Vulnerability Search Top
Show Search Menu
Vendor Name
プロダクト・サービス名
Title
CVE
Urgent
Important
Warning
Warning
CWE
公開-検索開始年
公開-検索開始月
公開-検索開始日
公開-検索終了年
公開-検索終了月
公開-検索終了日
レベルソート
In descending order of publication date
In descending order of update date
Number of items displayed

You can search for vulnerabilities managed by JVN (Japan Vulnerability Note) and NVD (National Vulnerability Database).
Search keywords must be entered in English otherwise will not be searched in both JVN and NVD.

To search by CWE, please refer to the CWE Overview and check the CWE number.

  • Urgent
  • Important
  • Warning
  • Low
JVN Vulnerability Information

Update Date":June 5, 2026, 6 p.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Impact
Show
Exploit
PoC
Search
133071 8.8 重要
Network
The Guild, Inc. GraphQL Tools graphql-tools におけるコマンドインジェクションの脆弱性 CWE-77
コマンドインジェクション
CVE-2021-23326 2021-09-22 15:11 2021-01-13 Show GitHub Exploit DB Packet Storm
133072 5.3 警告
Network
フォーティネット Fortiweb FortiWeb における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2020-29019 2021-09-22 15:11 2020-11-24 Show GitHub Exploit DB Packet Storm
133073 8.8 重要
Network
フォーティネット Fortiweb FortiWeb における書式文字列に関する脆弱性 CWE-134
書式文字列の問題
CVE-2020-29018 2021-09-22 15:11 2020-11-24 Show GitHub Exploit DB Packet Storm
133074 8.8 重要
Network
フォーティネット FortiDeceptor FortiDeceptor における OS コマンドインジェクションの脆弱性 CWE-78
OSコマンド・インジェクション
CVE-2020-29017 2021-09-22 15:11 2020-11-24 Show GitHub Exploit DB Packet Storm
133075 9.8 緊急
Network
フォーティネット Fortiweb FortiWeb における境界外書き込みに関する脆弱性 CWE-787
境界外書き込み
CVE-2020-29016 2021-09-22 15:11 2020-11-24 Show GitHub Exploit DB Packet Storm
133076 9.8 緊急
Network
フォーティネット Fortiweb FortiWeb における SQL インジェクションの脆弱性 CWE-89
SQLインジェクション
CVE-2020-29015 2021-09-22 15:11 2020-11-24 Show GitHub Exploit DB Packet Storm
133077 5.4 警告
Network
Skyworth Digital Holdings Ltd. GN542VF ファームウェア SKYWORTH GN542VF におけるクロスサイトスクリプティングの脆弱性 CWE-79
クロスサイト・スクリプティング(XSS)
CVE-2020-26733 2021-09-22 15:11 2020-10-7 Show GitHub Exploit DB Packet Storm
133078 5.3 警告
Network
WP Ninjas, LLC. Ninja Forms WordPress 用 Ninja Forms プラグインにおけるエンコードおよびエスケープに関する脆弱性 CWE-116
不適切なエンコード、または出力のエスケープ
CVE-2020-36173 2021-09-22 14:52 2020-09-18 Show GitHub Exploit DB Packet Storm
133079 6.5 警告
Network
WP Ninjas, LLC. Ninja Forms WordPress 用 Ninja Forms プラグインにおけるクロスサイトリクエストフォージェリの脆弱性 CWE-352
同一生成元ポリシー違反
CVE-2020-36174 2021-09-22 14:41 2020-09-17 Show GitHub Exploit DB Packet Storm
133080 8.8 重要
Network
アドビシステムズ Adobe Acrobat DC
Adobe Acrobat
Adobe Acrobat Reader DC
Adobe Reader および Acrobat における解放済みメモリの使用に関する脆弱性 CWE-416
解放済みメモリの使用
CVE-2021-28553 2021-09-22 10:58 2021-05-11 Show GitHub Exploit DB Packet Storm
NVD Vulnerability Information

Update Date:June 5, 2026, 4:11 a.m.

No CVSS Level
Attach Vector
Vendor Name Project Name Title CWE CVE Update Date Publication Date Show Affected Exploit
PoC
Search
306861 - iscripts eswap SQL injection vulnerability in addsale.php in iScripts eSwap 2.0 allows remote attackers to execute arbitrary SQL commands via the type parameter. CWE-89
SQL Injection
CVE-2010-5036 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
306862 - iscripts eswap Cross-site scripting (XSS) vulnerability in search.php in iScripts eSwap 2.0 allows remote attackers to inject arbitrary web script or HTML via the txtHomeSearch parameter (aka the search field). NO… CWE-79
Cross-site Scripting
CVE-2010-5035 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
306863 - iscripts easybiller SQL injection vulnerability in viewhistorydetail.php in iScripts EasyBiller 1.1 allows remote attackers to execute arbitrary SQL commands via the planid parameter. CWE-89
SQL Injection
CVE-2010-5034 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
306864 - fusebox fusebox SQL injection vulnerability in ProductList.cfm in Fusebox 5.5.1 allows remote attackers to execute arbitrary SQL commands via the CatDisplay parameter. CWE-89
SQL Injection
CVE-2010-5033 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
306865 - tamlyncreative com_bfquiztrial SQL injection vulnerability in the BF Quiz (com_bfquiztrial) component before 1.3.1 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in a bfquiztrial acti… CWE-89
SQL Injection
CVE-2010-5032 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
306866 - filenice filenice Cross-site scripting (XSS) vulnerability in index.php in fileNice 1.1 allows remote attackers to inject arbitrary web script or HTML via the sstring parameter (aka the Search Box). NOTE: some of the… CWE-79
Cross-site Scripting
CVE-2010-5031 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
306867 - codefabrik ecomat_cms Cross-site scripting (XSS) vulnerability in index.php in Ecomat CMS 5.0 allows remote attackers to inject arbitrary web script or HTML via the lang parameter in a web action. CWE-79
Cross-site Scripting
CVE-2010-5030 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
306868 - codefabrik ecomat_cms SQL injection vulnerability in index.php in Ecomat CMS 5.0 allows remote attackers to execute arbitrary SQL commands via the show parameter in a web action. CWE-89
SQL Injection
CVE-2010-5029 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
306869 - harmistechnology com_jejob SQL injection vulnerability in the JExtensions JE Job (com_jejob) component 1.0 for Joomla! allows remote attackers to execute arbitrary SQL commands via the catid parameter in an item action to inde… CWE-89
SQL Injection
CVE-2010-5028 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm
306870 - sfiab science_fair_in_a_box Cross-site scripting (XSS) vulnerability in winners.php in Science Fair In A Box (SFIAB) 2.0.6 and 2.2.0 allows remote attackers to inject arbitrary web script or HTML via the type parameter. NOTE: … CWE-79
Cross-site Scripting
CVE-2010-5027 2024-11-21 10:22 2011-11-3 Show GitHub Exploit DB Packet Storm