Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
209091 6.8 警告 Mikiurl Wordpress Eklentisi project - WordPress 用 Mikiurl Wordpress Eklentisi プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-9337 2014-12-24 14:34 2014-12-9 Show GitHub Exploit DB Packet Storm
209092 6.8 警告 iTwitter project - WordPress 用 iTwitter プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-9336 2014-12-24 14:34 2014-12-9 Show GitHub Exploit DB Packet Storm
209093 6.8 警告 DandyID Services project - WordPress 用 DandyID Services プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2014-9335 2014-12-24 14:34 2014-12-9 Show GitHub Exploit DB Packet Storm
209094 6.5 警告 Sergey Romanenko - Morfy CMS の install.php における config.php に任意の PHP コード を挿入される脆弱性 CWE-94
コード・インジェクション
CVE-2014-9185 2014-12-24 11:58 2014-12-3 Show GitHub Exploit DB Packet Storm
209095 4.3 警告 Huawei - Huawei P7-L10 スマートフォンの PackageInstaller モジュールにおける元のウェブサイトになりすまされる脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2014-9135 2014-12-24 11:49 2014-11-20 Show GitHub Exploit DB Packet Storm
209096 5.8 警告 株式会社 T-MEDIAホールディングス - Android 版 TSUTAYAアプリにおける任意の Java のメソッドが実行される脆弱性 CWE-DesignError
CVE-2014-7241 2014-12-22 17:51 2014-12-18 Show GitHub Exploit DB Packet Storm
209097 2.6 注意 リックソフト株式会社 - WBS ガントチャート for JIRA におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-7268 2014-12-22 17:50 2014-12-18 Show GitHub Exploit DB Packet Storm
209098 4 警告 リックソフト株式会社 - WBS ガントチャート for JIRA におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-7267 2014-12-22 17:49 2014-12-18 Show GitHub Exploit DB Packet Storm
209099 5 警告 Revive Adserver - Revive Adserver の lib/pear/XML/RPC.php の XML_RPC_cd 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-Other
その他
CVE-2014-8875 2014-12-22 17:48 2014-08-8 Show GitHub Exploit DB Packet Storm
209100 4.3 警告 Revive Adserver - Revive Adserver の lib/max/Admin/UI/Field/PublisherIdField.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-8793 2014-12-22 17:44 2014-11-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 25, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
252301 - - - A vulnerability was found in Codezips Sales Management System 1.0. It has been declared as critical. Affected by this vulnerability is an unknown functionality of the file deletecustcom.php. The mani… CWE-89
SQL Injection
CVE-2024-10165 2024-10-22 02:09 2024-10-20 Show GitHub Exploit DB Packet Storm
252302 - - - A vulnerability has been found in PHPGurukul Boat Booking System 1.0 and classified as critical. This vulnerability affects unknown code of the file /admin/edit-subadmin.php of the component Edit Sub… CWE-89
SQL Injection
CVE-2024-10162 2024-10-22 02:09 2024-10-20 Show GitHub Exploit DB Packet Storm
252303 - - - A vulnerability, which was classified as critical, was found in PHPGurukul Boat Booking System 1.0. This affects an unknown part of the file change-image.php of the component Update Boat Image Page. … CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-10161 2024-10-22 02:09 2024-10-20 Show GitHub Exploit DB Packet Storm
252304 6.1 MEDIUM
Network
dh9sb.dx-info adif_log_search_widget Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in M. Konieczny, DH9SB ADIF Log Search Widget allows Reflected XSS.This issue affects ADIF Lo… CWE-79
Cross-site Scripting
CVE-2024-49238 2024-10-22 02:02 2024-10-18 Show GitHub Exploit DB Packet Storm
252305 5.4 MEDIUM
Network
javierloureiro el_mejor_cluster Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Javier Loureiro El mejor Cluster allows DOM-Based XSS.This issue affects El mejor Cluster:… CWE-79
Cross-site Scripting
CVE-2024-49232 2024-10-22 01:39 2024-10-18 Show GitHub Exploit DB Packet Storm
252306 5.4 MEDIUM
Network
petercyclop wordpress_video Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Peter CyClop WordPress Video allows Stored XSS.This issue affects WordPress Video: from n/… CWE-79
Cross-site Scripting
CVE-2024-49231 2024-10-22 01:37 2024-10-18 Show GitHub Exploit DB Packet Storm
252307 6.1 MEDIUM
Network
harpreetsingh ajax_custom_css\/js Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Harpreet Singh Ajax Custom CSS/JS allows Reflected XSS.This issue affects Ajax Custom CSS/… CWE-79
Cross-site Scripting
CVE-2024-49230 2024-10-22 01:37 2024-10-18 Show GitHub Exploit DB Packet Storm
252308 5.4 MEDIUM
Network
crossedcode bverse_convert Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in CrossedCode bVerse Convert allows Stored XSS.This issue affects bVerse Convert: from n/a t… CWE-79
Cross-site Scripting
CVE-2024-49228 2024-10-22 01:34 2024-10-18 Show GitHub Exploit DB Packet Storm
252309 5.4 MEDIUM
Network
swebdeveloper wppricing_builder Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Swebdeveloper wpPricing Builder allows Stored XSS.This issue affects wpPricing Builder: fr… CWE-79
Cross-site Scripting
CVE-2024-49225 2024-10-22 01:33 2024-10-18 Show GitHub Exploit DB Packet Storm
252310 6.1 MEDIUM
Network
maheshpatel mitm_bug_tracker Improper Neutralization of Input During Web Page Generation (XSS or 'Cross-site Scripting') vulnerability in Mahesh Patel Mitm Bug Tracker allows Reflected XSS.This issue affects Mitm Bug Tracker: fr… CWE-79
Cross-site Scripting
CVE-2024-49224 2024-10-22 01:31 2024-10-18 Show GitHub Exploit DB Packet Storm