Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 20, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241111 5.5 警告 Iomega
DELL EMC (旧 EMC Corporation)
- 複数の Iomega 製品の EMC Lifeline ファームウェアにおけるデータを読まれる脆弱性 CWE-noinfo
情報不足
CVE-2012-2283 2012-08-20 15:57 2012-08-16 Show GitHub Exploit DB Packet Storm
241112 4.3 警告 Tom Braider - WordPress 用 Count Per Day モジュールの userperspan.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3434 2012-08-20 15:53 2012-07-13 Show GitHub Exploit DB Packet Storm
241113 5 警告 Mike Peachey - RT 用 Authen::ExternalAuth エクステンションにおけるログインセッションを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2770 2012-08-20 15:45 2012-07-25 Show GitHub Exploit DB Packet Storm
241114 4.3 警告 Jesse Vincent - RT 用 Extension::MobileUI エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2769 2012-08-20 15:42 2012-07-25 Show GitHub Exploit DB Packet Storm
241115 4.3 警告 Best Practical Solutions - RT 用 RTFM エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2768 2012-08-20 15:40 2012-07-25 Show GitHub Exploit DB Packet Storm
241116 7.5 危険 Bharat Mediratta - Gallery における任意の PHP コードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-4343 2012-08-20 12:17 2012-06-12 Show GitHub Exploit DB Packet Storm
241117 4.3 警告 Bharat Mediratta - Gallery におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4342 2012-08-20 12:16 2012-06-12 Show GitHub Exploit DB Packet Storm
241118 10 危険 SAP - SAP NetWeaver ABAP の msg_server.exe におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4341 2012-08-20 12:15 2012-08-15 Show GitHub Exploit DB Packet Storm
241119 4.3 警告 Qualiteam Software Limited - X-Cart Gold の products_map.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2570 2012-08-20 12:01 2012-08-15 Show GitHub Exploit DB Packet Storm
241120 6.8 警告 Kyle Browning - Drupal 用 CDN2 Video モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-2155 2012-08-17 15:56 2012-03-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 20, 2026, 4:14 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268831 8.6 HIGH
Network
grunt-gh-pages_project grunt-gh-pages A common setup to deploy to gh-pages on every commit via a CI system is to expose a github token to ENV and to use it directly in the auth part of the url. In module versions < 0.9.1 the auth portion… CWE-255
CWE-532
Credentials Management
 Inclusion of Sensitive Information in Log Files
CVE-2016-10526 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
268832 8.2 HIGH
Network
i18n-node-angular_project i18n-node-angular i18n-node-angular is a module used to interact between i18n and angular without using additional resources. A REST API endpoint that is used for development in i18n-node-angular before 1.4.0 was not … CWE-400
 Uncontrolled Resource Consumption
CVE-2016-10524 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
268833 7.5 HIGH
Network
mqtt-packet_project mqtt-packet MQTT before 3.4.6 and 4.0.x before 4.0.5 allows specifically crafted MQTT packets to crash the application, making a DoS attack feasible with very little bandwidth. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-10523 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
268834 7.5 HIGH
Network
jshamcrest_project jshamcrest jshamcrest is vulnerable to regular expression denial of service (ReDoS) when certain types of user input is passed in to the emailAddress validator. CWE-20
 Improper Input Validation 
CVE-2016-10521 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
268835 7.5 HIGH
Network
jadedown_project jadedown jadedown is vulnerable to regular expression denial of service (ReDoS) when certain types of user input is passed in. CWE-20
 Improper Input Validation 
CVE-2016-10520 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
268836 7.5 HIGH
Network
webtorrent bittorrent-dht A security issue was found in bittorrent-dht before 5.1.3 that allows someone to send a specific series of messages to a listening peer and get it to reveal internal memory. CWE-200
Information Exposure
CVE-2016-10519 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
268837 7.5 HIGH
Network
ws_project ws A vulnerability was found in the ping functionality of the ws module before 1.0.0 which allowed clients to allocate memory by sending a ping frame. The ping functionality by default responds with a p… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-10518 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
268838 8.1 HIGH
Network
mystem-fix_project mystem-fix mystem-fix is a node.js wrapper for MyStem morphology text analyzer by Yandex.ru mystem-fix downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cau… CWE-310
Cryptographic Issues
CVE-2016-10698 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268839 8.1 HIGH
Network
massif_project massif massif is a Phantomjs fork massif downloads resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the requested reso… CWE-310
Cryptographic Issues
CVE-2016-10682 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268840 8.1 HIGH
Network
robotwebtools roslibjs roslib-socketio - The standard ROS Javascript Library fork for add support to socket.io roslib-socketio downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be pos… CWE-310
Cryptographic Issues
CVE-2016-10681 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm