Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 22, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251101 4.3 警告 RSAセキュリティ - EMC RSA enVision におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0399 2012-03-23 11:24 2012-03-20 Show GitHub Exploit DB Packet Storm
251102 3.6 注意 Bdale Garbee - as31 におけるファイルを生成または削除される脆弱性 CWE-59
リンク解釈の問題
CVE-2012-0808 2012-03-22 18:35 2012-03-19 Show GitHub Exploit DB Packet Storm
251103 5 警告 kylegilman - WordPress 用 Video Embed & Thumbnail Generator プラグインにおけるインストールパスを取得される脆弱性 CWE-200
情報漏えい
CVE-2012-1786 2012-03-22 17:48 2012-03-19 Show GitHub Exploit DB Packet Storm
251104 7.5 危険 kylegilman - WordPress 用 Video Embed & Thumbnail Generator プラグインにおける任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2012-1785 2012-03-22 17:47 2012-03-19 Show GitHub Exploit DB Packet Storm
251105 7.5 危険 OddNormality - MyJobList における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-1784 2012-03-22 17:46 2012-03-19 Show GitHub Exploit DB Packet Storm
251106 7.8 危険 Saurabh Gupta - Tiny Server におけるサービス運用妨害 (クラッシュ) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-1783 2012-03-22 17:42 2012-03-19 Show GitHub Exploit DB Packet Storm
251107 5 警告 Joakim Nygard and Jacob Oettinger - Webgrind における絶対パストラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-1790 2012-03-22 17:34 2012-03-19 Show GitHub Exploit DB Packet Storm
251108 4.3 警告 idevSpot - IDevSpot idev-BusinessDirectory におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1779 2012-03-22 17:33 2012-03-19 Show GitHub Exploit DB Packet Storm
251109 7.5 危険 CreateVision - CreateVision CMS の artykul_print.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-1778 2012-03-22 17:32 2012-03-19 Show GitHub Exploit DB Packet Storm
251110 6.8 警告 Webfolio CMS - Webfolio CMS におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-1498 2012-03-22 17:25 2012-03-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 22, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
277631 5.9 MEDIUM
Network
percona xtrabackup
toolkit
The version checking subroutine in percona-toolkit before 2.2.13 and xtrabackup before 2.2.9 was vulnerable to silent HTTP downgrade attacks and Man In The Middle attacks in which the server response… CWE-200
Information Exposure
CVE-2015-1027 2024-11-21 11:24 2017-09-29 Show GitHub Exploit DB Packet Storm
277632 7.5 HIGH
Network
ppmd_project ppmd Directory traversal vulnerability in ppmd 10.1-5. CWE-22
Path Traversal
CVE-2015-1199 2024-11-21 11:24 2017-08-29 Show GitHub Exploit DB Packet Storm
277633 7.5 HIGH
Network
linux-ha ha Multiple directory traversal vulnerabilities in ha 0.999p+dfsg-5. CWE-22
Path Traversal
CVE-2015-1198 2024-11-21 11:24 2017-08-29 Show GitHub Exploit DB Packet Storm
277634 6.1 MEDIUM
Network
exponentcms exponent_cms Cross-site scripting (XSS) vulnerability in Exponent CMS 2.3.2. CWE-79
Cross-site Scripting
CVE-2015-1177 2024-11-21 11:24 2017-08-29 Show GitHub Exploit DB Packet Storm
277635 7.8 HIGH
Local
mobilis mobiconnect Untrusted search path vulnerability in ZTE Datacard MF19 0V1.0.0B04 allows local users to gain privilege by modifying the 'Ucell Internet' directory to reference a malicious mms_dll_r.dll or mediapla… CWE-426
 Untrusted Search Path
CVE-2015-0974 2024-11-21 11:24 2017-08-29 Show GitHub Exploit DB Packet Storm
277636 7.5 HIGH
Network
oisf libhtp libhtp 0.5.15 allows remote attackers to cause a denial of service (NULL pointer dereference). CWE-476
 NULL Pointer Dereference
CVE-2015-0928 2024-11-21 11:24 2017-08-29 Show GitHub Exploit DB Packet Storm
277637 9.8 CRITICAL
Network
unit4 teta_web Session fixation vulnerability in Unit4 Polska TETA Web (formerly TETA Galactica) 22.62.3.4 and earlier allows remote attackers to hijack web sessions via a session id. CWE-384
 Session Fixation
CVE-2015-1174 2024-11-21 11:24 2017-08-3 Show GitHub Exploit DB Packet Storm
277638 6.5 MEDIUM
Network
google
debian
chrome
debian_linux
Double-free vulnerability in libavformat/mov.c in FFMPEG in Google Chrome 41.0.2251.0 allows remote attackers to cause a denial of service (memory corruption and crash) via a crafted .m4a file. CWE-415
 Double Free
CVE-2015-1207 2024-11-21 11:24 2017-06-7 Show GitHub Exploit DB Packet Storm
277639 9.8 CRITICAL
Network
ceragon fibeair_ip-10_firmware Ceragon FibeAir IP-10 have a default SSH public key in the authorized_keys file for the mateidu user, which allows remote attackers to obtain SSH access by leveraging knowledge of the private key. CWE-320
 Key Management Errors
CVE-2015-0936 2024-11-21 11:24 2017-06-2 Show GitHub Exploit DB Packet Storm
277640 7.8 HIGH
Local
csv2wpec-coupon_project csv2wpec-coupon Remote file upload vulnerability in wordpress plugin csv2wpec-coupon v1.1 CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2015-1000013 2024-11-21 11:24 2016-10-6 Show GitHub Exploit DB Packet Storm