Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252291 7.5 危険 Kerry Thompson
drusus
- Logsurfer および Logsurfer+ におけるメモリ二重解放の脆弱性 CWE-399
リソース管理の問題
CVE-2011-3626 2012-02-1 16:24 2012-01-27 Show GitHub Exploit DB Packet Storm
252292 5 警告 The Support Incident Tracker Project - Support Incident Tracker の translate.php における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2011-5075 2012-02-1 16:20 2011-11-13 Show GitHub Exploit DB Packet Storm
252293 6.8 警告 The Support Incident Tracker Project - Support Incident Tracker におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2011-5074 2012-02-1 16:18 2012-01-29 Show GitHub Exploit DB Packet Storm
252294 5.8 警告 The Support Incident Tracker Project - Support Incident Tracker におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5073 2012-02-1 16:18 2012-01-29 Show GitHub Exploit DB Packet Storm
252295 7.5 危険 The Support Incident Tracker Project - Support Incident Tracker における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-5072 2012-02-1 16:17 2012-01-29 Show GitHub Exploit DB Packet Storm
252296 7.5 危険 The Support Incident Tracker Project - Support Incident Tracker における任意の PHP コードを実行可能な言語ファイルに挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2011-4337 2012-02-1 16:17 2011-11-13 Show GitHub Exploit DB Packet Storm
252297 7.5 危険 The Support Incident Tracker Project - Support Incident Tracker における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2011-5071 2012-02-1 16:16 2012-01-29 Show GitHub Exploit DB Packet Storm
252298 4.3 警告 The Support Incident Tracker Project - Support Incident Tracker におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-5070 2012-02-1 16:16 2012-01-29 Show GitHub Exploit DB Packet Storm
252299 6 警告 The Support Incident Tracker Project - Support Incident Tracker の incident_attachments.php における任意のコードを実行される脆弱性 CWE-Other
その他
CVE-2011-5069 2012-02-1 16:15 2012-01-29 Show GitHub Exploit DB Packet Storm
252300 6.8 警告 The Support Incident Tracker Project - Support Incident Tracker におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2011-5068 2012-02-1 16:11 2012-01-29 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
259231 6.1 MEDIUM
Network
genixcms genixcms In GeniXCMS 1.1.4, /inc/lib/Control/Backend/menus.control.php has XSS via the id parameter. CWE-79
Cross-site Scripting
CVE-2017-14762 2024-11-21 12:13 2017-09-27 Show GitHub Exploit DB Packet Storm
259232 6.1 MEDIUM
Network
genixcms genixcms In GeniXCMS 1.1.4, /inc/lib/backend/menus.control.php has XSS via the id parameter. CWE-79
Cross-site Scripting
CVE-2017-14761 2024-11-21 12:13 2017-09-27 Show GitHub Exploit DB Packet Storm
259233 9.8 CRITICAL
Network
eventespresso event_espresso_lite SQL Injection exists in /includes/event-management/index.php in the event-espresso-free (aka Event Espresso Lite) plugin v3.1.37.12.L for WordPress via the recurrence_id parameter to /wp-admin/admin.… CWE-89
SQL Injection
CVE-2017-14760 2024-11-21 12:13 2017-09-27 Show GitHub Exploit DB Packet Storm
259234 5.4 MEDIUM
Network
eyesofnetwork eyesofnetwork Cross-site scripting (XSS) vulnerability in the EyesOfNetwork web interface (aka eonweb) 5.1-0 allows remote authenticated users to inject arbitrary web script or HTML via the filter parameter to mod… CWE-79
Cross-site Scripting
CVE-2017-14753 2024-11-21 12:13 2017-09-27 Show GitHub Exploit DB Packet Storm
259235 6.1 MEDIUM
Network
intensewp wp_jobs The Intense WP "WP Jobs" plugin 1.5 for WordPress has XSS, related to the Job Qualification field. CWE-79
Cross-site Scripting
CVE-2017-14751 2024-11-21 12:13 2017-09-27 Show GitHub Exploit DB Packet Storm
259236 7.8 HIGH
Local
jerryscript jerryscript JerryScript 1.0 allows remote attackers to cause a denial of service (jmem_heap_alloc_block_internal heap memory corruption) or possibly execute arbitrary code via a crafted .js file, because unrecog… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-14749 2024-11-21 12:13 2017-09-27 Show GitHub Exploit DB Packet Storm
259237 5.3 MEDIUM
Network
blizzard overwatch Race condition in Blizzard Overwatch 1.15.0.2 allows remote authenticated users to cause a denial of service (season bans and SR losses for other users) by leaving a competitive match at a specific t… CWE-362
Race Condition
CVE-2017-14748 2024-11-21 12:13 2017-09-27 Show GitHub Exploit DB Packet Storm
259238 7.8 HIGH
Local
gnu binutils The *_get_synthetic_symtab functions in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29, interpret a -1 value as a sorting count instead of an error flag, w… CWE-190
 Integer Overflow or Wraparound
CVE-2017-14745 2024-11-21 12:13 2017-09-27 Show GitHub Exploit DB Packet Storm
259239 8.8 HIGH
Network
claydip airbnb_clone Multiple unrestricted file upload vulnerabilities in the (1) imageSubmit and (2) proof_submit functions in Claydip Laravel Airbnb Clone 1.0 allow remote authenticated users to execute arbitrary code … CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2017-14704 2024-11-21 12:13 2017-09-26 Show GitHub Exploit DB Packet Storm
259240 7.2 HIGH
Network
citrix netscaler_gateway_firmware
application_delivery_controller_firmware
A vulnerability has been identified in the management interface of Citrix NetScaler Application Delivery Controller (ADC) and NetScaler Gateway 10.1 before build 135.18, 10.5 before build 66.9, 10.5e… CWE-287
Improper Authentication
CVE-2017-14602 2024-11-21 12:13 2017-09-26 Show GitHub Exploit DB Packet Storm