Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225591 7.5 危険 シックス・アパート株式会社 - Movable Type の mt-upgrade.cgi における eval インジェクションおよび SQL インジェクションの脆弱性 CWE-287
不適切な認証
CVE-2013-0209 2013-01-24 14:48 2013-01-7 Show GitHub Exploit DB Packet Storm
225592 7.5 危険 Nagios Enterprises, LLC
The Icinga Project
- Nagios Core の history.cgi におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-6096 2013-01-24 14:47 2013-01-12 Show GitHub Exploit DB Packet Storm
225593 1.5 注意 シトリックス・システムズ
Apache Software Foundation
- Apache CloudStack および Citrix CloudPlatform における重要な情報を取得される脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-5616 2013-01-24 14:46 2013-01-9 Show GitHub Exploit DB Packet Storm
225594 4.3 警告 Activision Publishing - iOS 用 Call of Duty Elite における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2012-4918 2013-01-24 14:45 2013-01-22 Show GitHub Exploit DB Packet Storm
225595 1.9 注意 Linux - Linux Kernel の KVM サブシステムにおけるサービス運用妨害 (カーネル OOPS) の脆弱性 CWE-noinfo
情報不足
CVE-2012-4461 2013-01-24 14:44 2012-12-3 Show GitHub Exploit DB Packet Storm
225596 5 警告 Linux - Linux Kernel の Near Field Communication Controller Interface におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3364 2013-01-24 14:43 2012-07-16 Show GitHub Exploit DB Packet Storm
225597 4.4 警告 Linux - Linux Kernel の Reliable Datagram Sockets プロトコルの実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2012-2372 2013-01-24 14:42 2013-01-22 Show GitHub Exploit DB Packet Storm
225598 6.9 警告 Linux - Linux Kernel の KVM サブシステムにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-2137 2013-01-24 14:41 2012-07-25 Show GitHub Exploit DB Packet Storm
225599 5.2 警告 Linux - Linux Kernel の macvtap デバイスドライバにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-2119 2013-01-24 14:41 2012-07-16 Show GitHub Exploit DB Packet Storm
225600 5 警告 マイクロソフト - Microsoft Internet Explorer におけるファイルの存在についての重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-6502 2013-01-24 14:40 2013-01-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313501 8.8 HIGH
Network
qnap qts
quts_hero
A buffer copy without checking size of input vulnerability has been reported to affect several QNAP operating system versions. If exploited, the vulnerability could allow users to execute code via a … CWE-120
CWE-121
Classic Buffer Overflow
Stack-based Buffer Overflow
CVE-2023-51367 2024-09-11 22:27 2024-09-7 Show GitHub Exploit DB Packet Storm
313502 6.5 MEDIUM
Network
zoom workplace
workplace_desktop
workplace_virtual_desktop_infrastructure
rooms
Protection mechanism failure for some Zoom Workplace Apps and SDKs may allow an authenticated user to conduct information disclosure via network access. CWE-522
 Insufficiently Protected Credentials
CVE-2024-39818 2024-09-11 22:27 2024-08-15 Show GitHub Exploit DB Packet Storm
313503 6.5 MEDIUM
Network
terminalfour terminalfour A Server-Side Request Forgery (SSRF) vulnerability in Terminalfour before 8.3.19 allows authenticated users to use specific features to access internal services including sensitive information on the… CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2024-22217 2024-09-11 22:19 2024-08-16 Show GitHub Exploit DB Packet Storm
313504 5.4 MEDIUM
Network
yogeshojha rengine reNgine is an automated reconnaissance framework for web applications. Versions 2.1.2 and prior are susceptible to Stored Cross-Site Scripting (XSS) attacks. This vulnerability occurs when scanning a… CWE-79
Cross-site Scripting
CVE-2024-43381 2024-09-11 22:02 2024-08-17 Show GitHub Exploit DB Packet Storm
313505 9.8 CRITICAL
Network
h3c magic_b1st_firmware H3C Magic B1ST v100R012 was discovered to contain a hardcoded password vulnerability in /etc/shadow, which allows attackers to log in as root. CWE-798
 Use of Hard-coded Credentials
CVE-2024-42638 2024-09-11 21:53 2024-08-17 Show GitHub Exploit DB Packet Storm
313506 7.5 HIGH
Network
google android In sdpu_compare_uuid_with_attr of sdp_utils.cc, there is a possible out of bounds read due to a heap buffer overflow. This could lead to remote information disclosure with no additional execution pri… CWE-120
Classic Buffer Overflow
CVE-2024-34727 2024-09-11 21:43 2024-08-16 Show GitHub Exploit DB Packet Storm
313507 8.2 HIGH
Network
xpdfreader xpdf In Xpdf 4.05 (and earlier), invalid header info in a DCT (JPEG) stream can lead to an uninitialized variable in the DCT decoder. The proof-of-concept PDF file causes a segfault attempting to read fro… CWE-908
 Use of Uninitialized Resource
CVE-2024-7868 2024-09-11 21:40 2024-08-16 Show GitHub Exploit DB Packet Storm
313508 8.8 HIGH
Network
xyzscripts insert_php_code_snippet Cross-Site Request Forgery (CSRF) vulnerability in xyzscripts.Com Insert PHP Code Snippet.This issue affects Insert PHP Code Snippet: from n/a through 1.3.6. CWE-352
 Origin Validation Error
CVE-2024-43275 2024-09-11 21:33 2024-08-15 Show GitHub Exploit DB Packet Storm
313509 - - - Inclusion of Functionality from Untrusted Control Sphere(CWE-829) in the Command Centre Server and Workstations may allow an attacker to perform Remote Code Execution (RCE). This issue affects: Comm… - CVE-2024-43690 2024-09-11 14:15 2024-09-11 Show GitHub Exploit DB Packet Storm
313510 - - - Versions of the package dset before 3.1.4 are vulnerable to Prototype Pollution via the dset function due improper user input sanitization. This vulnerability allows the attacker to inject malicious … - CVE-2024-21529 2024-09-11 14:15 2024-09-11 Show GitHub Exploit DB Packet Storm