Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
241651 4.3 警告 Tom Braider - WordPress 用 Count Per Day モジュールの userperspan.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3434 2012-08-20 15:53 2012-07-13 Show GitHub Exploit DB Packet Storm
241652 5 警告 Mike Peachey - RT 用 Authen::ExternalAuth エクステンションにおけるログインセッションを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2770 2012-08-20 15:45 2012-07-25 Show GitHub Exploit DB Packet Storm
241653 4.3 警告 Jesse Vincent - RT 用 Extension::MobileUI エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2769 2012-08-20 15:42 2012-07-25 Show GitHub Exploit DB Packet Storm
241654 4.3 警告 Best Practical Solutions - RT 用 RTFM エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2768 2012-08-20 15:40 2012-07-25 Show GitHub Exploit DB Packet Storm
241655 7.5 危険 Bharat Mediratta - Gallery における任意の PHP コードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-4343 2012-08-20 12:17 2012-06-12 Show GitHub Exploit DB Packet Storm
241656 4.3 警告 Bharat Mediratta - Gallery におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4342 2012-08-20 12:16 2012-06-12 Show GitHub Exploit DB Packet Storm
241657 10 危険 SAP - SAP NetWeaver ABAP の msg_server.exe におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4341 2012-08-20 12:15 2012-08-15 Show GitHub Exploit DB Packet Storm
241658 4.3 警告 Qualiteam Software Limited - X-Cart Gold の products_map.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2570 2012-08-20 12:01 2012-08-15 Show GitHub Exploit DB Packet Storm
241659 6.8 警告 Kyle Browning - Drupal 用 CDN2 Video モジュールにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-2155 2012-08-17 15:56 2012-03-28 Show GitHub Exploit DB Packet Storm
241660 4.3 警告 Kyle Browning - Drupal 用 CDN2 Video モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2154 2012-08-17 15:55 2012-03-28 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
285951 - hanon faceid_f810_firmware
faceid
faceid_f710_firmware
faceid_fk800_firmware
faceid_fa007_firmware
Hanvon FaceID before 1.007.110 does not require authentication, which allows remote attackers to modify access-control and attendance-tracking data via API commands. CWE-287
Improper Authentication
CVE-2014-2938 2024-11-21 11:07 2014-05-23 Show GitHub Exploit DB Packet Storm
285952 - dotonpaper booking_system SQL injection vulnerability in dopbs-backend-forms.php in the Booking System (Booking Calendar) plugin before 1.3 for WordPress allows remote authenticated users to execute arbitrary SQL commands via… CWE-89
SQL Injection
CVE-2014-3210 2024-11-21 11:07 2014-05-23 Show GitHub Exploit DB Packet Storm
285953 - fedoraproject
google
fedora
v8
chrome
Integer underflow in the LCodeGen::PrepareKeyedOperand function in arm/lithium-codegen-arm.cc in Google V8 before 3.25.28.16, as used in Google Chrome before 35.0.1916.114, allows remote attackers to… CWE-189
Numeric Errors
CVE-2014-3152 2024-11-21 11:07 2014-05-21 Show GitHub Exploit DB Packet Storm
285954 - cisco ios The LLDP implementation in Cisco IOS allows remote attackers to cause a denial of service (device reload) via a malformed packet, aka Bug ID CSCum96282. CWE-20
 Improper Input Validation 
CVE-2014-3273 2024-11-21 11:07 2014-05-20 Show GitHub Exploit DB Packet Storm
285955 - cisco ios_xr The DHCPv6 implementation in Cisco IOS XR allows remote attackers to cause a denial of service (device crash) via a malformed packet, aka Bug IDs CSCum85558, CSCum20949, CSCul61849, and CSCul71149. CWE-20
 Improper Input Validation 
CVE-2014-3271 2024-11-21 11:07 2014-05-20 Show GitHub Exploit DB Packet Storm
285956 - cisco ios_xr The DHCPv6 implementation in Cisco IOS XR allows remote attackers to cause a denial of service (process hang) via a malformed packet, aka Bug ID CSCul80924. CWE-20
 Improper Input Validation 
CVE-2014-3270 2024-11-21 11:07 2014-05-20 Show GitHub Exploit DB Packet Storm
285957 - cisco ios_xe The SNMP module in Cisco IOS XE 3.5E allows remote authenticated users to cause a denial of service (device reload) by polling frequently, aka Bug ID CSCug65204. CWE-20
 Improper Input Validation 
CVE-2014-3269 2024-11-21 11:07 2014-05-20 Show GitHub Exploit DB Packet Storm
285958 - cisco ios
unified_border_element
Cisco IOS 15.2(4)M4 on Cisco Unified Border Element (CUBE) devices allows remote attackers to cause a denial of service (input-queue consumption and traffic-processing outage) via crafted RTCP packet… CWE-20
 Improper Input Validation 
CVE-2014-3268 2024-11-21 11:07 2014-05-20 Show GitHub Exploit DB Packet Storm
285959 - cisco security_manager Cross-site scripting (XSS) vulnerability in the Auto Update Server (AUS) web framework in Cisco Security Manager 4.2 and earlier allows remote attackers to inject arbitrary web script or HTML via an … CWE-79
Cross-site Scripting
CVE-2014-3265 2024-11-21 11:07 2014-05-20 Show GitHub Exploit DB Packet Storm
285960 - cisco adaptive_security_appliance_software Cisco Adaptive Security Appliance (ASA) Software 9.1(.5) and earlier allows remote authenticated users to cause a denial of service (device reload) via crafted attributes in a RADIUS packet, aka Bug … NVD-CWE-noinfo
CVE-2014-3264 2024-11-21 11:07 2014-05-20 Show GitHub Exploit DB Packet Storm