Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228711 5 警告 Best Practical Solutions - Request Tracker におけるクロスサイトリクエストフォージェリ (CSRF) 保護メカニズムを回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4734 2012-11-13 16:12 2012-10-25 Show GitHub Exploit DB Packet Storm
228712 6.8 警告 Best Practical Solutions - Request Tracker におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-4732 2012-11-13 16:11 2012-10-25 Show GitHub Exploit DB Packet Storm
228713 4 警告 Best Practical Solutions - Request Tracker 用 FAQ マネージャにおける任意のクラスの任意の記事を作成される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4731 2012-11-13 16:10 2012-10-25 Show GitHub Exploit DB Packet Storm
228714 3.5 注意 Best Practical Solutions - Request Tracker における任意のメールヘッダを挿入される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4730 2012-11-13 16:08 2012-10-25 Show GitHub Exploit DB Packet Storm
228715 5 警告 Drupal - Drupal の OpenID モジュールおける任意のファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4554 2012-11-13 15:59 2012-10-17 Show GitHub Exploit DB Packet Storm
228716 6.8 警告 Drupal - Drupal における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4553 2012-11-13 15:58 2012-10-17 Show GitHub Exploit DB Packet Storm
228717 7.5 危険 Quagga
インターネットイニシアティブ
- Quagga の ecommunity_ecom2str 関数におけるにおけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-3327 2012-11-13 15:11 2011-09-26 Show GitHub Exploit DB Packet Storm
228718 5 警告 Quagga
インターネットイニシアティブ
- Quagga の ospf_flood 関数におけるサービス運用妨害 (デーモンクラッシュ) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-3326 2012-11-13 15:10 2011-09-26 Show GitHub Exploit DB Packet Storm
228719 5 警告 Quagga
インターネットイニシアティブ
- Quagga の ospfd 内の ospf_packet.c におけるサービス運用妨害 (デーモンクラッシュ) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-3325 2012-11-13 15:09 2011-09-26 Show GitHub Exploit DB Packet Storm
228720 5 警告 Quagga
インターネットイニシアティブ
- Quagga の ospf6_lsa.c 内にある ospf6_lsa_is_changed 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2011-3324 2012-11-13 15:08 2011-09-26 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 23, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211701 5.3 MEDIUM
Network
ibm websphere_commerce The Update Installer in IBM WebSphere Commerce Enterprise 7.0.0.8 and 7.0.0.9 does not properly replicate the search index, which allows attackers to obtain sensitive information via unspecified vect… CWE-200
Information Exposure
CVE-2015-7444 2024-11-21 11:36 2016-02-15 Show GitHub Exploit DB Packet Storm
211702 3.7 LOW
Network
ibm tivoli_storage_manager The server in IBM Spectrum Protect (aka Tivoli Storage Manager) 5.5 and 6.x before 6.3.5.1 and 7.x before 7.1.4 does not properly restrict use of the ASNODENAME option, which allows remote attackers … CWE-264
Permissions, Privileges, and Access Controls
CVE-2015-7408 2024-11-21 11:36 2016-02-15 Show GitHub Exploit DB Packet Storm
211703 5.4 MEDIUM
Network
ibm emptoris_contract_management Cross-site scripting (XSS) vulnerability in IBM Emptoris Contract Management 9.5.0.x before 9.5.0.6 iFix15, 10.0.0.x and 10.0.1.x before 10.0.1.5 iFix5, 10.0.2.x before 10.0.2.7 iFix4, and 10.0.4.x b… CWE-79
Cross-site Scripting
CVE-2015-7398 2024-11-21 11:36 2016-02-15 Show GitHub Exploit DB Packet Storm
211704 4.6 MEDIUM
Physics
novell
linux
suse_linux_enterprise_server
suse_linux_enterprise_debuginfo
suse_linux_enterprise_software_development_kit
suse_linux_enterprise_real_time_extension
linux_kernel
The clie_5_attach function in drivers/usb/serial/visor.c in the Linux kernel through 4.4.1 allows physically proximate attackers to cause a denial of service (NULL pointer dereference and system cras… NVD-CWE-Other
CVE-2015-7566 2024-11-21 11:36 2016-02-8 Show GitHub Exploit DB Packet Storm
211705 5.5 MEDIUM
Local
linux linux_kernel The keyctl_read_key function in security/keys/keyctl.c in the Linux kernel before 4.3.4 does not properly use a semaphore, which allows local users to cause a denial of service (NULL pointer derefere… CWE-362
NVD-CWE-Other
Race Condition
CVE-2015-7550 2024-11-21 11:36 2016-02-8 Show GitHub Exploit DB Packet Storm
211706 6.5 MEDIUM
Local
linux
fedoraproject
debian
canonical
linux_kernel
fedora
debian_linux
ubuntu_linux
arch/x86/kvm/x86.c in the Linux kernel before 4.4 does not reset the PIT counter values during state restoration, which allows guest OS users to cause a denial of service (divide-by-zero error and ho… CWE-369
 Divide By Zero
CVE-2015-7513 2024-11-21 11:36 2016-02-8 Show GitHub Exploit DB Packet Storm
211707 7.5 HIGH
Network
openstack
oracle
keystonemiddleware
keystone
solaris
The identity service in OpenStack Identity (Keystone) before 2015.1.3 (Kilo) and 8.0.x before 8.0.2 (Liberty) and keystonemiddleware (formerly python-keystoneclient) before 1.5.4 (Kilo) and Liberty b… CWE-522
 Insufficiently Protected Credentials
CVE-2015-7546 2024-11-21 11:36 2016-02-4 Show GitHub Exploit DB Packet Storm
211708 7.5 HIGH
Network
jenkins
redhat
jenkins
openshift
The Plugins Manager in Jenkins before 1.640 and LTS before 1.625.2 does not verify checksums for plugin files referenced in update site data, which makes it easier for man-in-the-middle attackers to … CWE-345
 Insufficient Verification of Data Authenticity
CVE-2015-7539 2024-11-21 11:36 2016-02-4 Show GitHub Exploit DB Packet Storm
211709 8.8 HIGH
Network
jenkins
redhat
jenkins
openshift
Jenkins before 1.640 and LTS before 1.625.2 allow remote attackers to bypass the CSRF protection mechanism via unspecified vectors. NVD-CWE-noinfo
CVE-2015-7538 2024-11-21 11:36 2016-02-4 Show GitHub Exploit DB Packet Storm
211710 8.8 HIGH
Network
redhat
jenkins
openshift
jenkins
Cross-site request forgery (CSRF) vulnerability in Jenkins before 1.640 and LTS before 1.625.2 allows remote attackers to hijack the authentication of administrators for requests that have unspecifie… CWE-352
 Origin Validation Error
CVE-2015-7537 2024-11-21 11:36 2016-02-4 Show GitHub Exploit DB Packet Storm