Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 12, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225381 2.6 注意 NHN Japan - Android 版 ロケタッチにおける情報管理不備の脆弱性 CWE-Other
その他
CVE-2012-5183 2012-12-21 12:02 2012-12-21 Show GitHub Exploit DB Packet Storm
225382 2.6 注意 NHN Japan - Android 版 ロケタッチにおける暗黙的 Intent の扱いに関する脆弱性 CWE-DesignError
CVE-2012-5182 2012-12-21 12:01 2012-12-21 Show GitHub Exploit DB Packet Storm
225383 10 危険 IBM - IBM WAS for z/OS の IBM HTTP Server コンポーネントにおける任意のコマンドを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-5955 2012-12-21 11:50 2012-12-19 Show GitHub Exploit DB Packet Storm
225384 5 警告 IBM - IBM Rational ClearQuest の Web クライアントにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-5765 2012-12-21 11:48 2012-12-12 Show GitHub Exploit DB Packet Storm
225385 4.3 警告 IBM - IBM Rational ClearQuest におけるフィッシング攻撃を実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-4839 2012-12-21 11:47 2012-12-12 Show GitHub Exploit DB Packet Storm
225386 7.5 危険 seagullproject.org - Seagull の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2010-3212 2012-12-20 19:29 2010-09-3 Show GitHub Exploit DB Packet Storm
225387 7.5 危険 seagullproject.org - Seagull における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-3209 2012-12-20 19:29 2010-09-3 Show GitHub Exploit DB Packet Storm
225388 4.3 警告 wiccle - WWB の ajax.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2010-3208 2012-12-20 19:29 2010-09-3 Show GitHub Exploit DB Packet Storm
225389 7.5 危険 Textpattern - Textpattern CMS の index.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2010-3205 2012-12-20 19:29 2010-09-3 Show GitHub Exploit DB Packet Storm
225390 5 警告 xmlswf - Joomla! 用の PicSell コンポーネントにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2010-3203 2012-12-20 19:29 2010-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 13, 2026, 5:05 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
315171 - - - A “CWE-428: Unquoted Search Path or Element” affects the ThermoscanIP_Scrutation service. Such misconfiguration could be abused in scenarios where incorrect permissions were assigned to the C:\ path … - CVE-2024-31201 2024-08-1 21:42 2024-07-31 Show GitHub Exploit DB Packet Storm
315172 - - - A “CWE-201: Insertion of Sensitive Information Into Sent Data” affecting the administrative account allows an attacker with physical access to the machine to retrieve the password in cleartext when a… - CVE-2024-31200 2024-08-1 21:42 2024-07-31 Show GitHub Exploit DB Packet Storm
315173 6.4 MEDIUM
Network
- - The Download Manager plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'wpdm_all_packages' shortcode in all versions up to, and including, 3.2.97 due to insufficient … - CVE-2024-6208 2024-08-1 21:42 2024-07-31 Show GitHub Exploit DB Packet Storm
315174 - - - Zohocorp ManageEngine Applications Manager versions 170900 and below are vulnerable to the authenticated admin-only SQL Injection in the Create Monitor feature. - CVE-2024-5678 2024-08-1 16:15 2024-08-1 Show GitHub Exploit DB Packet Storm
315175 - - - The Ultimate Classified Listings WordPress plugin before 1.4 does not sanitise and escape a parameter before outputting it back in the page, leading to a Reflected Cross-Site Scripting which could be… - CVE-2024-6529 2024-08-1 15:15 2024-08-1 Show GitHub Exploit DB Packet Storm
315176 - - - The Floating Notification Bar, Sticky Menu on Scroll, Announcement Banner, and Sticky Header for Any WordPress plugin before 2.7.2 does not sanitise and escape some of its settings, which could all… - CVE-2024-4090 2024-08-1 15:15 2024-08-1 Show GitHub Exploit DB Packet Storm
315177 - - - The WooCommerce Customers Manager WordPress plugin before 30.1 does not have CSRF checks in some bulk actions, which could allow attackers to make logged in admins perform unwanted actions, such as d… - CVE-2024-3983 2024-08-1 15:15 2024-08-1 Show GitHub Exploit DB Packet Storm
315178 - - - The WooCommerce Customers Manager WordPress plugin before 30.2 does not have authorisation and CSRF in various AJAX actions, allowing any authenticated users, such as subscriber, to call them and upd… - CVE-2024-1747 2024-08-1 15:15 2024-08-1 Show GitHub Exploit DB Packet Storm
315179 - - - A vulnerability was found in Baidu UEditor 1.4.2. It has been declared as problematic. This vulnerability affects unknown code of the file /ueditor142/php/controller.php?action=catchimage. The manipu… CWE-79
Cross-site Scripting
CVE-2024-7343 2024-08-1 14:15 2024-08-1 Show GitHub Exploit DB Packet Storm
315180 - - - A vulnerability was found in Baidu UEditor 1.4.3.3. It has been classified as problematic. This affects an unknown part of the file /ueditor/php/controller.php?action=uploadfile&encode=utf-8. The man… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-7342 2024-08-1 14:15 2024-08-1 Show GitHub Exploit DB Packet Storm