Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241311 4.3 警告 tForum - tForum の member.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5138 2012-09-5 10:59 2012-08-31 Show GitHub Exploit DB Packet Storm
241312 7.5 危険 tForum - tForum における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-5137 2012-09-5 10:58 2012-08-31 Show GitHub Exploit DB Packet Storm
241313 9.3 危険 Viscom Software - Viscom Image Viewer CP Pro および Gold におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-5194 2012-09-5 10:57 2012-08-31 Show GitHub Exploit DB Packet Storm
241314 9.3 危険 Viscom Software - Viscom Image Viewer CP Pro および Gold におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2010-5193 2012-09-5 10:55 2012-08-31 Show GitHub Exploit DB Packet Storm
241315 4.3 警告 バラクーダネットワークス - Barracuda SSL VPN におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4739 2012-09-5 10:06 2012-07-16 Show GitHub Exploit DB Packet Storm
241316 5 警告 GNU Gatekeeper - GNU Gatekeeper におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-3534 2012-09-5 10:05 2012-08-31 Show GitHub Exploit DB Packet Storm
241317 5 警告 oVirt - oVirt 用 python SDK および CLI におけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2012-3533 2012-09-5 10:03 2012-08-15 Show GitHub Exploit DB Packet Storm
241318 5 警告 John Franklin - Drupal 用 Advertisement モジュールにおけるサイトの重要な設定情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2704 2012-09-5 09:59 2012-05-16 Show GitHub Exploit DB Packet Storm
241319 2.1 注意 rssh - rssh における制限されたシェルアクセスを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3478 2012-09-5 09:57 2012-08-31 Show GitHub Exploit DB Packet Storm
241320 2.1 注意 NAXSI Project - Nginx 用 Naxsi モジュールの naxsi-ui/nx_extract.py におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-3380 2012-09-5 09:48 2012-08-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266261 6.5 MEDIUM
Network
apple itunes
safari
iphone_os
WebKit in Apple iOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 allows remote attackers to conduct DNS rebinding attacks against non-HTTP Safari sessions by leveraging HTTP/0.9 s… CWE-284
Improper Access Control
CVE-2016-4760 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266262 8.8 HIGH
Network
apple tvos
iphone_os
safari
itunes
WebKit in Apple iOS before 10, tvOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption)… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4759 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266263 6.5 MEDIUM
Network
apple safari
iphone_os
itunes
WebKit in Apple iOS before 10, iTunes before 12.5.1 on Windows, and Safari before 10 does not properly restrict access to the location variable, which allows remote attackers to obtain sensitive info… CWE-200
Information Exposure
CVE-2016-4758 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266264 5.5 MEDIUM
Local
apple mac_os_x Terminal in Apple OS X before 10.12 uses weak permissions for the .bash_history and .bash_session files, which allows local users to obtain sensitive information via unspecified vectors. CWE-200
Information Exposure
CVE-2016-4755 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266265 7.5 HIGH
Network
apple os_x_server ServerDocs Server in Apple OS X Server before 5.2 supports the RC4 cipher, which might allow remote attackers to defeat cryptographic protection mechanisms via unspecified vectors. CWE-310
Cryptographic Issues
CVE-2016-4754 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266266 7.8 HIGH
Local
apple watchos
tvos
iphone_os
mac_os_x
Apple iOS before 10, OS X before 10.12, tvOS before 10, and watchOS before 3 mishandle signed disk images, which allows attackers to execute arbitrary code in a privileged context via a crafted app. CWE-20
 Improper Input Validation 
CVE-2016-4753 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266267 5.5 MEDIUM
Local
apple mac_os_x The SecKeyDeriveFromPassword function in Apple OS X before 10.12 does not use the CF_RETURNS_RETAINED keyword, which allows attackers to obtain sensitive information from process memory by triggering… CWE-200
Information Exposure
CVE-2016-4752 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266268 3.5 LOW
Network
apple safari The Safari Tabs component in Apple Safari before 10 allows remote attackers to spoof the address bar of a tab via a crafted web site. CWE-254
 7PK - Security Features
CVE-2016-4751 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266269 7.8 HIGH
Local
apple iphone_os
mac_os_x
S2 Camera in Apple iOS before 10 and OS X before 10.12 allows attackers to execute arbitrary code in a privileged context or cause a denial of service (memory corruption) via a crafted app. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-4750 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm
266270 5.3 MEDIUM
Local
apple mac_os_x Perl in Apple OS X before 10.12 allows local users to bypass the taint-mode protection mechanism via a crafted environment variable. CWE-254
 7PK - Security Features
CVE-2016-4748 2024-11-21 11:52 2016-09-25 Show GitHub Exploit DB Packet Storm