Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":April 29, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
229541 2.7 注意 シトリックス・システムズ - Xen の PyGrub ブートローダにおけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-2625 2012-12-7 15:30 2012-07-4 Show GitHub Exploit DB Packet Storm
229542 7.2 危険 マイクロソフト - Intel CPU で動作する 64bit OS や仮想化環境に権限昇格の脆弱性 CWE-119
バッファエラー
CVE-2012-0217 2012-12-7 15:29 2012-06-13 Show GitHub Exploit DB Packet Storm
229543 10 危険 ヒューレット・パッカード - HP Network Node Manager i における任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-3275 2012-12-7 15:15 2012-12-4 Show GitHub Exploit DB Packet Storm
229544 10 危険 ヒューレット・パッカード - HP Intelligent Management Center におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-3274 2012-12-7 15:15 2012-12-4 Show GitHub Exploit DB Packet Storm
229545 5 警告 ヒューレット・パッカード - HP LaserJet Pro および LaserJet における重要な情報を取得される脆弱性 CWE-noinfo
情報不足
CVE-2012-3273 2012-12-7 15:11 2012-12-3 Show GitHub Exploit DB Packet Storm
229546 4.3 警告 ヒューレット・パッカード - HP Color LaserJet および LaserJet におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3272 2012-12-7 15:10 2012-12-3 Show GitHub Exploit DB Packet Storm
229547 5 警告 VMware - VMware SpringSource Spring Security における有効なユーザ名を列挙される脆弱性 CWE-200
情報漏えい
CVE-2012-5055 2012-12-7 15:09 2012-10-9 Show GitHub Exploit DB Packet Storm
229548 4.3 警告 VMware - VMware SpringSource Spring Security におけるクロスサイトリクエストフォージェリの脆弱性 CWE-94
コード・インジェクション
CVE-2011-2732 2012-12-7 15:07 2011-09-9 Show GitHub Exploit DB Packet Storm
229549 5.1 警告 VMware - VMware SpringSource Spring Security の RunAsManager メカニズムにおける権限を取得される脆弱性 CWE-362
競合状態
CVE-2011-2731 2012-12-7 15:05 2011-09-9 Show GitHub Exploit DB Packet Storm
229550 5.5 警告 OpenStack - 複数の OpenStack 製品の v1 API における保護されていないイメージを削除される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-4573 2012-12-7 14:51 2012-11-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 30, 2026, 4:58 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
201 6.3 MEDIUM
Network
- - A vulnerability was found in IhateCreatingUserNames2 AiraHub2 up to 3e4b77fd7d48ed811ffe5b8d222068c17c76495e. Affected is the function connect_stream_endpoint/sync_agents of the file AiraHub.py of th… Update CWE-918
Server-Side Request Forgery (SSRF) 
CVE-2026-6981 2026-04-29 10:00 2026-04-26 Show GitHub Exploit DB Packet Storm
202 2.4 LOW
Network
- - A vulnerability was detected in BDCOM P3310D 0.4.2 10.1.0F Build 86345. Affected is an unknown function of the component New RMON Statistics Page. The manipulation of the argument Owner results in cr… New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-6998 2026-04-29 10:00 2026-04-26 Show GitHub Exploit DB Packet Storm
203 2.4 LOW
Network
- - A flaw has been found in BIVOCOM TR321 21.1.1.50. Affected by this vulnerability is an unknown functionality of the component Wireless Setting. This manipulation of the argument Network Name SSID cau… New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-6999 2026-04-29 10:00 2026-04-26 Show GitHub Exploit DB Packet Storm
204 2.4 LOW
Network
- - A vulnerability has been found in Datacom DM4100 1.3.6.1.4.1.3709. Affected by this issue is some unknown functionality of the component VLAN Page. Such manipulation of the argument VLAN Name leads t… New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-7000 2026-04-29 10:00 2026-04-26 Show GitHub Exploit DB Packet Storm
205 2.4 LOW
Network
- - A vulnerability was found in Datacom DM4100 1.3.6.1.4.1.3709. This affects an unknown part of the component Ethernet Configuration Page. Performing a manipulation of the argument Name results in cros… New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-7001 2026-04-29 10:00 2026-04-26 Show GitHub Exploit DB Packet Storm
206 3.7 LOW
Network
- - A security vulnerability has been detected in Cesanta Mongoose up to 7.20. This issue affects the function mg_aes_gcm_decrypt of the file /src/tls_aes128.c of the component GCM Authentication Tag Han… Update CWE-345
CWE-347
 Insufficient Verification of Data Authenticity
 Improper Verification of Cryptographic Signature
CVE-2026-6986 2026-04-29 10:00 2026-04-26 Show GitHub Exploit DB Packet Storm
207 2.4 LOW
Network
- - A weakness has been identified in MaxSite CMS up to 109.3. Affected by this vulnerability is an unknown functionality of the file /admin/plugin_antispam of the component Antispam Plugin. Executing a … New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-7011 2026-04-29 10:00 2026-04-26 Show GitHub Exploit DB Packet Storm
208 2.4 LOW
Network
- - A vulnerability was detected in MaxSite CMS up to 109.3. This affects an unknown part of the component Redirect Plugin. The manipulation of the argument f_all/f_all404 results in cross site scripting… New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-7012 2026-04-29 10:00 2026-04-26 Show GitHub Exploit DB Packet Storm
209 2.4 LOW
Network
- - A security vulnerability has been detected in MaxSite CMS up to 109.3. Affected by this issue is some unknown functionality of the component mail_send Plugin. The manipulation of the argument f_subje… New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-7013 2026-04-29 10:00 2026-04-26 Show GitHub Exploit DB Packet Storm
210 2.4 LOW
Network
- - A flaw has been found in MaxSite CMS up to 109.3. This vulnerability affects unknown code of the component down_count Plugin. This manipulation of the argument f_file/f_prefix causes cross site scrip… New CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-7014 2026-04-29 10:00 2026-04-26 Show GitHub Exploit DB Packet Storm