Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226871 4.3 警告 IBM - IBM TFIM および TFIMBG における OpenID プロバイダのデータを偽造される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6359 2013-01-22 16:01 2013-01-18 Show GitHub Exploit DB Packet Storm
226872 6.3 警告 シスコシステムズ - Cisco Adaptive Security Appliances におけるサービス運用妨害 (デバイスクラッシュ) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5717 2013-01-22 16:01 2013-01-16 Show GitHub Exploit DB Packet Storm
226873 4.3 警告 RPM - RPM の lib/package.c における RPM の署名確認を回避される脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-6088 2013-01-22 15:02 2013-01-18 Show GitHub Exploit DB Packet Storm
226874 5 警告 Firefly Media Server - Firefly Media Server におけるサービス運用妨害 (NULL ポインタデリファレンス) の脆弱性 CWE-Other
その他
CVE-2012-5875 2013-01-22 15:01 2013-01-18 Show GitHub Exploit DB Packet Storm
226875 2.1 注意 Inkscape - Inkscape のラスタ化プロセスにおける任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5656 2013-01-22 15:00 2012-12-17 Show GitHub Exploit DB Packet Storm
226876 4.3 警告 レッドハット - JBoss Enterprise Portal Platform の GateIn Portal におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5531 2013-01-22 14:59 2013-01-7 Show GitHub Exploit DB Packet Storm
226877 5 警告 レッドハット
SquirrelMail Project
- Red Hat Enterprise Linux で使用される SquirrelMail におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-2124 2013-01-22 14:59 2013-01-8 Show GitHub Exploit DB Packet Storm
226878 9.3 危険 DELL EMC (旧 EMC Corporation) - EMC NetWorker の nsrindexd におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4607 2013-01-22 14:58 2013-01-17 Show GitHub Exploit DB Packet Storm
226879 3.5 注意 IBM - IBM Tivoli Federated Identity Manager におけるパスワードを破られる脆弱性 CWE-255
証明書・パスワード管理
CVE-2012-3310 2013-01-22 14:57 2013-01-17 Show GitHub Exploit DB Packet Storm
226880 3.5 注意 Samba Project - Samba における LDAP ディレクトリオブジェクトの変更上の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0172 2013-01-22 14:56 2013-01-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
224891 7.5 HIGH
Network
secudos domos The Log module in SECUDOS DOMOS before 5.6 allows local file inclusion. CWE-22
Path Traversal
CVE-2019-18665 2024-11-21 13:33 2019-11-3 Show GitHub Exploit DB Packet Storm
224892 5.4 MEDIUM
Network
secudos domos The Log module in SECUDOS DOMOS before 5.6 allows XSS. CWE-79
Cross-site Scripting
CVE-2019-18664 2024-11-21 13:33 2019-11-3 Show GitHub Exploit DB Packet Storm
224893 7.5 HIGH
Network
fastweb fastgate_firmware Fastweb FASTGate 1.0.1b devices allow partial authentication bypass by changing a certain check_pwd return value from 0 to 1. An attack does not achieve administrative control of a device; however, t… CWE-287
Improper Authentication
CVE-2019-18661 2024-11-21 13:33 2019-11-2 Show GitHub Exploit DB Packet Storm
224894 5.3 MEDIUM
Network
ready wireless_emergency_alerts The Wireless Emergency Alerts (WEA) protocol allows remote attackers to spoof a Presidential Alert because cryptographic authentication is not used, as demonstrated by MessageIdentifier 4370 in LTE S… CWE-290
 Authentication Bypass by Spoofing
CVE-2019-18659 2024-11-21 13:33 2019-11-2 Show GitHub Exploit DB Packet Storm
224895 6.5 MEDIUM
Network
wpwham currency_switcher_for_woocommerce An issue was discovered in the Currency Switcher addon before 2.11.2 for WooCommerce if a user provides a currency that was not added by the administrator. In this case, even though the currency does… CWE-755
 Improper Handling of Exceptional Conditions
CVE-2019-18668 2024-11-21 13:33 2019-11-3 Show GitHub Exploit DB Packet Storm
224896 9.8 CRITICAL
Network
youphptube youphptube An issue was discovered in YouPHPTube through 7.7. User input passed through the live_stream_code POST parameter to /plugin/LiveChat/getChat.json.php is not properly sanitized (in getFromChat in plug… CWE-89
SQL Injection
CVE-2019-18662 2024-11-21 13:33 2019-11-3 Show GitHub Exploit DB Packet Storm
224897 6.1 MEDIUM
Network
avg anti-virus A Cross Site Scripting (XSS) issue exists in AVG AntiVirus (Internet Security Edition) 19.3.3084 build 19.3.4241.440 in the Network Notification Popup, allowing an attacker to execute JavaScript code… CWE-79
Cross-site Scripting
CVE-2019-18654 2024-11-21 13:33 2019-11-2 Show GitHub Exploit DB Packet Storm
224898 6.1 MEDIUM
Network
avast antivirus A Cross Site Scripting (XSS) issue exists in Avast AntiVirus (Free, Internet Security, and Premiere Edition) 19.3.2369 build 19.3.4241.440 in the Network Notification Popup, allowing an attacker to e… CWE-79
Cross-site Scripting
CVE-2019-18653 2024-11-21 13:33 2019-11-2 Show GitHub Exploit DB Packet Storm
224899 5.4 MEDIUM
Network
jitbit .net_forum A cross-site scripting (XSS) vulnerability in Jitbit .NET Forum (aka ASP.NET forum) 8.3.8 allows remote attackers to inject arbitrary web script or HTML via the gravatar URL parameter. CWE-79
Cross-site Scripting
CVE-2019-18636 2024-11-21 13:33 2019-11-1 Show GitHub Exploit DB Packet Storm
224900 7.2 HIGH
Network
technicolor td5130v2_firmware An issue was discovered in certain Oi third-party firmware that may be installed on Technicolor TD5130v2 devices. A Command Injection in the Ping module in the Web Interface in OI_Fw_V20 allows remot… CWE-78
OS Command 
CVE-2019-18396 2024-11-21 13:33 2019-11-1 Show GitHub Exploit DB Packet Storm