Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
217251 4.3 警告 Thomas Doki-Thonon - WordPress 用 WPCB プラグインの facture.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4581 2014-07-7 18:26 2014-06-4 Show GitHub Exploit DB Packet Storm
217252 4.3 警告 Yahoo! Updates for WordPress plugin project - WordPress 用 Yahoo! Updates for WordPress プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4603 2014-07-7 18:26 2014-05-28 Show GitHub Exploit DB Packet Storm
217253 4.3 警告 Style It project - WordPress 用 Style It プラグインの fonts/font-form.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4555 2014-07-7 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
217254 4.3 警告 Alipay - WordPress 用 Wu-Rating プラグインの wu-ratepost.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4601 2014-07-7 18:26 2014-06-12 Show GitHub Exploit DB Packet Storm
217255 4.3 警告 WP Timersys - WordPress 用 WP Social Invitations プラグインの test.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4597 2014-07-7 18:26 2014-01-30 Show GitHub Exploit DB Packet Storm
217256 4.3 警告 Stranger Studios - WordPress 用 SS Downloads プラグインの templates/download.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4554 2014-07-7 18:26 2014-05-28 Show GitHub Exploit DB Packet Storm
217257 4.3 警告 ZeenShare project - WordPress 用 ZeenShare プラグインの redirect_to_zeenshare.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4606 2014-07-7 18:26 2014-01-11 Show GitHub Exploit DB Packet Storm
217258 4.3 警告 Smackcoders - WordPress 用 WP Ultimate Email Marketer プラグインの contact/edit.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4600 2014-07-7 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
217259 4.3 警告 RuslanY Blog - WordPress 用 WP Silverlight Media Player プラグインの uploader.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4589 2014-07-7 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
217260 4.3 警告 techteam internet services - WordPress 用 WP-Business Directory プラグインの forms/search.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4599 2014-07-7 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
296741 - yassl cyassl yaSSL CyaSSL before 2.0.8 allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) via a crafted X.509 certificate. CWE-399
 Resource Management Errors
CVE-2012-1558 2024-11-21 10:37 2012-03-13 Show GitHub Exploit DB Packet Storm
296742 - parallels parallels_plesk_panel SQL injection vulnerability in admin/plib/api-rpc/Agent.php in Parallels Plesk Panel 7.x and 8.x before 8.6 MU#2, 9.x before 9.5 MU#11, 10.0.x before MU#13, 10.1.x before MU#22, 10.2.x before MU#16, … CWE-89
SQL Injection
CVE-2012-1557 2024-11-21 10:37 2012-03-13 Show GitHub Exploit DB Packet Storm
296743 - microsoft ie
internet_explorer
Microsoft Internet Explorer 6 through 9, and 10 Consumer Preview, allows remote attackers to bypass Protected Mode or cause a denial of service (memory corruption) by leveraging access to a Low integ… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-1545 2024-11-21 10:37 2012-03-9 Show GitHub Exploit DB Packet Storm
296744 - movabletype movable_type_open_source
movable_type_enterprise
movable_type_advanced
movable_type_pro
The default configuration of Movable Type before 4.38, 5.0x before 5.07, and 5.1x before 5.13 supports the "mt:Include file=" attribute, which allows remote authenticated users to conduct directory t… CWE-22
Path Traversal
CVE-2012-1497 2024-11-21 10:37 2012-03-3 Show GitHub Exploit DB Packet Storm
296745 9.8 CRITICAL
Network
404like_project 404like A vulnerability was found in 404like Plugin up to 1.0.2 on WordPress. It has been classified as critical. Affected is the function checkPage of the file 404Like.php. The manipulation of the argument … - CVE-2012-10009 2024-11-21 10:36 2023-03-21 Show GitHub Exploit DB Packet Storm
296746 8.8 HIGH
Network
bestwebsoft portfolio A vulnerability was found in BestWebSoft Portfolio Plugin up to 2.04 on WordPress. It has been classified as problematic. This affects an unknown part. The manipulation leads to cross-site request fo… - CVE-2012-10017 2024-11-21 10:36 2023-12-26 Show GitHub Exploit DB Packet Storm
296747 7.5 HIGH
Network
halulu simple-download-button-shortcode A vulnerability classified as problematic has been found in Halulu simple-download-button-shortcode Plugin 1.0 on WordPress. Affected is an unknown function of the file simple-download-button_dl.php … NVD-CWE-noinfo
CVE-2012-10016 2024-11-21 10:36 2023-10-17 Show GitHub Exploit DB Packet Storm
296748 8.8 HIGH
Network
bestwebsoft twitter A vulnerability was found in BestWebSoft Twitter Plugin up to 2.14 on WordPress. It has been classified as problematic. Affected is the function twttr_settings_page of the file twitter.php of the com… - CVE-2012-10015 2024-11-21 10:36 2023-05-31 Show GitHub Exploit DB Packet Storm
296749 6.1 MEDIUM
Network
kau-boys backend_localization A vulnerability was found in Kau-Boy Backend Localization Plugin up to 1.6.1 on WordPress. It has been rated as problematic. This issue affects some unknown processing of the file backend_localizatio… - CVE-2012-10013 2024-11-21 10:36 2023-04-25 Show GitHub Exploit DB Packet Storm
296750 6.1 MEDIUM
Network
kau-boys backend_localization A vulnerability classified as problematic has been found in Kau-Boy Backend Localization Plugin 2.0 on WordPress. Affected is the function backend_localization_admin_settings/backend_localization_sav… - CVE-2012-10014 2024-11-21 10:36 2023-04-25 Show GitHub Exploit DB Packet Storm