Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
218711 6.8 警告 FFmpeg - FFmpeg の libavcodec/msrle.c の msrle_decode_frame 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-189
数値処理の問題
CVE-2014-2099 2014-03-4 15:55 2014-02-17 Show GitHub Exploit DB Packet Storm
218712 6.8 警告 FFmpeg - FFmpeg の libavcodec/wmalosslessdec.c におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2014-2098 2014-03-4 15:55 2014-02-7 Show GitHub Exploit DB Packet Storm
218713 6.8 警告 FFmpeg - FFmpeg の libavcodec/takdec.c の tak_decode_frame 関数におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2014-2097 2014-03-4 15:54 2014-02-1 Show GitHub Exploit DB Packet Storm
218714 4.3 警告 MODX - MODX Revolution の manager/templates/default/header.tpl におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2080 2014-03-4 15:45 2014-01-21 Show GitHub Exploit DB Packet Storm
218715 3.5 注意 CloudBees - CloudBees Jenkins の java/hudson/model/Cause.java におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-2067 2014-03-4 15:37 2014-02-14 Show GitHub Exploit DB Packet Storm
218716 4 警告 CloudBees - CloudBees Jenkins の CLI ジョブ作成におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2014-2059 2014-03-4 15:37 2014-02-14 Show GitHub Exploit DB Packet Storm
218717 4.3 警告 BuddyPress.org - WordPress 用 BuddyPress プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1888 2014-03-4 15:13 2014-02-5 Show GitHub Exploit DB Packet Storm
218718 4.3 警告 OTRS プロジェクト - Open Ticket Request System におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1695 2014-03-4 15:08 2014-02-25 Show GitHub Exploit DB Packet Storm
218719 4.3 警告 Open Web Analytics - Open Web Analytics のログインページにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-1456 2014-03-4 15:04 2014-02-1 Show GitHub Exploit DB Packet Storm
218720 7.5 危険 SimpleHRM - SimpleHRM の flexycms/modules/user/user_manager.php のログインページにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2013-2498 2014-03-4 14:58 2013-04-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 8, 2026, 4:54 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
295651 - phpace samswhois Cross-site scripting (XSS) vulnerability in vendors/samswhois/samswhois.inc.php in the Whois Search plugin 1.4.2.3 for WordPress, when the WHOIS widget is enabled, allows remote attackers to inject a… CWE-79
Cross-site Scripting
CVE-2011-5193 2024-11-21 10:33 2012-09-24 Show GitHub Exploit DB Packet Storm
295652 - blairwilliams pretty_link_lite_plugin Cross-site scripting (XSS) vulnerability in pretty-bar.php in Pretty Link Lite plugin before 1.5.6 for WordPress allows remote attackers to inject arbitrary web script or HTML via the slug parameter,… CWE-79
Cross-site Scripting
CVE-2011-5192 2024-11-21 10:33 2012-09-24 Show GitHub Exploit DB Packet Storm
295653 - blairwilliams pretty_link_lite_plugin Cross-site scripting (XSS) vulnerability in pretty-bar.php in Pretty Link Lite plugin before 1.5.4 for WordPress allows remote attackers to inject arbitrary web script or HTML via the slug parameter,… CWE-79
Cross-site Scripting
CVE-2011-5191 2024-11-21 10:33 2012-09-24 Show GitHub Exploit DB Packet Storm
295654 - clonemonster social_book_facebook_clone_monster Multiple cross-site scripting (XSS) vulnerabilities in Social Book Facebook Clone 2010 allow remote attackers to inject arbitrary web script or HTML via the PATH_INFO parameter to (1) signup.php, (2)… CWE-79
Cross-site Scripting
CVE-2011-5190 2024-11-21 10:33 2012-09-20 Show GitHub Exploit DB Packet Storm
295655 - svendecabooter webform_validation Cross-site scripting (XSS) vulnerability in the Webform Validation module 6.x-1.x before 6.x-1.5 and 7.x-1.x before 7.x-1.1 for Drupal allows remote authenticated users with permissions to "update We… CWE-79
Cross-site Scripting
CVE-2011-5189 2024-11-21 10:33 2012-09-20 Show GitHub Exploit DB Packet Storm
295656 - tag1consulting support_timer Cross-site scripting (XSS) vulnerability in the Support Timer module 6.x-1.x before 6.x-1.4 for Drupal allows remote authenticated users with the "track time spent" permission to inject arbitrary web… CWE-79
Cross-site Scripting
CVE-2011-5188 2024-11-21 10:33 2012-09-20 Show GitHub Exploit DB Packet Storm
295657 - tag1consulting support Cross-site scripting (XSS) vulnerability in the Support Ticketing System module 6.x-1.x before 6.x-1.7 for Drupal allows remote authenticated users with the "administer support projects" permission t… CWE-79
Cross-site Scripting
CVE-2011-5187 2024-11-21 10:33 2012-09-20 Show GitHub Exploit DB Packet Storm
295658 - burnsy jbshop_plugin Cross-site scripting (XSS) vulnerability in jbshop.php in the jbShop plugin for e107 7 allows remote attackers to inject arbitrary web script or HTML via the item_id parameter. CWE-79
Cross-site Scripting
CVE-2011-5186 2024-11-21 10:33 2012-09-20 Show GitHub Exploit DB Packet Storm
295659 - realmatrix online_subtitles_workshop Cross-site scripting (XSS) vulnerability in video_comments.php in Online Subtitles Workshop before 2.0 rev 131 allows remote attackers to inject arbitrary web script or HTML via the comment parameter. CWE-79
Cross-site Scripting
CVE-2011-5185 2024-11-21 10:33 2012-09-20 Show GitHub Exploit DB Packet Storm
295660 - hp network_node_manager_i Multiple cross-site scripting (XSS) vulnerabilities in HP Network Node Manager i 9.10 allow remote attackers to inject arbitrary web script or HTML via the (1) node parameter to nnm/mibdiscover; (2) … CWE-79
Cross-site Scripting
CVE-2011-5184 2024-11-21 10:33 2012-09-20 Show GitHub Exploit DB Packet Storm