Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 11, 2026, 6:13 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
230741 5.1 警告 visualshapers - ezContents におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2008-7054 2012-12-20 19:10 2009-08-24 Show GitHub Exploit DB Packet Storm
230742 6.5 警告 PreProject.com - Pre Projects Pre Real Estate Listings の profile.php における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-7052 2012-12-20 19:10 2009-08-24 Show GitHub Exploit DB Packet Storm
230743 7.5 危険 yellowswordfish - Wordpress 用の Yellow Swordfish Simple Forum モジュールにおける SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-7040 2012-12-20 19:10 2009-08-24 Show GitHub Exploit DB Packet Storm
230744 9.3 危険 oovoo - ooVoo の oovoo.exe におけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2008-6953 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
230745 7.5 危険 webhost-panel - Bankoi WebHosting Control Panel の login.asp における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6950 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
230746 6.5 警告 ScriptsFeed.com - ScriptsFeed Auto Classifieds における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-6944 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
230747 6.5 警告 ScriptsFeed.com - ScriptsFeed Recipes Listing Portal における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-6943 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
230748 6.5 警告 ScriptsFeed.com - ScriptsFeed Realtor Classifieds System における任意のコードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2008-6942 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
230749 7.5 危険 turnkeyforms - TurnkeyForms Web Hosting Directory のログイン機能における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2008-6941 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
230750 7.5 危険 turnkeyforms - TurnkeyForms Web Hosting Directory におけるデータベースのバックアップを取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2008-6940 2012-12-20 19:10 2009-08-12 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 11, 2026, 5:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291211 9.8 CRITICAL
Network
wpsupportplus wp_support_plus_responsive_ticket_system The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has incorrect authentication. CWE-287
Improper Authentication
CVE-2014-10389 2024-11-21 11:03 2019-08-23 Show GitHub Exploit DB Packet Storm
291212 5.3 MEDIUM
Network
wpsupportplus wp_support_plus_responsive_ticket_system The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has full path disclosure. CWE-200
Information Exposure
CVE-2014-10388 2024-11-21 11:03 2019-08-23 Show GitHub Exploit DB Packet Storm
291213 9.8 CRITICAL
Network
wpsupportplus wp_support_plus_responsive_ticket_system The wp-support-plus-responsive-ticket-system plugin before 4.2 for WordPress has SQL injection. CWE-89
SQL Injection
CVE-2014-10387 2024-11-21 11:03 2019-08-23 Show GitHub Exploit DB Packet Storm
291214 6.1 MEDIUM
Network
memphis_documents_library_project memphis_documents_library The memphis-documents-library plugin before 3.0 for WordPress has XSS via $_REQUEST. CWE-79
Cross-site Scripting
CVE-2014-10385 2024-11-21 11:03 2019-08-22 Show GitHub Exploit DB Packet Storm
291215 9.8 CRITICAL
Network
memphis_documents_library_project memphis_documents_library The memphis-documents-library plugin before 3.0 for WordPress has Local File Inclusion. CWE-20
 Improper Input Validation 
CVE-2014-10384 2024-11-21 11:03 2019-08-22 Show GitHub Exploit DB Packet Storm
291216 9.8 CRITICAL
Network
memphis_documents_library_project memphis_documents_library The memphis-documents-library plugin before 3.0 for WordPress has Remote File Inclusion. CWE-20
 Improper Input Validation 
CVE-2014-10383 2024-11-21 11:03 2019-08-22 Show GitHub Exploit DB Packet Storm
291217 9.8 CRITICAL
Network
duplicate_post_project duplicate_post The duplicate-post plugin before 2.6 for WordPress has SQL injection. CWE-89
SQL Injection
CVE-2014-10379 2024-11-21 11:03 2019-08-22 Show GitHub Exploit DB Packet Storm
291218 6.1 MEDIUM
Network
duplicate_post_project duplicate_post The duplicate-post plugin before 2.6 for WordPress has XSS. CWE-79
Cross-site Scripting
CVE-2014-10378 2024-11-21 11:03 2019-08-22 Show GitHub Exploit DB Packet Storm
291219 6.1 MEDIUM
Network
cformsii_project cformsii The cforms2 plugin before 13.2 for WordPress has XSS in lib_ajax.php. CWE-79
Cross-site Scripting
CVE-2014-10377 2024-11-21 11:03 2019-08-22 Show GitHub Exploit DB Packet Storm
291220 6.1 MEDIUM
Network
cozmoslabs profile_builder The profile-builder plugin before 1.1.66 for WordPress has multiple XSS issues in forms. CWE-79
Cross-site Scripting
CVE-2014-10380 2024-11-21 11:03 2019-08-22 Show GitHub Exploit DB Packet Storm