Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 6, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228311 4.3 警告 w2b - W2B Online Banking の auth.w2b におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3174 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
228312 5 警告 uebimiau - Uebimiau Webmail の demo/pop3/error.php におけるディレクトリトラバーサルの脆弱性 - CVE-2007-3172 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
228313 5 警告 uebimiau - Uebimiau Webmail における重要な情報を取得される脆弱性 - CVE-2007-3171 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
228314 4.3 警告 uebimiau - Uebimiau Webmail におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-3170 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
228315 7.6 危険 VIVOTEK Inc. - MjpegDecoder.dll の Vivotek Motion Jpeg ActiveX コントロールにおけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-3167 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
228316 6.8 警告 クアルコム - Qualcomm Eudora におけるバッファオーバーフローの脆弱性 - CVE-2007-3166 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
228317 5 警告 The Tor Project - Tor におけるトラフィックの送信元などの匿名性を侵害される脆弱性 - CVE-2007-3165 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
228318 5 警告 westbyte - ida の idaiehlp.dll におけるバッファオーバーフローの脆弱性 - CVE-2007-3162 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
228319 6.8 警告 visicommedia - Ace-FTP Client におけるバッファオーバーフローの脆弱性 - CVE-2007-3161 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
228320 5 警告 tenyearsgone - ASP Folder Gallery の download_script.asp における任意のファイルを読まれる脆弱性 - CVE-2007-3158 2012-12-20 18:19 2007-06-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 6, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
222341 6.1 MEDIUM
Network
codection import_users_from_csv_with_meta The import-users-from-csv-with-meta plugin before 1.14.0.3 for WordPress has XSS. CWE-79
Cross-site Scripting
CVE-2019-15328 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
222342 6.1 MEDIUM
Network
codection import_users_from_csv_with_meta The import-users-from-csv-with-meta plugin before 1.14.1.3 for WordPress has XSS via imported data. CWE-79
Cross-site Scripting
CVE-2019-15327 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
222343 7.5 HIGH
Network
codection import_users_from_csv_with_meta The import-users-from-csv-with-meta plugin before 1.14.2.1 for WordPress has directory traversal. CWE-22
Path Traversal
CVE-2019-15326 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
222344 7.5 HIGH
Network
galliumos galliumos In GalliumOS 3.0, CONFIG_SECURITY_YAMA is disabled but /etc/sysctl.d/10-ptrace.conf tries to set /proc/sys/kernel/yama/ptrace_scope to 1, which might increase risk because of the appearance that a pr… NVD-CWE-noinfo
CVE-2019-15325 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
222345 6.1 MEDIUM
Network
wpsupportplus wp_support_plus_responsive_ticket_system The wp-support-plus-responsive-ticket-system plugin before 9.1.2 for WordPress has HTML injection. CWE-79
Cross-site Scripting
CVE-2019-15331 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
222346 7.5 HIGH
Network
webp_express_project webp_express The webp-express plugin before 0.14.11 for WordPress has insufficient protection against arbitrary file reading. NVD-CWE-noinfo
CVE-2019-15330 2024-11-21 13:28 2019-08-23 Show GitHub Exploit DB Packet Storm
222347 8.8 HIGH
Network
ad_inserter_project ad_inserter The ad-inserter plugin before 2.4.22 for WordPress has remote code execution. CWE-20
 Improper Input Validation 
CVE-2019-15324 2024-11-21 13:28 2019-08-22 Show GitHub Exploit DB Packet Storm
222348 7.5 HIGH
Network
ad_inserter_project ad_inserter The ad-inserter plugin before 2.4.20 for WordPress has path traversal. CWE-22
Path Traversal
CVE-2019-15323 2024-11-21 13:28 2019-08-22 Show GitHub Exploit DB Packet Storm
222349 9.8 CRITICAL
Network
wpmadeasy shortcode_factory The shortcode-factory plugin before 2.8 for WordPress has Local File Inclusion. NVD-CWE-noinfo
CVE-2019-15322 2024-11-21 13:28 2019-08-22 Show GitHub Exploit DB Packet Storm
222350 9.8 CRITICAL
Network
optiontree_project optiontree The option-tree plugin before 2.7.3 for WordPress has Object Injection because serialized classes are mishandled. CWE-502
 Deserialization of Untrusted Data
CVE-2019-15321 2024-11-21 13:28 2019-08-22 Show GitHub Exploit DB Packet Storm