Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":Feb. 9, 2026, 12:59 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
691 8.1 重要
Network
ThemeMove EduMall ThemeMoveのWordPress用EduMallにおけるPHP リモートファイルインクルージョンの脆弱性 CWE-98
PHP リモートファイルインクルージョン
CVE-2025-59564 2026-02-2 19:31 2025-10-22 Show GitHub Exploit DB Packet Storm
692 8.1 重要
Network
ThemeMove Minimogwp ThemeMoveのWordPress用MinimogwpにおけるPHP リモートファイルインクルージョンの脆弱性 CWE-98
PHP リモートファイルインクルージョン
CVE-2025-60069 2026-02-2 19:31 2025-12-18 Show GitHub Exploit DB Packet Storm
693 10 緊急
Network
GongRzhe Terminal Controller for MCP GongRzheのTerminal Controller for MCPにおけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2025-61492 2026-02-2 19:31 2026-01-7 Show GitHub Exploit DB Packet Storm
694 7.5 重要
Network
wpwebelite Follow My Blog Post WPWeb EliteのWordPress用Follow My Blog Postにおける認可されていない制御領域への重要情報の漏えいに関する脆弱性 CWE-497
認可されていない制御領域への重要情報の漏えい
CVE-2025-64258 2026-02-2 19:31 2025-12-18 Show GitHub Exploit DB Packet Storm
695 5.4 警告
Network
Qode Interactive Bard Qode InteractiveのWordPress用Bardにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2025-64368 2026-02-2 19:31 2025-10-31 Show GitHub Exploit DB Packet Storm
696 5.3 警告
Network
XWiki Full Calendar Macro (macro-fullcalendar-pom) XWikiのFull Calendar Macro (macro-fullcalendar-pom)における情報漏えいに関する脆弱性 CWE-200
情報漏えい
CVE-2025-65090 2026-02-2 19:31 2026-01-10 Show GitHub Exploit DB Packet Storm
697 10 緊急
Network
XWiki Full Calendar Macro (macro-fullcalendar-pom) XWikiのFull Calendar Macro (macro-fullcalendar-pom)におけるSQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2025-65091 2026-02-2 19:31 2026-01-10 Show GitHub Exploit DB Packet Storm
698 6.5 警告
Network
Mega-Fence Project Mega-Fence Mega-Fence ProjectのMega-Fenceにおけるセキュリティ決定の信頼できない入力への依存に関する脆弱性 CWE-807
セキュリティ決定の信頼できない入力への依存
CVE-2025-65328 2026-02-2 19:31 2026-01-5 Show GitHub Exploit DB Packet Storm
699 7.5 重要
Network
WebPros International GmbH Plesk Obsidian WebPros International GmbHのPlesk Obsidianにおけるリソースの枯渇に関する脆弱性 CWE-400
リソースの枯渇
CVE-2025-65518 2026-02-2 19:31 2026-01-8 Show GitHub Exploit DB Packet Storm
700 8.8 重要
Network
Qode Interactive Powerlift Qode InteractiveのWordPress用Powerliftにおける認証の欠如に関する脆弱性 CWE-862
認証の欠如
CVE-2025-66532 2026-02-2 19:31 2025-12-9 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:April 22, 2026, 4 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
307261 - oracle database_server Unspecified vulnerability in the Change Data Capture component in Oracle Database 9.2.0.8 and 9.2.0.8DV allows remote authenticated users to affect confidentiality and integrity, related to SYS.DBMS_… NVD-CWE-noinfo
CVE-2010-0870 2012-10-23 12:20 2010-04-14 Show GitHub Exploit DB Packet Storm
307262 - oracle e-business_suite Unspecified vulnerability in the Oracle Application Object Library component in Oracle E-Business Suite 11.5.10.2, 12.0.6, and 12.1.2 allows remote attackers to affect integrity via unknown vectors. NVD-CWE-noinfo
CVE-2010-0871 2012-10-23 12:20 2010-04-14 Show GitHub Exploit DB Packet Storm
307263 - oracle fusion_middleware Unspecified vulnerability in the Oracle Internet Directory component in Oracle Fusion Middleware 10.1.2.3 and 10.1.4.3 allows remote attackers to affect availability via unknown vectors. NVD-CWE-noinfo
CVE-2010-0872 2012-10-23 12:20 2010-04-14 Show GitHub Exploit DB Packet Storm
307264 - oracle industry_product_suite Unspecified vulnerability in the Communications - Oracle Communications Unified Inventory Management component in Oracle Industry Product Suite 7.1 allows remote attackers to affect integrity via unk… NVD-CWE-noinfo
CVE-2010-0874 2012-10-23 12:20 2010-04-14 Show GitHub Exploit DB Packet Storm
307265 - oracle industry_product_suite Unspecified vulnerability in the Life Sciences - Oracle Thesaurus Management System component in Oracle Industry Product Suite 4.5.2, 4.6, and 4.6.1 allows remote attackers to affect integrity, relat… NVD-CWE-noinfo
CVE-2010-0875 2012-10-23 12:20 2010-04-14 Show GitHub Exploit DB Packet Storm
307266 - oracle industry_product_suite Unspecified vulnerability in the Life Sciences - Oracle Clinical Remote Data Capture Option component in Oracle Industry Product Suite 4.5.3 and 4.6 allows remote attackers to affect integrity, relat… NVD-CWE-noinfo
CVE-2010-0876 2012-10-23 12:20 2010-04-14 Show GitHub Exploit DB Packet Storm
307267 - oracle collaboration_suite Unspecified vulnerability in the User Interface Components in Oracle Collaboration Suite 10.1.2.4 allows remote attackers to affect integrity via unknown vectors. NVD-CWE-noinfo
CVE-2010-0881 2012-10-23 12:20 2010-04-15 Show GitHub Exploit DB Packet Storm
307268 - oracle application_server Unspecified vulnerability in the Access Manager Identity Server component in Oracle Application Server 7.0.4.3 and 10.1.4.2 allows remote attackers to affect integrity via unknown vectors. NVD-CWE-noinfo
CVE-2010-0066 2012-10-23 12:17 2010-01-13 Show GitHub Exploit DB Packet Storm
307269 - oracle application_server Unspecified vulnerability in the Oracle Containers for J2EE component in Oracle Application Server 10.1.2.3 and 10.1.3.4 allows remote attackers to affect confidentiality via unknown vectors. NVD-CWE-noinfo
CVE-2010-0067 2012-10-23 12:17 2010-01-13 Show GitHub Exploit DB Packet Storm
307270 - oracle bea_product_suite Unspecified vulnerability in the WebLogic Server component in BEA Product Suite 9.0, 9.1, 9.2MP2, and 10.0 allows remote attackers to affect confidentiality via unknown vectors. NVD-CWE-noinfo
CVE-2010-0068 2012-10-23 12:17 2010-01-13 Show GitHub Exploit DB Packet Storm