Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241221 9.3 危険 OpenJPEG project - OpenJPEG の JPEG 2000 コーデックにおける任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2012-1499 2012-07-25 14:01 2012-04-11 Show GitHub Exploit DB Packet Storm
241222 4 警告 Moodle - Moodle の mod/forum/rsslib.php におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3391 2012-07-25 13:47 2012-07-23 Show GitHub Exploit DB Packet Storm
241223 3.5 注意 Moodle - Moodle の lib/filelib.php における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3390 2012-07-25 13:40 2012-05-18 Show GitHub Exploit DB Packet Storm
241224 4.3 警告 Moodle - Moodle の mod/lti/typessettings.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3389 2012-07-25 13:35 2012-07-23 Show GitHub Exploit DB Packet Storm
241225 4 警告 Moodle - Moodle の lib/accesslib.php における機能チェックを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3388 2012-07-25 12:28 2012-07-23 Show GitHub Exploit DB Packet Storm
241226 4 警告 Moodle - Moodle におけるエイリアスの制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3387 2012-07-25 12:22 2012-07-23 Show GitHub Exploit DB Packet Storm
241227 4.3 警告 ESET
マカフィー
AVG Technologies
Jiangmin
Norman
FRISK Software International
VirusBlokAda
クイックヒール・テクノロジーズ・ジャパン株式会社
エフ・セキュア
G Data Software
AVAST Software s.r.o.
Beijing Rising International Software
Panda Security
カスペルスキ
- 複数の製品の TAR ファイルパーサにおけるマルウェア検知を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-1459 2012-07-25 11:09 2012-03-21 Show GitHub Exploit DB Packet Storm
241228 4.3 警告 ClamAV
ソフォス
- ClamAV および Sophos Anti-Virus の Microsoft CHM ファイルパーサにおけるマルウェア検知を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-1458 2012-07-25 11:08 2012-03-21 Show GitHub Exploit DB Packet Storm
241229 4.3 警告 ESET
マカフィー
AVG Technologies
Jiangmin
Norman
FRISK Software International
VirusBlokAda
クイックヒール・テクノロジーズ・ジャパン株式会社
G Data Software
AVAST Software s.r.o.
Beijing Rising International Software
カスペルスキー
Avira
Emsisoft
シマン
- 複数の製品の TAR ファイルパーサにおけるマルウェア検知を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-1457 2012-07-25 11:06 2012-03-21 Show GitHub Exploit DB Packet Storm
241230 4.4 警告 Puppet - Puppet および Puppet Enterprise における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-1054 2012-07-25 11:02 2012-05-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266741 7.5 HIGH
Network
mozilla firefox The watch implementation in the JavaScript engine in Mozilla Firefox before 46.0, Firefox ESR 38.x before 38.8, and Firefox ESR 45.x before 45.1 allows remote attackers to execute arbitrary code or c… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2808 2024-11-21 11:48 2016-05-1 Show GitHub Exploit DB Packet Storm
266742 8.8 HIGH
Network
mozilla
suse
opensuse
firefox
linux_enterprise
leap
opensuse
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 46.0, Firefox ESR 38.x before 38.8, and Firefox ESR 45.x before 45.1 allow remote attackers to cause a denial of s… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2807 2024-11-21 11:48 2016-05-1 Show GitHub Exploit DB Packet Storm
266743 8.8 HIGH
Network
debian
suse
opensuse
mozilla
debian_linux
linux_enterprise
leap
opensuse
firefox
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 46.0 and Firefox ESR 45.x before 45.1 allow remote attackers to cause a denial of service (memory corruption and a… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2806 2024-11-21 11:48 2016-05-1 Show GitHub Exploit DB Packet Storm
266744 8.8 HIGH
Network
mozilla firefox Unspecified vulnerability in the browser engine in Mozilla Firefox ESR 38.x before 38.8 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly exec… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2805 2024-11-21 11:48 2016-05-1 Show GitHub Exploit DB Packet Storm
266745 8.8 HIGH
Network
mozilla firefox Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 46.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly exe… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2804 2024-11-21 11:48 2016-05-1 Show GitHub Exploit DB Packet Storm
266746 5.5 MEDIUM
Local
linux linux_kernel The Linux kernel before 4.5 allows local users to bypass file-descriptor limits and cause a denial of service (memory consumption) by leveraging incorrect tracking of descriptor ownership and sending… CWE-399
 Resource Management Errors
CVE-2016-2550 2024-11-21 11:48 2016-04-28 Show GitHub Exploit DB Packet Storm
266747 6.2 MEDIUM
Local
linux linux_kernel sound/core/hrtimer.c in the Linux kernel before 4.4.1 does not prevent recursive callback access, which allows local users to cause a denial of service (deadlock) via a crafted ioctl call. CWE-20
 Improper Input Validation 
CVE-2016-2549 2024-11-21 11:48 2016-04-28 Show GitHub Exploit DB Packet Storm
266748 6.2 MEDIUM
Local
linux linux_kernel sound/core/timer.c in the Linux kernel before 4.4.1 retains certain linked lists after a close or stop action, which allows local users to cause a denial of service (system crash) via a crafted ioctl… CWE-20
 Improper Input Validation 
CVE-2016-2548 2024-11-21 11:48 2016-04-28 Show GitHub Exploit DB Packet Storm
266749 6.2 MEDIUM
Local
linux
novell
linux_kernel
suse_linux_enterprise_module_for_public_cloud
suse_linux_enterprise_server
suse_linux_enterprise_live_patching
suse_linux_enterprise_real_time_extension
suse_linux_enterpr…
fs/pipe.c in the Linux kernel before 4.5 does not limit the amount of unread data in pipes, which allows local users to cause a denial of service (memory consumption) by creating many pipes with non-… CWE-399
 Resource Management Errors
CVE-2016-2847 2024-11-21 11:48 2016-04-28 Show GitHub Exploit DB Packet Storm
266750 4.6 MEDIUM
Physics
linux
suse
linux_kernel
linux_enterprise_server
linux_enterprise_software_development_kit
linux_enterprise_debuginfo
linux_enterprise_real_time_extension
linux_enterprise_workstation_extension
The treo_attach function in drivers/usb/serial/visor.c in the Linux kernel before 4.5 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system crash) or… CWE-476
 NULL Pointer Dereference
CVE-2016-2782 2024-11-21 11:48 2016-04-28 Show GitHub Exploit DB Packet Storm