Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 14, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
232151 5 警告 LIGHTTPD - lighttpd の request.c におけるサービス運用妨害 (無限ループ) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-5533 2012-11-27 16:56 2012-11-21 Show GitHub Exploit DB Packet Storm
232152 5 警告 Ruby-lang.org - Ruby の file.c におけるファイルを作成される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4522 2012-11-27 16:56 2012-10-12 Show GitHub Exploit DB Packet Storm
232153 4.3 警告 Mahara - Mahara におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-6037 2012-11-27 16:55 2012-10-10 Show GitHub Exploit DB Packet Storm
232154 4.3 警告 Mahara - Mahara の group/members.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2253 2012-11-27 16:54 2012-11-23 Show GitHub Exploit DB Packet Storm
232155 4.3 警告 Mahara - Mahara におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2247 2012-11-27 16:53 2012-10-10 Show GitHub Exploit DB Packet Storm
232156 6.8 警告 Mahara - Mahara における任意のユーザを削除されるおよび CSRF 保護を回避される脆弱性 CWE-20
不適切な入力確認
CVE-2012-2246 2012-11-27 16:53 2012-10-10 Show GitHub Exploit DB Packet Storm
232157 6 警告 Mahara - Mahara における任意のプログラムを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2244 2012-11-27 16:52 2012-10-9 Show GitHub Exploit DB Packet Storm
232158 4.3 警告 Mahara - Mahara におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2243 2012-11-27 16:52 2012-10-9 Show GitHub Exploit DB Packet Storm
232159 6.4 警告 Mahara - Mahara おける任意のファイルを読まれる脆弱性 CWE-94
コード・インジェクション
CVE-2012-2239 2012-11-27 16:51 2012-09-13 Show GitHub Exploit DB Packet Storm
232160 7.5 危険 PS Project Management Team - Firefox 用 Unity integration 拡張機能におけるサービス運用妨害 (Firefox クラッシュ) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-0960 2012-11-27 16:50 2012-11-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 14, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292511 - wordpress pay-with-tweet SQL injection vulnerability in the Pay With Tweet plugin before 1.2 for WordPress allows remote authenticated users with certain permissions to execute arbitrary SQL commands via the id parameter in … CWE-89
SQL Injection
CVE-2012-5350 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm
292512 - wordpress pay-with-tweet Multiple cross-site scripting (XSS) vulnerabilities in pay.php in the Pay With Tweet plugin before 1.2 allow remote attackers to inject arbitrary web script or HTML via the (1) link, (2) title, or (3… CWE-79
Cross-site Scripting
CVE-2012-5349 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm
292513 - wilson_steven mangosweb_enhanced SQL injection vulnerability in MangosWeb Enhanced 3.0.3 allows remote attackers to execute arbitrary SQL commands via the login parameter in a login action to index.php. CWE-89
SQL Injection
CVE-2012-5348 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm
292514 - tinywebgallery tinywebgallery TinyWebGallery 1.8.3 allows remote attackers to execute arbitrary code via shell metacharacters in the command parameter to (1) inc/filefunctions.inc or (2) info.php. NVD-CWE-noinfo
CVE-2012-5347 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm
292515 - bencemeszaros wp-livephp Cross-site scripting (XSS) vulnerability in wp-live.php in the WP Live.php module 1.2.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the s parameter. NOTE: some o… CWE-79
Cross-site Scripting
CVE-2012-5346 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm
292516 - kepler_lam iptools Buffer overflow in the Remote command server (Rcmd.bat) in IpTools (aka Tiny TCP/IP server) 0.1.4 allows remote attackers to cause a denial of service (crash) via a long string to TCP port 23. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-5345 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm
292517 - kepler_lam iptools Directory traversal vulnerability in the WebServer (Thttpd.bat) in IpTools (aka Tiny TCP/IP server) 0.1.4 allows remote attackers to read arbitrary files via a .. (dot dot) in a HTTP request. CWE-22
Path Traversal
CVE-2012-5344 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm
292518 - limny limny Cross-site scripting (XSS) vulnerability in admin/login.php in Limny 3.0.1 allows remote attackers to inject arbitrary web script or HTML via the PATH_INFO, related to the "PHP_SELF" variable. CWE-79
Cross-site Scripting
CVE-2012-5343 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm
292519 - michau_enterprises_llc commonsense_cms Multiple SQL injection vulnerabilities in SenseSites CommonSense CMS allow remote attackers to execute arbitrary SQL commands via the id parameter to (1) special.php, (2) article.php, or (3) cat2.php. CWE-89
SQL Injection
CVE-2012-5342 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm
292520 - otterware statit Multiple cross-site scripting (XSS) vulnerabilities in statistik.php in Otterware StatIt 4 allow remote attackers to inject arbitrary web script or HTML via the (1) action parameter, (2) show paramet… CWE-79
Cross-site Scripting
CVE-2012-5341 2024-11-21 10:44 2012-10-10 Show GitHub Exploit DB Packet Storm