Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
224501 7.5 危険 Die Netzmacher - TYPO3 用 Browser - TYPO3 without PHP エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-5306 2013-08-20 14:20 2013-08-5 Show GitHub Exploit DB Packet Storm
224502 4.3 警告 Joachim Ruhs - TYPO3 用 Store Locator エクステンションにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-5305 2013-08-20 14:12 2013-08-5 Show GitHub Exploit DB Packet Storm
224503 7.5 危険 Joachim Ruhs - TYPO3 用 Store Locator エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-5304 2013-08-20 14:08 2013-08-5 Show GitHub Exploit DB Packet Storm
224504 10 危険 Joachim Ruhs - TYPO3 用 Store Locator エクステンションにおける脆弱性 CWE-noinfo
情報不足
CVE-2013-5303 2013-08-20 13:54 2013-08-5 Show GitHub Exploit DB Packet Storm
224505 7.5 危険 Kennziffer.com - TYPO3 用 Faceted Search エクステンションにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-5302 2013-08-20 13:46 2013-08-5 Show GitHub Exploit DB Packet Storm
224506 7.8 危険 TrustPort - Trustport Webfilter の help.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2013-5301 2013-08-20 13:39 2013-07-30 Show GitHub Exploit DB Packet Storm
224507 3.5 注意 サイボウズ - サイボウズ メールワイズにおける情報漏えいの脆弱性 CWE-noinfo
情報不足
CVE-2013-4698 2013-08-20 11:36 2013-08-13 Show GitHub Exploit DB Packet Storm
224508 4.3 警告 WordPress.org - WordPress の SWFUpload のデフォルト設定における同一生成元ポリシーを回避される脆弱性 CWE-16
CWE-79
CVE-2013-2205 2013-08-19 18:03 2013-06-21 Show GitHub Exploit DB Packet Storm
224509 4.3 警告 Moxiecode Systems AB
WordPress.org
- WordPress の TinyMCE Media プラグインで使用される Moxiecode moxieplayer における Flash アプリケーションに任意のパラメータを渡される脆弱性 CWE-20
不適切な入力確認
CVE-2013-2204 2013-08-19 18:02 2013-06-21 Show GitHub Exploit DB Packet Storm
224510 4.3 警告 WordPress.org - WordPress における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2013-2203 2013-08-19 18:02 2013-06-21 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313711 8.8 HIGH
Network
plugingarden wp_easy_gallery The WP Easy Gallery – WordPress Gallery Plugin plugin for WordPress is vulnerable to time-based SQL Injection via the ‘key’ parameter in all versions up to, and including, 4.8.5 due to insufficient e… CWE-89
SQL Injection
CVE-2024-9018 2024-10-8 04:20 2024-10-1 Show GitHub Exploit DB Packet Storm
313712 5.0 MEDIUM
Network
openstack
redhat
heat
openstack_platform
An incomplete fix for CVE-2023-1625 was found in openstack-heat. Sensitive information may possibly be disclosed through the OpenStack stack abandon command with the hidden feature set to True and th… NVD-CWE-noinfo
CVE-2024-7319 2024-10-8 04:15 2024-08-3 Show GitHub Exploit DB Packet Storm
313713 5.4 MEDIUM
Network
librenms librenms LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. A Stored Cross-Site Scripting (XSS) vulnerability in the "Device Dependencies" feature allows authenticated users to inject… CWE-79
Cross-site Scripting
CVE-2024-47527 2024-10-8 04:08 2024-10-2 Show GitHub Exploit DB Packet Storm
313714 5.4 MEDIUM
Network
librenms librenms LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. A Stored Cross-Site Scripting (XSS) vulnerability in the "Alert Rules" feature allows authenticated users to inject arbitra… CWE-79
Cross-site Scripting
CVE-2024-47525 2024-10-8 04:08 2024-10-2 Show GitHub Exploit DB Packet Storm
313715 5.4 MEDIUM
Network
librenms librenms LibreNMS is an open-source, PHP/MySQL/SNMP-based network monitoring system. A Stored Cross-Site Scripting (XSS) vulnerability in the "Alert Transports" feature allows authenticated users to inject ar… CWE-79
Cross-site Scripting
CVE-2024-47523 2024-10-8 04:07 2024-10-2 Show GitHub Exploit DB Packet Storm
313716 9.8 CRITICAL
Network
definetlynotai logicytics Logicytics is designed to harvest and collect data for forensic analysis. Logicytics has a basic vuln affecting compromised devices from shell injections. This vulnerability is fixed in 2.3.2. CWE-78
OS Command 
CVE-2024-47608 2024-10-8 03:51 2024-10-2 Show GitHub Exploit DB Packet Storm
313717 6.1 MEDIUM
Network
contempo pdf_image_generator The PDF Image Generator plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in all versions up to, and includi… CWE-79
Cross-site Scripting
CVE-2024-9241 2024-10-8 03:51 2024-10-1 Show GitHub Exploit DB Packet Storm
313718 9.8 CRITICAL
Network
coderevolution echo_rss_feed_post_generator The Echo RSS Feed Post Generator plugin for WordPress is vulnerable to privilege escalation in all versions up to, and including, 5.4.6. This is due to the plugin not properly restricting the roles t… NVD-CWE-noinfo
CVE-2024-9265 2024-10-8 03:48 2024-10-1 Show GitHub Exploit DB Packet Storm
313719 7.8 HIGH
Local
autodesk navisworks A maliciously crafted DWFX file, when parsed in w3dtk.dll through Autodesk Navisworks, can force an Out-of-Bounds Read. A malicious actor can leverage this vulnerability to cause a crash, read sensit… CWE-125
Out-of-bounds Read
CVE-2024-7670 2024-10-8 03:43 2024-10-1 Show GitHub Exploit DB Packet Storm
313720 7.8 HIGH
Local
autodesk navisworks A maliciously crafted DWF file, when parsed in dwfcore.dll through Autodesk Navisworks, can force an Out-of-Bounds Write. A malicious actor can leverage this vulnerability to cause a crash, write sen… CWE-787
 Out-of-bounds Write
CVE-2024-7672 2024-10-8 03:35 2024-10-1 Show GitHub Exploit DB Packet Storm