Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225631 10 危険 phpvms.net - phpVMS の admin/action.php における脆弱性 CWE-noinfo
情報不足
CVE-2012-6552 2013-05-14 12:00 2012-08-24 Show GitHub Exploit DB Packet Storm
225632 9.3 危険 サムスン - MarkAny ContentSAFER MASetupCaller の ActiveX コントロールに脆弱性 CWE-94
コード・インジェクション
CVE-2012-2990 2013-05-13 17:59 2012-08-24 Show GitHub Exploit DB Packet Storm
225633 4.3 警告 WPPA Opa Jaap - WordPress 用 WP Photo Album Plus プラグインの wp-admin/admin.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-3254 2013-05-13 17:32 2013-05-6 Show GitHub Exploit DB Packet Storm
225634 6.8 警告 NetWebLogic - WordPress 用 Login With Ajax プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2013-2707 2013-05-13 17:31 2013-05-6 Show GitHub Exploit DB Packet Storm
225635 5 警告 シスコシステムズ - Cisco Unified Presence のサーバにおけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-1242 2013-05-13 17:30 2013-05-7 Show GitHub Exploit DB Packet Storm
225636 9.3 危険 DELL EMC (旧 EMC Corporation) - EMC AlphaStor の Library Control Program におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0946 2013-05-13 16:14 2013-05-9 Show GitHub Exploit DB Packet Storm
225637 5.8 警告 DELL EMC (旧 EMC Corporation) - 複数の EMC Documentum 製品における重要な情報を取得される脆弱性 CWE-20
不適切な入力確認
CVE-2013-0939 2013-05-13 16:12 2013-05-9 Show GitHub Exploit DB Packet Storm
225638 4.3 警告 DELL EMC (旧 EMC Corporation) - 複数の EMC Documentum 製品におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-0938 2013-05-13 15:54 2013-05-9 Show GitHub Exploit DB Packet Storm
225639 5.8 警告 DELL EMC (旧 EMC Corporation) - 複数の EMC Documentum 製品における Web セッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2013-0937 2013-05-13 15:53 2013-05-9 Show GitHub Exploit DB Packet Storm
225640 6.8 警告 IBM - Windows および Linux 上で稼働する IBM Notes における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2013-2977 2013-05-13 15:50 2013-05-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
317731 8.8 HIGH
Network
- - The JetTabs for Elementor plugin for WordPress is vulnerable to Local File Inclusion in all versions up to, and including, 2.2.3 via the 'switcher_preset' parameter. This makes it possible for authen… - CVE-2024-7146 2024-08-19 22:00 2024-08-16 Show GitHub Exploit DB Packet Storm
317732 - - - The JetSearch plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘id’ parameter in all versions up to, and including, 3.5.2 due to insufficient input sanitization and output es… - CVE-2024-7136 2024-08-19 22:00 2024-08-16 Show GitHub Exploit DB Packet Storm
317733 - - - Ericsson RAN Compute and Site Controller 6610 contains a vulnerability in the Control System where Improper Input Validation can lead to arbitrary code execution, for example to obtain a Linux Shell … - CVE-2024-25008 2024-08-19 22:00 2024-08-16 Show GitHub Exploit DB Packet Storm
317734 4.2 MEDIUM
Network
- - The Download Plugins and Themes in ZIP from Dashboard plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.8.7. This is due to missing or incorrect… - CVE-2024-7501 2024-08-19 22:00 2024-08-16 Show GitHub Exploit DB Packet Storm
317735 7.2 HIGH
Network
- - The WordPress File Upload plugin for WordPress is vulnerable to Stored Cross-Site Scripting via SVG File uploads in all versions up to, and including, 4.24.8 due to insufficient input sanitization an… - CVE-2024-7301 2024-08-19 22:00 2024-08-16 Show GitHub Exploit DB Packet Storm
317736 4.3 MEDIUM
Network
- - The Theme My Login plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 7.1.7. This is due to missing or incorrect nonce validation on the tml_admin_… - CVE-2024-7422 2024-08-19 22:00 2024-08-16 Show GitHub Exploit DB Packet Storm
317737 4.3 MEDIUM
Network
- - The Custom Field For WP Job Manager plugin for WordPress is vulnerable to Insecure Direct Object Reference in all versions up to, and including, 1.2 via the the 'cm_fieldshow' shortcode due to missin… - CVE-2023-7049 2024-08-19 22:00 2024-08-16 Show GitHub Exploit DB Packet Storm
317738 - - - ** UNSUPPORTED WHEN ASSIGNED ** A vulnerability, which was classified as critical, was found in D-Link DNS-120, DNR-202L, DNS-315L, DNS-320, DNS-320L, DNS-320LW, DNS-321, DNR-322L, DNS-323, DNS-325, … CWE-120
Classic Buffer Overflow
CVE-2024-7849 2024-08-19 22:00 2024-08-16 Show GitHub Exploit DB Packet Storm
317739 - - - calamares-nixos-extensions provides Calamares branding and modules for NixOS, a distribution of GNU/Linux. Users who installed NixOS through the graphical installer who used manual disk partitioning … - CVE-2024-43378 2024-08-19 22:00 2024-08-16 Show GitHub Exploit DB Packet Storm
317740 - - - gettext.js is a GNU gettext port for node and the browser. There is a cross-site scripting (XSS) injection if `.po` dictionary definition files are corrupted. This vulnerability has been patched in v… - CVE-2024-43370 2024-08-19 22:00 2024-08-16 Show GitHub Exploit DB Packet Storm