|
You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database). |
Update Date":May 31, 2026, 6 p.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Impact Show |
Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 251871 | 4.3 | 警告 | Antisocial Media LLC | - | WordPress 用 Antisnews テーマにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-3857 | 2012-03-5 11:05 | 2011-09-28 | Show | GitHub Exploit DB Packet Storm |
| 251872 | 4.3 | 警告 | A Tasty Pixel | - | WordPress 用 Elegant Grunge テーマにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-3856 | 2012-03-5 11:05 | 2011-09-28 | Show | GitHub Exploit DB Packet Storm |
| 251873 | 4.3 | 警告 | Graph Paper Press | - | WordPress 用 F8 Lite テーマにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-3855 | 2012-03-5 11:04 | 2011-09-28 | Show | GitHub Exploit DB Packet Storm |
| 251874 | 4.3 | 警告 | Quirm | - | WordPress 用 ZenLite テーマにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-3854 | 2012-03-5 11:04 | 2011-09-28 | Show | GitHub Exploit DB Packet Storm |
| 251875 | 4.3 | 警告 | ThemeHybrid | - | WordPress 用 Hybrid テーマにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-3853 | 2012-03-5 11:04 | 2011-09-28 | Show | GitHub Exploit DB Packet Storm |
| 251876 | 4.3 | 警告 | Theme4Press | - | WordPress 用 EvoLve テーマにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-3852 | 2012-03-5 11:03 | 2011-09-28 | Show | GitHub Exploit DB Packet Storm |
| 251877 | 4.3 | 警告 | DevPress | - | WordPress 用 News テーマにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-3851 | 2012-03-5 11:03 | 2011-09-28 | Show | GitHub Exploit DB Packet Storm |
| 251878 | 4.3 | 警告 | Bytes For All | - | WordPress 用 Atahualpa テーマにおけるクロスサイトスクリプティングの脆弱性 |
CWE-79
クロスサイト・スクリプティング(XSS) |
CVE-2011-3850 | 2012-03-5 11:02 | 2011-09-28 | Show | GitHub Exploit DB Packet Storm |
| 251879 | 5.1 | 警告 | Mozilla Foundation | - | Bugzilla の xmlrpc.cgi におけるクロスサイトリクエストフォージェリの脆弱性 |
CWE-352
同一生成元ポリシー違反 |
CVE-2012-0453 | 2012-03-2 15:18 | 2012-02-9 | Show | GitHub Exploit DB Packet Storm |
| 251880 | 9.3 | 危険 | シスコシステムズ | - | Cisco Wireless LAN Controller デバイスにおける設定を読まれる脆弱性 |
CWE-264
認可・権限・アクセス制御 |
CVE-2012-0371 | 2012-03-2 15:04 | 2012-02-29 | Show | GitHub Exploit DB Packet Storm |
Update Date:May 31, 2026, 4:16 a.m.
