Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 6:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
205181 9.8 緊急
Network
オラクル - Oracle Fusion Middleware の Oracle WebLogic Server における WLS Core Components に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-3586 2016-07-27 14:16 2016-07-19 Show GitHub Exploit DB Packet Storm
205182 8.1 重要
Network
オラクル - Oracle Fusion Middleware の Oracle TopLink における JPA-RS に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-3564 2016-07-27 14:15 2016-07-19 Show GitHub Exploit DB Packet Storm
205183 7.6 重要
Network
オラクル - Oracle Fusion Middleware の Oracle Business Intelligence Enterprise Edition における Analytics Web General に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-3544 2016-07-27 14:15 2016-07-19 Show GitHub Exploit DB Packet Storm
205184 8.1 重要
Local
オラクル - Oracle Java SE における Install に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-3552 2016-07-27 10:59 2016-07-19 Show GitHub Exploit DB Packet Storm
205185 7.7 重要
Local
オラクル - Oracle Java SE における Deployment に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-3511 2016-07-27 10:59 2016-07-19 Show GitHub Exploit DB Packet Storm
205186 5.3 警告
Network
オラクル - Oracle Java SE における JavaFX に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-3498 2016-07-27 10:59 2016-07-19 Show GitHub Exploit DB Packet Storm
205187 9.8 緊急
Network
オラクル - Oracle Virtualization の Oracle Secure Global Desktop における OpenSSL に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-3613 2016-07-27 10:30 2016-07-19 Show GitHub Exploit DB Packet Storm
205188 9 緊急
Network
オラクル - Oracle Database Server の OJVM における脆弱性 CWE-noinfo
情報不足
CVE-2016-3609 2016-07-27 10:01 2016-07-19 Show GitHub Exploit DB Packet Storm
205189 7.6 重要
Network
オラクル - Oracle Retail Applications の Oracle Retail Integration Bus における Install に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-5476 2016-07-27 09:57 2016-07-19 Show GitHub Exploit DB Packet Storm
205190 5.4 警告
Network
オラクル - Oracle Retail Applications の Oracle Retail Order Broker における System Administration に関する脆弱性 CWE-noinfo
情報不足
CVE-2016-3611 2016-07-27 09:57 2016-07-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1061 6.4 MEDIUM
Network
- - The Enable Media Replace plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘location_dir’ parameter in all versions up to, and including, 4.1.8 due to insufficient input sanit… New CWE-79
Cross-site Scripting
CVE-2026-5714 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm
1062 7.2 HIGH
Network
- - The FV Flowplayer Video Player plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the comment text in all versions up to, and including, 7.5.49.7212 due to insufficient input sanit… New CWE-79
Cross-site Scripting
CVE-2026-7556 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm
1063 6.4 MEDIUM
Network
- - The TinyMCE shortcode Addon plugin for WordPress is vulnerable to Stored Cross-Site Scripting via 'btnrel' Shortcode Attribute in all versions up to, and including, 1.0.0 due to insufficient input sa… New CWE-79
Cross-site Scripting
CVE-2026-10024 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm
1064 4.3 MEDIUM
Network
- - The jQuery Hover Footnotes plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.4. This is due to missing or incorrect nonce validation on the jqFo… New CWE-352
 Origin Validation Error
CVE-2026-10553 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm
1065 6.4 MEDIUM
Network
- - The jQuery Hover Footnotes plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Footnote Qualifier ('{{...}}' Syntax) in all versions up to, and including, 1.4 due to insufficient in… New CWE-79
Cross-site Scripting
CVE-2026-10738 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm
1066 6.1 MEDIUM
Network
- - The Product Filter Widget for Elementor plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via 'args[filterFormArray]' Parameter in all versions up to, and including, 1.0.6 due to i… New CWE-79
Cross-site Scripting
CVE-2026-11603 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm
1067 4.5 MEDIUM
Local
- - A security vulnerability has been detected in tmux up to 3.6a. Affected is the function image_free of the file image.c. Such manipulation leads to use after free. Local access is required to approach… New CWE-119
CWE-416
Incorrect Access of Indexable Resource ('Range Error') 
 Use After Free
CVE-2026-11623 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm
1068 6.4 MEDIUM
Network
- - The ePaperFlip Publisher plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'publicationid' attribute of the `epaperflip_embed` shortcode in all versions up to, and including, … New CWE-79
Cross-site Scripting
CVE-2026-7662 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm
1069 5.3 MEDIUM
Network
- - The Helpfulcrowd Product Reviews plugin for WordPress is vulnerable to Authorization Bypass via PHP Type Juggling in versions up to, and including, 1.2.9. This is due to the `helpfulcrowd_validate_to… New CWE-843
Type Confusion
CVE-2026-8499 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm
1070 6.4 MEDIUM
Network
- - The Extra Settings for RocketChat plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'rocketchat' shortcode's 'title' attribute in versions up to, and including, 0.1. This is d… New CWE-79
Cross-site Scripting
CVE-2026-8841 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm