Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228531 2.1 注意 Mixpanel Project - Drupal 用 Mixpanel モジュールにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-5585 2012-12-28 15:50 2012-11-28 Show GitHub Exploit DB Packet Storm
228532 4.3 警告 Made to Order Software - Drupal 用 Table of Contents モジュールにおけるノードのヘッダを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5584 2012-12-28 15:49 2012-11-14 Show GitHub Exploit DB Packet Storm
228533 6.8 警告 Sensio Labs - Symfony における任意のサービスにアクセスされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6432 2012-12-28 15:20 2012-12-20 Show GitHub Exploit DB Packet Storm
228534 6.4 警告 Sensio Labs - Symfony における URI の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-6431 2012-12-28 15:18 2012-12-20 Show GitHub Exploit DB Packet Storm
228535 4.3 警告 Sebastian Heinlein
Canonical
- Ubuntu の Aptdaemon における任意のパッケージレポジトリの GPG キーをインストールされる脆弱性 CWE-noinfo
情報不足
CVE-2012-0962 2012-12-28 15:03 2012-12-17 Show GitHub Exploit DB Packet Storm
228536 2.1 注意 Debian - Ubuntu で使用される APT における重要なシェル情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-0961 2012-12-28 14:59 2012-12-12 Show GitHub Exploit DB Packet Storm
228537 4.3 警告 PS Project Management Team - Firefox 用 Unity integration 拡張機能における同一生成元ポリシーを回避される脆弱性 CWE-DesignError
CVE-2012-0958 2012-12-28 14:58 2012-10-23 Show GitHub Exploit DB Packet Storm
228538 - - Ruby on Rails project - ** 削除 ** Ruby on Rails 用 Authlogic gem における SQL インジェクションの脆弱性 - CVE-2012-5664 2012-12-28 14:22 2012-12-26 Show GitHub Exploit DB Packet Storm
228539 4.3 警告 Opera Software ASA - Android 版 Opera Mini ウェブブラウザおよび Opera Mobile ウェブブラウザにおいて任意のスクリプトが実行される脆弱性 CWE-200
情報漏えい
CVE-2012-5180 2012-12-28 14:17 2012-12-20 Show GitHub Exploit DB Packet Storm
228540 2.6 注意 WordPress.org - WordPress における有効なセッション識別子を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-5868 2012-12-28 11:58 2012-12-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
310281 - linux
suse
opensuse
canonical
linux_kernel
linux_enterprise_desktop
opensuse
linux_enterprise_server
linux_enterprise_real_time_extension
ubuntu_linux
Double free vulnerability in the snd_seq_oss_open function in sound/core/seq/oss/seq_oss_init.c in the Linux kernel before 2.6.36-rc4 might allow local users to cause a denial of service or possibly … CWE-415
 Double Free
CVE-2010-3080 2024-11-21 10:17 2010-09-22 Show GitHub Exploit DB Packet Storm
310282 5.5 MEDIUM
Local
linux
opensuse
suse
canonical
vmware
linux_kernel
opensuse
suse_linux_enterprise_server
suse_linux_enterprise_desktop
ubuntu_linux
esx
The xfs_ioc_fsgetxattr function in fs/xfs/linux-2.6/xfs_ioctl.c in the Linux kernel before 2.6.36-rc4 does not initialize a certain structure member, which allows local users to obtain potentially se… CWE-200
Information Exposure
CVE-2010-3078 2024-11-21 10:17 2010-09-22 Show GitHub Exploit DB Packet Storm
310283 - linux
suse
opensuse
debian
canonical
linux_kernel
linux_enterprise_server
opensuse
linux_enterprise_desktop
linux_enterprise_software_development_kit
linux_enterprise_real_time_extension
debian_linux
ubuntu_linux
Integer overflow in the do_io_submit function in fs/aio.c in the Linux kernel before 2.6.36-rc4-next-20100915 allows local users to cause a denial of service or possibly have unspecified other impact… CWE-190
 Integer Overflow or Wraparound
CVE-2010-3067 2024-11-21 10:17 2010-09-22 Show GitHub Exploit DB Packet Storm
310284 5.5 MEDIUM
Local
linux
canonical
opensuse
suse
avaya
vmware
linux_kernel
ubuntu_linux
opensuse
suse_linux_enterprise_server
suse_linux_enterprise_desktop
aura_system_manager
aura_communication_manager
voice_portal
aura_system_platform<…
The actions implementation in the network queueing functionality in the Linux kernel before 2.6.36-rc2 does not properly initialize certain structure members when performing dump operations, which al… CWE-401
 Missing Release of Memory after Effective Lifetime
CVE-2010-2942 2024-11-21 10:17 2010-09-22 Show GitHub Exploit DB Packet Storm
310285 - squid-cache squid The string-comparison functions in String.cci in Squid 3.x before 3.1.8 and 3.2.x before 3.2.0.2 allow remote attackers to cause a denial of service (NULL pointer dereference and daemon crash) via a … NVD-CWE-Other
CVE-2010-3072 2024-11-21 10:17 2010-09-21 Show GitHub Exploit DB Packet Storm
310286 - hp system_management_homepage Cross-site scripting (XSS) vulnerability in HP System Management Homepage (SMH) before 6.2 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. NOTE: this issue wa… CWE-79
Cross-site Scripting
CVE-2010-3012 2024-11-21 10:17 2010-09-18 Show GitHub Exploit DB Packet Storm
310287 - arg0 encfs EncFS before 1.7.0 encrypts multiple blocks by means of the CFB cipher mode with the same initialization vector, which makes it easier for local users to obtain sensitive information via calculations… CWE-310
Cryptographic Issues
CVE-2010-3075 2024-11-21 10:17 2010-09-18 Show GitHub Exploit DB Packet Storm
310288 - arg0 encfs SSL_Cipher.cpp in EncFS before 1.7.0 uses an improper combination of an AES cipher and a CBC cipher mode for encrypted filesystems, which allows local users to obtain sensitive information via a wate… CWE-310
Cryptographic Issues
CVE-2010-3074 2024-11-21 10:17 2010-09-18 Show GitHub Exploit DB Packet Storm
310289 - arg0 encfs SSL_Cipher.cpp in EncFS before 1.7.0 does not properly handle integer data sizes when constructing headers intended for randomization of initialization vectors, which makes it easier for local users … CWE-310
Cryptographic Issues
CVE-2010-3073 2024-11-21 10:17 2010-09-18 Show GitHub Exploit DB Packet Storm
310290 - hp system_management_homepage CRLF injection vulnerability in HP System Management Homepage (SMH) before 6.2 allows remote attackers to inject arbitrary HTTP headers and conduct HTTP response splitting attacks via unspecified vec… CWE-20
 Improper Input Validation 
CVE-2010-3011 2024-11-21 10:17 2010-09-18 Show GitHub Exploit DB Packet Storm