Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
203721 6.7 警告
Local
オラクル - Oracle Virtualization の Oracle VM VirtualBox における Core に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5538 2016-10-28 14:08 2016-10-18 Show GitHub Exploit DB Packet Storm
203722 7.5 重要
Network
オラクル - Oracle Fusion Middleware の Oracle Discoverer における EUL Code & Schema に関する脆弱性 CWE-200
CWE-Other
CVE-2016-5495 2016-10-28 14:01 2016-10-18 Show GitHub Exploit DB Packet Storm
203723 5.9 警告
Network
オラクル - Oracle Supply Chain Products Suite の Oracle Agile PLM における Security に関する脆弱性 CWE-Other
その他
CVE-2016-5527 2016-10-28 13:59 2016-10-18 Show GitHub Exploit DB Packet Storm
203724 6.4 警告
Local
オラクル - Oracle Database Server の RDBMS Security における脆弱性 CWE-Other
その他
CVE-2016-5497 2016-10-28 13:58 2016-10-18 Show GitHub Exploit DB Packet Storm
203725 4.2 警告
Network
オラクル - Oracle Financial Services Applications の Oracle FLEXCUBE Private Banking における Admin に関する脆弱性 CWE-Other
その他
CVE-2016-5493 2016-10-28 13:56 2016-10-18 Show GitHub Exploit DB Packet Storm
203726 7.1 重要
Local
オラクル - Oracle Sun Systems Products Suite の Sun ZFS Storage Appliance Kit (AK) における SMB Users に関する脆弱性 CWE-Other
その他
CVE-2016-5492 2016-10-28 13:55 2016-10-18 Show GitHub Exploit DB Packet Storm
203727 8.2 重要
Network
オラクル - Oracle Commerce の Oracle Commerce Service Center における Commerce Service Center に関する脆弱性 CWE-Other
その他
CVE-2016-5491 2016-10-28 13:52 2016-10-18 Show GitHub Exploit DB Packet Storm
203728 8.2 重要
Network
オラクル - Oracle Commerce の Oracle Commerce Guided Search における Oracle Commerce Guided Search に関する脆弱性 CWE-Other
その他
CVE-2016-5482 2016-10-28 13:52 2016-10-18 Show GitHub Exploit DB Packet Storm
203729 2.4
Network
オラクル - Oracle Database Server の RDBMS Security and SQL*Plus における脆弱性 CWE-200
情報漏えい
CVE-2016-3562 2016-10-28 13:51 2016-10-18 Show GitHub Exploit DB Packet Storm
203730 5.5 警告
Local
オラクル - Oracle Sun Systems Products Suite の Solaris における Kernel Zones に関する脆弱性 CWE-Other
その他
CVE-2016-5576 2016-10-28 13:44 2016-10-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291911 6.1 MEDIUM
Network
keplerproject cgilua The session.lua library in CGILua 5.1.x uses the same ID for each session, which allows remote attackers to hijack arbitrary sessions. NOTE: this vulnerability was SPLIT from CVE-2014-2875. CWE-384
 Session Fixation
CVE-2014-10399 2024-11-21 11:03 2020-02-7 Show GitHub Exploit DB Packet Storm
291912 6.1 MEDIUM
Network
bssys rbs_bs-client._retail_client Multiple cross-site scripting (XSS) vulnerabilities in bsi.dll in Bank Soft Systems (BSS) RBS BS-Client. Private Client (aka RBS BS-Client. Retail Client) 2.5, 2.4, and earlier allow remote attackers… CWE-79
Cross-site Scripting
CVE-2014-10398 2024-11-21 11:03 2020-01-4 Show GitHub Exploit DB Packet Storm
291913 6.1 MEDIUM
Network
ideagen q-pulse Cross-site scripting (XSS) vulnerability in ui/common/managedlistdialog.aspx in Gael Q-Pulse 0.6 and earlier. CWE-79
Cross-site Scripting
CVE-2014-1238 2024-11-21 11:03 2019-11-23 Show GitHub Exploit DB Packet Storm
291914 8.8 HIGH
Network
projoom smart_flash_header views/upload.php in the ProJoom Smart Flash Header (NovaSFH) component 3.0.2 and earlier for Joomla! allows remote attackers to upload and execute arbitrary files via a crafted (1) dest parameter and… CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2014-1214 2024-11-21 11:03 2019-11-14 Show GitHub Exploit DB Packet Storm
291915 7.5 HIGH
Network
para antioch The Antioch theme through 2014-09-07 for WordPress allows arbitrary file downloads via the file parameter to lib/scripts/download.php. CWE-22
Path Traversal
CVE-2014-10397 2024-11-21 11:03 2019-09-21 Show GitHub Exploit DB Packet Storm
291916 7.5 HIGH
Network
organizedthemes epic The epic theme through 2014-09-07 for WordPress allows arbitrary file downloads via the file parameter to includes/download.php. CWE-22
Path Traversal
CVE-2014-10396 2024-11-21 11:03 2019-09-21 Show GitHub Exploit DB Packet Storm
291917 6.1 MEDIUM
Network
codepeople polls_cp The cp-polls plugin before 1.0.1 for WordPress has XSS in the votes list. CWE-79
Cross-site Scripting
CVE-2014-10395 2024-11-21 11:03 2019-08-27 Show GitHub Exploit DB Packet Storm
291918 6.1 MEDIUM
Network
cformsii_project cformsii The cforms2 plugin before 10.5 for WordPress has XSS. CWE-79
Cross-site Scripting
CVE-2014-10393 2024-11-21 11:03 2019-08-23 Show GitHub Exploit DB Packet Storm
291919 6.1 MEDIUM
Network
3cx live_chat The wp-live-chat-support plugin before 4.1.0 for WordPress has JavaScript injections. CWE-74
Injection
CVE-2014-10386 2024-11-21 11:03 2019-08-23 Show GitHub Exploit DB Packet Storm
291920 4.3 MEDIUM
Network
pippinsplugins featured_comments The feature-comments plugin before 1.2.5 for WordPress has CSRF for featuring or burying a comment. CWE-352
 Origin Validation Error
CVE-2014-10382 2024-11-21 11:03 2019-08-23 Show GitHub Exploit DB Packet Storm