Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228311 2.7 注意 シトリックス・システムズ - Xen の PyGrub ブートローダにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-2625 2012-12-7 15:30 2012-07-4 Show GitHub Exploit DB Packet Storm
228312 7.2 危険 マイクロソフト - Intel CPU で動作する 64bit OS や仮想化環境に権限昇格の脆弱性 CWE-119
バッファエラー
CVE-2012-0217 2012-12-7 15:29 2012-06-13 Show GitHub Exploit DB Packet Storm
228313 10 危険 ヒューレット・パッカード - HP Network Node Manager i における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-3275 2012-12-7 15:15 2012-12-4 Show GitHub Exploit DB Packet Storm
228314 10 危険 ヒューレット・パッカード - HP Intelligent Management Center におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3274 2012-12-7 15:15 2012-12-4 Show GitHub Exploit DB Packet Storm
228315 5 警告 ヒューレット・パッカード - HP LaserJet Pro および LaserJet における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-3273 2012-12-7 15:11 2012-12-3 Show GitHub Exploit DB Packet Storm
228316 4.3 警告 ヒューレット・パッカード - HP Color LaserJet および LaserJet におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3272 2012-12-7 15:10 2012-12-3 Show GitHub Exploit DB Packet Storm
228317 5 警告 VMware - VMware SpringSource Spring Security における有効なユーザ名を列挙される脆弱性 CWE-200
情報漏えい
CVE-2012-5055 2012-12-7 15:09 2012-10-9 Show GitHub Exploit DB Packet Storm
228318 4.3 警告 VMware - VMware SpringSource Spring Security におけるクロスサイトリクエストフォージェリの脆弱性 CWE-94
コード・インジェクション
CVE-2011-2732 2012-12-7 15:07 2011-09-9 Show GitHub Exploit DB Packet Storm
228319 5.1 警告 VMware - VMware SpringSource Spring Security の RunAsManager メカニズムにおける権限を取得される脆弱性 CWE-362
競合状態
CVE-2011-2731 2012-12-7 15:05 2011-09-9 Show GitHub Exploit DB Packet Storm
228320 5.5 警告 OpenStack - 複数の OpenStack 製品の v1 API における保護されていないイメージを削除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4573 2012-12-7 14:51 2012-11-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 24, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
212941 5.9 MEDIUM
Network
ana all_nippon_airways ANA App for Android 3.1.1 and earlier, and ANA App for iOS 3.3.6 and earlier does not verify SSL certificates. CWE-295
Improper Certificate Validation 
CVE-2015-5666 2024-11-21 11:33 2017-09-26 Show GitHub Exploit DB Packet Storm
212942 6.1 MEDIUM
Network
joomla joomla\! Open redirect vulnerability in Joomla! CMS 3.0.0 through 3.4.1. CWE-601
Open Redirect
CVE-2015-5608 2024-11-21 11:33 2017-09-21 Show GitHub Exploit DB Packet Storm
212943 8.8 HIGH
Network
ipython
fedoraproject
ipython
fedora
Cross-site request forgery in the REST API in IPython 2 and 3. CWE-352
 Origin Validation Error
CVE-2015-5607 2024-11-21 11:33 2017-09-21 Show GitHub Exploit DB Packet Storm
212944 7.5 HIGH
Network
devscripts_devel_team
fedoraproject
devscripts
fedora
Argument injection vulnerability in devscripts before 2.15.7 allows remote attackers to write to arbitrary files via a crafted symlink and crafted filename. CWE-59
Link Following
CVE-2015-5705 2024-11-21 11:33 2017-09-7 Show GitHub Exploit DB Packet Storm
212945 6.5 MEDIUM
Network
openstack designate Designate 2015.1.0 through 1.0.0.0b1 as packaged in OpenStack Kilo does not enforce RecordSets per domain, and Records per RecordSet quotas when processing an internal zone file transfer, which might… CWE-400
 Uncontrolled Resource Consumption
CVE-2015-5695 2024-11-21 11:33 2017-09-1 Show GitHub Exploit DB Packet Storm
212946 6.1 MEDIUM
Local
tug texlive mktexlsr revision 36855, and before revision 36626 as packaged in texlive allows local users to write to arbitrary files via a symlink attack. NOTE: this vulnerability exists due to the reversion of… CWE-59
Link Following
CVE-2015-5701 2024-11-21 11:33 2017-08-26 Show GitHub Exploit DB Packet Storm
212947 6.1 MEDIUM
Local
tug texlive mktexlsr revision 22855 through revision 36625 as packaged in texlive allows local users to write to arbitrary files via a symlink attack. CWE-59
Link Following
CVE-2015-5700 2024-11-21 11:33 2017-08-26 Show GitHub Exploit DB Packet Storm
212948 5.9 MEDIUM
Network
elasticsearch
elastic
logstash Logstash 1.4.x before 1.4.5 and 1.5.x before 1.5.4 with Lumberjack output or the Logstash forwarder does not validate SSL/TLS certificates from the Logstash server, which might allow attackers to obt… CWE-295
Improper Certificate Validation 
CVE-2015-5619 2024-11-21 11:33 2017-08-10 Show GitHub Exploit DB Packet Storm
212949 6.1 MEDIUM
Network
zenphoto zenphoto The sanitize_string function in ZenPhoto before 1.4.9 utilized the html_entity_decode function after input sanitation, which might allow remote attackers to perform a cross-site scripting (XSS) via a… CWE-79
Cross-site Scripting
CVE-2015-5594 2024-11-21 11:33 2017-07-26 Show GitHub Exploit DB Packet Storm
212950 9.8 CRITICAL
Network
samsung syncthru_6 Multiple directory traversal vulnerabilities in Samsung SyncThru 6 before 1.0 allow remote attackers to delete arbitrary files via unspecified parameters to (1) upload/updateDriver or (2) upload/addD… CWE-22
Path Traversal
CVE-2015-5473 2024-11-21 11:33 2017-06-2 Show GitHub Exploit DB Packet Storm