Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228751 10 危険 Mozilla Foundation - 複数の Mozilla 製品の WebSocket の実装におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-4191 2012-11-9 10:47 2012-10-11 Show GitHub Exploit DB Packet Storm
228752 6.9 警告 D-Bus - libdbus における権限を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3524 2012-11-9 10:42 2012-09-18 Show GitHub Exploit DB Packet Storm
228753 1.9 注意 Linux - Linux Kernel の Netlink の実装おける Netlink 通信を偽造される脆弱性 CWE-287
不適切な認証
CVE-2012-3520 2012-11-9 10:40 2012-09-19 Show GitHub Exploit DB Packet Storm
228754 4.7 警告 Linux - Linux Kernel の mm/madvise.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-362
競合状態
CVE-2012-3511 2012-11-9 10:39 2012-07-16 Show GitHub Exploit DB Packet Storm
228755 2.1 注意 Linux - Linux Kernel の net/rds/recv.c における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-3430 2012-11-9 10:37 2012-10-2 Show GitHub Exploit DB Packet Storm
228756 7.6 危険 Linux - Linux Kernel の fs/udf/super.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3400 2012-11-9 10:34 2012-06-27 Show GitHub Exploit DB Packet Storm
228757 4.7 警告 Linux - Linux Kernel におけるサービス運用妨害 (パニック) の脆弱性 CWE-119
バッファエラー
CVE-2012-2745 2012-11-9 10:28 2012-08-9 Show GitHub Exploit DB Packet Storm
228758 6.5 警告 Digium - Asterisk Open Source の chan_skinny.c におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-2415 2012-11-8 18:21 2012-04-16 Show GitHub Exploit DB Packet Storm
228759 6.5 警告 Digium - Asterisk Open Source および Asterisk Business Edition における任意のコマンドを実行される脆弱性 CWE-287
不適切な認証
CVE-2012-2414 2012-11-8 18:20 2012-04-23 Show GitHub Exploit DB Packet Storm
228760 4.3 警告 Digium - Asterisk の Miliwatt アプリケーションにおけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-1183 2012-11-8 18:19 2012-03-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
211401 8.8 HIGH
Network
omniauth omniauth The request phase of the OmniAuth Ruby gem (1.9.1 and earlier) is vulnerable to Cross-Site Request Forgery when used as part of the Ruby on Rails framework, allowing accounts to be connected without … CWE-352
 Origin Validation Error
CVE-2015-9284 2024-11-21 11:40 2019-04-27 Show GitHub Exploit DB Packet Storm
211402 6.1 MEDIUM
Network
grafana piechart-panel The Pie Chart Panel plugin through 2019-01-02 for Grafana is vulnerable to XSS via legend data or tooltip data. When a chart is included in a Grafana dashboard, this vulnerability could allow an atta… CWE-79
Cross-site Scripting
CVE-2015-9282 2024-11-21 11:40 2019-02-7 Show GitHub Exploit DB Packet Storm
211403 6.1 MEDIUM
Network
sas web_infrastructure_platform Logon Manager in SAS Web Infrastructure Platform before 9.4M3 allows reflected XSS on the Timeout page. CWE-79
Cross-site Scripting
CVE-2015-9281 2024-11-21 11:40 2019-01-17 Show GitHub Exploit DB Packet Storm
211404 10.0 CRITICAL
Network
mailenable mailenable MailEnable before 8.60 allows XXE via an XML document in the request.aspx Options parameter. CWE-611
XXE
CVE-2015-9280 2024-11-21 11:40 2019-01-17 Show GitHub Exploit DB Packet Storm
211405 6.1 MEDIUM
Network
mailenable mailenable MailEnable before 8.60 allows Stored XSS via malformed use of "<img/src" with no ">" character in the body of an e-mail message. CWE-79
Cross-site Scripting
CVE-2015-9279 2024-11-21 11:40 2019-01-17 Show GitHub Exploit DB Packet Storm
211406 9.8 CRITICAL
Network
mailenable mailenable MailEnable before 8.60 allows Privilege Escalation because admin accounts could be created as a consequence of %0A mishandling in AUTH.TAB after a password-change request. CWE-255
Credentials Management
CVE-2015-9278 2024-11-21 11:40 2019-01-17 Show GitHub Exploit DB Packet Storm
211407 9.1 CRITICAL
Network
mailenable mailenable MailEnable before 8.60 allows Directory Traversal for reading the messages of other users, uploading files, and deleting files because "/../" and "/.. /" are mishandled. CWE-22
Path Traversal
CVE-2015-9277 2024-11-21 11:40 2019-01-17 Show GitHub Exploit DB Packet Storm
211408 6.1 MEDIUM
Network
smartertools smartermail SmarterTools SmarterMail before 13.3.5535 was vulnerable to stored XSS by bypassing the anti-XSS mechanisms. It was possible to run JavaScript code when a victim user opens or replies to the attacker… CWE-79
Cross-site Scripting
CVE-2015-9276 2024-11-21 11:40 2019-01-17 Show GitHub Exploit DB Packet Storm
211409 5.3 MEDIUM
Network
arc_project arc ARC 5.21q allows directory traversal via a full pathname in an archive file. CWE-22
Path Traversal
CVE-2015-9275 2024-11-21 11:40 2019-01-8 Show GitHub Exploit DB Packet Storm
211410 6.5 MEDIUM
Network
harfbuzz_project harfbuzz HarfBuzz before 1.0.4 allows remote attackers to cause a denial of service (invalid read of two bytes and application crash) because of GPOS and GSUB table mishandling, related to hb-ot-layout-gpos-t… CWE-125
Out-of-bounds Read
CVE-2015-9274 2024-11-21 11:40 2018-11-15 Show GitHub Exploit DB Packet Storm