Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240901 2.1 注意 Rob Loach - Drupal 用 ShareThis モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2076 2012-08-17 15:42 2012-03-28 Show GitHub Exploit DB Packet Storm
240902 2.1 注意 Joel Stein - Drupal 用 Contact Save モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2075 2012-08-17 15:36 2012-03-28 Show GitHub Exploit DB Packet Storm
240903 5 警告 Mads Peter Henderson - Drupal 用 Ubercart Views モジュールにおける重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-2074 2012-08-17 15:32 2012-03-28 Show GitHub Exploit DB Packet Storm
240904 6 警告 Kristof De Jaeger - Drupal 用の Bundle copy モジュールにおける任意の PHP コードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2073 2012-08-17 15:30 2012-03-28 Show GitHub Exploit DB Packet Storm
240905 2.1 注意 Patrick Przybilla - Drupal 用 Share Buttons モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2072 2012-08-17 15:27 2012-03-28 Show GitHub Exploit DB Packet Storm
240906 2.1 注意 Geoff Davies - Drupal 用 Contact Forms モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2071 2012-08-17 15:12 2012-03-28 Show GitHub Exploit DB Packet Storm
240907 3.5 注意 Andrew Levine - Drupal 用 MultiBlock モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2070 2012-08-17 15:10 2012-03-28 Show GitHub Exploit DB Packet Storm
240908 4.3 警告 Emil Stjerneman - Drupal 用 Linkit モジュールにおける重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2304 2012-08-17 15:08 2012-04-25 Show GitHub Exploit DB Packet Storm
240909 2.1 注意 Ubercart - Drupal 用 Ubercart モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2300 2012-08-17 15:06 2012-04-25 Show GitHub Exploit DB Packet Storm
240910 4.3 警告 Nancy Wichmann - Drupal 用 RealName モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2298 2012-08-17 15:04 2012-04-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268571 8.1 HIGH
Network
yandex tomita-parser tomita-parser is a Node wrapper for Yandex Tomita Parser tomita-parser downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execut… CWE-310
Cryptographic Issues
CVE-2016-10666 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268572 8.1 HIGH
Network
macchina poco poco - The POCO libraries, downloads source file resources used for compilation over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapp… CWE-310
Cryptographic Issues
CVE-2016-10659 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268573 8.1 HIGH
Network
native-opencv_project native-opencv native-opencv is the OpenCV library installed via npm native-opencv downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution… CWE-310
Cryptographic Issues
CVE-2016-10658 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268574 8.1 HIGH
Network
shutterstock ntfserver ntfserver is a Network Testing Framework Server. ntfserver downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by… CWE-310
Cryptographic Issues
CVE-2016-10650 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268575 8.1 HIGH
Network
broccoli-closure_project broccoli-closure broccoli-closure is a Closure compiler plugin for Broccoli. broccoli-closure before 1.3.1 downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause… CWE-310
Cryptographic Issues
CVE-2016-10635 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268576 8.1 HIGH
Network
scala-bin_project scala-bin scala-bin is a binary wrapper for Scala. scala-bin downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swappin… CWE-310
Cryptographic Issues
CVE-2016-10627 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268577 8.1 HIGH
Network
strider-sauce_project strider-sauce strider-sauce is Sauce Labs / Selenium support for Strider. strider-sauce downloads zipped resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code exe… CWE-310
Cryptographic Issues
CVE-2016-10611 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268578 8.1 HIGH
Network
uxebu webdrvr webdrvr is a npm wrapper for Selenium Webdriver including Chromedriver / IEDriver / IOSDriver / Ghostdriver. webdrvr downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. … CWE-310
Cryptographic Issues
CVE-2016-10601 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268579 8.1 HIGH
Network
interactivebrokers ibapi ibapi is an Interactive Brokers API addon for NodeJS. ibapi downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. Before 2.5.6, it may be possible to cause remote code exe… CWE-310
Cryptographic Issues
CVE-2016-10593 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268580 8.1 HIGH
Network
prince_project prince Prince is a Node API for executing XML/HTML to PDF renderer PrinceXML via prince(1) CLI. prince downloads zipped resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to… CWE-310
Cryptographic Issues
CVE-2016-10591 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm