Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 3, 2026, noon

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252141 4.3 警告 eFront Learning - eFront Community++ におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1048 2012-02-14 14:48 2012-02-12 Show GitHub Exploit DB Packet Storm
252142 7.5 危険 ソフォス - Cyberoam Central Console におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-1047 2012-02-14 14:47 2012-02-12 Show GitHub Exploit DB Packet Storm
252143 4.3 警告 Symphony CMS - Symphony CMS における SQL インジェクションの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4341 2012-02-14 14:46 2012-02-12 Show GitHub Exploit DB Packet Storm
252144 3.5 注意 Symphony CMS - Symphony CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-4340 2012-02-14 14:45 2012-02-12 Show GitHub Exploit DB Packet Storm
252145 4.3 警告 Deon George - phpLDAPadmin におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0834 2012-02-14 14:45 2012-02-11 Show GitHub Exploit DB Packet Storm
252146 7.5 危険 Mozilla Foundation - 複数の Mozilla 製品におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-0452 2012-02-14 14:42 2012-02-10 Show GitHub Exploit DB Packet Storm
252147 4.3 警告 IBM - IBM Cognos TM1 の TM1 Web におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1046 2012-02-14 14:18 2012-02-10 Show GitHub Exploit DB Packet Storm
252148 5 警告 Apache Software Foundation - Apache Portable Runtime ライブラリの apr_hash.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-0840 2012-02-14 14:17 2012-02-10 Show GitHub Exploit DB Packet Storm
252149 5 警告 AdaCore - AdaCore Ada Web Services におけるサービス運用妨害 (CPU 資源の消費) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-1035 2012-02-13 16:39 2012-01-27 Show GitHub Exploit DB Packet Storm
252150 6.5 警告 サイベース - Sybase M-Business Anywhere の Web 管理インターフェイスにおけるユーザーアカウントをリストアップされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2011-5078 2012-02-13 16:15 2012-02-8 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 3, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
246621 6.1 MEDIUM
Network
slims_akasia_project slims_akasia Reflected Cross-Site Scripting (XSS) exists in the Master File module in SLiMS 8 Akasia 8.3.1 via an admin/modules/master_file/rda_cmc.php?keywords= URI. CWE-79
Cross-site Scripting
CVE-2018-12657 2024-11-21 12:45 2018-06-23 Show GitHub Exploit DB Packet Storm
246622 6.1 MEDIUM
Network
slims_akasia_project slims_akasia Reflected Cross-Site Scripting (XSS) exists in the Membership module in SLiMS 8 Akasia 8.3.1 via an admin/modules/membership/index.php?keywords= URI. CWE-79
Cross-site Scripting
CVE-2018-12656 2024-11-21 12:45 2018-06-23 Show GitHub Exploit DB Packet Storm
246623 6.1 MEDIUM
Network
slims_akasia_project slims_akasia Reflected Cross-Site Scripting (XSS) exists in the Circulation module in SLiMS 8 Akasia 8.3.1 via an admin/modules/circulation/loan_rules.php?keywords= URI, a related issue to CVE-2017-7242. CWE-79
Cross-site Scripting
CVE-2018-12655 2024-11-21 12:45 2018-06-23 Show GitHub Exploit DB Packet Storm
246624 6.1 MEDIUM
Network
slims_akasia_project slims_akasia Reflected Cross-Site Scripting (XSS) exists in the Bibliography module in SLiMS 8 Akasia 8.3.1 via an admin/modules/bibliography/index.php?keywords= URI. CWE-79
Cross-site Scripting
CVE-2018-12654 2024-11-21 12:45 2018-06-23 Show GitHub Exploit DB Packet Storm
246625 9.8 CRITICAL
Network
misp misp An issue was discovered in app/Controller/UsersController.php in MISP 2.4.92. An adversary can bypass the brute-force protection by using a PUT HTTP method instead of a POST HTTP method in the login … CWE-307
mproper Restriction of Excessive Authentication Attempts
CVE-2018-12649 2024-11-21 12:45 2018-06-22 Show GitHub Exploit DB Packet Storm
246626 7.5 HIGH
Network
exempi_project exempi The WEBP::GetLE32 function in XMPFiles/source/FormatSupport/WEBP_Support.hpp in Exempi 2.4.5 has a NULL pointer dereference. CWE-476
 NULL Pointer Dereference
CVE-2018-12648 2024-11-21 12:45 2018-06-22 Show GitHub Exploit DB Packet Storm
246627 7.5 HIGH
Network
froxlor froxlor Froxlor through 0.9.39.5 has Incorrect Access Control for tickets not owned by the current user. CWE-732
 Incorrect Permission Assignment for Critical Resource
CVE-2018-12642 2024-11-21 12:45 2018-06-22 Show GitHub Exploit DB Packet Storm
246628 5.5 MEDIUM
Local
gnu binutils An issue was discovered in arm_pt in cplus-dem.c in GNU libiberty, as distributed in GNU Binutils 2.30. Stack Exhaustion occurs in the C++ demangling functions provided by libiberty, and there are re… CWE-400
 Uncontrolled Resource Consumption
CVE-2018-12641 2024-11-21 12:45 2018-06-22 Show GitHub Exploit DB Packet Storm
246629 7.5 HIGH
Network
circontrol scada CirCarLife Scada v4.2.4 allows unauthorized upgrades via requests to the html/upgrade.html and services/system/firmware.upgrade URIs. CWE-20
 Improper Input Validation 
CVE-2018-12635 2024-11-21 12:45 2018-06-22 Show GitHub Exploit DB Packet Storm
246630 9.8 CRITICAL
Network
circontrol circarlife_scada CirCarLife Scada before 4.3 allows remote attackers to obtain sensitive information via a direct request for the html/log or services/system/info.html URI. CWE-200
Information Exposure
CVE-2018-12634 2024-11-21 12:45 2018-06-22 Show GitHub Exploit DB Packet Storm