Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 10, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216481 5.4 警告 core-apps - Android 用 Digital Content NewFronts 2014 アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7131 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
216482 5.4 警告 gannett - Android 用 Argus Leader Print Edition アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7129 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
216483 5.4 警告 toyotaownersclub - Android 用 Toyota OC アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7128 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
216484 5.4 警告 pocketmags - Android 用 Football Espana magazine アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7127 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
216485 5.4 警告 Magzter Inc. - Android 用 Motor アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7125 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
216486 5.4 警告 consulo - Android 用 IP Alarm アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7124 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
216487 5.4 警告 vbwebdesigner - Android 用 Brevir Harian V2 アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7123 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
216488 5.4 警告 gannett - Android 用 Lansing State Journal Print アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7122 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
216489 5.4 警告 Magzter Inc. - Android 用 Dhanam アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7121 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
216490 5.4 警告 pocketmags - Android 用 Model Laboratory アプリケーションにおけるサーバになりすまされる脆弱性 CWE-310
暗号の問題
CVE-2014-7120 2014-12-17 09:57 2014-09-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 10, 2026, 5 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1921 6.4 MEDIUM
Network
- - GigToDo 1.3 contains a persistent cross-site scripting vulnerability that allows authenticated attackers to inject malicious JavaScript and HTML code through the proposal description field. Attackers… CWE-79
Cross-site Scripting
CVE-2019-25739 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
1922 6.5 MEDIUM
Network
- - Joomla com_jsjobs 1.2.6 contains an arbitrary file deletion vulnerability that allows authenticated attackers to delete files by manipulating custom userfield parameters. Attackers can send POST requ… CWE-22
Path Traversal
CVE-2019-25740 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
1923 9.8 CRITICAL
Network
- - Mobatek MobaXterm 12.1 contains a structured exception handling (SEH) based buffer overflow vulnerability in the username field of session files that allows remote attackers to execute arbitrary code… CWE-120
Classic Buffer Overflow
CVE-2019-25741 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
1924 6.4 MEDIUM
Network
- - WordPress Theme Zoner Real Estate 4.1.1 contains a persistent cross-site scripting vulnerability that allows authenticated agents to inject malicious scripts through the Address input field when crea… CWE-79
Cross-site Scripting
CVE-2019-25742 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
1925 6.4 MEDIUM
Network
- - WordPress Soliloquy Lite 2.5.6 contains a persistent cross-site scripting vulnerability that allows authenticated attackers to inject malicious scripts by inserting script tags in the post title fiel… CWE-79
Cross-site Scripting
CVE-2019-25743 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
1926 6.4 MEDIUM
Network
- - WordPress Popup Builder 3.49 contains a persistent cross-site scripting vulnerability that allows authenticated attackers to inject malicious scripts by breaking out of option tags in the post_title … CWE-79
Cross-site Scripting
CVE-2019-25744 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
1927 8.2 HIGH
Network
- - WordPress Plugin Google Review Slider 6.1 contains a time-based blind SQL injection vulnerability that allows unauthenticated attackers to manipulate database queries by injecting SQL code through th… CWE-89
SQL Injection
CVE-2019-25745 2026-06-5 00:00 2026-06-4 Show GitHub Exploit DB Packet Storm
1928 7.3 HIGH
Network
- - A vulnerability was detected in SourceCodester Pizzafy E-Commerce System 1.0. Affected by this vulnerability is the function Login of the file /admin/admin_class_novo.php of the component Administrat… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10704 2026-06-4 23:58 2026-06-3 Show GitHub Exploit DB Packet Storm
1929 7.3 HIGH
Network
- - A vulnerability was identified in DedeCMS 5.7.88. The impacted element is the function dede_htmlspecialchars of the file /plus/flink.php. The manipulation of the argument msg leads to sql injection. … CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10607 2026-06-4 23:56 2026-06-3 Show GitHub Exploit DB Packet Storm
1930 7.3 HIGH
Network
- - A security flaw has been discovered in DedeCMS 5.7.88. This affects the function RemoveXSS of the file /plus/carbuyaction.php. The manipulation of the argument postname/des results in sql injection. … CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-10608 2026-06-4 23:56 2026-06-3 Show GitHub Exploit DB Packet Storm