Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
227141 4.3 警告 マイクロソフト
windows
- Microsoft Windows XP SP2 の Windows Media Player におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2006-6601 2012-12-20 18:02 2006-12-15 Show GitHub Exploit DB Packet Storm
227142 6 警告 TorrentFlux - TorrentFlux の dir.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6600 2012-12-20 18:02 2006-12-15 Show GitHub Exploit DB Packet Storm
227143 6 警告 TorrentFlux - TorrentFlux の maketorrent.php における任意のコマンドを実行される脆弱性 - CVE-2006-6599 2012-12-20 18:02 2006-12-15 Show GitHub Exploit DB Packet Storm
227144 6.5 警告 TorrentFlux - TorrentFlux および torrentflux-b4rt の viewnfo.php におけるディレクトリトラバーサルの脆弱性 - CVE-2006-6598 2012-12-20 18:02 2006-12-15 Show GitHub Exploit DB Packet Storm
227145 7.5 危険 scriptmate - ScriptMate User Manager における SQL インジェクションの脆弱性 - CVE-2006-6595 2012-12-20 18:02 2006-12-15 Show GitHub Exploit DB Packet Storm
227146 7.5 危険 scriptmate - ScriptMate User Manager の utilities/usermessages.asp における SQL インジェクションの脆弱性 - CVE-2006-6594 2012-12-20 18:02 2006-12-15 Show GitHub Exploit DB Packet Storm
227147 7.5 危険 phpBB - phpBB 用の AMAZONIA MOD における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6593 2012-12-20 18:02 2006-12-15 Show GitHub Exploit DB Packet Storm
227148 7.5 危険 vblog - vBlog における PHP リモートファイルインクルージョンの脆弱性 - CVE-2006-6586 2012-12-20 18:02 2006-12-15 Show GitHub Exploit DB Packet Storm
227149 7.5 危険 scriptmate - ScriptMate User Manager における重要な情報を取得される脆弱性 - CVE-2006-6583 2012-12-20 18:02 2006-12-15 Show GitHub Exploit DB Packet Storm
227150 6.8 警告 scriptmate - ScriptMate User Manager におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6582 2012-12-20 18:02 2006-12-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
198991 6.5 MEDIUM
Network
imagemagick imagemagick The ProcessMSLScript function in coders/msl.c in ImageMagick before 6.9.9-5 and 7.x before 7.0.6-5 allows remote attackers to cause a denial of service (memory leak) via a crafted file, related to th… CWE-772
 Missing Release of Resource after Effective Lifetime
CVE-2017-12427 2024-11-21 12:09 2017-08-4 Show GitHub Exploit DB Packet Storm
198992 9.8 CRITICAL
Network
shadow_project
debian
shadow
debian_linux
In shadow before 4.5, the newusers tool could be made to manipulate internal data structures in ways unintended by the authors. Malformed input may lead to crashes (with a buffer overflow or other me… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-12424 2024-11-21 12:09 2017-08-4 Show GitHub Exploit DB Packet Storm
198993 7.5 HIGH
Network
imagemagick imagemagick ImageMagick 7.0.6-5 has memory leaks in the parse8BIMW and format8BIM functions in coders/meta.c, related to the WriteImage function in MagickCore/constitute.c. CWE-772
 Missing Release of Resource after Effective Lifetime
CVE-2017-12418 2024-11-21 12:09 2017-08-4 Show GitHub Exploit DB Packet Storm
198994 9.8 CRITICAL
Network
pcfreetime format_factory Format Factory 4.1.0 has a DLL Hijacking Vulnerability because an untrusted search path is used for msimg32.dll, WindowsCodecs.dll, and dwmapi.dll. CWE-426
 Untrusted Search Path
CVE-2017-12414 2024-11-21 12:09 2017-08-4 Show GitHub Exploit DB Packet Storm
198995 8.1 HIGH
Network
electron electron GitHub Electron before 1.6.8 allows remote command execution because of a nodeIntegration bypass vulnerability. This also affects all applications that bundle Electron code equivalent to 1.6.8 or ear… CWE-78
OS Command 
CVE-2017-12581 2024-11-21 12:09 2017-08-6 Show GitHub Exploit DB Packet Storm
198996 6.1 MEDIUM
Network
etoilewebdesign ultimate_product_catalog The Etoile Ultimate Product Catalog plugin 4.2.11 for WordPress has XSS in the Add Product Manually component. CWE-79
Cross-site Scripting
CVE-2017-12200 2024-11-21 12:09 2017-08-2 Show GitHub Exploit DB Packet Storm
198997 4.9 MEDIUM
Network
mantisbt mantisbt If, after successful installation of MantisBT through 2.5.2 on MySQL/MariaDB, the administrator does not remove the 'admin' directory (as recommended in the "Post-installation and upgrade tasks" sect… CWE-200
Information Exposure
CVE-2017-12419 2024-11-21 12:09 2017-08-6 Show GitHub Exploit DB Packet Storm
198998 7.8 HIGH
Local
gnu binutils The bfd_cache_close function in bfd/cache.c in the Binary File Descriptor (BFD) library (aka libbfd), as distributed in GNU Binutils 2.29 and earlier, allows remote attackers to cause a heap use afte… CWE-416
 Use After Free
CVE-2017-12448 2024-11-21 12:09 2017-08-5 Show GitHub Exploit DB Packet Storm
198999 7.5 HIGH
Network
varnish-cache
varnish_cache_project
varnish-software
varnish
varnish_cache
An issue was discovered in Varnish HTTP Cache 4.0.1 through 4.0.4, 4.1.0 through 4.1.7, 5.0.0, and 5.1.0 through 5.1.2. A wrong if statement in the varnishd source code means that particular invalid … CWE-190
 Integer Overflow or Wraparound
CVE-2017-12425 2024-11-21 12:09 2017-08-4 Show GitHub Exploit DB Packet Storm
199000 9.8 CRITICAL
Network
etoilewebdesign ultimate_product_catalog The Etoile Ultimate Product Catalog plugin 4.2.11 for WordPress has SQL injection with these wp-admin/admin-ajax.php POST actions: catalogue_update_order list-item, video_update_order video-item, ima… CWE-89
SQL Injection
CVE-2017-12199 2024-11-21 12:09 2017-08-2 Show GitHub Exploit DB Packet Storm