230583 4 警告 xythos - XEDM などにおけるマルウェアを配布するドキュメントと任意の Content-Type HTTP ヘッダを関連づけられる脆弱性 - CVE-2007-3256 2012-12-20 18:19 2007-06-27 Show GitHub Exploit DB Packet Storm
230584 6.5 警告 xythos - XEDM におけるクロスサイトリクエストフォージェリの脆弱性 - CVE-2007-3255 2012-12-20 18:19 2007-06-27 Show GitHub Exploit DB Packet Storm
230585 3.5 注意 xythos - XEDM におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3254 2012-12-20 18:19 2007-06-27 Show GitHub Exploit DB Packet Storm
230586 7.8 危険 portalapp - PortalApp におけるデータベースをダウンロードされる脆弱性 - CVE-2007-3252 2012-12-20 18:19 2007-06-18 Show GitHub Exploit DB Packet Storm
230587 6.8 警告 VirtueMart - VirtueMart における SQL インジェクションの脆弱性 - CVE-2007-3247 2012-12-20 18:19 2007-06-18 Show GitHub Exploit DB Packet Storm
230588 7.5 危険 web-app.org
web-app.net
- web-app.net WebAPP などの Menu Manager Mod における任意のコマンドを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2007-3242 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
230589 4.3 警告 WordPress.org - WordPress 用の cordobo-green-park テーマの blogroll.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3241 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
230590 4.3 警告 WordPress.org - WordPress 用の Vistered-Little テーマの 404.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3240 2012-12-20 18:19 2007-06-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293281 - mozilla
suse
opensuse
canonical
redhat
firefox
seamonkey
thunderbird
thunderbird_esr
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
ubuntu_linux
enterprise_li…
The texImage2D implementation in the WebGL subsystem in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey befor… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5833 2024-11-21 10:45 2012-11-21 Show GitHub Exploit DB Packet Storm
293282 8.8 HIGH
Network
mozilla
redhat
canonical
opensuse
suse
firefox
seamonkey
thunderbird
thunderbird_esr
enterprise_linux_server
enterprise_linux_workstation
enterprise_linux_desktop
enterprise_linux_server_eus
enterprise_linux_eus
Use-after-free vulnerability in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 on Mac OS X allow… CWE-416
 Use After Free
CVE-2012-5830 2024-11-21 10:45 2012-11-21 Show GitHub Exploit DB Packet Storm
293283 - mozilla
suse
opensuse
redhat
canonical
debian
firefox
seamonkey
thunderbird
thunderbird_esr
linux_enterprise_server
linux_enterprise_desktop
opensuse
linux_enterprise_software_development_kit
enterprise_linux_server
en…
Heap-based buffer overflow in the nsWindow::OnExposeEvent function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and S… CWE-787
 Out-of-bounds Write
CVE-2012-5829 2024-11-21 10:45 2012-11-21 Show GitHub Exploit DB Packet Storm
293284 - vmware esxi
esx
The vSphere API in VMware ESXi 4.1 and ESX 4.1 allows remote attackers to cause a denial of service (host daemon crash) via an invalid value in a (1) RetrieveProp or (2) RetrievePropEx SOAP request. CWE-20
 Improper Input Validation 
CVE-2012-5703 2024-11-21 10:45 2012-11-20 Show GitHub Exploit DB Packet Storm
293285 - adobe coldfusion Unspecified vulnerability in Adobe ColdFusion 10 before Update 5, when Internet Information Services (IIS) is used, allows attackers to cause a denial of service via unknown vectors. NVD-CWE-noinfo
CVE-2012-5674 2024-11-21 10:45 2012-11-20 Show GitHub Exploit DB Packet Storm
293286 - google web_toolkit Cross-site scripting (XSS) vulnerability in Google Web Toolkit (GWT) 2.4 through 2.5 Final, as used in JBoss Operations Network (ON) 3.1.1 and possibly other products, allows remote attackers to inje… CWE-79
Cross-site Scripting
CVE-2012-5920 2024-11-21 10:45 2012-11-20 Show GitHub Exploit DB Packet Storm
293287 - havalite cms Multiple cross-site scripting (XSS) vulnerabilities in Havalite 1.0.4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) find or (2) replace fields to havalite/find… CWE-79
Cross-site Scripting
CVE-2012-5919 2024-11-21 10:45 2012-11-19 Show GitHub Exploit DB Packet Storm
293288 - razorcms razorcms razorCMS 1.2 allows remote authenticated users to access administrator directories and files by creating and deleting a directory. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-5918 2024-11-21 10:45 2012-11-19 Show GitHub Exploit DB Packet Storm
293289 - flashtux weechat Heap-based buffer overflow in WeeChat 0.3.6 through 0.3.9 allows remote attackers to cause a denial of service (crash or hang) and possibly execute arbitrary code via crafted IRC colors that are not … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5854 2024-11-21 10:45 2012-11-19 Show GitHub Exploit DB Packet Storm
293290 - tom_wilkason snackamp SnackAmp 3.1.3 allows remote attackers to cause a denial of service (application crash) via a long string in an aiff file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5917 2024-11-21 10:45 2012-11-18 Show GitHub Exploit DB Packet Storm