Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
203731 7.5 重要
Network
サムスン - Samsung Note デバイスの SystemUI における整数オーバーフローの脆弱性 CWE-Other
その他
CVE-2016-9277 2016-11-16 11:42 2016-08-16 Show GitHub Exploit DB Packet Storm
203732 9.8 緊急
Network
Exponent CMS project - Exponent CMS の framework/modules/navigation/controllers/navigationController.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-9288 2016-11-16 10:22 2016-11-3 Show GitHub Exploit DB Packet Storm
203733 5.3 警告
Network
Exponent CMS project - Exponent CMS の framework/modules/users/controllers/usersController.php におけるアドレス情報を読まれる脆弱性 CWE-200
情報漏えい
CVE-2016-9286 2016-11-16 10:22 2016-11-6 Show GitHub Exploit DB Packet Storm
203734 5.3 警告
Network
Exponent CMS project - Exponent CMS の framework/modules/addressbook/controllers/addressController.php におけるユーザ情報を読まれる脆弱性 CWE-200
情報漏えい
CVE-2016-9285 2016-11-16 10:22 2016-11-3 Show GitHub Exploit DB Packet Storm
203735 5.3 警告
Network
Exponent CMS project - Exponent CMS の framework/modules/users/controllers/usersController.php における SQL インジェクションの脆弱性 CWE-200
情報漏えい
CVE-2016-9284 2016-11-16 10:22 2016-11-3 Show GitHub Exploit DB Packet Storm
203736 7.5 重要
Network
Exponent CMS project - Exponent CMS の framework/core/subsystems/expRouter.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-9283 2016-11-16 10:22 2016-11-4 Show GitHub Exploit DB Packet Storm
203737 7.5 重要
Network
Exponent CMS project - Exponent CMS の framework/modules/search/controllers/searchController.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-9282 2016-11-16 10:22 2016-11-3 Show GitHub Exploit DB Packet Storm
203738 9.1 緊急
Network
Exponent CMS project - Exponent CMS におけるブラインド SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2016-9272 2016-11-16 10:22 2016-11-6 Show GitHub Exploit DB Packet Storm
203739 6.1 警告
Network
MoinMoin - MoinMoin における "JavaScript インジェクション" 攻撃を実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-7148 2016-11-15 17:56 2016-10-31 Show GitHub Exploit DB Packet Storm
203740 6.1 警告
Network
MoinMoin - MoinMoin における "JavaScript インジェクション" 攻撃を実行される脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2016-7146 2016-11-15 17:56 2016-10-31 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 17, 2026, 4:19 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
289611 - wp_consultant_project wp_consultant Cross-site scripting (XSS) vulnerability in admin/admin_show_dialogs.php in the WP Consultant plugin 1.0 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via t… CWE-79
Cross-site Scripting
CVE-2014-4582 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm
289612 - wp_blipbot_project wp_blipbot Cross-site scripting (XSS) vulnerability in blipbot.ajax.php in the WP BlipBot plugin 3.0.9 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the BlipBotID … CWE-79
Cross-site Scripting
CVE-2014-4580 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm
289613 - wp_appointments_schedules_project wp_appointments_schedules Cross-site scripting (XSS) vulnerability in js/test.php in the Appointments Scheduler plugin 1.5 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the lang … CWE-79
Cross-site Scripting
CVE-2014-4579 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm
289614 - wp_app_maker_project wp_app_maker Cross-site scripting (XSS) vulnerability in asset-studio/icons-launcher.php in the WP App Maker plugin 1.0.16.4 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTM… CWE-79
Cross-site Scripting
CVE-2014-4578 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm
289615 - wordpress_social_login_project wordpress_social_login Cross-site scripting (XSS) vulnerability in services/diagnostics.php in the WordPress Social Login plugin 2.0.3 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTM… CWE-79
Cross-site Scripting
CVE-2014-4576 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm
289616 - webengage_project webengage Cross-site scripting (XSS) vulnerability in resize.php in the WebEngage plugin before 2.0.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the height parameter. CWE-79
Cross-site Scripting
CVE-2014-4574 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm
289617 - walk_score_project walk_score Multiple cross-site scripting (XSS) vulnerabilities in frame-maker.php in the Walk Score plugin 0.5.5 and earlier for WordPress allow remote attackers to inject arbitrary web script or HTML via the (… CWE-79
Cross-site Scripting
CVE-2014-4573 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm
289618 - votecount_for_balatarin_project votecount_for_balatarin Cross-site scripting (XSS) vulnerability in bvc.php in the Votecount for Balatarin plugin 0.1.1 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the (1) ur… CWE-79
Cross-site Scripting
CVE-2014-4572 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm
289619 - videowhisper video_presentation Multiple cross-site scripting (XSS) vulnerabilities in the VideoWhisper Video Presentation plugin before 3.31 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) r… CWE-79
Cross-site Scripting
CVE-2014-4570 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm
289620 - videowhisper video_posts_webcam_recorder Cross-site scripting (XSS) vulnerability in posts/videowhisper/r_logout.php in the Video Posts Webcam Recorder plugin 1.55.4 and earlier for WordPress allows remote attackers to inject arbitrary web … CWE-79
Cross-site Scripting
CVE-2014-4568 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm