Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 18, 2026, 2:16 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
240951 4.3 警告 Bit51 - WordPress 用 Better WP Security プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4264 2012-08-15 20:16 2012-05-11 Show GitHub Exploit DB Packet Storm
240952 4.3 警告 Bit51 - WordPress 用 Better WP Security プラグインにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4263 2012-08-15 20:15 2012-05-11 Show GitHub Exploit DB Packet Storm
240953 4.3 警告 healthcare Consulting - myCare2x におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4262 2012-08-15 20:13 2012-08-13 Show GitHub Exploit DB Packet Storm
240954 7.5 危険 healthcare Consulting - myCare2x の modules/patient/mycare2x_pat_info.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-4261 2012-08-15 20:12 2012-08-13 Show GitHub Exploit DB Packet Storm
240955 7.5 危険 healthcare Consulting - myCare2x における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-4260 2012-08-15 20:07 2012-08-13 Show GitHub Exploit DB Packet Storm
240956 4.3 警告 C4B Com For Business - C4B XPhone Unified Communications 2011 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-4259 2012-08-15 20:06 2012-08-13 Show GitHub Exploit DB Packet Storm
240957 7.5 危険 Myrephp Programming - MYRE Real Estate Software における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2012-4258 2012-08-15 20:06 2012-08-13 Show GitHub Exploit DB Packet Storm
240958 5 警告 George Karpouzas - Yaqas における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-4257 2012-08-15 20:03 2012-08-13 Show GitHub Exploit DB Packet Storm
240959 5 警告 Joobi - Joomla! 用 jNews コンポーネントにおける重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-4256 2012-08-15 20:01 2012-08-13 Show GitHub Exploit DB Packet Storm
240960 4.3 警告 MySQLDumper-Team - MySQLDumper における重要な情報を取得される脆弱性 CWE-200
情報漏えい
CVE-2012-4255 2012-08-15 19:58 2012-08-13 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 18, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
268561 7.5 HIGH
Network
jshamcrest_project jshamcrest jshamcrest is vulnerable to regular expression denial of service (ReDoS) when certain types of user input is passed in to the emailAddress validator. CWE-20
 Improper Input Validation 
CVE-2016-10521 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
268562 7.5 HIGH
Network
jadedown_project jadedown jadedown is vulnerable to regular expression denial of service (ReDoS) when certain types of user input is passed in. CWE-20
 Improper Input Validation 
CVE-2016-10520 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
268563 7.5 HIGH
Network
webtorrent bittorrent-dht A security issue was found in bittorrent-dht before 5.1.3 that allows someone to send a specific series of messages to a listening peer and get it to reveal internal memory. CWE-200
Information Exposure
CVE-2016-10519 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
268564 7.5 HIGH
Network
ws_project ws A vulnerability was found in the ping functionality of the ws module before 1.0.0 which allowed clients to allocate memory by sending a ping frame. The ping functionality by default responds with a p… CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2016-10518 2024-11-21 11:44 2018-06-1 Show GitHub Exploit DB Packet Storm
268565 8.1 HIGH
Network
mystem-fix_project mystem-fix mystem-fix is a node.js wrapper for MyStem morphology text analyzer by Yandex.ru mystem-fix downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cau… CWE-310
Cryptographic Issues
CVE-2016-10698 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268566 8.1 HIGH
Network
massif_project massif massif is a Phantomjs fork massif downloads resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause remote code execution (RCE) by swapping out the requested reso… CWE-310
Cryptographic Issues
CVE-2016-10682 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268567 8.1 HIGH
Network
robotwebtools roslibjs roslib-socketio - The standard ROS Javascript Library fork for add support to socket.io roslib-socketio downloads binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be pos… CWE-310
Cryptographic Issues
CVE-2016-10681 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268568 8.1 HIGH
Network
adamvr-geoip-lite_project adamvr-geoip-lite adamvr-geoip-lite is a light weight native JavaScript implementation of GeoIP API from MaxMind adamvr-geoip-lite downloads geoip resources over HTTP, which leaves it vulnerable to MITM attacks. This … CWE-310
Cryptographic Issues
CVE-2016-10680 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268569 8.1 HIGH
Network
limbus-buildgen_project limbus-buildgen limbus-buildgen is a "build anywhere" build system. limbus-buildgen versions below 0.1.1 download binary resources over HTTP, which leaves it vulnerable to MITM attacks. It may be possible to cause r… CWE-310
Cryptographic Issues
CVE-2016-10674 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm
268570 8.1 HIGH
Network
selenium-standalone-painful_project selenium-standalone-painful selenium-standalone-painful installs a start-selenium command line to start a standalone selenium server with chrome-driver. selenium-standalone-painful downloads binary resources over HTTP, which le… CWE-310
Cryptographic Issues
CVE-2016-10679 2024-11-21 11:44 2018-05-30 Show GitHub Exploit DB Packet Storm