Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
209011 6.5 警告 WP Symposium - WordPress 用 WP Symposium プラグインの ajax/mail_functions.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2014-8810 2015-01-5 17:00 2014-11-26 Show GitHub Exploit DB Packet Storm
209012 4.3 警告 WP Symposium - WordPress 用 WP Symposium プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8809 2015-01-5 17:00 2014-11-26 Show GitHub Exploit DB Packet Storm
209013 10 危険 Allegro Software Development Corporation - Huawei ホームゲートウェイ製品などで使用される AllegroSoft RomPager におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2014-9223 2015-01-5 16:25 2014-12-24 Show GitHub Exploit DB Packet Storm
209014 7.5 危険 BSD mailx project
Heirloom
レッドハット
オラクル
- Heirloom mailx および BSD mailx の fio.c の expand 関数における任意のコマンドを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2004-2771 2015-01-5 15:15 2004-10-29 Show GitHub Exploit DB Packet Storm
209015 7.5 危険 Google - Google Chrome の WebKit の WebCore の rendering/svg/RenderSVGText.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2011-1798 2015-01-5 14:41 2011-04-16 Show GitHub Exploit DB Packet Storm
209016 7.5 危険 Google - Google Chrome の WebKit の WebCore の page/FrameView.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2011-1796 2015-01-5 14:41 2011-04-19 Show GitHub Exploit DB Packet Storm
209017 7.5 危険 Google - Google Chrome の WebKit の WebCore の html/HTMLFormElement.cpp における整数アンダーフローの脆弱性 CWE-189
数値処理の問題
CVE-2011-1795 2015-01-5 14:41 2011-04-12 Show GitHub Exploit DB Packet Storm
209018 7.5 危険 Google - Google Chrome の WebKit の WebCore の SVG フィルタの実装における整数オーバーフローの脆弱性 CWE-189
数値処理の問題
CVE-2011-1794 2015-01-5 14:40 2011-04-20 Show GitHub Exploit DB Packet Storm
209019 7.5 危険 Google - Google Chrome の WebKit の rendering/svg/RenderSVGResourceFilter.cpp におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2011-1793 2015-01-5 14:40 2011-04-30 Show GitHub Exploit DB Packet Storm
209020 7.2 危険 Linux - MSM デバイス用 Qualcomm Innovation Center Android コントリビューションなどで使用される Linux Kernel 用 QSEECOM ドライバにおける権限を取得される脆弱性 CWE-119
バッファエラー
CVE-2014-4322 2015-01-5 12:15 2014-12-22 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
252401 8.0 HIGH
Network
microfocus application_automation_tools Improper Restriction of XML External Entity Reference vulnerability in OpenText Application Automation Tools allows DTD Injection.This issue affects OpenText Application Automation Tools: 24.1.0 and … CWE-611
XXE
CVE-2024-4690 2024-10-22 00:51 2024-10-17 Show GitHub Exploit DB Packet Storm
252402 8.1 HIGH
Network
oracle e-business_suite Vulnerability in the Oracle Cost Management product of Oracle E-Business Suite (component: Cost Planning). Supported versions that are affected are 12.2.12-12.2.13. Easily exploitable vulnerability … NVD-CWE-noinfo
CVE-2024-21267 2024-10-22 00:50 2024-10-16 Show GitHub Exploit DB Packet Storm
252403 8.1 HIGH
Network
oracle e-business_suite Vulnerability in the Oracle Advanced Pricing product of Oracle E-Business Suite (component: Price List). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability all… NVD-CWE-noinfo
CVE-2024-21266 2024-10-22 00:49 2024-10-16 Show GitHub Exploit DB Packet Storm
252404 8.1 HIGH
Network
oracle e-business_suite Vulnerability in the Oracle Site Hub product of Oracle E-Business Suite (component: Site Hierarchy Flows). Supported versions that are affected are 12.2.3-12.2.13. Easily exploitable vulnerability a… NVD-CWE-noinfo
CVE-2024-21265 2024-10-22 00:49 2024-10-16 Show GitHub Exploit DB Packet Storm
252405 8.0 HIGH
Network
microfocus application_automation_tools Improper Restriction of XML External Entity Reference vulnerability in OpenText Application Automation Tools allows DTD Injection.This issue affects OpenText Application Automation Tools: 24.1.0 and … CWE-611
XXE
CVE-2024-4184 2024-10-21 23:09 2024-10-17 Show GitHub Exploit DB Packet Storm
252406 8.0 HIGH
Network
microfocus application_automation_tools Improper Restriction of XML External Entity Reference vulnerability in OpenText Application Automation Tools allows DTD Injection.This issue affects OpenText Application Automation Tools: 24.1.0 and … CWE-611
XXE
CVE-2024-4189 2024-10-21 23:08 2024-10-17 Show GitHub Exploit DB Packet Storm
252407 5.5 MEDIUM
Network
ibm websphere_application_server IBM WebSphere Application Server 8.5 and 9.0 is vulnerable to an XML External Entity Injection (XXE) attack when processing XML data. A privileged user could exploit this vulnerability to expose sens… CWE-611
XXE
CVE-2024-45072 2024-10-21 22:41 2024-10-17 Show GitHub Exploit DB Packet Storm
252408 4.8 MEDIUM
Network
ibm websphere_application_server IBM WebSphere Application Server 8.5 and 9.0 is vulnerable to stored cross-site scripting. This vulnerability allows a privileged user to embed arbitrary JavaScript code in the Web UI thus altering t… CWE-79
Cross-site Scripting
CVE-2024-45071 2024-10-21 22:41 2024-10-17 Show GitHub Exploit DB Packet Storm
252409 5.5 MEDIUM
Local
linux linux_kernel In the Linux kernel, the following vulnerability has been resolved: nilfs2: fix state management in error path of log writing function After commit a694291a6211 ("nilfs2: separate wait function fro… NVD-CWE-noinfo
CVE-2024-47669 2024-10-21 22:28 2024-10-10 Show GitHub Exploit DB Packet Storm
252410 7.5 HIGH
Network
rockwellautomation controllogix_5580_firmware
controllogix_5580_process_firmware
guardlogix_5580_firmware
compactlogix_5380_firmware
compact_guardlogix_5380_sil_2_firmware
compact_guardlogix_5380_sil_3_f…
CVE 2021-22681 https://www.rockwellautomation.com/en-us/trust-center/security-advisories/advisory.PN1550.html  and send a specially crafted CIP message to the device. If exploited, a threat actor co… NVD-CWE-noinfo
CVE-2024-6207 2024-10-21 22:20 2024-10-15 Show GitHub Exploit DB Packet Storm