Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224241 7.2 危険 シマンテック - Symantec Endpoint Protection および Endpoint Protection Small Business Edition における権限を取得される脆弱性 CWE-22
パス・トラバーサル
CVE-2013-5011 2014-01-14 18:32 2014-01-9 Show GitHub Exploit DB Packet Storm
224242 4.3 警告 MyBB Group - MyBB の inc/class_parser.php 内の mycode_parse_video 関数におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7288 2014-01-14 18:07 2013-12-3 Show GitHub Exploit DB Packet Storm
224243 4.3 警告 Andy's PHP Knowledgebase Project - Andy's PHP Knowledgebase の register.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-7289 2014-01-14 17:58 2013-12-24 Show GitHub Exploit DB Packet Storm
224244 7.5 危険 Cynthia Fridsma - Horizon Quick Content Management System の download.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-7139 2014-01-14 17:41 2013-12-25 Show GitHub Exploit DB Packet Storm
224245 5 警告 Cynthia Fridsma - Horizon Quick Content Management System の lib/functions/d-load.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-7138 2014-01-14 17:41 2013-12-25 Show GitHub Exploit DB Packet Storm
224246 4.3 警告 Seagate Technology LLC - Seagate BlackArmor NAS 220 デバイスのファームウェアにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6923 2014-01-14 17:41 2014-01-6 Show GitHub Exploit DB Packet Storm
224247 9.3 危険 Libreswan Project - libreswan の Red Hat Enterprise Linux および Fedora パッケージ用 libreswan.spec ファイルにおける脆弱性 CWE-362
競合状態
CVE-2013-7283 2014-01-14 17:40 2013-12-11 Show GitHub Exploit DB Packet Storm
224248 5 警告 Ecava - Ecava IntegraXor の SCADA サーバにおける任意のプロジェクトバックアップファイルを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-0752 2014-01-14 17:39 2014-01-8 Show GitHub Exploit DB Packet Storm
224249 7.8 危険 QNAP Systems - QNAP QTS にディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-7174 2014-01-14 17:18 2014-01-8 Show GitHub Exploit DB Packet Storm
224250 4.3 警告 シスコシステムズ - Cisco Secure Access Control System の Web インターフェースにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-6974 2014-01-14 16:57 2014-01-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
197811 8.0 HIGH
Network
fetchdesigns sign-up_sheets The Sign-up Sheets WordPress plugin before 1.0.14 does not not sanitise or validate the Sheet title when generating the CSV to export, which could lead to a CSV injection issue - CVE-2021-24441 2024-11-21 14:53 2021-07-13 Show GitHub Exploit DB Packet Storm
197812 4.8 MEDIUM
Network
fetchdesigns sign-up_sheets The Sign-up Sheets WordPress plugin before 1.0.14 did not sanitise or escape some of its fields when creating a new sheet, allowing high privilege users to add JavaScript in them, leading to a Stored… - CVE-2021-24440 2024-11-21 14:53 2021-07-13 Show GitHub Exploit DB Packet Storm
197813 5.4 MEDIUM
Network
prothemedesign browser_screenshots The Browser Screenshots WordPress plugin before 1.7.6 allowed authenticated users with a role as low as Contributor to perform Stored Cross-Site Scripting attacks as the image_class parameter of the … - CVE-2021-24439 2024-11-21 14:53 2021-07-13 Show GitHub Exploit DB Packet Storm
197814 6.1 MEDIUM
Network
codeblab glass The Glass WordPress plugin through 1.3.2 does not sanitise or escape its "Glass Pages" setting before outputting in a page, leading to a Stored Cross-Site Scripting issue. Furthermore, the plugin did… CWE-352
CWE-79
 Origin Validation Error
Cross-site Scripting
CVE-2021-24434 2024-11-21 14:53 2021-07-13 Show GitHub Exploit DB Packet Storm
197815 6.1 MEDIUM
Network
salonbookingsystem salon_booking_system The Salon booking system WordPress plugin before 6.3.1 does not properly sanitise and escape the First Name field when booking an appointment, allowing low privilege users such as subscriber to set J… - CVE-2021-24429 2024-11-21 14:53 2021-07-13 Show GitHub Exploit DB Packet Storm
197816 4.8 MEDIUM
Network
boldgrid w3_total_cache The W3 Total Cache WordPress plugin before 2.1.3 did not sanitise or escape some of its CDN settings, allowing high privilege users to use JavaScript in them, which will be output in the page, leadin… CWE-79
Cross-site Scripting
CVE-2021-24427 2024-11-21 14:53 2021-07-13 Show GitHub Exploit DB Packet Storm
197817 4.8 MEDIUM
Network
web-dorado backup-wd The Backup by 10Web – Backup and Restore Plugin WordPress plugin through 1.0.20 does not sanitise or escape the tab parameter before outputting it back in the page, leading to a reflected Cross-Site … - CVE-2021-24426 2024-11-21 14:53 2021-07-13 Show GitHub Exploit DB Packet Storm
197818 5.4 MEDIUM
Network
webfactoryltd wp_reset The WP Reset – Most Advanced WordPress Reset Tool WordPress plugin before 1.90 did not sanitise or escape its extra_data parameter when creating a snapshot via the admin dashboard, leading to an auth… CWE-79
Cross-site Scripting
CVE-2021-24424 2024-11-21 14:53 2021-07-13 Show GitHub Exploit DB Packet Storm
197819 5.4 MEDIUM
Network
eyecix jobsearch_wp_job_board The WP JobSearch WordPress plugin before 1.7.4 did not sanitise or escape multiple of its parameters from the my-resume page before outputting them in the page, allowing low privilege users to use Ja… - CVE-2021-24421 2024-11-21 14:53 2021-07-13 Show GitHub Exploit DB Packet Storm
197820 5.4 MEDIUM
Network
emarketdesign request_a_quote The Request a Quote WordPress plugin before 2.3.4 did not sanitise and escape some of its quote fields when adding/editing a quote as admin, leading to Stored Cross-Site scripting issues when the quo… - CVE-2021-24420 2024-11-21 14:53 2021-07-13 Show GitHub Exploit DB Packet Storm