Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 30, 2026, 4 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240871 5 警告 ohio state university - OSU における重要な情報を取得される脆弱性 - CVE-2006-4907 2012-09-25 15:35 2006-09-20 Show GitHub Exploit DB Packet Storm
240872 7.5 危険 marc logemann - More.groupware の modules/calendar/week.php における SQL インジェクションの脆弱性 - CVE-2006-4906 2012-09-25 15:35 2006-09-20 Show GitHub Exploit DB Packet Storm
240873 7.5 危険 idevSpot - IDevSpot NexieAffiliate における任意のアフィリエイトを削除される脆弱性 - CVE-2006-4895 2012-09-25 15:35 2006-09-19 Show GitHub Exploit DB Packet Storm
240874 4.3 警告 idevSpot - iDevSpot NixieAffiliate の forms/lostpassword.php におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4894 2012-09-25 15:35 2006-09-19 Show GitHub Exploit DB Packet Storm
240875 5 警告 マイクロソフト - Microsoft Internet Explorer 6 におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2006-4888 2012-09-25 15:35 2006-09-19 Show GitHub Exploit DB Packet Storm
240876 3.7 注意 マカフィー - McAfee VirusScan Enterprise などの製品におけるセキュリティ制限を回避される脆弱性 - CVE-2006-4886 2012-09-25 15:35 2006-09-19 Show GitHub Exploit DB Packet Storm
240877 4.3 警告 idevSpot - IDevSpot iSupport におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4884 2012-09-25 15:35 2006-09-19 Show GitHub Exploit DB Packet Storm
240878 4.3 警告 idevSpot - IDevSpot BizDirectory におけるクロスサイトスクリプティングの脆弱性 - CVE-2006-4883 2012-09-25 15:35 2006-09-19 Show GitHub Exploit DB Packet Storm
240879 7.5 危険 jupiter cms - Jupiter CMS における SQL インジェクションの脆弱性 - CVE-2006-4876 2012-09-25 15:35 2006-09-19 Show GitHub Exploit DB Packet Storm
240880 5 警告 jupiter cms - Jupiter CMS におけるピクチャファイルをアップロードされる脆弱性 - CVE-2006-4875 2012-09-25 15:35 2006-09-19 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 30, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
285041 - leadoctopus lead_octopus SQL injection vulnerability in lib/optin/optin_page.php in the Lead Octopus plugin for WordPress allows remote attackers to execute arbitrary SQL commands via the id parameter. CWE-89
SQL Injection
CVE-2014-5189 2024-11-21 11:11 2014-08-7 Show GitHub Exploit DB Packet Storm
285042 - lyris list_manager Cross-site scripting (XSS) vulnerability in doemailpassword.tml in Lyris ListManager (LM) 8.95a allows remote attackers to inject arbitrary web script or HTML via the EmailAddr parameter. CWE-79
Cross-site Scripting
CVE-2014-5188 2024-11-21 11:11 2014-08-7 Show GitHub Exploit DB Packet Storm
285043 - tom_m8te_plugin_project tom-m8te_plugin Directory traversal vulnerability in the Tom M8te (tom-m8te) plugin 1.5.3 for WordPress allows remote attackers to read arbitrary files via the file parameter to tom-download-file.php. CWE-22
Path Traversal
CVE-2014-5187 2024-11-21 11:11 2014-08-7 Show GitHub Exploit DB Packet Storm
285044 - all_video_gallery_plugin_project all-video-gallery SQL injection vulnerability in the All Video Gallery (all-video-gallery) plugin 1.2 for WordPress allows remote authenticated administrators to execute arbitrary SQL commands via the id parameter in … CWE-89
SQL Injection
CVE-2014-5186 2024-11-21 11:11 2014-08-7 Show GitHub Exploit DB Packet Storm
285045 - quartz_plugin_project quartz_plugin SQL injection vulnerability in the Quartz plugin 1.01.1 for WordPress allows remote authenticated users with Contributor privileges to execute arbitrary SQL commands via the quote parameter in an edi… CWE-89
SQL Injection
CVE-2014-5185 2024-11-21 11:11 2014-08-7 Show GitHub Exploit DB Packet Storm
285046 - stripshow_plugin_project stripshow SQL injection vulnerability in the stripshow-storylines page in the stripShow plugin 2.5.2 for WordPress allows remote authenticated administrators to execute arbitrary SQL commands via the story par… CWE-89
SQL Injection
CVE-2014-5184 2024-11-21 11:11 2014-08-7 Show GitHub Exploit DB Packet Storm
285047 - simple_retail_menus_plugin_project simple-retail-menus SQL injection vulnerability in includes/mode-edit.php in the Simple Retail Menus (simple-retail-menus) plugin before 4.1 for WordPress allows remote authenticated editors to execute arbitrary SQL com… CWE-89
SQL Injection
CVE-2014-5183 2024-11-21 11:11 2014-08-7 Show GitHub Exploit DB Packet Storm
285048 - ostenta yawpp Multiple SQL injection vulnerabilities in the yawpp plugin 1.2 for WordPress allow remote authenticated users with Contributor privileges to execute arbitrary SQL commands via vectors related to (1) … CWE-89
SQL Injection
CVE-2014-5182 2024-11-21 11:11 2014-08-7 Show GitHub Exploit DB Packet Storm
285049 - last.fm_rotation_plugin_project lastfm-rotation_plugin Directory traversal vulnerability in lastfm-proxy.php in the Last.fm Rotation (lastfm-rotation) plugin 1.0 for WordPress allows remote attackers to read arbitrary files via a .. (dot dot) in the snod… CWE-22
Path Traversal
CVE-2014-5181 2024-11-21 11:11 2014-08-7 Show GitHub Exploit DB Packet Storm
285050 - hdwplayer hdw-player-video-player-video-gallery SQL injection vulnerability in the videos page in the HDW Player Plugin (hdw-player-video-player-video-gallery) 2.4.2 for WordPress allows remote authenticated administrators to execute arbitrary SQL… CWE-89
SQL Injection
CVE-2014-5180 2024-11-21 11:11 2014-08-7 Show GitHub Exploit DB Packet Storm