Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":May 9, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
252651 5.5 警告 オラクル - Oracle PeopleSoft and JDEdwards Suite の PeopleSoft Enterprise HRMS コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-4441 2011-02-15 14:24 2011-01-18 Show GitHub Exploit DB Packet Storm
252652 5.5 警告 オラクル - Oracle PeopleSoft and JDEdwards Suite の PeopleSoft Enterprise CRM コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-4419 2011-02-15 14:22 2011-01-18 Show GitHub Exploit DB Packet Storm
252653 7.5 危険 オラクル - Oracle PeopleSoft and JDEdwards Suite の PeopleSoft Enterprise PeopleTools コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-4418 2011-02-15 14:19 2011-01-18 Show GitHub Exploit DB Packet Storm
252654 3.5 注意 オラクル - Oracle Supply Chain Products Suite の Oracle Transportation Manager コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-4432 2011-02-15 14:01 2011-01-18 Show GitHub Exploit DB Packet Storm
252655 3.5 注意 オラクル - Oracle Supply Chain Products Suite の Agile Core コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-4429 2011-02-15 13:57 2011-01-18 Show GitHub Exploit DB Packet Storm
252656 3.5 注意 オラクル - Oracle Supply Chain Products Suite の Agile Core コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-3505 2011-02-15 13:55 2011-01-18 Show GitHub Exploit DB Packet Storm
252657 - - オラクル - Oracle WebLogic Node Manager に脆弱性 - - 2011-02-14 15:26 2010-10-13 Show GitHub Exploit DB Packet Storm
252658 4 警告 オラクル - Oracle Applications の Oracle Application Object Library コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-3589 2011-02-14 15:25 2011-01-18 Show GitHub Exploit DB Packet Storm
252659 4.3 警告 オラクル - Oracle Applications の Oracle Common Applications コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-3587 2011-02-14 15:25 2011-01-18 Show GitHub Exploit DB Packet Storm
252660 6.4 警告 オラクル - Oracle Enterprise Manager Grid Control の Real User Experience Insight コンポーネントにおける脆弱性 CWE-noinfo
情報不足
CVE-2010-3594 2011-02-14 15:24 2011-01-18 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:May 9, 2026, 5:07 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
4201 9.1 CRITICAL
Network
- - Vulnerabilidad de control inadecuado de la generación de código ('Inyección de código') en Jonathan Daggerhart Widget Wrangler widget-wrangler permite la inyección de código. Este problema afecta a W… CWE-94
Code Injection
CVE-2026-25447 2026-04-25 01:35 2026-03-26 Show GitHub Exploit DB Packet Storm
4202 7.1 HIGH
Network
- - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') vulnerability in WPDO Remoji remoji allows Stored XSS.This issue affects Remoji: from n/a through <= 2.2. CWE-79
Cross-site Scripting
CVE-2026-25452 2026-04-25 01:35 2026-03-26 Show GitHub Exploit DB Packet Storm
4203 7.1 HIGH
Network
- - Neutralización Incorrecta de la Entrada Durante la Generación de Páginas Web ('cross-site scripting') vulnerabilidad en WPDO Remoji remoji permite XSS Almacenado. Este problema afecta a Remoji: desde… CWE-79
Cross-site Scripting
CVE-2026-25452 2026-04-25 01:35 2026-03-26 Show GitHub Exploit DB Packet Storm
4204 6.5 MEDIUM
Network
- - Missing Authorization vulnerability in MVPThemes The League the-league allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affects The League: from n/a through <= 4.4.1. CWE-862
 Missing Authorization
CVE-2026-25454 2026-04-25 01:35 2026-03-26 Show GitHub Exploit DB Packet Storm
4205 6.5 MEDIUM
Network
- - Vulnerabilidad de Autorización Faltante en MVPThemes The League the-league permite Explotar Niveles de Seguridad de Control de Acceso Incorrectamente Configurados. Este problema afecta a The League: … CWE-862
 Missing Authorization
CVE-2026-25454 2026-04-25 01:35 2026-03-26 Show GitHub Exploit DB Packet Storm
4206 6.5 MEDIUM
Network
- - Missing Authorization vulnerability in PickPlugins Product Slider for WooCommerce woocommerce-products-slider allows Exploiting Incorrectly Configured Access Control Security Levels.This issue affect… CWE-862
 Missing Authorization
CVE-2026-25455 2026-04-25 01:35 2026-03-26 Show GitHub Exploit DB Packet Storm
4207 6.5 MEDIUM
Network
- - Vulnerabilidad de Autorización Faltante en PickPlugins Product Slider para WooCommerce woocommerce-products-slider permite Explotar Niveles de Seguridad de Control de Acceso Incorrectamente Configura… CWE-862
 Missing Authorization
CVE-2026-25455 2026-04-25 01:35 2026-03-26 Show GitHub Exploit DB Packet Storm
4208 7.5 HIGH
Network
- - Missing Authorization vulnerability in Aarsiv Groups Automated FedEx live/manual rates with shipping labels a2z-fedex-shipping allows Exploiting Incorrectly Configured Access Control Security Levels.… CWE-862
 Missing Authorization
CVE-2026-25456 2026-04-25 01:35 2026-03-26 Show GitHub Exploit DB Packet Storm
4209 7.5 HIGH
Network
- - Vulnerabilidad de autorización faltante en Aarsiv Groups Automated FedEx live/manual rates with shipping labels a2z-fedex-shipping permite la explotación de niveles de seguridad de control de acceso … CWE-862
 Missing Authorization
CVE-2026-25456 2026-04-25 01:35 2026-03-26 Show GitHub Exploit DB Packet Storm
4210 8.1 HIGH
Network
- - Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion') vulnerability in Select-Themes Mixtape mixtape allows PHP Local File Inclusion.This issue affec… CWE-98
 Improper Control of Filename for Include/Require Statement in PHP Program ('PHP Remote File Inclusion')
CVE-2026-25457 2026-04-25 01:35 2026-03-26 Show GitHub Exploit DB Packet Storm