Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
210141 5.4 警告 successsecrets - Android 用 successsecrets アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5992 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210142 5.4 警告 skin conditions and diseases project - Android 用 Skin Conditions and Diseases アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5991 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210143 5.4 警告 bookjam - Android 用 cookbible アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5990 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210144 5.4 警告 babydays - Android 用 baby days アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5989 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210145 5.4 警告 getjar - Android 用 Azkend Gold アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5988 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210146 5.4 警告 three - Android 用 My3 - by 3HK アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5987 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210147 5.4 警告 puzzles and matchup games project - Android 用 Educational Puzzles - Letters アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5986 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210148 5.4 警告 topappsbuilder project - Android 用 Animal Kaiser Zangetsu アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5985 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210149 5.4 警告 playcomo - Android 用 Little Dragons アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5984 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
210150 5.4 警告 threadflip - Android 用 Threadflip : Buy, Sell Fashion アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-5983 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
252241 6.1 MEDIUM
Network
- - The WooCommerce Multilingual & Multicurrency with WPML plugin for WordPress is vulnerable to Reflected Cross-Site Scripting due to the use of add_query_arg without appropriate escaping on the URL in … CWE-79
Cross-site Scripting
CVE-2024-8629 2024-10-10 21:56 2024-10-8 Show GitHub Exploit DB Packet Storm
252242 - - - CWE-20: Improper Input Validation vulnerability exists that could cause a crash of the Zelio Soft 2 application when a specially crafted project file is loaded by an application user. CWE-20
 Improper Input Validation 
CVE-2024-8518 2024-10-10 21:56 2024-10-8 Show GitHub Exploit DB Packet Storm
252243 6.4 MEDIUM
Network
- - The Easy Mega Menu Plugin for WordPress – ThemeHunk plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the ‘themehunk_megamenu_bg_image' parameter in all versions up to, and includ… CWE-79
Cross-site Scripting
CVE-2024-8433 2024-10-10 21:56 2024-10-8 Show GitHub Exploit DB Packet Storm
252244 - - - A possible buffer overflow in selected cameras' drivers from XProtect Device Pack can allow an attacker with access to internal network to execute commands on Recording Server under strict conditions. - CVE-2024-3506 2024-10-10 21:56 2024-10-8 Show GitHub Exploit DB Packet Storm
252245 9.8 CRITICAL
Network
- - The LatePoint plugin for WordPress is vulnerable to authentication bypass in versions up to, and including, 5.0.12. This is due to insufficient verification on the user being supplied during the boo… CWE-288
Authentication Bypass Using an Alternate Path or Channel
CVE-2024-8943 2024-10-10 21:56 2024-10-8 Show GitHub Exploit DB Packet Storm
252246 9.8 CRITICAL
Network
- - The LatePoint plugin for WordPress is vulnerable to Arbitrary User Password Change via SQL Injection in versions up to, and including, 5.0.11. This is due to insufficient escaping on the user supplie… CWE-89
SQL Injection
CVE-2024-8911 2024-10-10 21:56 2024-10-8 Show GitHub Exploit DB Packet Storm
252247 - - - A vulnerability has been identified in Simcenter Nastran 2306 (All versions), Simcenter Nastran 2312 (All versions), Simcenter Nastran 2406 (All versions < V2406.5000). The affected application is vu… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2024-47046 2024-10-10 21:56 2024-10-8 Show GitHub Exploit DB Packet Storm
252248 - - - The web server of affected devices do not properly authenticate user request to the '/ClientArea/RuntimeInfoData.mwsl' endpoint. This could allow an unauthenticated remote attacker to gain knowledge … CWE-288
Authentication Bypass Using an Alternate Path or Channel
CVE-2024-46887 2024-10-10 21:56 2024-10-8 Show GitHub Exploit DB Packet Storm
252249 - - - The web server of affected devices does not properly validate input that is used for a user redirection. This could allow an attacker to make the server redirect the legitimate user to an attacker-ch… - CVE-2024-46886 2024-10-10 21:56 2024-10-8 Show GitHub Exploit DB Packet Storm
252250 - - - A vulnerability has been identified in Simcenter Nastran 2306 (All versions), Simcenter Nastran 2312 (All versions), Simcenter Nastran 2406 (All versions < V2406.5000). The affected application is vu… CWE-122
Heap-based Buffer Overflow
CVE-2024-41981 2024-10-10 21:56 2024-10-8 Show GitHub Exploit DB Packet Storm