Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 11, 2026, 6:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
216631 4.3 警告 Rezgo - WordPress 用 Rezgo Online Booking プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4547 2014-07-4 18:26 2014-05-28 Show GitHub Exploit DB Packet Storm
216632 4.3 警告 verwei.se - WordPress - Twitter project - WordPress 用 "verwei.se - WordPress - Twitter" プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4566 2014-07-4 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
216633 4.3 警告 Oleggo LiveStream project - WordPress 用 Oleggo LiveStream プラグインの oleggo-twitter/twitter_login_form.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4540 2014-07-4 18:26 2014-05-28 Show GitHub Exploit DB Packet Storm
216634 4.3 警告 Ooorl project - WordPress 用 Ooorl プラグインの redirect.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4542 2014-07-4 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
216635 4.3 警告 OMFG Mobile Pro project - WordPress 用 OMFG Mobile Pro プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4541 2014-07-4 18:26 2014-05-28 Show GitHub Exploit DB Packet Storm
216636 4.3 警告 Make23 - WordPress 用 ToolPage プラグインの includes/getTipo.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4560 2014-07-4 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
216637 4.3 警告 Jigoshop - WordPress 用 Swipe Checkout for Jigoshop プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4557 2014-07-4 18:26 2014-05-28 Show GitHub Exploit DB Packet Storm
216638 4.3 警告 Keyword Strategy Internal Links project - WordPress 用 Keyword Strategy Internal Links プラグインの inpage.tpl.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4537 2014-07-4 18:26 2014-05-28 Show GitHub Exploit DB Packet Storm
216639 4.3 警告 Leo Eibler - WordPress 用 GarageSale プラグインの templates/printAdminUsersList_Footer.tpl.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4532 2014-07-4 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
216640 4.3 警告 HC Consulting Group - WordPress 用 Spotlight プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4552 2014-07-4 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 11, 2026, 4:09 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
292761 - cisco webex_recording_format_player Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory co… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-3939 2024-11-21 10:41 2012-10-25 Show GitHub Exploit DB Packet Storm
292762 - cisco webex_recording_format_player Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbitrary code via a crafted WRF file, aka Bug ID CSCt… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-3938 2024-11-21 10:41 2012-10-25 Show GitHub Exploit DB Packet Storm
292763 - cisco webex_recording_format_player Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbitrary code via a crafted WRF file, aka Bug ID CSCt… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-3937 2024-11-21 10:41 2012-10-25 Show GitHub Exploit DB Packet Storm
292764 - cisco webex_recording_format_player Buffer overflow in the Cisco WebEx Recording Format (WRF) player T27 before LD SP32 EP10 and T28 before T28.4 allows remote attackers to execute arbitrary code via a crafted WRF file, aka Bug ID CSCu… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-3936 2024-11-21 10:41 2012-10-25 Show GitHub Exploit DB Packet Storm
292765 - apache ofbiz Unspecified vulnerability in the Apache Open For Business Project (aka OFBiz) 10.04.x before 10.04.03 has unknown impact and attack vectors. NVD-CWE-noinfo
CVE-2012-3506 2024-11-21 10:41 2012-10-25 Show GitHub Exploit DB Packet Storm
292766 - fedoraproject crypto-utils The nssconfigFound function in genkey.pl in crypto-utils 2.4.1-34 allows local users to overwrite arbitrary files via a symlink attack on the "list" file in the current working directory. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-3504 2024-11-21 10:41 2012-10-11 Show GitHub Exploit DB Packet Storm
292767 - mozilla
redhat
canonical
suse
firefox
thunderbird_esr
thunderbird
seamonkey
enterprise_linux_server
enterprise_linux_workstation
ubuntu_linux
enterprise_linux_desktop
enterprise_linux_eus
linux_enterpri…
The IsCSSWordSpacingSpace function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote… CWE-125
Out-of-bounds Read
CVE-2012-3995 2024-11-21 10:41 2012-10-11 Show GitHub Exploit DB Packet Storm
292768 - mozilla firefox
thunderbird_esr
thunderbird
seamonkey
The Chrome Object Wrapper (COW) implementation in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 d… CWE-269
 Improper Privilege Management
CVE-2012-3993 2024-11-21 10:41 2012-10-11 Show GitHub Exploit DB Packet Storm
292769 - mozilla
suse
redhat
canonical
firefox
thunderbird_esr
thunderbird
seamonkey
linux_enterprise_server
linux_enterprise_desktop
linux_enterprise_sdk
enterprise_linux_server
enterprise_linux_workstation
ubu…
Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allow remote attackers to conduct cross-site script… CWE-79
Cross-site Scripting
CVE-2012-3994 2024-11-21 10:41 2012-10-11 Show GitHub Exploit DB Packet Storm
292770 - mozilla
redhat
canonical
suse
firefox
thunderbird_esr
thunderbird
seamonkey
enterprise_linux_server
enterprise_linux_workstation
ubuntu_linux
enterprise_linux_desktop
enterprise_linux_eus
linux_enterpri…
Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 do not properly manage history data, which allows r… CWE-79
Cross-site Scripting
CVE-2012-3992 2024-11-21 10:41 2012-10-11 Show GitHub Exploit DB Packet Storm