Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 8, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252361 4.3 警告 ISC, Inc.
サイバートラスト株式会社
VMware
ターボリナックス
レッドハット
- ISC BIND におけるサービス運用妨害 (DoS) の脆弱性 CWE-20
不適切な入力確認
CVE-2010-3762 2011-03-28 14:25 2010-10-5 Show GitHub Exploit DB Packet Storm
252362 9.3 危険 マイクロソフト - Microsoft Internet Explorer に任意のコードが実行される脆弱性 CWE-399
リソース管理の問題
CVE-2010-3971 2011-03-28 14:14 2010-12-14 Show GitHub Exploit DB Packet Storm
252363 10 危険 サイバートラスト株式会社
Mozilla Foundation
レッドハット
- Mozilla Firefox および SeaMonkey の JavaScript エンジンにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-0056 2011-03-25 15:44 2011-03-1 Show GitHub Exploit DB Packet Storm
252364 10 危険 サイバートラスト株式会社
Mozilla Foundation
レッドハット
- Mozilla Firefox および SeaMonkey の JavaScript エンジンにおけるバッファオーバーフローの脆弱性 CWE-119
バッファエラー
CVE-2011-0054 2011-03-25 15:42 2011-03-1 Show GitHub Exploit DB Packet Storm
252365 10 危険 サイバートラスト株式会社
Mozilla Foundation
レッドハット
- Mozilla Firefox および SeaMonkey の JSON.stringify メソッドにおける任意のコードを実行される脆弱性 CWE-399
リソース管理の問題
CVE-2011-0055 2011-03-25 15:40 2011-03-1 Show GitHub Exploit DB Packet Storm
252366 6.8 警告 サイバートラスト株式会社
Mozilla Foundation
レッドハット
- Mozilla Firefox および SeaMonkey におけるダイアログの質問に対し応答を強制される脆弱性 CWE-20
不適切な入力確認
CVE-2011-0051 2011-03-25 15:38 2011-03-1 Show GitHub Exploit DB Packet Storm
252367 10 危険 サイバートラスト株式会社
Mozilla Foundation
レッドハット
- 複数の Mozilla 製品のブラウザエンジンにおける任意のコードを実行される脆弱性 CWE-noinfo
情報不足
CVE-2011-0062 2011-03-25 15:35 2011-03-1 Show GitHub Exploit DB Packet Storm
252368 - - Mutare Software - Mutare Software Enabled VoiceMail (EVM) のウェブインターフェースに複数の脆弱性 - - 2011-03-25 15:22 2011-02-24 Show GitHub Exploit DB Packet Storm
252369 - - IBM - IBM WebSphere Portal Server の入力値検証に脆弱性 - - 2011-03-25 15:16 2011-02-24 Show GitHub Exploit DB Packet Storm
252370 4.3 警告 e107.org - e107 におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2011-0457 2011-03-25 12:02 2011-03-14 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
3891 5.4 MEDIUM
Network
- - The WP-Optimize plugin for WordPress is vulnerable to unauthorized access of functionality due to missing capability checks in the `receive_heartbeat()` function in `includes/class-wp-optimize-heartb… CWE-863
 Incorrect Authorization
CVE-2026-2712 2026-04-25 03:01 2026-04-10 Show GitHub Exploit DB Packet Storm
3892 7.5 HIGH
Network
- - The Tutor LMS – eLearning and online course solution plugin for WordPress is vulnerable to an Insecure Direct Object Reference in all versions up to, and including, 3.9.7. This is due to missing auth… CWE-862
 Missing Authorization
CVE-2026-3360 2026-04-25 03:01 2026-04-10 Show GitHub Exploit DB Packet Storm
3893 4.3 MEDIUM
Network
- - The Download Manager plugin for WordPress is vulnerable to unauthorized modification of data due to a missing capability check on the `makeMediaPublic()` and `makeMediaPrivate()` functions in all ver… CWE-862
 Missing Authorization
CVE-2026-4057 2026-04-25 03:01 2026-04-10 Show GitHub Exploit DB Packet Storm
3894 6.1 MEDIUM
Network
- - The Royal WordPress Backup & Restore Plugin plugin for WordPress is vulnerable to Reflected Cross-Site Scripting via the 'wpr_pending_template' parameter in all versions up to, and including, 1.0.16 … CWE-79
Cross-site Scripting
CVE-2026-4305 2026-04-25 03:01 2026-04-10 Show GitHub Exploit DB Packet Storm
3895 6.3 MEDIUM
Network
- - A vulnerability has been found in JeecgBoot up to 3.9.1. This impacts an unknown function of the component SysAnnouncementController. Such manipulation leads to improper authorization. The attack can… CWE-266
CWE-285
 Incorrect Privilege Assignment
Improper Authorization
CVE-2026-5999 2026-04-25 03:01 2026-04-10 Show GitHub Exploit DB Packet Storm
3896 4.3 MEDIUM
Network
- - A vulnerability was found in code-projects Online Library Management System 1.0. Affected is an unknown function of the file /sql/library.sql of the component SQL Database Backup File Handler. Perfor… CWE-200
CWE-284
Information Exposure
Improper Access Control
CVE-2026-6000 2026-04-25 03:01 2026-04-10 Show GitHub Exploit DB Packet Storm
3897 2.4 LOW
Network
- - A security vulnerability has been detected in code-projects Simple IT Discussion Forum 1.0. This issue affects some unknown processing of the file /admin/user.php. Such manipulation of the argument f… CWE-79
CWE-94
Cross-site Scripting
Code Injection
CVE-2026-6003 2026-04-25 03:01 2026-04-10 Show GitHub Exploit DB Packet Storm
3898 7.3 HIGH
Network
- - A vulnerability was detected in code-projects Simple IT Discussion Forum 1.0. Impacted is an unknown function of the file /delete-category.php. Performing a manipulation of the argument cat_id result… CWE-74
CWE-89
Injection
SQL Injection
CVE-2026-6004 2026-04-25 03:01 2026-04-10 Show GitHub Exploit DB Packet Storm
3899 8.1 HIGH
Network
- - The Perfmatters plugin for WordPress is vulnerable to arbitrary file overwrite via path traversal in all versions up to, and including, 2.5.9. This is due to the `PMCS::action_handler()` method proce… CWE-22
Path Traversal
CVE-2026-4351 2026-04-25 03:01 2026-04-10 Show GitHub Exploit DB Packet Storm
3900 5.3 MEDIUM
Network
- - The Customer Reviews for WooCommerce plugin for WordPress is vulnerable to authentication bypass in all versions up to, and including, 5.103.0. This is due to the `create_review_permissions_check()` … CWE-287
Improper Authentication
CVE-2026-4664 2026-04-25 03:01 2026-04-10 Show GitHub Exploit DB Packet Storm