| No | CVSS | Level Attach Vector |
Vendor Name | Project Name | Title | CWE | CVE | Update Date | Publication Date | Show Affected | Exploit PoC Search |
|---|---|---|---|---|---|---|---|---|---|---|---|
| 246821 | 6.5 |
MEDIUM
Network |
miniupnp_project | ngiflib | GifIndexToTrueColor in ngiflib.c in MiniUPnP ngiflib 0.4 has a Segmentation fault. |
CWE-119
Incorrect Access of Indexable Resource ('Range Error') |
CVE-2018-11578 | 2024-11-21 12:43 | 2018-05-31 | Show | GitHub Exploit DB Packet Storm |
| 246822 | 8.8 |
HIGH
Network |
liblouis canonical opensuse |
liblouis ubuntu_linux leap |
Liblouis 3.5.0 has a Segmentation fault in lou_logPrint in logging.c. |
CWE-120
Classic Buffer Overflow |
CVE-2018-11577 | 2024-11-21 12:43 | 2018-05-31 | Show | GitHub Exploit DB Packet Storm |
| 246823 | 9.8 |
CRITICAL
Network |
miniupnp_project | ngiflib | ngiflib.c in MiniUPnP ngiflib 0.4 has a heap-based buffer over-read in GifIndexToTrueColor. |
CWE-125
Out-of-bounds Read |
CVE-2018-11576 | 2024-11-21 12:43 | 2018-05-31 | Show | GitHub Exploit DB Packet Storm |
| 246824 | 9.8 |
CRITICAL
Network |
miniupnp_project | ngiflib | ngiflib.c in MiniUPnP ngiflib 0.4 has a stack-based buffer overflow in DecodeGifImg. |
CWE-787
Out-of-bounds Write |
CVE-2018-11575 | 2024-11-21 12:43 | 2018-05-31 | Show | GitHub Exploit DB Packet Storm |
| 246825 | 5.4 |
MEDIUM
Network |
clippercms | clippercms | ClipperCMS 1.3.3 has XSS in the "Module name" field in a "Modules -> Manage modules -> edit" action to the manager/ URI. |
CWE-79
Cross-site Scripting |
CVE-2018-11572 | 2024-11-21 12:43 | 2018-05-31 | Show | GitHub Exploit DB Packet Storm |
| 246826 | 8.8 |
HIGH
Network |
clippercms | clippercms | ClipperCMS 1.3.3 allows Session Fixation. |
CWE-384
Session Fixation |
CVE-2018-11571 | 2024-11-21 12:43 | 2018-05-31 | Show | GitHub Exploit DB Packet Storm |
| 246827 | 6.1 |
MEDIUM
Network |
cactusthemes | gameplan-event_and_gym_fitness | Reflected XSS is possible in the GamePlan theme through 1.5.13.2 for WordPress because of insufficient input sanitization, as demonstrated by the s parameter. In some (but not all) cases, the '<' and… |
CWE-79
Cross-site Scripting |
CVE-2018-11568 | 2024-11-21 12:43 | 2018-05-31 | Show | GitHub Exploit DB Packet Storm |
| 246828 | 5.3 |
MEDIUM
Network |
mahara | mahara | Mahara 17.04 before 17.04.8 and 17.10 before 17.10.5 and 18.04 before 18.04.1 are vulnerable to mentioning the usernames that are already taken by people registered in the system rather than masking … |
CWE-200
Information Exposure |
CVE-2018-11565 | 2024-11-21 12:43 | 2018-05-31 | Show | GitHub Exploit DB Packet Storm |
| 246829 | 9.8 |
CRITICAL
Network |
tp-link |
ipc_tl-ipc223\(p\)-6_firmware tl-ipc323k-d_firmware tl-ipc325\(kp\)_firmware tl-ipc40a-4_firmware |
/usr/lib/lua/luci/websys.lua on TP-LINK IPC TL-IPC223(P)-6, TL-IPC323K-D, TL-IPC325(KP)-*, and TL-IPC40A-4 devices has a hardcoded zMiVw8Kw0oxKXL0 password. |
CWE-798
Use of Hard-coded Credentials |
CVE-2018-11482 | 2024-11-21 12:43 | 2018-05-31 | Show | GitHub Exploit DB Packet Storm |
| 246830 | 8.8 |
HIGH
Network |
tp-link |
ipc_tl-ipc223\(p\)-6_firmware tl-ipc323k-d_firmware tl-ipc325\(kp\)_firmware tl-ipc40a-4_firmware |
TP-LINK IPC TL-IPC223(P)-6, TL-IPC323K-D, TL-IPC325(KP)-*, and TL-IPC40A-4 devices allow authenticated remote code execution via crafted JSON data because /usr/lib/lua/luci/torchlight/validator.lua d… |
CWE-20
Improper Input Validation |
CVE-2018-11481 | 2024-11-21 12:43 | 2018-05-31 | Show | GitHub Exploit DB Packet Storm |