Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 2:01 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218581 4.3 警告 XEN Carousel plugin project - WordPress 用 XEN Carousel プラグインの xencarousel-admin.js.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4602 2014-07-3 15:56 2014-05-28 Show GitHub Exploit DB Packet Storm
218582 4.3 警告 MNT-TECH - WordPress 用 WP-FaceThumb プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4585 2014-07-3 15:56 2014-06-12 Show GitHub Exploit DB Packet Storm
218583 4.3 警告 Easy Booking - WordPress 用 wp-easybooking プラグインの admin/editFacility.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4584 2014-07-3 15:55 2014-04-25 Show GitHub Exploit DB Packet Storm
218584 4.3 警告 WP-Contact plugin project - WordPress 用 WP-Contact プラグインの forms/messages.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4583 2014-07-3 15:55 2014-04-25 Show GitHub Exploit DB Packet Storm
218585 4.3 警告 Matthew Healy - WordPress 用 Wikipop プラグインの js/window.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4575 2014-07-3 15:54 2014-06-12 Show GitHub Exploit DB Packet Storm
218586 4.3 警告 VideoWhisper.com - WordPress 用 VideoWhisper Live Streaming Integration プラグインの ls/vv_login.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4569 2014-07-3 15:54 2014-06-12 Show GitHub Exploit DB Packet Storm
218587 4.3 警告 Validated plugin project - WordPress 用 Validated プラグインの check.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4564 2014-07-3 15:53 2014-04-25 Show GitHub Exploit DB Packet Storm
218588 4.3 警告 Optimizer - WordPress 用 Swipe Checkout for eShop プラグインの test-plugin.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4556 2014-07-3 15:52 2014-04-25 Show GitHub Exploit DB Packet Storm
218589 4.3 警告 Rob Myrick - WordPress 用 Malware Finder プラグインの process.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4538 2014-07-3 15:50 2014-05-28 Show GitHub Exploit DB Packet Storm
218590 4.3 警告 GEO Redirector plugin project - WordPress 用 GEO Redirector プラグインの ajax_functions.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4533 2014-07-3 15:50 2014-04-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 27, 2026, 4:52 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
297011 - google chrome Multiple unspecified vulnerabilities in the PDF functionality in Google Chrome before 21.0.1180.57 on Mac OS X and Linux, and before 21.0.1180.60 on Windows and Chrome Frame, allow remote attackers t… NVD-CWE-noinfo
CVE-2012-2850 2024-11-21 10:39 2012-08-7 Show GitHub Exploit DB Packet Storm
297012 - google chrome Off-by-one error in the GIF decoder in Google Chrome before 21.0.1180.57 on Mac OS X and Linux, and before 21.0.1180.60 on Windows and Chrome Frame, allows remote attackers to cause a denial of servi… CWE-189
Numeric Errors
CVE-2012-2849 2024-11-21 10:39 2012-08-7 Show GitHub Exploit DB Packet Storm
297013 - google chrome The drag-and-drop implementation in Google Chrome before 21.0.1180.57 on Mac OS X and Linux, and before 21.0.1180.60 on Windows and Chrome Frame, allows user-assisted remote attackers to bypass inten… CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2848 2024-11-21 10:39 2012-08-7 Show GitHub Exploit DB Packet Storm
297014 - google chrome Google Chrome before 21.0.1180.57 on Mac OS X and Linux, and before 21.0.1180.60 on Windows and Chrome Frame, does not request user confirmation before continuing a large series of downloads, which a… CWE-399
 Resource Management Errors
CVE-2012-2847 2024-11-21 10:39 2012-08-7 Show GitHub Exploit DB Packet Storm
297015 - google chrome Google Chrome before 21.0.1180.57 on Linux does not properly isolate renderer processes, which allows remote attackers to cause a denial of service (cross-process interference) via unspecified vector… NVD-CWE-Other
CVE-2012-2846 2024-11-21 10:39 2012-08-7 Show GitHub Exploit DB Packet Storm
297016 - yahoo toolbar Yahoo! Toolbar 1.0.0.5 and earlier for Chrome and Safari allows remote attackers to modify the configured search URL, and intercept search terms, via a crafted web page. CWE-200
Information Exposure
CVE-2012-2647 2024-11-21 10:39 2012-07-31 Show GitHub Exploit DB Packet Storm
297017 - sonicwall scrutinizer d4d/uploader.php in the web console in Plixer Scrutinizer (aka Dell SonicWALL Scrutinizer) before 9.5.0 allows remote attackers to create or overwrite arbitrary files in %PROGRAMFILES%\Scrutinizer\sn… NVD-CWE-Other
CVE-2012-2627 2024-11-21 10:39 2012-07-31 Show GitHub Exploit DB Packet Storm
297018 - sonicwall scrutinizer cgi-bin/admin.cgi in the web console in Plixer Scrutinizer (aka Dell SonicWALL Scrutinizer) before 9.5.0 does not require token authentication, which allows remote attackers to add administrative acc… CWE-287
Improper Authentication
CVE-2012-2626 2024-11-21 10:39 2012-07-31 Show GitHub Exploit DB Packet Storm
297019 - nokia pc_suite Buffer overflow in the Video Manager in Nokia PC Suite 7.1.180.64 and earlier allows remote attackers to cause a denial of service via a crafted mp4 file. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2012-2442 2024-11-21 10:39 2012-07-26 Show GitHub Exploit DB Packet Storm
297020 - findingscience mod_auth_openid mod_auth_openid before 0.7 for Apache uses world-readable permissions for /tmp/mod_auth_openid.db, which allows local users to obtain session ids. CWE-264
Permissions, Privileges, and Access Controls
CVE-2012-2760 2024-11-21 10:39 2012-07-26 Show GitHub Exploit DB Packet Storm