Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240521 7.5 危険 Inverse inc. - PacketFence の web.pm における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-4742 2012-09-5 11:45 2009-08-11 Show GitHub Exploit DB Packet Storm
240522 5 警告 Inverse inc. - PacketFence におけるユーザになりすまされる脆弱性 CWE-287
不適切な認証
CVE-2012-4741 2012-09-5 11:44 2012-03-2 Show GitHub Exploit DB Packet Storm
240523 4.3 警告 Inverse inc. - PacketFence におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4740 2012-09-5 11:43 2012-08-31 Show GitHub Exploit DB Packet Storm
240524 4.3 警告 Yaniv Aran-Shamir - Drupal 用 Gigya - Social optimization モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2117 2012-09-5 11:41 2012-04-18 Show GitHub Exploit DB Packet Storm
240525 6.8 警告 Commerce Guys - Drupal 用 Commerce Reorder モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-2116 2012-09-5 11:41 2012-04-18 Show GitHub Exploit DB Packet Storm
240526 7.5 危険 musl libc - musl の fprintf におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-2114 2012-09-5 11:40 2012-04-18 Show GitHub Exploit DB Packet Storm
240527 6.2 警告 Comodo - Windows XP 上で稼働する Comodo Internet Security におけるカーネルモードのフックハンドラを回避される脆弱性 CWE-362
競合状態
CVE-2010-5157 2012-09-5 11:39 2010-06-2 Show GitHub Exploit DB Packet Storm
240528 4.3 警告 Fusion Drupal Themes - Drupal 用 Fusion モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2083 2012-09-5 11:37 2012-03-28 Show GitHub Exploit DB Packet Storm
240529 5.8 警告 EGroupware - EGroupware Enterprise Line および EGroupware Community Edition におけるオープンリダイレクトの脆弱性 CWE-Other
その他
CVE-2011-4951 2012-09-5 11:37 2011-08-4 Show GitHub Exploit DB Packet Storm
240530 4.3 警告 EGroupware - EGroupware Enterprise Line および EGroupware Community Edition におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4950 2012-09-5 11:35 2011-08-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267371 9.8 CRITICAL
Network
kubernetes kubernetes Openshift allows remote attackers to gain privileges by updating a build configuration that was created with an allowed type to a type that is not allowed. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-1906 2024-11-21 11:47 2016-02-4 Show GitHub Exploit DB Packet Storm
267372 7.7 HIGH
Network
kubernetes kubernetes The API server in Kubernetes does not properly check admission control, which allows remote authenticated users to access additional resources via a crafted patched object. CWE-284
Improper Access Control
CVE-2016-1905 2024-11-21 11:47 2016-02-4 Show GitHub Exploit DB Packet Storm
267373 8.8 HIGH
Network
janrain php-openid examples/consumer/common.php in JanRain PHP OpenID library (aka php-openid) improperly checks the openid.realm parameter against the SERVER_NAME element in the SERVER superglobal array, which might a… CWE-284
Improper Access Control
CVE-2016-2049 2024-11-21 11:47 2016-02-2 Show GitHub Exploit DB Packet Storm
267374 5.3 MEDIUM
Network
google
mozilla
android
firefox
Mozilla Firefox before 44.0 on Android does not ensure that HTTPS is used for a lightweight-theme installation, which allows man-in-the-middle attackers to replace a theme's images and colors by modi… CWE-310
Cryptographic Issues
CVE-2016-1948 2024-11-21 11:47 2016-02-1 Show GitHub Exploit DB Packet Storm
267375 4.7 MEDIUM
Network
canonical
opensuse
mozilla
ubuntu_linux
leap
opensuse
firefox
Mozilla Firefox 43.x mishandles attempts to connect to the Application Reputation service, which makes it easier for remote attackers to trigger an unintended download by leveraging the absence of re… CWE-19
 Data Processing Errors
CVE-2016-1947 2024-11-21 11:47 2016-02-1 Show GitHub Exploit DB Packet Storm
267376 9.8 CRITICAL
Network
opensuse
mozilla
leap
opensuse
firefox
The MoofParser::Metadata function in binding/MoofParser.cpp in libstagefright in Mozilla Firefox before 44.0 does not limit the size of read operations, which might allow remote attackers to cause a … CWE-119
CWE-189
Incorrect Access of Indexable Resource ('Range Error') 
Numeric Errors
CVE-2016-1946 2024-11-21 11:47 2016-02-1 Show GitHub Exploit DB Packet Storm
267377 8.8 HIGH
Network
mozilla
opensuse
firefox
leap
opensuse
The nsZipArchive function in Mozilla Firefox before 44.0 might allow remote attackers to cause a denial of service or possibly have unspecified other impact by leveraging incorrect use of a pointer d… NVD-CWE-noinfo
CVE-2016-1945 2024-11-21 11:47 2016-02-1 Show GitHub Exploit DB Packet Storm
267378 9.8 CRITICAL
Network
mozilla
opensuse
firefox
leap
opensuse
The Buffer11::NativeBuffer11::map function in ANGLE, as used in Mozilla Firefox before 44.0, might allow remote attackers to cause a denial of service (memory corruption) or possibly have unspecified… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-1944 2024-11-21 11:47 2016-02-1 Show GitHub Exploit DB Packet Storm
267379 4.7 MEDIUM
Network
opensuse
mozilla
google
leap
opensuse
firefox
android
Mozilla Firefox before 44.0 on Android allows remote attackers to spoof the address bar via the scrollTo method. CWE-17
Code
CVE-2016-1943 2024-11-21 11:47 2016-02-1 Show GitHub Exploit DB Packet Storm
267380 7.4 HIGH
Network
opensuse
mozilla
leap
opensuse
firefox
Mozilla Firefox before 44.0 allows user-assisted remote attackers to spoof a trailing substring in the address bar by leveraging a user's paste of a (1) wyciwyg: URI or (2) resource: URI. CWE-20
 Improper Input Validation 
CVE-2016-1942 2024-11-21 11:47 2016-02-1 Show GitHub Exploit DB Packet Storm