Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 28, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
249141 3.7 注意 ヒューレット・パッカード - HP ProCurve 5400 zl スイッチシリーズにおける任意のコードを実行される脆弱性 CWE-DesignError
CVE-2012-0133 2012-04-13 16:24 2012-04-10 Show GitHub Exploit DB Packet Storm
249142 6.8 警告 ヒューレット・パッカード - HP System Management Homepage におけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2011-3846 2012-04-13 16:19 2012-04-12 Show GitHub Exploit DB Packet Storm
249143 6.5 警告 Cloudera, Inc. - Cloudera Manager および Cloudera Service and Configuration Manager における任意のユーザアカウントになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2012-2230 2012-04-13 15:35 2011-04-12 Show GitHub Exploit DB Packet Storm
249144 6.5 警告 Cloudera, Inc.
Apache Software Foundation
- Cloudera 製品で使用される Apache Hadoop における任意のクラスタユーザアカウントになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2012-1574 2012-04-13 15:33 2012-04-12 Show GitHub Exploit DB Packet Storm
249145 5.8 警告 株式会社リクルート - どこでもリクナビ2013 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1240 2012-04-13 12:02 2012-04-13 Show GitHub Exploit DB Packet Storm
249146 5.8 警告 COM Meets Ruby - ActiveScriptRuby に HTML 上で任意の Ruby スクリプトを実行可能な脆弱性 CWE-Other
その他
CVE-2012-1241 2012-04-13 12:01 2012-04-13 Show GitHub Exploit DB Packet Storm
249147 7.5 危険 360安全中心 - 360圧縮 (360zip) における任意のコードを実行される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2225 2012-04-13 11:45 2012-04-11 Show GitHub Exploit DB Packet Storm
249148 7.5 危険 迅雷 - 迅雷 (Xunlei Thunder) における任意のコードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2012-2224 2012-04-13 11:44 2012-03-6 Show GitHub Exploit DB Packet Storm
249149 4.3 警告 Plume CMS - Plume CMS におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-2156 2012-04-13 11:07 2012-04-11 Show GitHub Exploit DB Packet Storm
249150 4.3 警告 CMS Made Simple - CMS Made Simple の admin/edituser.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-1992 2012-04-13 11:06 2012-04-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
212201 7.8 HIGH
Local
foxitsoftware foxit_studio_photo This vulnerability allows remote attackers to disclose sensitive information on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in t… - CVE-2020-15630 2024-11-21 14:05 2020-08-20 Show GitHub Exploit DB Packet Storm
212202 7.8 HIGH
Local
foxitsoftware foxit_studio_photo This vulnerability allows remote attackers to execute arbitrary code on affected installations of Foxit Studio Photo 3.6.6.922. User interaction is required to exploit this vulnerability in that the … - CVE-2020-15629 2024-11-21 14:05 2020-08-20 Show GitHub Exploit DB Packet Storm
212203 6.7 MEDIUM
Local
hp elite_x2_1012_g1_firmware
elite_x2_1012_g2_firmware
elitebook_1030_g1_firmware
elitebook_1040_g4_firmware
elitebook_folio_1040_g3_firmware
elitebook_folio_g1_firmware
elitebook_revo…
The ALPS ALPINE touchpad driver before 8.2206.1717.634, as used on various Dell, HP, and Lenovo laptops, allows attackers to conduct Path Disclosure attacks via a "fake" DLL file. CWE-427
 Uncontrolled Search Path Element
CVE-2020-15596 2024-11-21 14:05 2020-08-13 Show GitHub Exploit DB Packet Storm
212204 5.4 MEDIUM
Network
soplanning soplanning SOPlanning 1.46.01 allows persistent XSS via the Project Name, Statutes Comment, Places Comment, or Resources Comment field. CWE-79
Cross-site Scripting
CVE-2020-15597 2024-11-21 14:05 2020-08-12 Show GitHub Exploit DB Packet Storm
212205 6.5 MEDIUM
Network
mozilla firefox A rogue webpage could override the injected WKUserScript used by the download feature, this exploit could result in the user downloading an unintended file. This vulnerability affects Firefox for iOS… NVD-CWE-Other
CVE-2020-15662 2024-11-21 14:05 2020-08-11 Show GitHub Exploit DB Packet Storm
212206 6.5 MEDIUM
Network
mozilla firefox A rogue webpage could override the injected WKUserScript used by the logins autofill, this exploit could result in leaking a password for the current domain. This vulnerability affects Firefox for iO… CWE-522
 Insufficiently Protected Credentials
CVE-2020-15661 2024-11-21 14:05 2020-08-11 Show GitHub Exploit DB Packet Storm
212207 8.8 HIGH
Network
mozilla
opensuse
canonical
firefox
firefox_esr
thunderbird
leap
ubuntu_linux
Mozilla developers and community members reported memory safety bugs present in Firefox 78 and Firefox ESR 78.0. Some of these bugs showed evidence of memory corruption and we presume that with enoug… CWE-787
 Out-of-bounds Write
CVE-2020-15659 2024-11-21 14:05 2020-08-11 Show GitHub Exploit DB Packet Storm
212208 6.5 MEDIUM
Network
mozilla
canonical
thunderbird
firefox_esr
firefox
ubuntu_linux
The code for downloading files did not properly take care of special characters, which led to an attacker being able to cut off the file ending at an earlier position, leading to a different file typ… CWE-754
 Improper Check for Unusual or Exceptional Conditions
CVE-2020-15658 2024-11-21 14:05 2020-08-11 Show GitHub Exploit DB Packet Storm
212209 7.8 HIGH
Local
mozilla firefox
firefox_esr
thunderbird
Firefox could be made to load attacker-supplied DLL files from the installation directory. This required an attacker that is already capable of placing files in the installation directory. *Note: Thi… CWE-427
 Uncontrolled Search Path Element
CVE-2020-15657 2024-11-21 14:05 2020-08-11 Show GitHub Exploit DB Packet Storm
212210 8.8 HIGH
Network
mozilla
opensuse
canonical
thunderbird
firefox_esr
firefox
leap
ubuntu_linux
JIT optimizations involving the Javascript arguments object could confuse later optimizations. This risk was already mitigated by various precautions in the code, resulting in this bug rated at only … CWE-843
Type Confusion
CVE-2020-15656 2024-11-21 14:05 2020-08-11 Show GitHub Exploit DB Packet Storm