Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 16, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
233291 2.6 注意 simple php forum - NSSboard におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2007-5564 2012-12-20 18:33 2007-10-18 Show GitHub Exploit DB Packet Storm
233292 7.5 危険 VirtueMart - VirtueMart における任意の PHP コードを実行される脆弱性 CWE-20
不適切な入力確認
CVE-2007-5563 2012-12-20 18:33 2007-10-18 Show GitHub Exploit DB Packet Storm
233293 6.9 警告 シマンテック - Symantec Altiris Deployment Solution における認証資格情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2007-5555 2012-12-20 18:33 2007-08-13 Show GitHub Exploit DB Packet Storm
233294 9.3 危険 TIBCO Software - TIBCO SmartPGM FX におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2007-5546 2012-12-20 18:33 2007-10-18 Show GitHub Exploit DB Packet Storm
233295 7.5 危険 TIBCO Software - TIBCO SmartPGM FX におけるフォーマットストリングの脆弱性 CWE-134
書式文字列の問題
CVE-2007-5545 2012-12-20 18:33 2007-10-18 Show GitHub Exploit DB Packet Storm
233296 10 危険 runcms - RunCms の newbb_plus における脆弱性 CWE-noinfo
情報不足
CVE-2007-5535 2012-12-20 18:33 2007-10-17 Show GitHub Exploit DB Packet Storm
233297 4.6 警告 sitebar - SiteBar の translator.php における任意の PHP コードを実行される脆弱性 CWE-94
コード・インジェクション
CVE-2007-5492 2012-12-20 18:33 2007-10-17 Show GitHub Exploit DB Packet Storm
233298 9 危険 sitebar - SiteBar の translator.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-5491 2012-12-20 18:33 2007-10-17 Show GitHub Exploit DB Packet Storm
233299 5 警告 wwwisis - WWWISIS の wxis.exe におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-5484 2012-12-20 18:33 2007-10-16 Show GitHub Exploit DB Packet Storm
233300 6.4 警告 サン・マイクロシステムズ - Sun StorEdge/StorageTek 3510 FC Array の FTP サービスにおけるサービス運用妨害 (DoS) の脆弱性 CWE-noinfo
情報不足
CVE-2007-5482 2012-12-20 18:33 2007-10-15 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 16, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
291931 9.8 CRITICAL
Network
duplicate_post_project duplicate_post The duplicate-post plugin before 2.6 for WordPress has SQL injection. CWE-89
SQL Injection
CVE-2014-10379 2024-11-21 11:03 2019-08-22 Show GitHub Exploit DB Packet Storm
291932 6.1 MEDIUM
Network
duplicate_post_project duplicate_post The duplicate-post plugin before 2.6 for WordPress has XSS. CWE-79
Cross-site Scripting
CVE-2014-10378 2024-11-21 11:03 2019-08-22 Show GitHub Exploit DB Packet Storm
291933 6.1 MEDIUM
Network
cformsii_project cformsii The cforms2 plugin before 13.2 for WordPress has XSS in lib_ajax.php. CWE-79
Cross-site Scripting
CVE-2014-10377 2024-11-21 11:03 2019-08-22 Show GitHub Exploit DB Packet Storm
291934 6.1 MEDIUM
Network
cozmoslabs profile_builder The profile-builder plugin before 1.1.66 for WordPress has multiple XSS issues in forms. CWE-79
Cross-site Scripting
CVE-2014-10380 2024-11-21 11:03 2019-08-22 Show GitHub Exploit DB Packet Storm
291935 8.8 HIGH
Network
user_domain_whitelist_project user_domain_whitelist The user-domain-whitelist plugin before 1.5 for WordPress has CSRF. CWE-352
 Origin Validation Error
CVE-2014-10381 2024-11-21 11:03 2019-08-21 Show GitHub Exploit DB Packet Storm
291936 9.8 CRITICAL
Network
themeist i_recommend_this The i-recommend-this plugin before 3.7.3 for WordPress has SQL injection. CWE-89
SQL Injection
CVE-2014-10376 2024-11-21 11:03 2019-08-17 Show GitHub Exploit DB Packet Storm
291937 7.5 HIGH
Network
gnu exosip handle_messages in eXtl_tls.c in eXosip before 5.0.0 mishandles a negative value in a content-length header. CWE-189
Numeric Errors
CVE-2014-10375 2024-11-21 11:03 2019-08-14 Show GitHub Exploit DB Packet Storm
291938 6.5 MEDIUM
Adjacent
fitbit charge_2_firmware On Fitbit activity-tracker devices, certain addresses never change. According to the popets-2019-0036.pdf document, this leads to "permanent trackability" and "considerable privacy concerns" without … CWE-200
Information Exposure
CVE-2014-10374 2024-11-21 11:03 2019-07-15 Show GitHub Exploit DB Packet Storm
291939 5.3 MEDIUM
Network
vembu storegrid In Vembu StoreGrid 4.4.x, the front page of the server web interface leaks the private IP address in the "ipaddress" hidden form value of the HTML source code, which is disclosed because of incorrect… CWE-200
Information Exposure
CVE-2014-10079 2024-11-21 11:03 2019-02-23 Show GitHub Exploit DB Packet Storm
291940 6.1 MEDIUM
Network
vembu storegrid Vembu StoreGrid 4.4.x has XSS in interface/registercustomer/onlineregsuccess.php, interface/registerreseller/onlineregfailure.php, interface/registerclient/onlineregfailure.php, and interface/registe… CWE-79
Cross-site Scripting
CVE-2014-10078 2024-11-21 11:03 2019-02-23 Show GitHub Exploit DB Packet Storm