Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 27, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
251481 4 警告 CloudBees - Jenkins におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0325 2012-03-9 12:03 2012-03-9 Show GitHub Exploit DB Packet Storm
251482 4.3 警告 CloudBees - Jenkins におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0324 2012-03-9 12:02 2012-03-9 Show GitHub Exploit DB Packet Storm
251483 2.6 注意 SquirrelMail Project - SquirrelMail 用プラグイン Autocomplete におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2012-0323 2012-03-9 12:01 2012-03-9 Show GitHub Exploit DB Packet Storm
251484 10 危険 Goforandroid - Android 用 GO Message Widget アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1407 2012-03-9 11:26 2011-03-7 Show GitHub Exploit DB Packet Storm
251485 10 危険 Goforandroid - Android 用 GO Bookmark Widget アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1406 2012-03-9 11:24 2011-03-7 Show GitHub Exploit DB Packet Storm
251486 10 危険 Goforandroid - Android 用 GO Note Widget アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1405 2012-03-9 11:23 2011-03-7 Show GitHub Exploit DB Packet Storm
251487 10 危険 Goforandroid - Android 用 GO WeiboWidget アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1398 2012-03-9 11:22 2012-03-7 Show GitHub Exploit DB Packet Storm
251488 10 危険 Goforandroid - Android 用 GO QQWeiboWidget アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1397 2012-03-9 11:16 2012-03-7 Show GitHub Exploit DB Packet Storm
251489 10 危険 Goforandroid - Android 用 GO FBWidget アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1396 2012-03-9 11:15 2012-03-7 Show GitHub Exploit DB Packet Storm
251490 10 危険 Goforandroid - Android 用 GO TwiWidget アプリケーションにおける詳細不明な脆弱性 CWE-noinfo
情報不足
CVE-2012-1395 2012-03-9 11:10 2012-03-7 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 28, 2026, 4:16 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
258301 7.5 HIGH
Network
weechat logger logger.c in the logger plugin in WeeChat before 1.9.1 allows a crash via strftime date/time specifiers, because a buffer is not initialized. CWE-119
Incorrect Access of Indexable Resource ('Range Error') 
CVE-2017-14727 2024-11-21 12:13 2017-09-24 Show GitHub Exploit DB Packet Storm
258302 6.1 MEDIUM
Network
wordpress wordpress Before version 4.8.2, WordPress was vulnerable to a cross-site scripting attack via shortcodes in the TinyMCE visual editor. CWE-79
Cross-site Scripting
CVE-2017-14726 2024-11-21 12:13 2017-09-24 Show GitHub Exploit DB Packet Storm
258303 5.4 MEDIUM
Network
wordpress wordpress Before version 4.8.2, WordPress was susceptible to an open redirect attack in wp-admin/edit-tag-form.php and wp-admin/user-edit.php. CWE-601
Open Redirect
CVE-2017-14725 2024-11-21 12:13 2017-09-24 Show GitHub Exploit DB Packet Storm
258304 6.1 MEDIUM
Network
wordpress wordpress Before version 4.8.2, WordPress was vulnerable to cross-site scripting in oEmbed discovery. CWE-79
Cross-site Scripting
CVE-2017-14724 2024-11-21 12:13 2017-09-24 Show GitHub Exploit DB Packet Storm
258305 9.8 CRITICAL
Network
wordpress wordpress Before version 4.8.2, WordPress mishandled % characters and additional placeholder values in $wpdb->prepare, and thus did not properly address the possibility of plugins and themes enabling SQL injec… CWE-89
SQL Injection
CVE-2017-14723 2024-11-21 12:13 2017-09-24 Show GitHub Exploit DB Packet Storm
258306 7.5 HIGH
Network
wordpress wordpress Before version 4.8.2, WordPress allowed a Directory Traversal attack in the Customizer component via a crafted theme filename. CWE-22
Path Traversal
CVE-2017-14722 2024-11-21 12:13 2017-09-24 Show GitHub Exploit DB Packet Storm
258307 6.1 MEDIUM
Network
wordpress wordpress Before version 4.8.2, WordPress allowed Cross-Site scripting in the plugin editor via a crafted plugin name. CWE-79
Cross-site Scripting
CVE-2017-14721 2024-11-21 12:13 2017-09-24 Show GitHub Exploit DB Packet Storm
258308 6.1 MEDIUM
Network
wordpress wordpress Before version 4.8.2, WordPress allowed a Cross-Site scripting attack in the template list view via a crafted template name. CWE-79
Cross-site Scripting
CVE-2017-14720 2024-11-21 12:13 2017-09-24 Show GitHub Exploit DB Packet Storm
258309 7.5 HIGH
Network
wordpress wordpress Before version 4.8.2, WordPress was vulnerable to a directory traversal attack during unzip operations in the ZipArchive and PclZip components. CWE-22
Path Traversal
CVE-2017-14719 2024-11-21 12:13 2017-09-24 Show GitHub Exploit DB Packet Storm
258310 6.1 MEDIUM
Network
wordpress wordpress Before version 4.8.2, WordPress was susceptible to a Cross-Site Scripting attack in the link modal via a javascript: or data: URL. CWE-79
Cross-site Scripting
CVE-2017-14718 2024-11-21 12:13 2017-09-24 Show GitHub Exploit DB Packet Storm