Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":July 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
253141 7.5 危険 SQLAlchemy - Keystone で使用される SQLAlchemy における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-0805 2012-06-7 15:17 2012-06-5 Show GitHub Exploit DB Packet Storm
253142 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品の glBufferData 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-3105 2012-06-7 15:14 2012-06-5 Show GitHub Exploit DB Packet Storm
253143 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品の utf16_to_isolatin1 関数におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-1947 2012-06-7 15:11 2012-06-5 Show GitHub Exploit DB Packet Storm
253144 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品の nsINode::ReplaceOrInsertBefore 関数における任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2012-1946 2012-06-7 15:08 2012-06-5 Show GitHub Exploit DB Packet Storm
253145 2.9 注意 Mozilla Foundation - 複数の Mozilla 製品における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-1945 2012-06-7 15:04 2012-06-5 Show GitHub Exploit DB Packet Storm
253146 4.3 警告 Mozilla Foundation - 複数の Mozilla 製品の CSP の実装におけるクロスサイトスクリプティング攻撃を実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1944 2012-06-7 15:00 2012-06-5 Show GitHub Exploit DB Packet Storm
253147 6.9 警告 Mozilla Foundation - Windows 上で稼働する複数の Mozilla 製品における権限を取得される脆弱性 CWE-Other
その他
CVE-2012-1943 2012-06-7 14:54 2012-06-5 Show GitHub Exploit DB Packet Storm
253148 7.2 危険 Mozilla Foundation - Windows 上で稼働する複数の Mozilla 製品における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-1942 2012-06-7 14:52 2012-06-5 Show GitHub Exploit DB Packet Storm
253149 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-1941 2012-06-7 14:42 2012-06-5 Show GitHub Exploit DB Packet Storm
253150 9.3 危険 Mozilla Foundation - 複数の Mozilla 製品のブラウザエンジンにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2012-1938 2012-06-7 14:25 2012-06-5 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:July 1, 2026, 4:27 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
245631 6.5 MEDIUM
Network
sap hana_extended_application_services In SAP HANA Extended Application Services, 1.0, an unauthenticated user could test if a given username is valid by evaluating error messages of a specific endpoint. CWE-209
Information Exposure Through an Error Message
CVE-2018-2379 2024-11-21 13:03 2018-02-14 Show GitHub Exploit DB Packet Storm
245632 6.5 MEDIUM
Network
sap hana_extended_application_services In SAP HANA Extended Application Services, 1.0, unauthorized users can read statistical data about deployed applications including resource consumption. NVD-CWE-noinfo
CVE-2018-2378 2024-11-21 13:03 2018-02-14 Show GitHub Exploit DB Packet Storm
245633 6.5 MEDIUM
Network
sap hana_extended_application_services In SAP HANA Extended Application Services, 1.0, some general server statistics and status information could be retrieved by unauthorized users. NVD-CWE-noinfo
CVE-2018-2377 2024-11-21 13:03 2018-02-14 Show GitHub Exploit DB Packet Storm
245634 8.1 HIGH
Network
sap hana_extended_application_services In SAP HANA Extended Application Services, 1.0, a controller user who has SpaceAuditor authorization in a specific space could retrieve application environments within that space. NVD-CWE-noinfo
CVE-2018-2376 2024-11-21 13:03 2018-02-14 Show GitHub Exploit DB Packet Storm
245635 8.1 HIGH
Network
sap hana_extended_application_services In SAP HANA Extended Application Services, 1.0, a controller user who has SpaceAuditor authorization in a specific space could retrieve application environments within that space. NVD-CWE-noinfo
CVE-2018-2375 2024-11-21 13:03 2018-02-14 Show GitHub Exploit DB Packet Storm
245636 6.5 MEDIUM
Network
sap hana_extended_application_services In SAP HANA Extended Application Services, 1.0, a controller user who has SpaceAuditor authorization in a specific space could retrieve sensitive application data like service bindings within that sp… NVD-CWE-noinfo
CVE-2018-2374 2024-11-21 13:03 2018-02-14 Show GitHub Exploit DB Packet Storm
245637 7.5 HIGH
Network
sap hana_extended_application_services Under certain circumstances, a specific endpoint of the Controller's API could be misused by unauthenticated users to execute SQL statements that deliver information about system configuration in SAP… NVD-CWE-noinfo
CVE-2018-2373 2024-11-21 13:03 2018-02-14 Show GitHub Exploit DB Packet Storm
245638 6.5 MEDIUM
Network
sap hana_extended_application_services A plain keystore password is written to a system log file in SAP HANA Extended Application Services, 1.0, which could endanger confidentiality of SSL communication. CWE-532
 Inclusion of Sensitive Information in Log Files
CVE-2018-2372 2024-11-21 13:03 2018-02-14 Show GitHub Exploit DB Packet Storm
245639 6.1 MEDIUM
Network
sap netweaver_java_web_application The SAML 2.0 service provider of SAP Netweaver AS Java Web Application, 7.50, does not sufficiently encode user controlled inputs, which results in Cross-Site Scripting (XSS) vulnerability. CWE-79
Cross-site Scripting
CVE-2018-2371 2024-11-21 13:03 2018-02-14 Show GitHub Exploit DB Packet Storm
245640 5.3 MEDIUM
Network
sap bi_launchpad Server Side Request Forgery (SSRF) vulnerability in SAP Central Management Console, BI Launchpad and Fiori BI Launchpad, 4.10, from 4.20, from 4.30, could allow a malicious user to use common techniq… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2018-2370 2024-11-21 13:03 2018-02-14 Show GitHub Exploit DB Packet Storm