Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
228291 9 危険 IBM - IBM Informix におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4857 2012-12-12 20:39 2012-12-5 Show GitHub Exploit DB Packet Storm
228292 1.9 注意 IBM - IBM Flex System CMM および IMM2 における重要な情報を取得される脆弱性 CWE-DesignError
CVE-2012-4838 2012-12-12 20:39 2012-12-7 Show GitHub Exploit DB Packet Storm
228293 7.1 危険 Rockwell Automation - 複数の Rockwell Automation 製品におけるサービス運用妨害 (DoS) の脆弱性 CWE-16
環境設定
CVE-2012-4690 2012-12-12 16:50 2011-12-7 Show GitHub Exploit DB Packet Storm
228294 4.3 警告 IBM - IBM Tivoli Monitoring におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-3297 2012-12-12 15:11 2012-11-26 Show GitHub Exploit DB Packet Storm
228295 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-5280 2012-12-7 16:17 2012-11-6 Show GitHub Exploit DB Packet Storm
228296 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player における任意のコードを実行される脆弱性 CWE-119
バッファエラー
CVE-2012-5279 2012-12-7 16:14 2012-11-6 Show GitHub Exploit DB Packet Storm
228297 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player におけるアクセス制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-5278 2012-12-7 16:10 2012-11-6 Show GitHub Exploit DB Packet Storm
228298 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-5277 2012-12-7 16:08 2012-11-6 Show GitHub Exploit DB Packet Storm
228299 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-5276 2012-12-7 16:06 2012-11-6 Show GitHub Exploit DB Packet Storm
228300 10 危険 マイクロソフト
アドビシステムズ
Google
- Adobe Flash Player におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-5275 2012-12-7 16:03 2012-11-6 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 26, 2026, 4:08 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
248411 - - - Unrestricted Upload of File with Dangerous Type vulnerability in Subhasis Laha Gallerio allows Upload a Web Shell to a Web Server.This issue affects Gallerio: from n/a through 1.01. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-52400 2024-11-19 02:11 2024-11-17 Show GitHub Exploit DB Packet Storm
248412 - - - Unrestricted Upload of File with Dangerous Type vulnerability in Clarisse K. Writer Helper allows Upload a Web Shell to a Web Server.This issue affects Writer Helper: from n/a through 3.1.6. - CVE-2024-52399 2024-11-19 02:11 2024-11-17 Show GitHub Exploit DB Packet Storm
248413 - - - Unrestricted Upload of File with Dangerous Type vulnerability in Halyra CDI.This issue affects CDI: from n/a through 5.5.3. CWE-434
 Unrestricted Upload of File with Dangerous Type 
CVE-2024-52398 2024-11-19 02:11 2024-11-17 Show GitHub Exploit DB Packet Storm
248414 - - - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Business Directory Team by RadiusTheme Classified Listing classified-listing a… CWE-98
 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')
CVE-2024-52386 2024-11-19 02:11 2024-11-17 Show GitHub Exploit DB Packet Storm
248415 - - - The Login using WordPress Users ( WP as SAML IDP ) plugin for WordPress is vulnerable to time-based SQL Injection via the ‘id’ parameter in all versions up to, and including, 1.15.6 due to insufficie… CWE-89
SQL Injection
CVE-2024-9887 2024-11-19 02:11 2024-11-16 Show GitHub Exploit DB Packet Storm
248416 6.4 MEDIUM
Network
- - The Mapster WP Maps plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the popup class parameter in all versions up to, and including, 1.6.0 due to insufficient input sanitization … CWE-80
Basic XSS
CVE-2024-10592 2024-11-19 02:11 2024-11-16 Show GitHub Exploit DB Packet Storm
248417 7.5 HIGH
Network
- - The Blogger 301 Redirect plugin for WordPress is vulnerable to blind time-based SQL Injection via the ‘br’ parameter in all versions up to, and including, 2.5.3 due to insufficient escaping on the us… CWE-89
SQL Injection
CVE-2024-10645 2024-11-19 02:11 2024-11-16 Show GitHub Exploit DB Packet Storm
248418 4.3 MEDIUM
Network
- - The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to unauthorized access due to a missing capability check on the cancel_import() function in all versions up to, and including, … CWE-862
 Missing Authorization
CVE-2024-10614 2024-11-19 02:11 2024-11-16 Show GitHub Exploit DB Packet Storm
248419 8.8 HIGH
Network
- - The Post Grid Gutenberg Blocks and WordPress Blog Plugin – PostX plugin for WordPress is vulnerable to unauthorized plugin installation/activation due to a missing capability check on the 'install_re… CWE-862
 Missing Authorization
CVE-2024-10728 2024-11-19 02:11 2024-11-16 Show GitHub Exploit DB Packet Storm
248420 6.1 MEDIUM
Network
- - The Bounce Handler MailPoet 3 plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'page' parameter in all versions up to, and including, 1.3.21 due to insufficient input sani… CWE-79
Cross-site Scripting
CVE-2024-9938 2024-11-19 02:11 2024-11-16 Show GitHub Exploit DB Packet Storm