Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 16, 2026, 2 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
242601 7.5 危険 blue eye cms - Blue Eye CMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0425 2012-06-26 16:10 2009-02-4 Show GitHub Exploit DB Packet Storm
242602 4.3 警告 an guestbook - AN Guestbook (ANG) の sign1.php におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0424 2012-06-26 16:10 2009-02-4 Show GitHub Exploit DB Packet Storm
242603 4.3 警告 agavi - Agavi の AgaviWebRouting::gen(null) メソッドにおけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0417 2012-06-26 16:10 2009-02-10 Show GitHub Exploit DB Packet Storm
242604 7.5 危険 community cms - Community CMS の index.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0406 2012-06-26 16:10 2009-02-3 Show GitHub Exploit DB Packet Storm
242605 4.3 警告 Bioinformatics - Bioinformatics htmLawed におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2009-0404 2012-06-26 16:10 2009-02-3 Show GitHub Exploit DB Packet Storm
242606 7.5 危険 Chipmunk Scripts - Chipmunk Blogger Script の admin/authenticate.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0403 2012-06-26 16:10 2009-02-3 Show GitHub Exploit DB Packet Storm
242607 7.5 危険 GPLHost - DTC の client/new_account.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0402 2012-06-26 16:10 2009-02-3 Show GitHub Exploit DB Packet Storm
242608 7.5 危険 ephpscripts - E-Php CMS の browsecats.php における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2009-0401 2012-06-26 16:10 2009-02-3 Show GitHub Exploit DB Packet Storm
242609 7.5 危険 Chipmunk Scripts - Chipmunk Blogger Script における管理者権限を取得される脆弱性 CWE-16
CWE-264
CVE-2009-0399 2012-06-26 16:10 2009-02-3 Show GitHub Exploit DB Packet Storm
242610 7.2 危険 enomaly - ECP における任意のプロセスにシグナルを送信される脆弱性 CWE-94
コード・インジェクション
CVE-2009-0390 2012-06-26 16:10 2009-02-2 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 16, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
267561 5.3 MEDIUM
Network
fabrix total_security The total-security plugin before 3.4.1 for WordPress has a settings-change vulnerability. CWE-20
 Improper Input Validation 
CVE-2016-10899 2024-11-21 11:45 2019-08-21 Show GitHub Exploit DB Packet Storm
267562 6.1 MEDIUM
Network
fabrix total_security The total-security plugin before 3.4.1 for WordPress has XSS. CWE-79
Cross-site Scripting
CVE-2016-10898 2024-11-21 11:45 2019-08-21 Show GitHub Exploit DB Packet Storm
267563 6.1 MEDIUM
Network
sermon_browser_project sermon_browser The sermon-browser plugin before 0.45.16 for WordPress has multiple XSS issues. CWE-79
Cross-site Scripting
CVE-2016-10897 2024-11-21 11:45 2019-08-21 Show GitHub Exploit DB Packet Storm
267564 6.1 MEDIUM
Network
clogica seo_redirection The seo-redirection plugin before 4.3 for WordPress has stored XSS. CWE-79
Cross-site Scripting
CVE-2016-10896 2024-11-21 11:45 2019-08-21 Show GitHub Exploit DB Packet Storm
267565 6.1 MEDIUM
Network
optiontree_project optiontree The option-tree plugin before 2.6.0 for WordPress has XSS via an add_list_item or add_social_links AJAX request. CWE-79
Cross-site Scripting
CVE-2016-10895 2024-11-21 11:45 2019-08-21 Show GitHub Exploit DB Packet Storm
267566 6.1 MEDIUM
Network
kibokolabs chained_quiz The chained-quiz plugin before 1.0 for WordPress has multiple XSS issues. CWE-79
Cross-site Scripting
CVE-2016-10892 2024-11-21 11:45 2019-08-21 Show GitHub Exploit DB Packet Storm
267567 8.8 HIGH
Network
supsystic popup The popup-by-supsystic plugin before 1.7.9 for WordPress has CSRF. CWE-352
 Origin Validation Error
CVE-2016-10915 2024-11-21 11:45 2019-08-21 Show GitHub Exploit DB Packet Storm
267568 8.8 HIGH
Network
add_from_server_project add_from_server The add-from-server plugin before 3.3.2 for WordPress has CSRF for importing a large file. CWE-352
 Origin Validation Error
CVE-2016-10914 2024-11-21 11:45 2019-08-21 Show GitHub Exploit DB Packet Storm
267569 6.1 MEDIUM
Network
joomunited wp_latest_posts The wp-latest-posts plugin before 3.7.5 for WordPress has XSS. CWE-79
Cross-site Scripting
CVE-2016-10913 2024-11-21 11:45 2019-08-21 Show GitHub Exploit DB Packet Storm
267570 6.1 MEDIUM
Network
crayon_syntax_highlighter_project crayon_syntax_highlighter The crayon-syntax-highlighter plugin before 2.8.4 for WordPress has multiple XSS issues via AJAX requests. CWE-79
Cross-site Scripting
CVE-2016-10893 2024-11-21 11:45 2019-08-21 Show GitHub Exploit DB Packet Storm