Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
231611 3.5 注意 Commerce Guys - Drupal 用 Drupal Commerce モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1639 2012-10-3 13:20 2012-01-25 Show GitHub Exploit DB Packet Storm
231612 6 警告 Atheme.org - Atheme の libathemecore/account.c における異なるユーザにアクセスされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-1576 2012-10-3 13:09 2012-10-1 Show GitHub Exploit DB Packet Storm
231613 7.5 危険 アップル
Google
- 複数の製品で使用される Webkit におけるサービス運用妨害 (DoS) の脆弱性 CWE-DesignError
CVE-2011-3027 2012-10-2 17:27 2012-02-15 Show GitHub Exploit DB Packet Storm
231614 7.5 危険 アップル
Google
- 複数の製品で使用される Webkit におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-3021 2012-10-2 17:23 2012-02-15 Show GitHub Exploit DB Packet Storm
231615 7.5 危険 アップル
Google
- 複数の製品で使用される Webkit におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-3016 2012-10-2 17:19 2012-02-15 Show GitHub Exploit DB Packet Storm
231616 6.8 警告 アップル
Google
- 複数の製品で使用される Webkit における URL バーを偽造される脆弱性 CWE-20
不適切な入力確認
CVE-2011-2845 2012-10-2 17:08 2011-10-25 Show GitHub Exploit DB Packet Storm
231617 5 警告 Drupal - Drupal の image モジュールにおけるプライベートな画像スタイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-1591 2012-10-2 16:26 2012-05-2 Show GitHub Exploit DB Packet Storm
231618 4.9 警告 Cumin - Red Hat Enterprise MRG で使用される Cumin における Condor の属性を変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3459 2012-10-2 16:26 2012-09-28 Show GitHub Exploit DB Packet Storm
231619 4 警告 Cumin
レッドハット
- Red Hat Enterprise MRG で使用される Cumin におけるサービス運用妨害 (メモリ消費) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-2685 2012-10-2 16:26 2012-09-28 Show GitHub Exploit DB Packet Storm
231620 4 警告 Drupal - Drupal における公開されたすべてのノードを読み取られる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2153 2012-10-2 16:26 2012-05-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292791 - freso languageicons Cross-site scripting (XSS) vulnerability in the Language Icons module 6.x-2.x before 6.x-2.1 and 7.x-1.x before 7.x-1.0 for Drupal allows remote authenticated users with administer languages permissi… CWE-79
Cross-site Scripting
CVE-2012-2065 2024-11-21 10:38 2012-09-5 Show GitHub Exploit DB Packet Storm
292792 - mark_theunissen views_lang_switch Cross-site scripting (XSS) vulnerability in theme/views_lang_switch.theme.inc in the Views Language Switcher module before 7.x-1.2 for Drupal allows remote attackers to inject arbitrary web script or… CWE-79
Cross-site Scripting
CVE-2012-2064 2024-11-21 10:38 2012-09-5 Show GitHub Exploit DB Packet Storm
292793 - brian_altenhofel slidebox The Slidebox module before 7.x-1.4 for Drupal does not properly check permissions, which allows remote attackers to obtain sensitive information via unspecified vectors. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2063 2024-11-21 10:38 2012-09-5 Show GitHub Exploit DB Packet Storm
292794 - buddypress buddypress SQL injection vulnerability in wp-load.php in the BuddyPress plugin 1.5.x before 1.5.5 of WordPress allows remote attackers to execute arbitrary SQL commands via the page parameter in an activity_wid… CWE-89
SQL Injection
CVE-2012-2109 2024-11-21 10:38 2012-09-5 Show GitHub Exploit DB Packet Storm
292795 - emc networker Format string vulnerability in the nsrd RPC service in EMC NetWorker 7.6.3 and 7.6.4 before 7.6.4.1, and 8.0 before 8.0.0.1, allows remote attackers to execute arbitrary code via format string specif… CWE-134
Use of Externally-Controlled Format String
CVE-2012-2288 2024-11-21 10:38 2012-09-4 Show GitHub Exploit DB Packet Storm
292796 - yaniv_aran-shamir gigya Cross-site scripting (XSS) vulnerability in the Gigya - Social optimization module 6.x before 6.x-3.2 for Drupal allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. CWE-79
Cross-site Scripting
CVE-2012-2117 2024-11-21 10:38 2012-09-1 Show GitHub Exploit DB Packet Storm
292797 - commerceguys commerce_reorder Cross-site request forgery (CSRF) vulnerability in the Commerce Reorder module before 7.x-1.1 for Drupal allows remote attackers to hijack the authentication of arbitrary users for requests that add … CWE-352
 Origin Validation Error
CVE-2012-2116 2024-11-21 10:38 2012-09-1 Show GitHub Exploit DB Packet Storm
292798 - etalabs musl Stack-based buffer overflow in fprintf in musl before 0.8.8 and earlier allows context-dependent attackers to cause a denial of service (crash) or possibly execute arbitrary code via a long string to… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-2114 2024-11-21 10:38 2012-09-1 Show GitHub Exploit DB Packet Storm
292799 - fusiondrupalthemes fusion Cross-site scripting (XSS) vulnerability in the fusion_core_preprocess_page function in fusion_core/template.php in the Fusion module before 6.x-1.13 for Drupal allows remote attackers to inject arbi… CWE-79
Cross-site Scripting
CVE-2012-2083 2024-11-21 10:38 2012-09-1 Show GitHub Exploit DB Packet Storm
292800 - asterisk
sangoma
open_source
asterisk
certified_asterisk
digiumphones
business_edition
Incomplete blacklist vulnerability in main/manager.c in Asterisk Open Source 1.8.x before 1.8.15.1 and 10.x before 10.7.1, Certified Asterisk 1.8.11 before 1.8.11-cert6, Asterisk Digiumphones 10.x.x-… NVD-CWE-Other
CVE-2012-2186 2024-11-21 10:38 2012-08-31 Show GitHub Exploit DB Packet Storm