Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241011 4.3 警告 SolarWinds - SolarWinds Orion Network Performance Monitor におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2577 2012-08-14 15:23 2012-08-12 Show GitHub Exploit DB Packet Storm
241012 7.5 危険 PBBoard - PBBoard における任意のユーザアカウントのパスワードを変更される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4035 2012-08-14 15:22 2012-08-6 Show GitHub Exploit DB Packet Storm
241013 7.5 危険 PBBoard - PBBoard における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-4034 2012-08-14 15:21 2012-08-6 Show GitHub Exploit DB Packet Storm
241014 4.3 警告 phpList - phpList の lists/admin/index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4247 2012-08-14 14:50 2012-08-6 Show GitHub Exploit DB Packet Storm
241015 4.3 警告 phpList - phpList の lists/admin/index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4246 2012-08-14 14:42 2012-08-6 Show GitHub Exploit DB Packet Storm
241016 7.5 危険 phpList - phpList の admin/index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-3953 2012-08-14 14:41 2012-08-6 Show GitHub Exploit DB Packet Storm
241017 2.6 注意 phpList - phpList の admin/index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3952 2012-08-14 14:33 2012-08-6 Show GitHub Exploit DB Packet Storm
241018 2.1 注意 PNP4Nagios - PNP4Nagios における Gearman 共有秘密鍵を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3457 2012-08-14 14:32 2012-08-12 Show GitHub Exploit DB Packet Storm
241019 5 警告 RSGallery2 Team - Joomla! 用 RSGallery2 コンポーネントにおける画像のファイル名を一覧表示される脆弱性 CWE-200
情報漏えい
CVE-2012-4235 2012-08-13 12:27 2012-08-10 Show GitHub Exploit DB Packet Storm
241020 4.3 警告 RSGallery2 Team - Joomla! 用 RSGallery2 コンポーネントにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4071 2012-08-13 12:23 2012-08-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
285771 - adobe flash_player
air_sdk
air
air_sdk_\&_compiler
Double free vulnerability in Adobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on Windows and OS X and before 11.2.202.418 on Linux, Adobe AIR before 15.0.0.356, Adobe AIR SDK … CWE-94
Code Injection
CVE-2014-0574 2024-11-21 11:02 2014-11-12 Show GitHub Exploit DB Packet Storm
285772 - adobe flash_player
air_sdk
air
air_sdk_\&_compiler
Use-after-free vulnerability in Adobe Flash Player before 13.0.0.252 and 14.x and 15.x before 15.0.0.223 on Windows and OS X and before 11.2.202.418 on Linux, Adobe AIR before 15.0.0.356, Adobe AIR S… NVD-CWE-Other
CVE-2014-0573 2024-11-21 11:02 2014-11-12 Show GitHub Exploit DB Packet Storm
285773 - debian advanced_package_tool The apt-get download command in APT before 1.0.9 does not properly validate signatures for packages, which allows remote attackers to execute arbitrary code via a crafted package. CWE-20
 Improper Input Validation 
CVE-2014-0490 2024-11-21 11:02 2014-11-4 Show GitHub Exploit DB Packet Storm
285774 - debian advanced_package_tool APT before 1.0.9, when the Acquire::GzipIndexes option is enabled, does not validate checksums, which allows remote attackers to execute arbitrary code via a crafted package. CWE-20
 Improper Input Validation 
CVE-2014-0489 2024-11-21 11:02 2014-11-4 Show GitHub Exploit DB Packet Storm
285775 - debian advanced_package_tool APT before 1.0.9 does not "invalidate repository data" when moving from an unauthenticated to authenticated state, which allows remote attackers to have unspecified impact via crafted repository data. CWE-20
 Improper Input Validation 
CVE-2014-0488 2024-11-21 11:02 2014-11-4 Show GitHub Exploit DB Packet Storm
285776 - debian advanced_package_tool APT before 1.0.9 does not verify downloaded files if they have been modified as indicated using the If-Modified-Since header, which has unspecified impact and attack vectors. NVD-CWE-noinfo
CVE-2014-0487 2024-11-21 11:02 2014-11-4 Show GitHub Exploit DB Packet Storm
285777 - canonical
chkrootkit
ubuntu_linux
chkrootkit
The slapper function in chkrootkit before 0.50 does not properly quote file paths, which allows local users to execute arbitrary code via a Trojan horse executable. NOTE: this is only a vulnerabilit… CWE-20
 Improper Input Validation 
CVE-2014-0476 2024-11-21 11:02 2014-10-26 Show GitHub Exploit DB Packet Storm
285778 - hamstersoft hamster_free_zip_archiver Untrusted search path vulnerability in Hamster Free ZIP Archiver 2.0.1.7 allows local users to execute arbitrary code and conduct DLL hijacking attacks via a Trojan horse dwmapi.dll that is located i… NVD-CWE-Other
CVE-2014-0619 2024-11-21 11:02 2014-10-23 Show GitHub Exploit DB Packet Storm
285779 - adobe coldfusion Adobe ColdFusion 9.0 before Update 13, 9.0.1 before Update 12, 9.0.2 before Update 7, 10 before Update 14, and 11 before Update 2 allows local users to bypass intended IP-based access restrictions vi… CWE-264
Permissions, Privileges, and Access Controls
CVE-2014-0572 2024-11-21 11:02 2014-10-15 Show GitHub Exploit DB Packet Storm
285780 - adobe coldfusion Cross-site scripting (XSS) vulnerability in Adobe ColdFusion 9.0 before Update 13, 9.0.1 before Update 12, 9.0.2 before Update 7, 10 before Update 14, and 11 before Update 2 allows remote attackers t… CWE-79
Cross-site Scripting
CVE-2014-0571 2024-11-21 11:02 2014-10-15 Show GitHub Exploit DB Packet Storm