Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 6, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
225711 4.3 警告 オラクル - Oracle Supply Chain Products Suite の Oracle Agile PLM Framework における Web Client (CS) に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-3822 2013-07-18 11:23 2013-07-16 Show GitHub Exploit DB Packet Storm
225712 4 警告 オラクル - Oracle Supply Chain Products Suite の Oracle Agile PLM Framework における Security に関する脆弱性 CWE-200
情報漏えい
CVE-2013-3823 2013-07-18 11:23 2013-07-16 Show GitHub Exploit DB Packet Storm
225713 4 警告 オラクル - Oracle Supply Chain Products Suite の Oracle Agile Collaboration Framework における Manufacturing/Mfg Parts に関する脆弱性 CWE-noinfo
情報不足
CVE-2013-3824 2013-07-18 11:23 2013-07-16 Show GitHub Exploit DB Packet Storm
225714 4 警告 オラクル - Oracle Supply Chain Products Suite の Oracle Agile Product Collaboration における Folders & Files Attachment に関する脆弱性 CWE-200
情報漏えい
CVE-2013-3825 2013-07-18 11:23 2013-07-16 Show GitHub Exploit DB Packet Storm
225715 4.7 警告 レッドハット - 特定の Red Hat パッチを適用した Red Hat Enterprise Linux におけるサービス運用妨害 (DoS) の脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-2188 2013-07-17 20:44 2013-06-18 Show GitHub Exploit DB Packet Storm
225716 5.7 警告 レッドハット - 特定の Red Hat パッチを適用した Red Hat Enterprise Linux におけるサービス運用妨害 (DoS) の脆弱性 CWE-362
競合状態
CVE-2013-1935 2013-07-17 20:43 2013-06-10 Show GitHub Exploit DB Packet Storm
225717 5.4 警告 Linux - Linux Kernel の IPv6 スタックの net/ipv6/ip6_fib.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2013-4125 2013-07-17 20:42 2013-07-12 Show GitHub Exploit DB Packet Storm
225718 4.3 警告 Drupal - Drupal の Image モジュールにおける他の制限イメージの派生イメージを読まれる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0246 2013-07-17 16:54 2013-01-16 Show GitHub Exploit DB Packet Storm
225719 2.1 注意 Drupal - Drupal の Book モジュールのプリンタフレンドリーバージョン機能におけるノードタイトルおよびノードコンテンツを読み取られる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2013-0245 2013-07-17 16:51 2013-01-16 Show GitHub Exploit DB Packet Storm
225720 4.3 警告 Anshul Sharma - WordPress 用 Category Grid View Gallery の includes/CatGridPost.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2013-4117 2013-07-17 16:50 2013-07-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 6, 2026, 4:18 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
196201 6.1 MEDIUM
Network
kiboit phastpress There is an open redirect in the PhastPress WordPress plugin before 1.111 that allows an attacker to malform a request to a page with the plugin and then redirect the victim to a malicious page. Ther… CWE-601
Open Redirect
CVE-2021-24210 2024-11-21 14:52 2021-04-6 Show GitHub Exploit DB Packet Storm
196202 7.2 HIGH
Network
automattic wp_super_cache The WP Super Cache WordPress plugin before 1.7.2 was affected by an authenticated (admin+) RCE in the settings page due to input validation failure and weak $cache_path check in the WP Super Cache Se… CWE-94
Code Injection
CVE-2021-24209 2024-11-21 14:52 2021-04-6 Show GitHub Exploit DB Packet Storm
196203 5.4 MEDIUM
Network
themeum wp_page_builder The editor of the WP Page Builder WordPress plugin before 1.2.4 allows lower-privileged users to insert unfiltered HTML, including JavaScript, into pages via the “Raw HTML” widget and the “Custom HTM… CWE-79
Cross-site Scripting
CVE-2021-24208 2024-11-21 14:52 2021-04-6 Show GitHub Exploit DB Packet Storm
196204 4.3 MEDIUM
Network
themeum wp_page_builder By default, the WP Page Builder WordPress plugin before 1.2.4 allows subscriber-level users to edit and make changes to any and all posts pages - user roles must be specifically blocked from editing … CWE-269
 Improper Privilege Management
CVE-2021-24207 2024-11-21 14:52 2021-04-6 Show GitHub Exploit DB Packet Storm
196205 5.4 MEDIUM
Network
cm-wp social_slider_widget The Social Slider Widget WordPress plugin before 1.8.5 allowed Authenticated Reflected XSS in the plugin settings page as the ‘token_error’ parameter can be controlled by users and it is directly ech… CWE-79
Cross-site Scripting
CVE-2021-24196 2024-11-21 14:52 2021-04-6 Show GitHub Exploit DB Packet Storm
196206 5.4 MEDIUM
Network
clogica seo_redirection The setting page of the SEO Redirection Plugin - 301 Redirect Manager WordPress plugin before 6.4 is vulnerable to reflected Cross-Site Scripting (XSS) as user input is not properly sanitised before … - CVE-2021-24187 2024-11-21 14:52 2021-04-6 Show GitHub Exploit DB Packet Storm
196207 6.5 MEDIUM
Network
themeum tutor_lms The tutor_answering_quiz_question/get_answer_by_id function pair from the Tutor LMS – eLearning and online course solution WordPress plugin before 1.8.3 was vulnerable to UNION based SQL injection th… CWE-89
SQL Injection
CVE-2021-24186 2024-11-21 14:52 2021-04-6 Show GitHub Exploit DB Packet Storm
196208 5.4 MEDIUM
Network
elementor website_builder In the Elementor Website Builder WordPress plugin before 3.1.4, the image box widget (includes/widgets/image-box.php) accepts a ‘title_size’ parameter. Although the element control lists a fixed set … CWE-79
Cross-site Scripting
CVE-2021-24206 2024-11-21 14:52 2021-04-6 Show GitHub Exploit DB Packet Storm
196209 5.4 MEDIUM
Network
elementor website_builder In the Elementor Website Builder WordPress plugin before 3.1.4, the icon box widget (includes/widgets/icon-box.php) accepts a ‘title_size’ parameter. Although the element control lists a fixed set of… CWE-79
Cross-site Scripting
CVE-2021-24205 2024-11-21 14:52 2021-04-6 Show GitHub Exploit DB Packet Storm
196210 5.4 MEDIUM
Network
elementor website_builder In the Elementor Website Builder WordPress plugin before 3.1.4, the accordion widget (includes/widgets/accordion.php) accepts a ‘title_html_tag’ parameter. Although the element control lists a fixed … CWE-79
Cross-site Scripting
CVE-2021-24204 2024-11-21 14:52 2021-04-6 Show GitHub Exploit DB Packet Storm