Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
205471 8.8 重要
Network
アップル - 複数の Apple 製品などの WebKit における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-4623 2016-07-29 14:17 2016-07-18 Show GitHub Exploit DB Packet Storm
205472 8.8 重要
Network
アップル - 複数の Apple 製品などの WebKit における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-4622 2016-07-29 14:17 2016-07-18 Show GitHub Exploit DB Packet Storm
205473 8.8 重要
Network
アップル - Apple OS X の QuickTime における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-4601 2016-07-29 14:17 2016-07-18 Show GitHub Exploit DB Packet Storm
205474 5.9 警告
Local
アップル - 複数の Apple 製品のサンドボックスプロファイルコンポーネントにおけるプロセスリストにアクセスされる脆弱性 CWE-20
不適切な入力確認
CVE-2016-4594 2016-07-29 13:47 2016-07-18 Show GitHub Exploit DB Packet Storm
205475 2.4
Physics
アップル - Apple iOS の Siri Contacts コンポーネントにおける任意の連絡先カード情報を読まれる脆弱性 CWE-200
情報漏えい
CVE-2016-4593 2016-07-29 13:47 2016-07-18 Show GitHub Exploit DB Packet Storm
205476 6.5 警告
Network
アップル - Apple iOS および tvOS などで使用される WebKit におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2016-4592 2016-07-29 13:47 2016-07-18 Show GitHub Exploit DB Packet Storm
205477 7.5 重要
Network
アップル - 複数の Apple 製品で使用される WebKit におけるローカルファイルシステムにアクセスされる脆弱性 CWE-Other
その他
CVE-2016-4591 2016-07-29 13:47 2016-07-18 Show GitHub Exploit DB Packet Storm
205478 5.4 警告
Network
アップル - Apple iOS および Safari などで使用される WebKit における同一生成元ポリシーを回避される脆弱性 CWE-20
不適切な入力確認
CVE-2016-4590 2016-07-29 13:47 2016-07-18 Show GitHub Exploit DB Packet Storm
205479 8.8 重要
Network
アップル - 複数の Apple 製品で使用される WebKit における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-4589 2016-07-29 13:47 2016-07-18 Show GitHub Exploit DB Packet Storm
205480 8.8 重要
Network
アップル - Apple tvOS などで使用される WebKit における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2016-4588 2016-07-29 13:47 2016-07-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 15, 2026, 4:10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1741 4.3 MEDIUM
Network
- - The AJAX Report Comments plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 2.0.4. This is due to missing or incorrect nonce validation on the rc_o… CWE-352
 Origin Validation Error
CVE-2026-8902 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm
1742 4.3 MEDIUM
Network
- - The FastPicker, an order picker and order management system (oms) for WooCommerce on steroids plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.… CWE-352
 Origin Validation Error
CVE-2026-8904 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm
1743 6.1 MEDIUM
Network
- - The WP Emoticon Rating plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 1.0.1. This is due to missing or incorrect nonce validation on a function… CWE-352
 Origin Validation Error
CVE-2026-8910 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm
1744 4.3 MEDIUM
Network
- - The WP Meta Sort Posts plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0.9. This is due to missing or incorrect nonce validation on the top-leve… CWE-352
 Origin Validation Error
CVE-2026-8940 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm
1745 8.1 HIGH
Network
- - The Recover Exit For WooCommerce plugin for WordPress is vulnerable to Local File Inclusion in all versions up to and including 1.0.3. This is due to insufficient validation and sanitization of the u… CWE-98
 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')
CVE-2026-9662 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm
1746 6.1 MEDIUM
Network
- - The WP-Ultimate-Map plugin for WordPress is vulnerable to Cross-Site Request Forgery in versions up to, and including, 1.1. This is due to missing nonce validation on the process_init() function hook… CWE-352
 Origin Validation Error
CVE-2026-8907 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm
1747 4.3 MEDIUM
Network
- - The WpMobi plugin for WordPress is vulnerable to Cross-Site Request Forgery in all versions up to, and including, 0.0.3. This is due to missing or incorrect nonce validation on the handleSaveGeneralS… CWE-352
 Origin Validation Error
CVE-2026-8909 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm
1748 6.4 MEDIUM
Network
- - The WP GDPR Cookie Consent plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'ninja_gdpr_ajax_actions' AJAX action in versions up to, and including, 1.0.0. This is due to miss… CWE-79
Cross-site Scripting
CVE-2026-8977 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm
1749 7.5 HIGH
Network
- - The 6Storage Rentals plugin for WordPress is vulnerable to Authorization Bypass Through User-Controlled Key in all versions up to and including 2.22.0 via the `userId` parameter of the `six_storage_g… CWE-639
 Authorization Bypass Through User-Controlled Key
CVE-2026-9185 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm
1750 8.8 HIGH
Network
- - The Events Calendar for GeoDirectory plugin for WordPress is vulnerable to Privilege Escalation in versions up to and including 2.3.28. This is due to the ajax_ayi_action() handler only applying str… CWE-269
 Improper Privilege Management
CVE-2026-11616 2026-06-9 22:33 2026-06-9 Show GitHub Exploit DB Packet Storm