Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231521 4.3 警告 jCore - jCore の admin/index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4231 2012-10-24 11:07 2012-08-12 Show GitHub Exploit DB Packet Storm
231522 5 警告 Django Software Foundation - Django におけるサービス運用妨害 (プロセスまたはスレッド消費) の脆弱性 CWE-119
バッファエラー
CVE-2012-3444 2012-10-24 10:44 2012-07-30 Show GitHub Exploit DB Packet Storm
231523 4.3 警告 OTRS プロジェクト - OTRS にクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4751 2012-10-23 16:09 2012-10-18 Show GitHub Exploit DB Packet Storm
231524 6.4 警告 サン・マイクロシステムズ - Oracle Java SE の Java Runtime Environment (JRE) におけるライブラリの処理に関する脆弱性 CWE-noinfo
情報不足
CVE-2012-1726 2012-10-23 15:58 2012-06-12 Show GitHub Exploit DB Packet Storm
231525 7.8 危険 Novell - ZENworks Asset Management に情報漏えいの脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-4933 2012-10-23 15:17 2012-10-16 Show GitHub Exploit DB Packet Storm
231526 4.3 警告 The OTR Development Team - libotr におけるサービス運用妨害 (アプリケーションクラッシュ) の脆弱性 CWE-119
バッファエラー
CVE-2012-3461 2012-10-23 14:55 2012-08-20 Show GitHub Exploit DB Packet Storm
231527 7.5 危険 The Icinga Project - Icinga のデータベース作成スクリプトにおける他のデータベースにアクセスされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3441 2012-10-23 14:19 2012-08-25 Show GitHub Exploit DB Packet Storm
231528 3.3 注意 ISC, Inc. - ISC DHCP におけるサービス運用妨害 (メモリ消費) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-3954 2012-10-23 14:13 2012-07-24 Show GitHub Exploit DB Packet Storm
231529 6.1 警告 ISC, Inc. - ISC DHCP におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-3571 2012-10-23 14:10 2012-07-24 Show GitHub Exploit DB Packet Storm
231530 4.3 警告 アップル - Safari においてリモートからローカルファイルを読み取り可能な脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3713 2012-10-23 14:00 2012-10-23 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293241 - mantisbt mantisbt MantisBT before 1.2.11 does not check the delete_attachments_threshold permission when form_security_validation is set to OFF, which allows remote authenticated users with certain privileges to bypas… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2692 2024-11-21 10:39 2012-06-17 Show GitHub Exploit DB Packet Storm
293242 - mantisbt mantisbt The mc_issue_note_update function in the SOAP API in MantisBT before 1.2.11 does not properly check privileges, which allows remote attackers with bug reporting privileges to edit arbitrary bugnotes … CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2691 2024-11-21 10:39 2012-06-17 Show GitHub Exploit DB Packet Storm
293243 - oracle mojarra Oracle Mojarra 2.1.7 does not properly "clean up" the FacesContext reference during startup, which allows local users to obtain context information an access resources from another WAR file by callin… NVD-CWE-Other
CVE-2012-2672 2024-11-21 10:39 2012-06-17 Show GitHub Exploit DB Packet Storm
293244 - rtomayko rack-cach The Rack::Cache rubygem 0.3.0 through 1.1 caches Set-Cookie and other sensitive headers, which allows attackers to obtain sensitive cookie information, hijack web sessions, or have other unspecified … NVD-CWE-Other
CVE-2012-2671 2024-11-21 10:39 2012-06-17 Show GitHub Exploit DB Packet Storm
293245 - o-dyn collabtive manageuser.php in Collabtive before 0.7.6 allows remote authenticated users, and possibly unauthenticated attackers, to bypass intended access restrictions and upload and execute arbitrary files by u… CWE-20
 Improper Input Validation 
CVE-2012-2670 2024-11-21 10:39 2012-06-17 Show GitHub Exploit DB Packet Storm
293246 - openldap openldap libraries/libldap/tls_m.c in OpenLDAP, possibly 2.4.31 and earlier, when using the Mozilla NSS backend, always uses the default cipher suite even when TLSCipherSuite is set, which might cause OpenLDA… CWE-200
Information Exposure
CVE-2012-2668 2024-11-21 10:39 2012-06-17 Show GitHub Exploit DB Packet Storm
293247 - dlitz pycrypto PyCrypto before 2.6 does not produce appropriate prime numbers when using an ElGamal scheme to generate a key, which reduces the signature space or public key space and makes it easier for attackers … CWE-310
Cryptographic Issues
CVE-2012-2417 2024-11-21 10:39 2012-06-17 Show GitHub Exploit DB Packet Storm
293248 - michael_dehaan cobbler Incomplete blacklist vulnerability in action_power.py in Cobbler 2.2.0 allows remote attackers to execute arbitrary commands via shell metacharacters in the (1) username or (2) password fields to the… NVD-CWE-Other
CVE-2012-2395 2024-11-21 10:39 2012-06-16 Show GitHub Exploit DB Packet Storm
293249 - dolphin-browser dolphin_browser_hd
dolphin_for_pad
The Dolphin Browser HD application before 7.6 and Dolphin for Pad application before 1.0.1 for Android do not properly implement the WebView class, which allows remote attackers to obtain sensitive i… CWE-200
Information Exposure
CVE-2012-2635 2024-11-21 10:39 2012-06-16 Show GitHub Exploit DB Packet Storm
293250 - newsgator feeddemon Cross-site scripting (XSS) vulnerability in FeedDemon before 4.0, when the feed preview option is enabled, allows remote attackers to inject arbitrary web script or HTML via a feed. CWE-79
Cross-site Scripting
CVE-2012-2634 2024-11-21 10:39 2012-06-16 Show GitHub Exploit DB Packet Storm