Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230031 5.8 警告 Xerox - Xerox WorkCentre および WorkCentre Pro における脆弱性 - CVE-2006-6468 2012-12-20 18:02 2006-11-30 Show GitHub Exploit DB Packet Storm
230032 5.8 警告 Xerox - Xerox WorkCentre および WorkCentre Pro におけるディレクトリのアクセス権を取得される脆弱性 - CVE-2006-6467 2012-12-20 18:02 2006-11-30 Show GitHub Exploit DB Packet Storm
230033 6.8 警告 wikyblog - WikyBlog の WBmap.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6466 2012-12-20 18:02 2006-12-11 Show GitHub Exploit DB Packet Storm
230034 7.8 危険 YourFreeWorld.com - Yourfreeworld Stylish Text Ads Script の tr1.php におけるインストールパスを取得される脆弱性 - CVE-2006-6461 2012-12-20 18:02 2006-12-11 Show GitHub Exploit DB Packet Storm
230035 10 危険 short url
url tracker script
- Yourfreeworld.com Short Url & Url Tracker Script における重要な情報を取得される脆弱性 - CVE-2006-6460 2012-12-20 18:02 2006-12-11 Show GitHub Exploit DB Packet Storm
230036 6.8 警告 phpBB - PhpBB Toplist の toplist.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6459 2012-12-20 18:02 2006-12-11 Show GitHub Exploit DB Packet Storm
230037 5 警告 Tiki Software Community Association - Tikiwiki の tiki-wiki_rss.php における重要な情報 (MySQL ユーザ名およびパスワード) を取得される脆弱性 CWE-200
情報漏えい
CVE-2006-6457 2012-12-20 18:02 2006-12-11 Show GitHub Exploit DB Packet Storm
230038 6.8 警告 swsoft - SWsoft Plesk におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-6451 2012-12-20 18:02 2006-12-10 Show GitHub Exploit DB Packet Storm
230039 6.4 警告 vt-forum - Vt-Forum Lite におけるデータベースをダウンロードされる脆弱性 - CVE-2006-6449 2012-12-20 18:02 2006-12-10 Show GitHub Exploit DB Packet Storm
230040 7.5 危険 vt-forum - Vt-Forum Lite における SQL インジェクションの脆弱性 - CVE-2006-6448 2012-12-20 18:02 2006-12-10 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
313561 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in EnvoThemes Envo's Elementor Templates & Widgets for WooCommerce allows Stored XSS.This iss… CWE-79
Cross-site Scripting
CVE-2024-43292 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
313562 - - - Authorization Bypass Through User-Controlled Key vulnerability in gVectors Team wpForo Forum.This issue affects wpForo Forum: from n/a through 2.3.4. CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2024-43288 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
313563 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Squirrly SEO Plugin by Squirrly SEO.This issue affects SEO Plugin by Squirrly SEO: from n/a throu… CWE-89
SQL Injection
CVE-2024-43286 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
313564 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in WP Travel WP Travel Gutenberg Blocks allows Stored XSS.This issue affects WP Travel Gutenb… CWE-79
Cross-site Scripting
CVE-2024-43284 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
313565 - - - Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in Themeum Tutor LMS.This issue affects Tutor LMS: from n/a through 2.7.2. CWE-89
SQL Injection
CVE-2024-43282 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
313566 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Tribulant Newsletters allows Reflected XSS.This issue affects Newsletters: from n/a throug… CWE-79
Cross-site Scripting
CVE-2024-43279 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
313567 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Phi Phan Meta Field Block allows Stored XSS.This issue affects Meta Field Block: from n/a … CWE-79
Cross-site Scripting
CVE-2024-43278 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
313568 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Qamar Sheeraz, Nasir Ahmad, GenialSouls Mega Addons For Elementor allows Stored XSS.This i… CWE-79
Cross-site Scripting
CVE-2024-43267 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
313569 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Visual Composer Visual Composer Starter allows Stored XSS.This issue affects Visual Compos… CWE-79
Cross-site Scripting
CVE-2024-43263 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm
313570 - - - Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in webriti Busiprof allows Stored XSS.This issue affects Busiprof: from n/a through 2.4.8. CWE-79
Cross-site Scripting
CVE-2024-43262 2024-08-19 21:59 2024-08-19 Show GitHub Exploit DB Packet Storm