Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240761 5.5 警告 Moodle - Moodle におけるアクティビティの読み取り専用の状態を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2358 2012-07-24 16:00 2012-07-21 Show GitHub Exploit DB Packet Storm
240762 5 警告 Moodle - Moodle の auth/cas/cas_form.html 内 のマルチ認証機能における資格情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-2357 2012-07-24 15:54 2012-07-21 Show GitHub Exploit DB Packet Storm
240763 4 警告 Moodle - Moodle の question-bank 機能における機能制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2356 2012-07-24 15:52 2012-07-21 Show GitHub Exploit DB Packet Storm
240764 4 警告 Moodle - Moodle における question:use* 機能の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2355 2012-07-24 15:51 2012-07-21 Show GitHub Exploit DB Packet Storm
240765 4 警告 Moodle - Moodle における moodle/site:readallmessages 機能の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2354 2012-07-24 15:50 2012-07-21 Show GitHub Exploit DB Packet Storm
240766 4 警告 Moodle - Moodle における非表示フィールドから重要なユーザ情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-2353 2012-07-24 15:46 2012-07-21 Show GitHub Exploit DB Packet Storm
240767 7.5 危険 Nullsoft - Winamp の bmp.w5s におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4045 2012-07-24 15:38 2012-06-28 Show GitHub Exploit DB Packet Storm
240768 5 警告 WordPress.org - WordPress における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3385 2012-07-24 15:38 2012-06-27 Show GitHub Exploit DB Packet Storm
240769 6.8 警告 WordPress.org - WordPress のカスタマイザにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-3384 2012-07-24 15:37 2012-06-27 Show GitHub Exploit DB Packet Storm
240770 2.6 注意 WordPress.org - WordPress におけるクロスサイトスクリプティングの脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3383 2012-07-24 15:36 2012-06-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268041 8.1 HIGH
Network
grunt-webdriver-qunit_project grunt-webdriver-qunit grunt-webdriver-qunit is a grunt plugin to run qunit with webdriver in grunt grunt-webdriver-qunit downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible… CWE-310
Cryptographic Issues
CVE-2016-10606 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268042 8.1 HIGH
Network
dalekjs dalekjs dalek-browser-ie is Internet Explorer bindings for DalekJS. dalek-browser-ie downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code … CWE-310
Cryptographic Issues
CVE-2016-10605 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268043 8.1 HIGH
Network
dalekjs dalekjs dalek-browser-chrome is Google Chrome bindings for DalekJS. dalek-browser-chrome downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote c… CWE-310
Cryptographic Issues
CVE-2016-10604 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268044 8.1 HIGH
Network
air-sdk_project air-sdk air-sdk is a NPM wrapper for the Adobe AIR SDK. air-sdk downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by sw… CWE-310
Cryptographic Issues
CVE-2016-10603 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268045 8.1 HIGH
Network
haxe haxe haxe is a cross-platform toolkit haxe downloads zipped resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the req… CWE-310
Cryptographic Issues
CVE-2016-10602 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268046 8.1 HIGH
Network
webrtc webrtc-native webrtc-native uses WebRTC from chromium project. webrtc-native downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE… CWE-310
Cryptographic Issues
CVE-2016-10600 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268047 8.1 HIGH
Network
node-sauce-connect_project node-sauce-connect sauce-connect is a Node.js wrapper over the SauceLabs SauceConnect.jar program for establishing a secure tunnel for intranet testing. sauce-connect downloads binary resources over HTTP, which leaves … CWE-310
Cryptographic Issues
CVE-2016-10599 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268048 7.5 HIGH
Network
arrayfire-js_project arrayfire-js arrayfire-js is a module for ArrayFire for the Node.js platform. arrayfire-js downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code… CWE-310
Cryptographic Issues
CVE-2016-10598 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268049 5.9 MEDIUM
Network
cobalt-cli_project cobalt-cli cobalt-cli downloads resources over HTTP, which leaves it vulnerable to MITM attacks. CWE-311
Missing Encryption of Sensitive Data
CVE-2016-10597 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm
268050 8.1 HIGH
Network
imageoptim_project imageoptim imageoptim is a Node.js wrapper for some images compression algorithms. imageoptim downloads zipped resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote… CWE-310
Cryptographic Issues
CVE-2016-10596 2024-11-21 11:44 2018-06-2 Show GitHub Exploit DB Packet Storm