Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 21, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241211 5 警告 Ushahidi - Ushahidi Platform におけるコメント投稿者についての重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-3474 2012-08-14 16:55 2012-08-12 Show GitHub Exploit DB Packet Storm
241212 6.4 警告 Ushahidi - Ushahidi Platform のコメントに関する API におけるレポートを生成される脆弱性 CWE-287
不適切な認証
CVE-2012-3473 2012-08-14 16:54 2012-08-12 Show GitHub Exploit DB Packet Storm
241213 6.4 警告 Ushahidi - Ushahidi Platform におけるメッセージを一覧表示される脆弱性 CWE-287
不適切な認証
CVE-2012-3472 2012-08-14 16:50 2012-08-12 Show GitHub Exploit DB Packet Storm
241214 7.5 危険 Ushahidi - Ushahidi Platform における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-3471 2012-08-14 16:49 2012-08-12 Show GitHub Exploit DB Packet Storm
241215 7.5 危険 Ushahidi - Ushahidi Platform における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-3470 2012-08-14 16:49 2012-08-12 Show GitHub Exploit DB Packet Storm
241216 7.5 危険 Ushahidi - Ushahidi Platform における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-3469 2012-08-14 16:44 2012-08-12 Show GitHub Exploit DB Packet Storm
241217 7.5 危険 Ushahidi - Ushahidi Platform における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-3468 2012-08-14 16:43 2012-08-12 Show GitHub Exploit DB Packet Storm
241218 4.3 警告 Escon Information Consulting - ESCON SupportPortal Professional Edition におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2590 2012-08-14 16:38 2012-08-12 Show GitHub Exploit DB Packet Storm
241219 4.3 警告 AfterLogic - AfterLogic MailSuite Pro におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2587 2012-08-14 16:37 2012-08-12 Show GitHub Exploit DB Packet Storm
241220 4.3 警告 Zoho Corporation - ManageEngine ServiceDesk Plus におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2585 2012-08-14 16:35 2012-08-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 21, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266551 8.1 HIGH
Network
tor_browser_launcher_project tor_browser_launcher Tor Browser Launcher (aka torbrowser-launcher) before 0.2.4, during the initial run, allows man-in-the-middle attackers to bypass the PGP signature verification and execute arbitrary code via a Troja… CWE-254
 7PK - Security Features
CVE-2016-3180 2024-11-21 11:49 2017-02-8 Show GitHub Exploit DB Packet Storm
266552 5.3 MEDIUM
Network
simplesamlphp simplesamlphp The sanitycheck module in SimpleSAMLphp before 1.14.1 allows remote attackers to learn the PHP version on the system via unspecified vectors. CWE-200
Information Exposure
CVE-2016-3124 2024-11-21 11:49 2017-02-8 Show GitHub Exploit DB Packet Storm
266553 7.5 HIGH
Network
netapp oncommand_system_manager Multiple functions in NetApp OnCommand System Manager before 8.3.2 do not properly escape special characters, which allows remote authenticated users to execute arbitrary API calls via unspecified ve… CWE-116
 Improper Encoding or Escaping of Output
CVE-2016-3063 2024-11-21 11:49 2017-02-8 Show GitHub Exploit DB Packet Storm
266554 5.5 MEDIUM
Local
ibm security_access_manager_for_web_7.0_firmware
security_access_manager_for_web_8.0_firmware
security_access_manager_for_mobile
security_access_manager_9.0_firmware
IBM Security Access Manager for Web 7.0.0, 8.0.0, and 9.0.0 could allow a remote attacker to bypass security restrictions, caused by improper content validation. By persuading a victim to open specia… CWE-284
Improper Access Control
CVE-2016-3020 2024-11-21 11:49 2017-02-8 Show GitHub Exploit DB Packet Storm
266555 5.5 MEDIUM
Local
uclouvain openjpeg The sycc422_t_rgb function in common/color.c in OpenJPEG before 2.1.1 allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted jpeg2000 file. CWE-125
Out-of-bounds Read
CVE-2016-3183 2024-11-21 11:49 2017-02-4 Show GitHub Exploit DB Packet Storm
266556 5.4 MEDIUM
Network
ibm biginsights IBM Infosphere BigInsights is vulnerable to cross-site scripting. This vulnerability allows users to embed arbitrary JavaScript code in the Web UI thus altering the intended functionality potentially… CWE-79
Cross-site Scripting
CVE-2016-2992 2024-11-21 11:49 2017-02-2 Show GitHub Exploit DB Packet Storm
266557 7.5 HIGH
Network
ibm urbancode_deploy IBM UrbanCode Deploy could allow an authenticated attacker with special permissions to craft a script on the server in a way that will cause processes to run on a remote UCD agent machine. CWE-284
Improper Access Control
CVE-2016-2942 2024-11-21 11:49 2017-02-2 Show GitHub Exploit DB Packet Storm
266558 5.5 MEDIUM
Local
ibm urbancode_deploy IBM UrbanCode Deploy creates temporary files during step execution that could contain sensitive information including passwords that could be read by a local user. CWE-200
Information Exposure
CVE-2016-2941 2024-11-21 11:49 2017-02-2 Show GitHub Exploit DB Packet Storm
266559 5.4 MEDIUM
Network
ibm biginsights IBM Infosphere BigInsights is vulnerable to cross-site scripting, caused by improper validation of user-supplied input. A remote attacker could exploit this vulnerability using a specially-crafted UR… CWE-79
Cross-site Scripting
CVE-2016-2924 2024-11-21 11:49 2017-02-2 Show GitHub Exploit DB Packet Storm
266560 7.8 HIGH
Local
ibm aix IBM AIX contains an unspecified vulnerability that would allow a locally authenticated user to obtain root level privileges. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-3053 2024-11-21 11:49 2017-02-2 Show GitHub Exploit DB Packet Storm