Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 7, 2026, 10 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240171 9.3 危険 カスペルスキー - Kaspersky Anti-Virus などの KL.SysInfo ActiveX コントロールにおけるファイルを読まれる脆弱性 - CVE-2007-1879 2012-09-25 16:47 2007-04-5 Show GitHub Exploit DB Packet Storm
240172 6.8 警告 parakey inc. - Mozilla Firefox 用の Firebug エクステンションにおけるクロスゾーンスクリプティングの脆弱性 - CVE-2007-1878 2012-09-25 16:47 2007-04-5 Show GitHub Exploit DB Packet Storm
240173 4.3 警告 mephisto - mephisto におけるクロスサイトスクリプティングの脆弱性 - CVE-2007-1873 2012-09-25 16:47 2007-04-13 Show GitHub Exploit DB Packet Storm
240174 7.8 危険 LIGHTTPD - lighttpd におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1870 2012-09-25 16:47 2007-04-17 Show GitHub Exploit DB Packet Storm
240175 5 警告 LIGHTTPD - lighttpd におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1869 2012-09-25 16:47 2007-04-17 Show GitHub Exploit DB Packet Storm
240176 10 危険 IBM - IBM Tivoli Provisioning Manager for OS Deployment におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-1868 2012-09-25 16:47 2007-04-4 Show GitHub Exploit DB Packet Storm
240177 10 危険 Irfan Skiljan - IrfanView におけるバッファオーバーフローの脆弱性 - CVE-2007-1867 2012-09-25 16:47 2007-04-4 Show GitHub Exploit DB Packet Storm
240178 5 警告 日立 - uCosminexus などの製品で使用される Hitachi Cosminexus Component Container における脆弱性 - CVE-2007-1854 2012-09-25 16:47 2007-03-30 Show GitHub Exploit DB Packet Storm
240179 5 警告 日立 - Hitachi JP1/HiCommand DeviceManager における認証情報を取得される脆弱性 - CVE-2007-1853 2012-09-25 16:47 2007-03-30 Show GitHub Exploit DB Packet Storm
240180 7.5 危険 PHP-Fusion - PHP-Fusion の Expanded Calendar モジュールにおける SQL インジェクションの脆弱性 - CVE-2007-1845 2012-09-25 16:47 2007-04-3 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 7, 2026, 4:13 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
287281 - webengage_project webengage Cross-site scripting (XSS) vulnerability in resize.php in the WebEngage plugin before 2.0.1 for WordPress allows remote attackers to inject arbitrary web script or HTML via the height parameter. CWE-79
Cross-site Scripting
CVE-2014-4574 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm
287282 - walk_score_project walk_score Multiple cross-site scripting (XSS) vulnerabilities in frame-maker.php in the Walk Score plugin 0.5.5 and earlier for WordPress allow remote attackers to inject arbitrary web script or HTML via the (… CWE-79
Cross-site Scripting
CVE-2014-4573 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm
287283 - votecount_for_balatarin_project votecount_for_balatarin Cross-site scripting (XSS) vulnerability in bvc.php in the Votecount for Balatarin plugin 0.1.1 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the (1) ur… CWE-79
Cross-site Scripting
CVE-2014-4572 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm
287284 - videowhisper video_presentation Multiple cross-site scripting (XSS) vulnerabilities in the VideoWhisper Video Presentation plugin before 3.31 for WordPress allow remote attackers to inject arbitrary web script or HTML via the (1) r… CWE-79
Cross-site Scripting
CVE-2014-4570 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm
287285 - videowhisper video_posts_webcam_recorder Cross-site scripting (XSS) vulnerability in posts/videowhisper/r_logout.php in the Video Posts Webcam Recorder plugin 1.55.4 and earlier for WordPress allows remote attackers to inject arbitrary web … CWE-79
Cross-site Scripting
CVE-2014-4568 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm
287286 - verweise-wordpress-twitter_project verweise-wordpress-twitter Cross-site scripting (XSS) vulnerability in res/fake_twitter/frame.php in the "verwei.se - WordPress - Twitter" (verweise-wordpress-twitter) plugin 1.0.2 and earlier for WordPress allows remote attac… CWE-79
Cross-site Scripting
CVE-2014-4566 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm
287287 - toolpage_project toolpage Cross-site scripting (XSS) vulnerability in includes/getTipo.php in the ToolPage plugin 1.6.1 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the t parame… CWE-79
Cross-site Scripting
CVE-2014-4560 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm
287288 - jigoshop swipe_hq_checkout_for_jigoshop Cross-site scripting (XSS) vulnerability in test-plugin.php in the Swipe Checkout for Jigoshop (swipe-hq-checkout-for-jigoshop) plugin 3.1.0 and earlier for WordPress allows remote attackers to injec… CWE-79
Cross-site Scripting
CVE-2014-4557 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm
287289 - spotlightyour spotlightyour Cross-site scripting (XSS) vulnerability in library/includes/payment/paypalexpress/DoDirectPayment.php in the Spotlight (spotlightyour) plugin 4.7 and earlier for WordPress allows remote attackers to… CWE-79
Cross-site Scripting
CVE-2014-4552 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm
287290 - social_connect_project social_connect Cross-site scripting (XSS) vulnerability in diagnostics/test.php in the Social Connect plugin 1.0.4 and earlier for WordPress allows remote attackers to inject arbitrary web script or HTML via the te… CWE-79
Cross-site Scripting
CVE-2014-4551 2024-11-21 11:10 2014-07-3 Show GitHub Exploit DB Packet Storm