Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 15, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240761 5.5 警告 Moodle - Moodle におけるアクティビティの読み取り専用の状態を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2358 2012-07-24 16:00 2012-07-21 Show GitHub Exploit DB Packet Storm
240762 5 警告 Moodle - Moodle の auth/cas/cas_form.html 内 のマルチ認証機能における資格情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-2357 2012-07-24 15:54 2012-07-21 Show GitHub Exploit DB Packet Storm
240763 4 警告 Moodle - Moodle の question-bank 機能における機能制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2356 2012-07-24 15:52 2012-07-21 Show GitHub Exploit DB Packet Storm
240764 4 警告 Moodle - Moodle における question:use* 機能の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2355 2012-07-24 15:51 2012-07-21 Show GitHub Exploit DB Packet Storm
240765 4 警告 Moodle - Moodle における moodle/site:readallmessages 機能の制限を回避される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-2354 2012-07-24 15:50 2012-07-21 Show GitHub Exploit DB Packet Storm
240766 4 警告 Moodle - Moodle における非表示フィールドから重要なユーザ情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-2353 2012-07-24 15:46 2012-07-21 Show GitHub Exploit DB Packet Storm
240767 7.5 危険 Nullsoft - Winamp の bmp.w5s におけるヒープベースのバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2012-4045 2012-07-24 15:38 2012-06-28 Show GitHub Exploit DB Packet Storm
240768 5 警告 WordPress.org - WordPress における重要な情報を取得される脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3385 2012-07-24 15:38 2012-06-27 Show GitHub Exploit DB Packet Storm
240769 6.8 警告 WordPress.org - WordPress のカスタマイザにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2012-3384 2012-07-24 15:37 2012-06-27 Show GitHub Exploit DB Packet Storm
240770 2.6 注意 WordPress.org - WordPress におけるクロスサイトスクリプティングの脆弱性 CWE-264
認可・権限・アクセス制御
CVE-2012-3383 2012-07-24 15:36 2012-06-27 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 15, 2026, 4:28 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268121 8.1 HIGH
Network
strider-sauce_project strider-sauce strider-sauce is Sauce Labs / Selenium support for Strider. strider-sauce downloads zipped resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code exe… CWE-310
Cryptographic Issues
CVE-2016-10611 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268122 8.1 HIGH
Network
uxebu webdrvr webdrvr is a npm wrapper for Selenium Webdriver including Chromedriver / IEDriver / IOSDriver / Ghostdriver. webdrvr downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. … CWE-310
Cryptographic Issues
CVE-2016-10601 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268123 8.1 HIGH
Network
interactivebrokers ibapi ibapi is an Interactive Brokers API addon for NodeJS. ibapi downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. Before 2.5.6, it may be possible to cause remote code exe… CWE-310
Cryptographic Issues
CVE-2016-10593 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268124 8.1 HIGH
Network
prince_project prince Prince is a Node API for executing XML/HTML to PDF renderer PrinceXML via prince(1) CLI. prince downloads zipped resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to… CWE-310
Cryptographic Issues
CVE-2016-10591 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268125 8.1 HIGH
Network
cue-sdk-node_project cue-sdk-node cue-sdk-node is a Corsair Cue SDK wrapper for node.js. cue-sdk-node downloads zipped resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution… CWE-310
Cryptographic Issues
CVE-2016-10590 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268126 8.1 HIGH
Network
spunjs selenium-binaries selenium-binaries downloads Selenium related binaries for your OS. selenium-binaries downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remo… CWE-310
Cryptographic Issues
CVE-2016-10589 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268127 8.1 HIGH
Network
macacajs macaca-chromedriver macaca-chromedriver is a Node.js wrapper for the selenium chromedriver. macaca-chromedriver before 1.0.29 downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be p… CWE-310
Cryptographic Issues
CVE-2016-10586 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268128 8.1 HIGH
Network
dalekjs dalekjs dalek-browser-chrome-canary provides Google Chrome bindings for DalekJS. dalek-browser-chrome-canary downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possib… CWE-310
Cryptographic Issues
CVE-2016-10584 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268129 8.1 HIGH
Network
unicode_project unicode unicode loads unicode data downloaded from unicode.org into nodejs. Unicode before 9.0.0 downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. CWE-310
Cryptographic Issues
CVE-2016-10578 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268130 8.1 HIGH
Network
ibm ibm_db ibm_db is an asynchronous/synchronous interface for node.js to IBM DB2 and IBM Informix. ibm_db before 1.0.2 downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may b… CWE-310
Cryptographic Issues
CVE-2016-10577 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm