Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 1, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
246511 6.8 警告 electronic arts - NPSnpy.dll におけるスタックベースのバッファオーバーフローの脆弱性 CWE-119
CWE-94
CVE-2007-4466 2012-06-26 15:54 2007-10-9 Show GitHub Exploit DB Packet Storm
246512 4.3 警告 ghisler
TOTALCMD.NET
- Total Commander の Fileinfo プラグインにおけるCRLF インジェクションの脆弱性 CWE-94
コード・インジェクション
CVE-2007-4464 2012-06-26 15:54 2007-08-21 Show GitHub Exploit DB Packet Storm
246513 5 警告 ghisler
TOTALCMD.NET
- Total Commander の Fileinfo プラグインにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-4463 2012-06-26 15:54 2007-08-21 Show GitHub Exploit DB Packet Storm
246514 7.1 危険 シスコシステムズ - Cisco IP Phone 7940 におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2007-4459 2012-06-26 15:54 2007-08-21 Show GitHub Exploit DB Packet Storm
246515 7.5 危険 firesoft - Firesoft の includes/class/class_tpl.php における PHP リモートファイルインクルージョンの脆弱性 CWE-94
コード・インジェクション
CVE-2007-4458 2012-06-26 15:54 2007-08-21 Show GitHub Exploit DB Packet Storm
246516 6.4 警告 florian mahieu - Dalai Forum の forumreply.php におけるディレクトリトラバーサルの脆弱性 CWE-22
パス・トラバーサル
CVE-2007-4457 2012-06-26 15:54 2007-08-21 Show GitHub Exploit DB Packet Storm
246517 5 警告 Digium - Asterisk Open Source の SIP チャネルドライバ (chan_sip) におけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-4455 2012-06-26 15:54 2007-08-21 Show GitHub Exploit DB Packet Storm
246518 5 警告 epic games - Unreal エンジン用 UCC 専用サーバにおけるサービス運用妨害 (DoS) の脆弱性 - CVE-2007-4443 2012-06-26 15:54 2007-08-20 Show GitHub Exploit DB Packet Storm
246519 5 警告 epic games - Unreal エンジンの logging 関数におけるスタックベースのバッファオーバーフローの脆弱性 - CVE-2007-4442 2012-06-26 15:54 2007-08-20 Show GitHub Exploit DB Packet Storm
246520 6.8 警告 Ampache.org - Ampache におけるセッションをハイジャックされる脆弱性 CWE-287
不適切な認証
CVE-2007-4438 2012-06-26 15:54 2007-08-20 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 1, 2026, 4:12 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
1451 6.4 MEDIUM
Network
- - The Dideo plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'dideo' shortcode in version 1.0. This is due to insufficient input sanitization and output escaping on th… CWE-79
Cross-site Scripting
CVE-2026-8847 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
1452 6.4 MEDIUM
Network
- - The jQuery googleslides plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'googleslides' shortcode in all versions up to, and including, 1.3. This is due to insufficient input… CWE-79
Cross-site Scripting
CVE-2026-8866 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
1453 6.4 MEDIUM
Network
- - The Mutual Funds Data plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'title' shortcode attribute in versions up to, and including, 1.2.1. This is due to insufficient input … CWE-79
Cross-site Scripting
CVE-2026-8869 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
1454 6.4 MEDIUM
Network
- - The Team Master – A Modern WordPress Team Showcase plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Shortcode Attributes in all versions up to, and including, 1.1.2 due to insuff… CWE-79
Cross-site Scripting
CVE-2026-8870 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
1455 6.4 MEDIUM
Network
- - The Formidable Kinetic plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'kinetic_link' shortcode in versions up to, and including, 1.1.01. This is due to insufficient input s… CWE-79
Cross-site Scripting
CVE-2026-8871 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
1456 6.4 MEDIUM
Network
- - The Content Slideshow plugin for WordPress is vulnerable to Stored Cross-Site Scripting via Shortcode Attributes in all versions up to, and including, 2.4.1 due to insufficient input sanitization and… CWE-79
Cross-site Scripting
CVE-2026-8873 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
1457 6.4 MEDIUM
Network
- - The Post Category Gallery plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'postcategorygallery' shortcode in versions up to, and including, 1.0.0. This is due to in… CWE-79
Cross-site Scripting
CVE-2026-8867 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
1458 6.4 MEDIUM
Network
- - The Single Mailchimp plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the 'single-mailchimp' shortcode in all versions up to, and including, 1.4. This is due to insufficient inpu… CWE-79
Cross-site Scripting
CVE-2026-8868 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
1459 6.4 MEDIUM
Network
- - The Animate Your Content plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'animation-set' shortcode in versions up to, and including, 1.0.0. This is due to insuffici… CWE-79
Cross-site Scripting
CVE-2026-8872 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm
1460 6.4 MEDIUM
Network
- - The Easy Prism Syntax Highlighter plugin for WordPress is vulnerable to Stored Cross-Site Scripting via the plugin's 'code' (and 'c') shortcode in versions up to, and including, 1.0.2. This is due to… CWE-79
Cross-site Scripting
CVE-2026-8875 2026-05-27 23:50 2026-05-27 Show GitHub Exploit DB Packet Storm