Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242601 9.3 危険 KMPlayer's Forums - KMPlayer における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2012-3841 2012-07-5 15:35 2012-07-3 Show GitHub Exploit DB Packet Storm
242602 4.3 警告 Jesse Terry - MyClientBase の index.php/users/form/user_id におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3840 2012-07-5 15:32 2012-07-3 Show GitHub Exploit DB Packet Storm
242603 7.5 危険 Jesse Terry - MyClientBase の application/core/MY_Model.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-3839 2012-07-5 15:31 2012-07-3 Show GitHub Exploit DB Packet Storm
242604 5 警告 SCHLIX - Gekko におけるインストールパスを取得される脆弱性 CWE-200
情報漏えい
CVE-2012-3838 2012-07-5 15:29 2012-05-2 Show GitHub Exploit DB Packet Storm
242605 4.3 警告 SCHLIX - Baby Gekko の apps/users/registration.template.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3837 2012-07-5 15:28 2012-07-3 Show GitHub Exploit DB Packet Storm
242606 4.3 警告 SCHLIX - Baby Gekko におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3836 2012-07-5 15:26 2012-05-2 Show GitHub Exploit DB Packet Storm
242607 4.3 警告 AlienVault - AlienVault の OSSIM におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3835 2012-07-5 15:13 2012-07-3 Show GitHub Exploit DB Packet Storm
242608 6.5 警告 AlienVault - AlienVault の OSSIM における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-3834 2012-07-5 15:11 2012-07-3 Show GitHub Exploit DB Packet Storm
242609 4.3 警告 OpenSolution - Quick.CMS の admin/ 内のデフォルトインデックスページにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3833 2012-07-5 15:09 2012-07-3 Show GitHub Exploit DB Packet Storm
242610 4.3 警告 Miles Johnson - Decoda の decoda/Decoda.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3832 2012-07-5 14:40 2012-07-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
266601 7.5 HIGH
Network
broadcom tcpreplay tcprewrite in tcpreplay before 4.1.2 allows remote attackers to cause a denial of service (segmentation fault) via a large frame, a related issue to CVE-2017-14266. CWE-399
 Resource Management Errors
CVE-2016-6160 2024-11-21 11:55 2017-01-24 Show GitHub Exploit DB Packet Storm
266602 5.9 MEDIUM
Network
owncloud owncloud ownCloud server before 8.2.6 and 9.x before 9.0.3, when the gallery app is enabled, allows remote attackers to download arbitrary images via a direct request. CWE-264
Permissions, Privileges, and Access Controls
CVE-2016-5876 2024-11-21 11:55 2017-01-24 Show GitHub Exploit DB Packet Storm
266603 9.8 CRITICAL
Network
php pecl_http Buffer overflow in the HTTP URL parsing functions in pecl_http before 3.0.1 might allow remote attackers to execute arbitrary code via non-printable characters in a URL. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-5873 2024-11-21 11:55 2017-01-24 Show GitHub Exploit DB Packet Storm
266604 7.8 HIGH
Local
netbsd netbsd mail.local in NetBSD versions 6.0 through 6.0.6, 6.1 through 6.1.5, and 7.0 allows local users to change ownership of or append data to arbitrary files on the target system via a symlink attack on th… CWE-59
Link Following
CVE-2016-6253 2024-11-21 11:55 2017-01-21 Show GitHub Exploit DB Packet Storm
266605 6.1 MEDIUM
Network
atlassian confluence Cross-site scripting (XSS) vulnerability in Atlassian Confluence before 5.10.6 allows remote attackers to inject arbitrary web script or HTML via the newFileName parameter to pages/doeditattachment.a… CWE-79
Cross-site Scripting
CVE-2016-6283 2024-11-21 11:55 2017-01-19 Show GitHub Exploit DB Packet Storm
266606 7.5 HIGH
Network
bzrtp_project bzrtp The Bzrtp library (aka libbzrtp) 1.0.x before 1.0.4 allows man-in-the-middle attackers to conduct spoofing attacks by leveraging a missing HVI check on DHPart2 packet reception. CWE-254
 7PK - Security Features
CVE-2016-6271 2024-11-21 11:55 2017-01-19 Show GitHub Exploit DB Packet Storm
266607 7.5 HIGH
Network
call-cc http-client The "http-client" egg always used a HTTP_PROXY environment variable to determine whether HTTP traffic should be routed via a proxy, even when running as a CGI process. Under several web servers this … CWE-19
 Data Processing Errors
CVE-2016-6287 2024-11-21 11:55 2017-01-11 Show GitHub Exploit DB Packet Storm
266608 7.5 HIGH
Network
call-cc http-client The "spiffy-cgi-handlers" egg would convert a nonexistent "Proxy" header to the HTTP_PROXY environment variable, which would allow attackers to direct CGI programs which use this environment variable… CWE-19
 Data Processing Errors
CVE-2016-6286 2024-11-21 11:55 2017-01-11 Show GitHub Exploit DB Packet Storm
266609 4.7 MEDIUM
Local
linux linux_kernel fs/namespace.c in the Linux kernel before 4.9 does not restrict how many mounts may exist in a mount namespace, which allows local users to cause a denial of service (memory consumption and deadlock)… CWE-400
 Uncontrolled Resource Consumption
CVE-2016-6213 2024-11-21 11:55 2016-12-28 Show GitHub Exploit DB Packet Storm
266610 8.8 HIGH
Network
python-openxml_project python-docx python-docx before 0.8.6 allows context-dependent attackers to conduct XML External Entity (XXE) attacks via a crafted document. CWE-611
XXE
CVE-2016-5851 2024-11-21 11:55 2016-12-22 Show GitHub Exploit DB Packet Storm