Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231141 4.3 警告 Mozilla Foundation
Yahoo!
- Bugzilla で使用される YUI におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5883 2012-11-19 15:08 2012-11-16 Show GitHub Exploit DB Packet Storm
231142 4.3 警告 Yahoo! - YUI の Flash インフラストラクチャコンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5882 2012-11-19 15:08 2012-11-16 Show GitHub Exploit DB Packet Storm
231143 4.3 警告 Yahoo! - YUI の Flash インフラストラクチャコンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5881 2012-11-19 15:06 2011-11-16 Show GitHub Exploit DB Packet Storm
231144 4.3 警告 Mozilla Foundation - Bugzilla の template/en/default/bug/field-events.js.tmpl における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-4199 2012-11-19 14:53 2012-11-13 Show GitHub Exploit DB Packet Storm
231145 4 警告 Mozilla Foundation - Bugzilla の Bugzilla/WebService/User.pm におけるプライベートグループ名を見つけられる脆弱性 CWE-200
情報漏えい
CVE-2012-4198 2012-11-19 14:50 2012-11-13 Show GitHub Exploit DB Packet Storm
231146 5 警告 Mozilla Foundation - Bugzilla の attachment.cgi における添付された詳細を読まれる脆弱性 CWE-200
情報漏えい
CVE-2012-4197 2012-11-19 14:38 2012-11-13 Show GitHub Exploit DB Packet Storm
231147 4.3 警告 Mozilla Foundation - Bugzilla におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4189 2012-11-19 14:18 2012-11-13 Show GitHub Exploit DB Packet Storm
231148 6.8 警告 PHOME.NET - EmpireCMS の e/class/connect.php における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-5777 2012-11-19 14:04 2012-11-16 Show GitHub Exploit DB Packet Storm
231149 5.5 警告 MantisBT Group - MantisBT の core/email_api.php における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5523 2012-11-19 13:56 2012-11-9 Show GitHub Exploit DB Packet Storm
231150 5.5 警告 MantisBT Group - MantisBT におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5522 2012-11-19 13:39 2012-11-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292981 - trevor_mckay
redhat
cumin
enterprise_mrg
Multiple SQL injection vulnerabilities in the get_sample_filters_by_signature function in Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, allow remote at… CWE-89
SQL Injection
CVE-2012-2684 2024-11-21 10:39 2012-09-29 Show GitHub Exploit DB Packet Storm
292982 - trevor_mckay
redhat
cumin
enterprise_mrg
Multiple cross-site scripting (XSS) vulnerabilities in Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, allow remote attackers to inject arbitrary web scr… CWE-79
Cross-site Scripting
CVE-2012-2683 2024-11-21 10:39 2012-09-29 Show GitHub Exploit DB Packet Storm
292983 - trevor_mckay
redhat
cumin
enterprise_mrg
Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, uses predictable random numbers to generate session keys, which makes it easier for remote attackers to g… CWE-310
Cryptographic Issues
CVE-2012-2681 2024-11-21 10:39 2012-09-29 Show GitHub Exploit DB Packet Storm
292984 - trevor_mckay
redhat
cumin
enterprise_mrg
Cumin before 0.1.5444, as used in Red Hat Enterprise Messaging, Realtime, and Grid (MRG) 2.0, does not properly restrict access to resources, which allows remote attackers to obtain sensitive informa… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2680 2024-11-21 10:39 2012-09-29 Show GitHub Exploit DB Packet Storm
292985 - google
microsoft
chrome
windows_7
windows_8
windows_rt
windows_server_2003
windows_server_2008
windows_server_2012
windows_vista
windows_xp
The kernel-mode drivers in Microsoft Windows XP SP2 and SP3, Windows Server 2003 SP2, Windows Vista SP2, Windows Server 2008 SP2, R2, and R2 SP1, Windows 7 Gold and SP1, Windows 8, Windows Server 201… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-2897 2024-11-21 10:39 2012-09-26 Show GitHub Exploit DB Packet Storm
292986 - google chrome Integer overflow in the WebGL implementation in Google Chrome before 22.0.1229.79 on Mac OS X allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknow… CWE-189
Numeric Errors
CVE-2012-2896 2024-11-21 10:39 2012-09-26 Show GitHub Exploit DB Packet Storm
292987 - google chrome The PDF functionality in Google Chrome before 22.0.1229.79 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger out-of-bounds write … CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-2895 2024-11-21 10:39 2012-09-26 Show GitHub Exploit DB Packet Storm
292988 - google chrome Google Chrome before 22.0.1229.79 does not properly handle graphics-context data structures, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecifie… CWE-399
 Resource Management Errors
CVE-2012-2894 2024-11-21 10:39 2012-09-26 Show GitHub Exploit DB Packet Storm
292989 - google chrome Double free vulnerability in libxslt, as used in Google Chrome before 22.0.1229.79, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related … CWE-399
 Resource Management Errors
CVE-2012-2893 2024-11-21 10:39 2012-09-26 Show GitHub Exploit DB Packet Storm
292990 - google chrome Unspecified vulnerability in Google Chrome before 22.0.1229.79 allows remote attackers to bypass the pop-up blocker via unknown vectors. NVD-CWE-noinfo
CVE-2012-2892 2024-11-21 10:39 2012-09-26 Show GitHub Exploit DB Packet Storm