Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
219341 4.3 警告 Mohamed Mrassi - WordPress 用 WordPress Social Login プラグインの services/diagnostics.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4576 2014-07-4 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
219342 4.3 警告 VideoWhisper.com - WordPress 用 VideoWhisper Video Presentation プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4570 2014-07-4 18:26 2014-06-12 Show GitHub Exploit DB Packet Storm
219343 4.3 警告 VideoWhisper.com - WordPress 用 Video Posts Webcam Recorder プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4568 2014-07-4 18:26 2014-06-12 Show GitHub Exploit DB Packet Storm
219344 4.3 警告 Pay Per Media Player project - WordPress 用 Pay Per Media Player プラグインの payper/payper.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4543 2014-07-4 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
219345 4.3 警告 Rezgo - WordPress 用 Rezgo Online Booking プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4547 2014-07-4 18:26 2014-05-28 Show GitHub Exploit DB Packet Storm
219346 4.3 警告 verwei.se - WordPress - Twitter project - WordPress 用 "verwei.se - WordPress - Twitter" プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4566 2014-07-4 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
219347 4.3 警告 Oleggo LiveStream project - WordPress 用 Oleggo LiveStream プラグインの oleggo-twitter/twitter_login_form.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4540 2014-07-4 18:26 2014-05-28 Show GitHub Exploit DB Packet Storm
219348 4.3 警告 Ooorl project - WordPress 用 Ooorl プラグインの redirect.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4542 2014-07-4 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
219349 4.3 警告 OMFG Mobile Pro project - WordPress 用 OMFG Mobile Pro プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4541 2014-07-4 18:26 2014-05-28 Show GitHub Exploit DB Packet Storm
219350 4.3 警告 Make23 - WordPress 用 ToolPage プラグインの includes/getTipo.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2014-4560 2014-07-4 18:26 2014-04-25 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
345601 - hiki_wiki hiki_wiki Algorithmic complexity vulnerability in Hiki Wiki 0.6.0 through 0.6.5 and 0.8.0 through 0.8.5 allows remote attackers to cause a denial of service (CPU consumption) by performing a diff between large… NVD-CWE-Other
CVE-2006-3379 2017-07-20 10:32 2006-07-7 Show GitHub Exploit DB Packet Storm
345602 - mads mads Cross-site scripting (XSS) vulnerability in index.php in mAds 1.0 allows remote attackers to inject arbitrary web script or HTML via Javascript events such as onmouseover within a URL. NOTE: the pro… NVD-CWE-Other
CVE-2006-3383 2017-07-20 10:32 2006-07-7 Show GitHub Exploit DB Packet Storm
345603 - imbc imbccontents_activex_control The Execute function in iMBCContents ActiveX Control before 2.0.0.59 allows remote attackers to execute arbitrary files via the file URI handler. NVD-CWE-Other
CVE-2006-3391 2017-07-20 10:32 2006-07-7 Show GitHub Exploit DB Packet Storm
345604 - electronic_arts nascar_racing Papyrus NASCAR Racing 4 4.1.3.1.6 and earlier, 2002 Season 1.1.0.2 and earlier, and 2003 Season 1.2.0.1 and earlier allows remote attackers to cause a denial of service (CPU consumption) by sending a… NVD-CWE-Other
CVE-2006-3393 2017-07-20 10:32 2006-07-7 Show GitHub Exploit DB Packet Storm
345605 - virtuastore virtuastore SQL injection vulnerability in VirtuaStore 2.0 allows remote attackers to execute arbitrary SQL commands via the password parameter when logging in. NVD-CWE-Other
CVE-2006-3402 2017-07-20 10:32 2006-07-7 Show GitHub Exploit DB Packet Storm
345606 - tor tor Tor before 0.1.1.20 allows remote attackers to spoof log entries or possibly execute shell code via strings with non-printable characters. NVD-CWE-Other
CVE-2006-3407 2017-07-20 10:32 2006-07-7 Show GitHub Exploit DB Packet Storm
345607 - tor tor Unspecified vulnerability in the directory server (dirserver) in Tor before 0.1.1.20 allows remote attackers to cause an unspecified denial of service via unknown vectors. NVD-CWE-Other
CVE-2006-3408 2017-07-20 10:32 2006-07-7 Show GitHub Exploit DB Packet Storm
345608 - tor tor Integer overflow in Tor before 0.1.1.20 allows remote attackers to execute arbitrary code via crafted large inputs, which result in a buffer overflow when elements are added to smartlists. NVD-CWE-Other
CVE-2006-3409 2017-07-20 10:32 2006-07-7 Show GitHub Exploit DB Packet Storm
345609 - tor tor Tor before 0.1.1.20 creates "internal circuits" primarily consisting of nodes with "useful exit nodes," which allows remote attackers to conduct unspecified statistical attacks. NVD-CWE-Other
CVE-2006-3410 2017-07-20 10:32 2006-07-7 Show GitHub Exploit DB Packet Storm
345610 - mybulletinboard mybulletinboard Cross-site request forgery (CSRF) vulnerability in editpost.php in MyBulletinBoard (MyBB) before 1.1.5 allows remote attackers to perform unauthorized actions as a logged in user and delete arbitrary… NVD-CWE-Other
CVE-2006-3420 2017-07-20 10:32 2006-07-7 Show GitHub Exploit DB Packet Storm