Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241591 2.1 注意 Tigerfish - Drupal 用 Fancy Slide モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2068 2012-09-6 14:05 2012-03-14 Show GitHub Exploit DB Packet Storm
241592 6.8 警告 CKEditor Team - Drupal 用 FCKeditor および CKEditor モジュールにおける任意の PHP コードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-2067 2012-09-6 14:03 2012-03-14 Show GitHub Exploit DB Packet Storm
241593 4.3 警告 CKEditor Team - Drupal 用 FCKeditor および CKEditor モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2066 2012-09-6 14:02 2012-03-14 Show GitHub Exploit DB Packet Storm
241594 3.5 注意 Freso - Drupal 用 Language Icons モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2065 2012-09-6 14:00 2012-03-14 Show GitHub Exploit DB Packet Storm
241595 4.3 警告 Views Language Switcher - Drupal 用 Views Language Switcher モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2064 2012-09-6 13:56 2012-03-14 Show GitHub Exploit DB Packet Storm
241596 5 警告 Brian Altenhofel - Drupal 用 Slidebox モジュールにおける重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2063 2012-09-6 13:54 2012-03-14 Show GitHub Exploit DB Packet Storm
241597 4.3 警告 ImageMagick - ImageMagick におけるサービス運用妨害 (無限ループおよびハング) の脆弱性 CWE-119
バッファエラー
CVE-2012-0248 2012-09-6 13:49 2012-02-3 Show GitHub Exploit DB Packet Storm
241598 5 警告 Pidgin - Pidgin の MSN プロトコルプラグインにおけるサービス運用妨害 (アプリケーションクラッシュ) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-2318 2012-09-6 13:41 2012-05-7 Show GitHub Exploit DB Packet Storm
241599 3.5 注意 Pidgin - Pidgin の libpurple におけるサービス運用妨害 (アプリケーションクラッシュ) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-2214 2012-09-6 13:40 2012-05-7 Show GitHub Exploit DB Packet Storm
241600 7.5 危険 BuddyPress.org - WordPress 用 BuddyPress プラグインの wp-load.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-2109 2012-09-6 11:31 2012-09-4 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266111 6.5 MEDIUM
Network
phpmyadmin phpmyadmin An issue was discovered in phpMyAdmin. An authenticated user can trigger a denial-of-service (DoS) attack by entering a very long password at the change password dialog. All 4.6.x versions (prior to … CWE-20
 Improper Input Validation 
CVE-2016-6630 2024-11-21 11:56 2016-12-11 Show GitHub Exploit DB Packet Storm
266112 9.8 CRITICAL
Network
phpmyadmin phpmyadmin An issue was discovered in phpMyAdmin involving the $cfg['ArbitraryServerRegexp'] configuration directive. An attacker could reuse certain cookie values in a way of bypassing the servers defined by A… CWE-254
 7PK - Security Features
CVE-2016-6629 2024-11-21 11:56 2016-12-11 Show GitHub Exploit DB Packet Storm
266113 6.3 MEDIUM
Network
phpmyadmin phpmyadmin An issue was discovered in phpMyAdmin. An attacker may be able to trigger a user to download a specially crafted malicious SVG file. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.… CWE-254
 7PK - Security Features
CVE-2016-6628 2024-11-21 11:56 2016-12-11 Show GitHub Exploit DB Packet Storm
266114 5.3 MEDIUM
Network
phpmyadmin phpmyadmin An issue was discovered in phpMyAdmin. An attacker can determine the phpMyAdmin host location through the file url.php. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.… CWE-200
Information Exposure
CVE-2016-6627 2024-11-21 11:56 2016-12-11 Show GitHub Exploit DB Packet Storm
266115 5.4 MEDIUM
Network
phpmyadmin phpmyadmin An issue was discovered in phpMyAdmin. An attacker could redirect a user to a malicious web page. All 4.6.x versions (prior to 4.6.4), 4.4.x versions (prior to 4.4.15.8), and 4.0.x versions (prior to… CWE-254
 7PK - Security Features
CVE-2016-6626 2024-11-21 11:56 2016-12-11 Show GitHub Exploit DB Packet Storm
266116 4.3 MEDIUM
Network
phpmyadmin phpmyadmin An issue was discovered in phpMyAdmin. An attacker can determine whether a user is logged in to phpMyAdmin. The user's session, username, and password are not compromised by this vulnerability. All 4… CWE-200
Information Exposure
CVE-2016-6625 2024-11-21 11:56 2016-12-11 Show GitHub Exploit DB Packet Storm
266117 5.9 MEDIUM
Network
phpmyadmin phpmyadmin An issue was discovered in phpMyAdmin involving improper enforcement of the IP-based authentication rules. When phpMyAdmin is used with IPv6 in a proxy server environment, and the proxy server is in … CWE-254
 7PK - Security Features
CVE-2016-6624 2024-11-21 11:56 2016-12-11 Show GitHub Exploit DB Packet Storm
266118 6.5 MEDIUM
Network
phpmyadmin phpmyadmin An issue was discovered in phpMyAdmin. An authorized user can cause a denial-of-service (DoS) attack on a server by passing large values to a loop. All 4.6.x versions (prior to 4.6.4), 4.4.x versions… CWE-20
 Improper Input Validation 
CVE-2016-6623 2024-11-21 11:56 2016-12-11 Show GitHub Exploit DB Packet Storm
266119 5.9 MEDIUM
Network
phpmyadmin phpmyadmin An issue was discovered in phpMyAdmin. An unauthenticated user is able to execute a denial-of-service (DoS) attack by forcing persistent connections when phpMyAdmin is running with $cfg['AllowArbitra… CWE-399
 Resource Management Errors
CVE-2016-6622 2024-11-21 11:56 2016-12-11 Show GitHub Exploit DB Packet Storm
266120 9.8 CRITICAL
Network
phpmyadmin phpmyadmin An issue was discovered in phpMyAdmin. Some data is passed to the PHP unserialize() function without verification that it's valid serialized data. The unserialization can result in code execution bec… CWE-502
 Deserialization of Untrusted Data
CVE-2016-6620 2024-11-21 11:56 2016-12-11 Show GitHub Exploit DB Packet Storm