Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251461 2.6 注意 マイクロソフト
WordPress.org
- WordPress の wp-comments-post.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0287 2012-01-10 16:33 2012-01-3 Show GitHub Exploit DB Packet Storm
251462 4.3 警告 Igor Vlasenko - Perl 用の HTML-Template-Pro モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4616 2012-01-10 16:30 2012-01-6 Show GitHub Exploit DB Packet Storm
251463 4.3 警告 GNU Project - GnuTLS の DTLS 実装における部分的に平文に復元される脆弱性 CWE-310
暗号の問題
CVE-2012-0390 2012-01-10 16:29 2012-01-6 Show GitHub Exploit DB Packet Storm
251464 7.5 危険 Google - Google Chrome におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-3922 2012-01-10 11:22 2012-01-5 Show GitHub Exploit DB Packet Storm
251465 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-3921 2012-01-10 11:21 2012-01-5 Show GitHub Exploit DB Packet Storm
251466 7.8 危険 ISC, Inc.
Electric Sheep Fencing
レッドハット
- ISC DHCP サーバにおけるサービス運用妨害 (dhcp デーモンの停止) の脆弱性 CWE-20
不適切な入力確認
CVE-2011-2748 2012-01-6 19:20 2011-07-27 Show GitHub Exploit DB Packet Storm
251467 9.3 危険 Mozilla Foundation
レッドハット
- Mozilla Firefox および Thunderbird の JSSubScriptLoader における権限を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2011-3647 2012-01-6 19:13 2011-11-8 Show GitHub Exploit DB Packet Storm
251468 4.3 警告 Pidgin
レッドハット
- Pidgin などの製品で使用される libpurple におけるサービス運用妨害 (クラッシュ) の脆弱性 CWE-119
バッファエラー
CVE-2011-3594 2012-01-6 18:46 2011-09-29 Show GitHub Exploit DB Packet Storm
251469 6.9 警告 eEye Digital Security - eEye Retina CS Vulnerability Management Console が任意のプログラムを実行する問題 CWE-264
認可・権限・アクセス制御
CVE-2011-3337 2012-01-6 16:08 2011-11-9 Show GitHub Exploit DB Packet Storm
251470 4.3 警告 Textpattern - Textpattern CMS の setup/index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5019 2012-01-6 15:46 2012-01-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
273581 6.5 MEDIUM
Network
candlepinproject candlepin Candlepin allows remote attackers to obtain sensitive information by obtaining Java exception statements as a result of excessive web traffic. CWE-200
CWE-399
Information Exposure
 Resource Management Errors
CVE-2015-5187 2024-11-21 11:32 2017-07-26 Show GitHub Exploit DB Packet Storm
273582 7.5 HIGH
Network
fedoraproject
suse
opensuse
redhat
debian
canonical
ntp
fedora
linux_enterprise_server
manager_proxy
linux_enterprise_debuginfo
linux_enterprise_software_development_kit
manager
openstack_cloud
linux_enterprise_desktop
leap
open…
The panic_gate check in NTP before 4.2.8p5 is only re-enabled after the first change to the system clock that was greater than 128 milliseconds by default, which allows remote attackers to set NTP to… CWE-361
 7PK - Time and State
CVE-2015-5300 2024-11-21 11:32 2017-07-21 Show GitHub Exploit DB Packet Storm
273583 7.5 HIGH
Network
fedoraproject
suse
redhat
debian
canonical
ntp
novell
opensuse
siemens
oracle
fedora
manager_proxy
linux_enterprise_debuginfo
manager
linux_enterprise_server
openstack_cloud
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
The ULOGTOD function in ntp.d in SNTP before 4.2.7p366 does not properly perform type conversions from a precision value to a double, which allows remote attackers to cause a denial of service (infin… CWE-704
 Incorrect Type Conversion or Cast
CVE-2015-5219 2024-11-21 11:32 2017-07-21 Show GitHub Exploit DB Packet Storm
273584 7.5 HIGH
Network
fedoraproject
redhat
debian
canonical
ntp
fedora
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_hpc_node
debian_linux
ubuntu_linux
ntp
ntp_openssl.m4 in ntpd in NTP before 4.2.7p112 allows remote attackers to cause a denial of service (segmentation fault) via a crafted statistics or filegen configuration command that is not enabled … CWE-20
 Improper Input Validation 
CVE-2015-5195 2024-11-21 11:32 2017-07-21 Show GitHub Exploit DB Packet Storm
273585 7.5 HIGH
Network
fedoraproject
suse
redhat
debian
canonical
ntp
fedora
manager_proxy
linux_enterprise_debuginfo
manager
linux_enterprise_server
openstack_cloud
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
The log_config_command function in ntp_parser.y in ntpd in NTP before 4.2.7p42 allows remote attackers to cause a denial of service (ntpd crash) via crafted logconfig commands. CWE-20
 Improper Input Validation 
CVE-2015-5194 2024-11-21 11:32 2017-07-21 Show GitHub Exploit DB Packet Storm
273586 8.1 HIGH
Network
theforeman foreman Foreman after 1.1 and before 1.9.0-RC1 does not redirect HTTP requests to HTTPS when the require_ssl setting is set to true, which allows remote attackers to obtain user credentials via a man-in-the-… CWE-200
Information Exposure
CVE-2015-5152 2024-11-21 11:32 2017-07-17 Show GitHub Exploit DB Packet Storm
273587 7.5 HIGH
Network
elasticsearch
elastic
logstash Logstash 1.5.x before 1.5.3 and 1.4.x before 1.4.4 allows remote attackers to read communications between Logstash Forwarder agent and Logstash server. CWE-200
Information Exposure
CVE-2015-5378 2024-11-21 11:32 2017-06-28 Show GitHub Exploit DB Packet Storm
273588 7.5 HIGH
Network
canonical
gnu
ubuntu_linux
glibc
res_query in libresolv in glibc before 2.25 allows remote attackers to cause a denial of service (NULL pointer dereference and process crash). CWE-476
 NULL Pointer Dereference
CVE-2015-5180 2024-11-21 11:32 2017-06-28 Show GitHub Exploit DB Packet Storm
273589 8.1 HIGH
Network
cornelisnetworks opa-ff
opa-fm
Race conditions in opa-fm before 10.4.0.0.196 and opa-ff before 10.4.0.0.197. CWE-362
Race Condition
CVE-2015-5232 2024-11-21 11:32 2017-06-8 Show GitHub Exploit DB Packet Storm
273590 7.5 HIGH
Network
apache cxf_fediz Application plugins in Apache CXF Fediz before 1.1.3 and 1.2.x before 1.2.1 allow remote attackers to cause a denial of service. CWE-20
 Improper Input Validation 
CVE-2015-5175 2024-11-21 11:32 2017-06-8 Show GitHub Exploit DB Packet Storm