Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216601 4.3 警告 wp-tmkm-amazon project - WordPress 用 wp-tmkm-amazon プラグインの wp-tmkm-amazon-search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4598 2014-07-7 18:26 2014-06-12 Show GitHub Exploit DB Packet Storm
216602 4.3 警告 Shaon - WordPress 用 Hot Files: File Sharing and Download Manager プラグインの tpls/editmedia.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4588 2014-07-7 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
216603 4.3 警告 SVN Labs Softwares. - WordPress 用 HTML5 Video Player with Playlist プラグインの videoplayer/autoplay.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4534 2014-07-7 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
216604 4.3 警告 SnapApp - WordPress 用 SnapApp プラグインの js/button-snapapp.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4596 2014-07-7 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
216605 4.3 警告 WP GuestMap project - WordPress 用 WP GuestMap プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4587 2014-07-7 18:26 2014-06-12 Show GitHub Exploit DB Packet Storm
216606 4.3 警告 WP Consultant project - WordPress 用 WP Consultant プラグインの admin/admin_show_dialogs.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4582 2014-07-7 18:26 2014-06-12 Show GitHub Exploit DB Packet Storm
216607 4.3 警告 Zen-Dreams - WordPress 用 ZdStatistics プラグインの cal/test.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4605 2014-07-7 18:26 2014-05-28 Show GitHub Exploit DB Packet Storm
216608 4.3 警告 WP RESTful project - WordPress 用 WP RESTful プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4595 2014-07-7 18:26 2014-06-12 Show GitHub Exploit DB Packet Storm
216609 4.3 警告 Jordesign - WordPress 用 WordPress Responsive Preview プラグインの index.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4594 2014-07-7 18:26 2014-06-12 Show GitHub Exploit DB Packet Storm
216610 4.3 警告 WP BlipBot project - WordPress 用 WP BlipBot プラグインの blipbot.ajax.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4580 2014-07-7 18:26 2014-06-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
293191 - redhat jboss_enterprise_data_services_platform The Teiid Java Database Connectivity (JDBC) socket, as used in JBoss Enterprise Data Services Platform before 5.3.0, does not encrypt login messages by default contrary to documentation and specifica… CWE-310
Cryptographic Issues
CVE-2012-3431 2024-11-21 10:40 2012-11-24 Show GitHub Exploit DB Packet Storm
293192 - fedoraproject
dokuwiki
fedora
dokuwiki
doku.php in DokuWiki, as used in Fedora 16, 17, and 18, when certain PHP error levels are set, allows remote attackers to obtain sensitive information via the prefix parameter, which reveals the inst… CWE-200
Information Exposure
CVE-2012-3354 2024-11-21 10:40 2012-11-20 Show GitHub Exploit DB Packet Storm
293193 - ibm websphere_application_server The proxy server in IBM WebSphere Application Server 7.0 before 7.0.0.27, 8.0 before 8.0.0.5, and 8.5 before 8.5.0.1, and WebSphere Virtual Enterprise, allows remote attackers to cause a denial of se… NVD-CWE-noinfo
CVE-2012-3330 2024-11-21 10:40 2012-11-14 Show GitHub Exploit DB Packet Storm
293194 - ibm tivoli_federated_identity_manager
tivoli_federated_identity_manager_business_gateway
The Java servlets in the management console in IBM Tivoli Federated Identity Manager (TFIM) through 6.2.2 and Tivoli Federated Identity Manager Business Gateway (TFIMBG) before 6.2.2 do not require a… CWE-287
Improper Authentication
CVE-2012-3315 2024-11-21 10:40 2012-11-8 Show GitHub Exploit DB Packet Storm
293195 - hp performance_insight Unspecified vulnerability in HP Performance Insight 5.31, 5.40, and 5.41, when Sybase is used, allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via u… NVD-CWE-noinfo
CVE-2012-3270 2024-11-21 10:40 2012-11-8 Show GitHub Exploit DB Packet Storm
293196 - hp performance_insight Unspecified vulnerability in HP Performance Insight 5.31, 5.40, and 5.41, when Sybase is used, allows remote attackers to obtain sensitive information, modify data, or cause a denial of service via u… NVD-CWE-noinfo
CVE-2012-3269 2024-11-21 10:40 2012-11-8 Show GitHub Exploit DB Packet Storm
293197 5.9 MEDIUM
Network
apache libcloud Apache Libcloud before 0.11.1 uses an incorrect regular expression during verification of whether the server hostname matches a domain name in the subject's Common Name (CN) or subjectAltName field o… CWE-295
Improper Certificate Validation 
CVE-2012-3446 2024-11-21 10:40 2012-11-5 Show GitHub Exploit DB Packet Storm
293198 - ge intelligent_platforms_proficy_real-time_information_portal rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 through 3.5 SP1 allows remote attackers to cause a denial of service (memory corruptio… CWE-20
 Improper Input Validation 
CVE-2012-3026 2024-11-21 10:40 2012-11-1 Show GitHub Exploit DB Packet Storm
293199 - ge intelligent_platforms_proficy_real-time_information_portal rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 through 3.5 SP1 allows remote attackers to cause a denial of service (memory corruptio… CWE-20
 Improper Input Validation 
CVE-2012-3021 2024-11-21 10:40 2012-11-1 Show GitHub Exploit DB Packet Storm
293200 - ge intelligent_platforms_proficy_real-time_information_portal rifsrvd.exe in the Remote Interface Service in GE Intelligent Platforms Proficy Real-Time Information Portal 2.6 through 3.5 SP1 allows remote attackers to cause a denial of service (memory corruptio… CWE-20
 Improper Input Validation 
CVE-2012-3010 2024-11-21 10:40 2012-11-1 Show GitHub Exploit DB Packet Storm