Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 4, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
202541 7.5 重要
Network
IBM - IBM Sterling Secure Proxy の構成マネージャにおけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2016-6023 2016-10-12 15:03 2016-09-29 Show GitHub Exploit DB Packet Storm
202542 9.8 緊急
Network
Katie Seaborn - Wordpress 用 Zotpress プラグインの zp_get_account() における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-1000217 2016-10-12 11:46 2016-09-9 Show GitHub Exploit DB Packet Storm
202543 9.1 緊急
Network
contus-video-comments project - WordPress 用 contus-video-comments プラグインにおける未認証のリモートの .jpg ファイルをアップロードされる脆弱性 CWE-22
パス・トラバーサル
CVE-2016-1000112 2016-10-12 11:46 2016-06-15 Show GitHub Exploit DB Packet Storm
202544 8.8 重要
Network
Ipswitch, Inc. - Ipswitch WhatsUp Gold の WrFreeFormText.asp の sUniqueID Parameter におけるブラインド SQLインジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-1000000 2016-10-12 11:46 2016-05-17 Show GitHub Exploit DB Packet Storm
202545 7.8 重要
Local
csv2wpec-coupon project - WordPress 用 csv2wpec-coupon プラグインにおけるリモートファイルをアップロードされる脆弱性 CWE-Other
その他
CVE-2015-1000013 2016-10-12 11:46 2015-09-11 Show GitHub Exploit DB Packet Storm
202546 7.5 重要
Network
mypixs project - WordPress 用 mypixs プラグインにおけるローカルファイルインクルードの脆弱性 CWE-200
情報漏えい
CVE-2015-1000012 2016-10-12 11:46 2015-09-15 Show GitHub Exploit DB Packet Storm
202547 9.8 緊急
Physics
DukaPress - WordPress 用 DukaPress プラグインにおけるブラインド SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2015-1000011 2016-10-12 11:46 2015-08-4 Show GitHub Exploit DB Packet Storm
202548 7.5 重要
Network
simple-image-manipulator project - WordPress 用 simple-image-manipulator プラグインにおけるファイルをダウンロードされる脆弱性 CWE-Other
その他
CVE-2015-1000010 2016-10-12 11:46 2015-07-16 Show GitHub Exploit DB Packet Storm
202549 7.5 重要
Network
wptf-image-gallery project - WordPress 用 wptf-image-gallery プラグインにおけるファイルをダウンロードされる脆弱性 CWE-200
CWE-Other
CVE-2015-1000007 2016-10-12 11:46 2015-07-17 Show GitHub Exploit DB Packet Storm
202550 7.5 重要
Network
andycheeseman - WordPress 用 Recent Backups プラグインにおけるファイルをダウンロードされる脆弱性 CWE-22
パス・トラバーサル
CVE-2015-1000006 2016-10-12 11:46 2015-07-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292121 - jan_bednarik cooluri SQL injection vulnerability in the CoolURI extension before 1.0.30 for TYPO3 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. CWE-89
SQL Injection
CVE-2013-5322 2024-11-21 10:57 2013-08-21 Show GitHub Exploit DB Packet Storm
292122 - alienvault open_source_security_information_management Multiple SQL injection vulnerabilities in AlienVault Open Source Security Information Management (OSSIM) 4.1 allow remote attackers to execute arbitrary SQL commands via the (1) sensor parameter in a… CWE-89
SQL Injection
CVE-2013-5321 2024-11-21 10:57 2013-08-20 Show GitHub Exploit DB Packet Storm
292123 - sourcetreesolutions mojoportal Cross-site scripting (XSS) vulnerability in Forums/EditPost.aspx in mojoPortal before 2.3.9.8 allows remote attackers to inject arbitrary web script or HTML via the txtSubject parameter. CWE-79
Cross-site Scripting
CVE-2013-5320 2024-11-21 10:57 2013-08-20 Show GitHub Exploit DB Packet Storm
292124 - atlassian jira Cross-site scripting (XSS) vulnerability in secure/admin/user/views/deleteuserconfirm.jsp in the Admin Panel in Atlassian JIRA before 6.0.5 allows remote attackers to inject arbitrary web script or H… CWE-79
Cross-site Scripting
CVE-2013-5319 2024-11-21 10:57 2013-08-20 Show GitHub Exploit DB Packet Storm
292125 - benjamin_arnaudetr ginkgocms SQL injection vulnerability in Ginkgo CMS 5.0 allows remote attackers to execute arbitrary SQL commands via the rang parameter to index.php. CWE-89
SQL Injection
CVE-2013-5318 2024-11-21 10:57 2013-08-20 Show GitHub Exploit DB Packet Storm
292126 - ritecms ritecms Cross-site scripting (XSS) vulnerability in RiteCMS 1.0.0 allows remote authenticated users to inject arbitrary web script or HTML via the mode parameter to cms/index.php. CWE-79
Cross-site Scripting
CVE-2013-5317 2024-11-21 10:57 2013-08-20 Show GitHub Exploit DB Packet Storm
292127 - ritecms ritecms Cross-site request forgery (CSRF) vulnerability in RiteCMS 1.0.0 allows remote attackers to hijack the authentication of administrators for requests that change the administrator password via an edit… CWE-352
 Origin Validation Error
CVE-2013-5316 2024-11-21 10:57 2013-08-20 Show GitHub Exploit DB Packet Storm
292128 - ows scald Cross-site scripting (XSS) vulnerability in the Resource Manager in the MEE submodule (mee.module) in the Scald module 6.x-1.x before 6.x-1.0-beta3 and 7.x-1.x before 7.x-1.1 for Drupal allows remote… CWE-79
Cross-site Scripting
CVE-2013-5315 2024-11-21 10:57 2013-08-20 Show GitHub Exploit DB Packet Storm
292129 - s9y serendipity Cross-site scripting (XSS) vulnerability in serendipity_admin_image_selector.php in Serendipity 1.6.2 and earlier allows remote attackers to inject arbitrary web script or HTML via the serendipity[ht… CWE-79
Cross-site Scripting
CVE-2013-5314 2024-11-21 10:57 2013-08-20 Show GitHub Exploit DB Packet Storm
292130 - bigtreecms bigtree_cms Cross-site request forgery (CSRF) vulnerability in core/admin/modules/users/update.php in BigTree CMS 4.0 RC2 and earlier allows remote attackers to hijack the authentication of administrators for re… CWE-352
 Origin Validation Error
CVE-2013-5313 2024-11-21 10:57 2013-08-20 Show GitHub Exploit DB Packet Storm