Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 8, 2026, 4:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252841 4.3 警告 Fork CMS - Fork CMS の backend/core/engine/base.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1209 2012-02-27 15:48 2012-02-24 Show GitHub Exploit DB Packet Storm
252842 4.3 警告 Fork CMS - Fork CMS の backend/core/engine/base.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1208 2012-02-27 15:48 2012-02-24 Show GitHub Exploit DB Packet Storm
252843 5 警告 Fork CMS - Fork CMS の frontend/core/engine/javascript.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-1207 2012-02-27 15:41 2012-02-24 Show GitHub Exploit DB Packet Storm
252844 9.3 危険 Hancom Inc. - Hancom Office 2010 SE における整数オーバフローの脆弱性 CWE-189
数値処理の問題
CVE-2012-1206 2012-02-27 15:38 2012-02-24 Show GitHub Exploit DB Packet Storm
252845 7.5 危険 alanft - WordPress 用 Relocate Upload プラグインにおける PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2012-1205 2012-02-27 15:35 2012-02-24 Show GitHub Exploit DB Packet Storm
252846 4.3 警告 LEPTON Project - LEPTON におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1000 2012-02-27 15:25 2012-02-24 Show GitHub Exploit DB Packet Storm
252847 7.5 危険 LEPTON Project - LEPTON の modules/news/rss.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-0999 2012-02-27 15:24 2012-02-24 Show GitHub Exploit DB Packet Storm
252848 7.5 危険 LEPTON Project - LEPTON の account/preferences.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-0998 2012-02-27 15:24 2012-02-24 Show GitHub Exploit DB Packet Storm
252849 6.8 警告 11in1 - 11in1 の admin/index.php におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-0997 2012-02-27 15:23 2012-02-24 Show GitHub Exploit DB Packet Storm
252850 5 警告 11in1 - 11in1 におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-0996 2012-02-27 15:21 2012-02-24 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 8, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
246601 5.5 MEDIUM
Local
radare radare2 The r_bin_mdmp_init_directory_entry function in mdmp.c in radare2 2.7.0 allows remote attackers to cause a denial of service (heap-based buffer over-read and application crash) via a crafted Mini Cra… CWE-125
Out-of-bounds Read
CVE-2018-14016 2024-11-21 12:48 2018-07-13 Show GitHub Exploit DB Packet Storm
246602 5.5 MEDIUM
Local
radare radare2 The sdb_set_internal function in sdb.c in radare2 2.7.0 allows remote attackers to cause a denial of service (invalid read and application crash) via a crafted ELF file because of missing input valid… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2018-14015 2024-11-21 12:48 2018-07-13 Show GitHub Exploit DB Packet Storm
246603 8.8 HIGH
Network
super_cms_project super_cms In waimai Super Cms 20150505, there is a CSRF vulnerability that can add an admin account via admin.php?m=Member&a=adminadd. CWE-352
 Origin Validation Error
CVE-2018-14014 2024-11-21 12:48 2018-07-13 Show GitHub Exploit DB Packet Storm
246604 9.8 CRITICAL
Network
wolfsight wolfsight_cms WolfSight CMS 3.2 allows SQL injection via the PATH_INFO to the default URI. CWE-89
SQL Injection
CVE-2018-14012 2024-11-21 12:48 2018-07-13 Show GitHub Exploit DB Packet Storm
246605 6.5 MEDIUM
Network
gnu mailman An issue was discovered in GNU Mailman before 2.1.28. A crafted URL can cause arbitrary text to be displayed on a web page from a trusted site. CWE-20
 Improper Input Validation 
CVE-2018-13796 2024-11-21 12:48 2018-07-13 Show GitHub Exploit DB Packet Storm
246606 9.8 CRITICAL
Network
codiad codiad Codiad through 2.8.4 allows Remote Code Execution, a different vulnerability than CVE-2017-11366 and CVE-2017-15689. CWE-20
 Improper Input Validation 
CVE-2018-14009 2024-11-21 12:48 2018-07-13 Show GitHub Exploit DB Packet Storm
246607 7.5 HIGH
Network
ngtoken_project ngtoken An integer overflow vulnerability exists in the function multipleTransfer of Neo Genesis Token (NGT), an Ethereum token smart contract. An attacker could use it to set any user's balance. CWE-190
 Integer Overflow or Wraparound
CVE-2018-14006 2024-11-21 12:48 2018-07-13 Show GitHub Exploit DB Packet Storm
246608 7.5 HIGH
Network
malaysiancoin_project malaysiancoin An integer overflow vulnerability exists in the function transferAny of Malaysia coins (Xmc), an Ethereum token smart contract. An attacker could use it to set any user's balance. CWE-190
 Integer Overflow or Wraparound
CVE-2018-14005 2024-11-21 12:48 2018-07-13 Show GitHub Exploit DB Packet Storm
246609 7.5 HIGH
Network
globecoin_project globecoin An integer overflow vulnerability exists in the function transfer_tokens_after_ICO of GlobeCoin (GLB), an Ethereum token smart contract. An attacker could use it to set any user's balance. CWE-190
 Integer Overflow or Wraparound
CVE-2018-14004 2024-11-21 12:48 2018-07-13 Show GitHub Exploit DB Packet Storm
246610 9.8 CRITICAL
Network
mutt
neomutt
canonical
debian
redhat
mutt
neomutt
ubuntu_linux
debian_linux
enterprise_linux_desktop
enterprise_linux_workstation
enterprise_linux_server
enterprise_linux_server_eus
enterprise_linux_server_tus
An issue was discovered in Mutt before 1.10.1 and NeoMutt before 2018-07-16. They allow remote IMAP servers to execute arbitrary commands via backquote characters, related to the mailboxes command as… CWE-78
OS Command 
CVE-2018-14357 2024-11-21 12:48 2018-07-18 Show GitHub Exploit DB Packet Storm