Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226281 7.5 危険 Script Head - Drupal 用 Webmail Plus モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-5590 2012-12-28 16:06 2012-11-28 Show GitHub Exploit DB Packet Storm
226282 3.5 注意 Net Genius - Drupal 用 MultiLink モジュールにおける任意のノードタイトルを読まれる脆弱性 CWE-200
情報漏えい
CVE-2012-5589 2012-12-28 16:04 2012-11-28 Show GitHub Exploit DB Packet Storm
226283 2.6 注意 Matthias Hutterer - Drupal 用 Email Field モジュールにおける電子メールを送信される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5588 2012-12-28 16:02 2012-11-28 Show GitHub Exploit DB Packet Storm
226284 4.3 警告 Matthias Hutterer - Drupal 用 Email Field モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5587 2012-12-28 15:58 2012-11-28 Show GitHub Exploit DB Packet Storm
226285 2.1 注意 Marc Ingram - Drupal 用 Services モジュールにおける任意のユーザの電子メールにアクセスされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5586 2012-12-28 15:57 2012-11-28 Show GitHub Exploit DB Packet Storm
226286 2.1 注意 Mixpanel Project - Drupal 用 Mixpanel モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5585 2012-12-28 15:50 2012-11-28 Show GitHub Exploit DB Packet Storm
226287 4.3 警告 Made to Order Software - Drupal 用 Table of Contents モジュールにおけるノードのヘッダを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5584 2012-12-28 15:49 2012-11-14 Show GitHub Exploit DB Packet Storm
226288 6.8 警告 Sensio Labs - Symfony における任意のサービスにアクセスされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6432 2012-12-28 15:20 2012-12-20 Show GitHub Exploit DB Packet Storm
226289 6.4 警告 Sensio Labs - Symfony における URI の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6431 2012-12-28 15:18 2012-12-20 Show GitHub Exploit DB Packet Storm
226290 4.3 警告 Sebastian Heinlein
Canonical
- Ubuntu の Aptdaemon における任意のパッケージレポジトリの GPG キーをインストールされる脆弱性 CWE-noinfo
情報不足
CVE-2012-0962 2012-12-28 15:03 2012-12-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
223371 7.0 HIGH
Local
teamviewer teamviewer TeamViewer Desktop through 14.7.1965 allows a bypass of remote-login access control because the same key is used for different customers' installations. It used a shared AES key for all installations… CWE-521
Weak Password Requirements 
CVE-2019-18988 2024-11-21 13:33 2020-02-8 Show GitHub Exploit DB Packet Storm
223372 6.3 MEDIUM
Local
hp bromium Bromium client version 4.0.3.2060 and prior to 4.1.7 Update 1 has an out of bound read results in race condition causing Kernel memory leaks or denial of service. CWE-125
Out-of-bounds Read
CVE-2019-18567 2024-11-21 13:33 2020-02-4 Show GitHub Exploit DB Packet Storm
223373 6.8 MEDIUM
Physics
hp elitedesk_800_g5_dm_firmware
elitedesk_800_g5_sff_firmware
elitedesk_800_g5_twr_firmware
eliteone_800_g5_aio_firmware
prodesk_400_g5_dm_firmware
prodesk_400_g6_mt_firmware
prodesk_4…
A potential security vulnerability with pre-boot DMA may allow unauthorized UEFI code execution using open-case attacks. This industry-wide issue requires physically accessing internal expansion slot… NVD-CWE-noinfo
CVE-2019-18913 2024-11-21 13:33 2020-01-31 Show GitHub Exploit DB Packet Storm
223374 7.8 HIGH
Local
sudo_project
debian
sudo
debian_linux
In Sudo before 1.8.26, if pwfeedback is enabled in /etc/sudoers, users can trigger a stack-based buffer overflow in the privileged sudo process. (pwfeedback is a default setting in Linux Mint and ele… CWE-787
 Out-of-bounds Write
CVE-2019-18634 2024-11-21 13:33 2020-01-30 Show GitHub Exploit DB Packet Storm
223375 3.3 LOW
Local
opensuse libzypp : Incorrect Default Permissions vulnerability in libzypp of SUSE CaaS Platform 3.0, SUSE Linux Enterprise Server 12, SUSE Linux Enterprise Server 15 allowed local attackers to read a cookie store use… CWE-276
Incorrect Default Permissions 
CVE-2019-18900 2024-11-21 13:33 2020-01-25 Show GitHub Exploit DB Packet Storm
223376 5.5 MEDIUM
Local
apt-cacher-ng_project
opensuse
apt-cacher-ng
backports
The apt-cacher-ng package of openSUSE Leap 15.1 runs operations in user owned directory /run/apt-cacher-ng with root privileges. This can allow local attackers to influence the outcome of these opera… - CVE-2019-18899 2024-11-21 13:33 2020-01-24 Show GitHub Exploit DB Packet Storm
223377 7.8 HIGH
Local
suse
opensuse
trousers
leap
UNIX Symbolic Link (Symlink) Following vulnerability in the trousers package of SUSE Linux Enterprise Server 15 SP1; openSUSE Factory allowed local attackers escalate privileges from user tss to root… - CVE-2019-18898 2024-11-21 13:33 2020-01-23 Show GitHub Exploit DB Packet Storm
223378 8.2 HIGH
Network
- - A vulnerability in WhatsApp Desktop versions prior to 0.3.9309 when paired with WhatsApp for iPhone versions prior to 2.20.10 allows cross-site scripting and local file reading. Exploiting the vulner… CWE-79
Cross-site Scripting
CVE-2019-18426 2024-11-21 13:33 2020-01-22 Show GitHub Exploit DB Packet Storm
223379 7.0 HIGH
Local
squid_analysis_report_generator_project
opensuse
squid_analysis_report_generator
leap
backports_sle
log.c in Squid Analysis Report Generator (sarg) through 2.3.11 allows local privilege escalation. By default, it uses a fixed temporary directory /tmp/sarg. As the root user, sarg creates this direct… CWE-362
CWE-59
Race Condition
Link Following
CVE-2019-18932 2024-11-21 13:33 2020-01-22 Show GitHub Exploit DB Packet Storm
223380 7.5 HIGH
Network
jetbrains idetalk JetBrains IDETalk plugin before version 193.4099.10 allows XXE CWE-611
XXE
CVE-2019-18412 2024-11-21 13:33 2020-01-16 Show GitHub Exploit DB Packet Storm