Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 17, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240621 4.3 警告 Google - Google Chrome におけるサービス運用妨害 (DoS) の脆弱性 CWE-399
リソース管理の問題
CVE-2012-2847 2012-08-8 11:00 2012-07-31 Show GitHub Exploit DB Packet Storm
240622 2.6 注意 アップル - iOS 上の Safari におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-3426 2012-08-7 12:08 2011-10-17 Show GitHub Exploit DB Packet Storm
240623 2.6 注意 NHN Japan - Android 版 LINE における暗黙的 Intent の扱いに関する脆弱性 CWE-DesignError
CVE-2012-4005 2012-08-7 12:01 2012-08-7 Show GitHub Exploit DB Packet Storm
240624 5 警告 Google - Linux 上で稼働する Google Chrome におけるサービス運用妨害 (クロスプロセス干渉) の脆弱性 CWE-119
バッファエラー
CVE-2012-2846 2012-08-7 11:53 2012-07-31 Show GitHub Exploit DB Packet Storm
240625 3.5 注意 シスコシステムズ - Cisco AnyConnect Secure Mobility Client におけるサービス運用妨害 (DoS) の脆弱性 CWE-119
バッファエラー
CVE-2012-1370 2012-08-7 11:45 2012-08-6 Show GitHub Exploit DB Packet Storm
240626 5 警告 シスコシステムズ - Cisco IOS の MallocLite の実装におけるサービス運用妨害 (ルートプロセッサクラッシュ) の脆弱性 CWE-20
不適切な入力確認
CVE-2012-1367 2012-08-7 11:43 2012-08-6 Show GitHub Exploit DB Packet Storm
240627 4 警告 シスコシステムズ - Cisco Unified Computing System におけるサービス運用妨害 (デバイスリロード) の脆弱性 CWE-DesignError
CVE-2012-1365 2012-08-7 11:04 2012-05-11 Show GitHub Exploit DB Packet Storm
240628 4 警告 シスコシステムズ - Cisco Unified Computing System におけるサービス運用妨害 (デバイスリロード) の脆弱性 CWE-DesignError
CVE-2012-1364 2012-08-7 11:03 2012-05-11 Show GitHub Exploit DB Packet Storm
240629 5 警告 NetMechanica - NetMechanica NetDecision の Traffic Grapher Server におけるソースコードを取得される脆弱性 CWE-200
情報漏えい
CVE-2012-1466 2012-08-6 15:57 2012-03-19 Show GitHub Exploit DB Packet Storm
240630 1.9 注意 X.Org Foundation - X.Org xserver の os/utils.c における任意のファイルのアクセス権を 444 に変更される脆弱性 CWE-362
競合状態
CVE-2011-4029 2012-08-3 14:50 2011-10-17 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 17, 2026, 4:15 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267861 6.1 MEDIUM
Network
elfsight instalinker The instalinker plugin before 1.1.2 for WordPress has includes/instalinker-admin-preview.php?client_id= XSS. CWE-79
Cross-site Scripting
CVE-2016-11005 2024-11-21 11:45 2019-09-21 Show GitHub Exploit DB Packet Storm
267862 8.8 HIGH
Network
elegantthemes monarch The Elegant Themes Monarch plugin before 1.2.7 for WordPress has privilege escalation. CWE-269
 Improper Privilege Management
CVE-2016-11004 2024-11-21 11:45 2019-09-21 Show GitHub Exploit DB Packet Storm
267863 8.8 HIGH
Network
elegantthemes monarch The Elegant Themes Bloom plugin before 1.1.1 for WordPress has privilege escalation. CWE-269
 Improper Privilege Management
CVE-2016-11003 2024-11-21 11:45 2019-09-21 Show GitHub Exploit DB Packet Storm
267864 8.8 HIGH
Network
elegantthemes extra The Elegant Themes Extra theme before 1.2.4 for WordPress has privilege escalation. CWE-269
 Improper Privilege Management
CVE-2016-11002 2024-11-21 11:45 2019-09-21 Show GitHub Exploit DB Packet Storm
267865 6.1 MEDIUM
Network
plugin-planet user_submitted_posts The user-submitted-posts plugin before 20160215 for WordPress has XSS via the user-submitted-content field. CWE-79
Cross-site Scripting
CVE-2016-11001 2024-11-21 11:45 2019-09-21 Show GitHub Exploit DB Packet Storm
267866 9.8 CRITICAL
Network
smackcoders ultimate_exporter The wp-ultimate-exporter plugin through 1.1 for WordPress has SQL injection via the export_type_name parameter. CWE-89
SQL Injection
CVE-2016-11000 2024-11-21 11:45 2019-09-21 Show GitHub Exploit DB Packet Storm
267867 6.1 MEDIUM
Network
momizat goodnews The Goodnews theme through 2016-02-28 for WordPress has XSS via the s parameter. CWE-79
Cross-site Scripting
CVE-2016-10999 2024-11-21 11:45 2019-09-21 Show GitHub Exploit DB Packet Storm
267868 6.1 MEDIUM
Network
ocimscripts ocim-mp3 The ocim-mp3 plugin through 2016-03-07 for WordPress has wp-content/plugins/ocim-mp3/source/pages.php?id= XSS. CWE-79
Cross-site Scripting
CVE-2016-10998 2024-11-21 11:45 2019-09-21 Show GitHub Exploit DB Packet Storm
267869 6.5 MEDIUM
Network
yourinspirationweb beauty-premium The beauty-premium theme 1.0.8 for WordPress has CSRF with resultant arbitrary file upload in includes/sendmail.php. CWE-352
 Origin Validation Error
CVE-2016-10997 2024-11-21 11:45 2019-09-21 Show GitHub Exploit DB Packet Storm
267870 5.3 MEDIUM
Network
optinmonster optinmonster The optinmonster plugin before 1.1.4.6 for WordPress has incorrect access control for shortcodes because of a nonce leak. CWE-863
 Incorrect Authorization
CVE-2016-10996 2024-11-21 11:45 2019-09-21 Show GitHub Exploit DB Packet Storm