Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241461 4.3 警告 Roundcube.net - Roundcube Webmail におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4668 2012-08-28 16:11 2012-08-14 Show GitHub Exploit DB Packet Storm
241462 4.3 警告 Gilles Darold - SquidClamav におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4667 2012-08-28 16:09 2012-08-25 Show GitHub Exploit DB Packet Storm
241463 5 警告 Nicolas Cannasse - OCaml Xml-Light Library におけるサービス運用妨害 (DoS) の脆弱性 CWE-310
暗号の問題
CVE-2012-3514 2012-08-28 16:06 2012-08-25 Show GitHub Exploit DB Packet Storm
241464 4.3 警告 Roundcube.net - Roundcube Webmail の program/lib/washtml.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3508 2012-08-28 15:56 2012-08-14 Show GitHub Exploit DB Packet Storm
241465 2.6 注意 Roundcube.net - RoundCube Webmail の program/steps/mail/func.inc におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3507 2012-08-28 15:36 2012-06-7 Show GitHub Exploit DB Packet Storm
241466 6.5 警告 Katello Project - Katello における任意のユーザーとして CloudForms System Engine の Web インターフェイスに認証される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3503 2012-08-28 15:35 2012-08-25 Show GitHub Exploit DB Packet Storm
241467 5 警告 Gilles Darold - SquidClamav の squidclamav.c におけるサービス運用妨害 (デーモンクラッシュ) の脆弱性 CWE-119
バッファエラー
CVE-2012-3501 2012-08-28 15:34 2012-08-25 Show GitHub Exploit DB Packet Storm
241468 6.8 警告 The GIMP Team - GIMP の Adobe Photoshop PSD プラグインにおける整数オーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3402 2012-08-28 13:49 2012-08-25 Show GitHub Exploit DB Packet Storm
241469 4.3 警告 OpenTTD - OpenTTD におけるサービス運用妨害 (ゲーム休止) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-0048 2012-08-28 13:47 2012-01-6 Show GitHub Exploit DB Packet Storm
241470 4.3 警告 アドビシステムズ - Adobe Flash Player におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0767 2012-08-27 16:55 2012-02-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
269361 5.4 MEDIUM
Network
fedoraproject
opensuse
phpmyadmin
fedora
leap
opensuse
phpmyadmin
Multiple cross-site scripting (XSS) vulnerabilities in phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x before 4.5.4 allow remote authenticated users to inject arbitrary web script… CWE-79
Cross-site Scripting
CVE-2016-2040 2024-11-21 11:47 2016-02-20 Show GitHub Exploit DB Packet Storm
269362 5.3 MEDIUM
Network
opensuse
phpmyadmin
fedoraproject
leap
opensuse
phpmyadmin
fedora
libraries/session.inc.php in phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x before 4.5.4 does not properly generate CSRF token values, which allows remote attackers to bypass int… CWE-200
Information Exposure
CVE-2016-2039 2024-11-21 11:47 2016-02-20 Show GitHub Exploit DB Packet Storm
269363 5.3 MEDIUM
Network
phpmyadmin
fedoraproject
opensuse
phpmyadmin
fedora
leap
opensuse
phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x before 4.5.4 allows remote attackers to obtain sensitive information via a crafted request, which reveals the full path in an error… CWE-200
Information Exposure
CVE-2016-2038 2024-11-21 11:47 2016-02-20 Show GitHub Exploit DB Packet Storm
269364 7.5 HIGH
Network
phpmyadmin phpmyadmin The suggestPassword function in js/functions.js in phpMyAdmin 4.0.x before 4.0.10.13, 4.4.x before 4.4.15.3, and 4.5.x before 4.5.4 relies on the Math.random JavaScript function, which makes it easie… CWE-255
CWE-254
Credentials Management
 7PK - Security Features
CVE-2016-1927 2024-11-21 11:47 2016-02-20 Show GitHub Exploit DB Packet Storm
269365 5.9 MEDIUM
Network
hp hp-ux_ipfilter HPE IPFilter A.11.31.18.21 on HP-UX, when a certain keep-state configuration is enabled, allows remote attackers to cause a denial of service via unspecified UDP packets. CWE-20
 Improper Input Validation 
CVE-2016-1987 2024-11-21 11:47 2016-02-19 Show GitHub Exploit DB Packet Storm
269366 6.1 MEDIUM
Network
citrix netscaler The Administrative Web Interface in Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 11.x before 11.0 Build 64.34, 10.5 before 10.5 Build 59.13, 10.5.e before Build 59.130… CWE-254
 7PK - Security Features
CVE-2016-2072 2024-11-21 11:47 2016-02-18 Show GitHub Exploit DB Packet Storm
269367 9.8 CRITICAL
Network
citrix netscaler Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 11.x before 11.0 Build 64.34, 10.5 before 10.5 Build 59.13, and 10.5.e before Build 59.1305.e allows remote attackers to g… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-2071 2024-11-21 11:47 2016-02-18 Show GitHub Exploit DB Packet Storm
269368 6.1 MEDIUM
Network
sophos unified_threat_management_software Cross-site scripting (XSS) vulnerability in the UserPortal page in SOPHOS UTM before 9.353 allows remote attackers to inject arbitrary web script or HTML via the lang parameter. CWE-79
Cross-site Scripting
CVE-2016-2046 2024-11-21 11:47 2016-02-18 Show GitHub Exploit DB Packet Storm
269369 8.8 HIGH
Network
mozilla firefox Mozilla Firefox before 44.0.2 does not properly restrict the interaction between Service Workers and plugins, which allows remote attackers to bypass the Same Origin Policy via a crafted web site tha… CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-1949 2024-11-21 11:47 2016-02-13 Show GitHub Exploit DB Packet Storm
269370 6.5 MEDIUM
Network
xmlsoft
debian
canonical
libxml2
debian_linux
ubuntu_linux
The htmlParseNameComplex function in HTMLparser.c in libxml2 allows attackers to cause a denial of service (out-of-bounds read) via a crafted XML document. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-2073 2024-11-21 11:47 2016-02-13 Show GitHub Exploit DB Packet Storm