Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 19, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
226171 7.5 危険 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-5145 2013-01-17 13:44 2013-01-10 Show GitHub Exploit DB Packet Storm
226172 7.5 危険 DOMIT! RSS Parser for PHP - DOMIT! RSS を使用している製品に情報漏えいの脆弱性 - - 2013-01-17 12:02 2013-01-15 Show GitHub Exploit DB Packet Storm
226173 9.3 危険 IBM - IBM Java の JRE コンポーネントにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2012-4821 2013-01-16 16:47 2012-10-5 Show GitHub Exploit DB Packet Storm
226174 4.3 警告 ヒューレット・パッカード - HP PKI ActiveX control の KillProcess メソッドにおけるサービス運用妨害 (プロセスの強制終了) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-6501 2013-01-16 16:39 2013-01-12 Show GitHub Exploit DB Packet Storm
226175 5 警告 Pragyan CMS Project - Pragyan CMS の download.lib.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2012-6500 2013-01-16 16:35 2013-01-12 Show GitHub Exploit DB Packet Storm
226176 5.8 警告 WordPress.org - WordPress 用 Age Verification プラグインにおけるオープンリダイレクトの脆弱性 CWE-20
不適切な入力確認
CVE-2012-6499 2013-01-16 16:32 2013-01-12 Show GitHub Exploit DB Packet Storm
226177 7.5 危険 Elite Bulletin Board - Elite Bulletin Board における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-5874 2013-01-16 16:31 2012-12-6 Show GitHub Exploit DB Packet Storm
226178 4.4 警告 Ettercap Project - Ettercap の ec_scan.c におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2013-0722 2013-01-16 15:32 2013-01-11 Show GitHub Exploit DB Packet Storm
226179 10 危険 Connections project - WordPress 用の Connections プラグインにおける脆弱性 CWE-noinfo
情報不足
CVE-2011-5254 2013-01-16 15:25 2011-06-15 Show GitHub Exploit DB Packet Storm
226180 4.3 警告 thregr.org - Dl Download Ticket Service における任意のユーザでログインされる脆弱性 CWE-287
不適切な認証
CVE-2011-5253 2013-01-16 15:16 2011-12-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 19, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
312571 5.3 MEDIUM
Network
ba-booking ba_book_everything The BA Book Everything plugin for WordPress is vulnerable to arbitrary password reset in all versions up to, and including, 1.6.20. This is due to the reset_user_password() function not verifying a u… NVD-CWE-Other
CVE-2024-8794 2024-09-27 01:23 2024-09-24 Show GitHub Exploit DB Packet Storm
312572 6.1 MEDIUM
Network
ninjaforms ninja_forms_file_uploads The Ninja Forms - File Uploads plugin for WordPress is vulnerable to Stored Cross-Site Scripting via an uploaded file (e.g. RTX file) in all versions up to, and including, 3.3.16 due to insufficient … CWE-79
Cross-site Scripting
CVE-2024-1596 2024-09-27 01:23 2024-09-7 Show GitHub Exploit DB Packet Storm
312573 5.4 MEDIUM
Network
master-addons master_addons The Master Addons – Free Widgets, Hover Effects, Toggle, Conditions, Animations for Elementor plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the data-jltma-wrapper-link element… CWE-79
Cross-site Scripting
CVE-2024-6282 2024-09-27 01:19 2024-09-10 Show GitHub Exploit DB Packet Storm
312574 - - - Mellium mellium.im/xmpp 0.0.1 through 0.21.4 allows response spoofing if the implementation uses predictable IDs because the stanza type is not checked. This is fixed in 0.22.0. - CVE-2024-46957 2024-09-27 01:15 2024-09-25 Show GitHub Exploit DB Packet Storm
312575 8.8 HIGH
Network
buffercode frontend_dashboard The Frontend Dashboard plugin for WordPress is vulnerable to unauthorized code execution due to insufficient filtering on callable methods/functions via the ajax_request() function in all versions up… CWE-94
Code Injection
CVE-2024-8268 2024-09-27 01:15 2024-09-10 Show GitHub Exploit DB Packet Storm
312576 6.5 MEDIUM
Network
pinpoint pinpoint_booking_system The Pinpoint Booking System – #1 WordPress Booking Plugin plugin for WordPress is vulnerable to SQL Injection via the ‘schedule’ parameter in all versions up to, and including, 2.9.9.5.0 due to insuf… CWE-89
SQL Injection
CVE-2024-7112 2024-09-27 01:12 2024-09-7 Show GitHub Exploit DB Packet Storm
312577 7.3 HIGH
Network
ifeelweb affiliate_super_assistent The The Affiliate Super Assistent plugin for WordPress is vulnerable to arbitrary shortcode execution in all versions up to, and including, 1.5.3. This is due to the software allowing users to supply… CWE-94
Code Injection
CVE-2024-8478 2024-09-27 00:53 2024-09-10 Show GitHub Exploit DB Packet Storm
312578 5.3 MEDIUM
Network
metagauss eventprime The EventPrime – Events Calendar, Bookings and Tickets plugin for WordPress is vulnerable to unauthorized access to Private or Password-protected events due to missing authorization checks in all ver… CWE-862
 Missing Authorization
CVE-2024-8369 2024-09-27 00:43 2024-09-10 Show GitHub Exploit DB Packet Storm
312579 8.8 HIGH
Network
elizsoftware panel Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Eliz Software Panel allows Command Line Execution through SQL Injection.This issue affects Panel:… CWE-89
SQL Injection
CVE-2024-5958 2024-09-27 00:35 2024-09-19 Show GitHub Exploit DB Packet Storm
312580 6.5 MEDIUM
Network
apexsoftcell ld_geo
ld_dp_back_office
This vulnerability exists in Apex Softcell LD DP Back Office due to improper validation of certain parameters (cCdslClicentcode and cLdClientCode) in the API endpoint. An authenticated remote attacke… NVD-CWE-Other
CVE-2024-47085 2024-09-27 00:30 2024-09-19 Show GitHub Exploit DB Packet Storm